analyzemft
Parse the MFT file from an NTFS filesystem.
Platforms: Linux · Last verified September 6, 2026
Parse the MFT file from an NTFS filesystem.
Only use this tool against systems you own or are explicitly authorized to test — see the disclaimer.
Getting started
Install on BlackArch with `pacman -S analyzemft` (or add the BlackArch repository to an existing Arch Linux install). See the official BlackArch tool listing and upstream homepage linked above for details.
