Tag: Forensics

How to Recover Deleted File from RAW Image using FTK Imager

How to create Disk Image read this article  http://www.hackingarticles.in/how-to-create-copy-of-suspects-evidence-using-ftk-imager/ After installing the program, run it. In the window that shall appear, click on the option “File” and “Image Mounting. Now select the image file to mount image to drive. Then, In the window “Mount Image to Drive”, choose the forensic image that shall be mounted […]

Forensic Investigation of RAW Image using Forensics Explorer (Part 1)

Forensic Explorer is a tool for the analysis of electronic evidence. Primary users of this software are law enforcement, corporate investigations agencies and law firms. Forensic Explorer has the features you expect from the very latest in forensic software. Inclusive with Mount Image Pro, Forensic Explorer will quickly become an important part of your forensic […]

Forensic Investigation Tutorial Using DEFT

DEFT (acronym for Digital Evidence & Forensics Toolkit) is a distribution made for Computer Forensics, with the purpose of running live on systems without tampering or corrupting devices (hard disks, pen drives, etc…) connected to the PC where the boot process takes place. Introduction to DEFT Linux The DEFT system is based on GNU Linux; […]

Forensic Investigation of RAW Images using Belkasoft Evidence Center

In this article, we delve into RAW Image Forensic with Belkasoft, utilizing Belkasoft Evidence Center to conduct a comprehensive forensic investigation of raw disk images. By following the outlined steps, forensic analysts can efficiently extract and analyze critical artifacts such as browser history, downloaded files, cookies, documents, encrypted files, images, and recently accessed data. This […]

How to Clone Drive for Forensic Purpose with DriveClone

DriveClone is a hard disk (HDD) & solid state drive (SSD) cloning and migration software. It is a time & money saver for server migration, raid upgrading, and system cloning DriveClone automatically clones your entire machine, including system files, applications, preferences, emails, music, photos, movies, documents, and all partitions. But what makes DriveClone different from […]

Best of Computer Forensics Tutorials

Comprehensive Guide on Autopsy Tool (Windows) Memory Forensics using Volatility Workbench Comprehensive Guide on FTK Imager Memory Forensics: Using Volatility Framework Forensic Investigation: Shellbags Forensic Investigation: Pagefile.sys Forensic Investigation: Disk Drive Signature Forensic Investigation : Prefetch File Fast Incident Response and Data Collection Digital Forensics: An Introduction (Part 2) Digital Forensics: An Introduction Forensic Investigation: […]

Forensic File Comparison Investigation with Compare It

Compare It! displays 2 files side by side, with colored differences sections to simplify analyzing.  You can move changes between files with single mouse click or keystroke, and of course you have ability to edit files directly in comparison window. It can make colored printout of differences report, exactly as it’s on the screen. It supports regular expressions, so […]

How to Install Digital Forensics Framework in System

DFF (Digital Forensics Framework) is a free and Open Source computer forensics software built on top of a dedicated Application Programming Interface (API). It can be used both by professional and non-expert people in order to quickly and easily collect, preserve and reveal digital evidences without compromising systems and data. Firstly, to install DFF (Digital […]

How to Create Drive Image using Forensic Replicator

Forensic Replicator is a bit-stream forensic image creation tool. Forensic Replicator is a Windows based tool that creates bit-by-bit raw DD images of hard drives and related media. You can also create images in PFR format to encrypt the image, compress it, or break it up into smaller pieces. Forensic Replicator gives you everything you would […]

Outlook Forensics Investigation using E-Mail Examiner

Forensically examine hundreds of email formats including Outlook (PST and OST), Thunderbird, Outlook Express, Windows mail, and more. Paraben’s Email Examiner is one of the most comprehensive forensically sound email examination tools available. Email Examiner allows you to analyze message headers, bodies, and attachments. Email Examiner doesn’t just recover email in the deleted folders; it […]