|
[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]
Re: Windows forensics with Linux analysis machine |  |
- To: "" <[EMAIL PROTECTED]>
- Subject: Re: Windows forensics with Linux analysis machine
- From: Steven Becker <[EMAIL PROTECTED]>
- Date: Thu, 21 Aug 2003 14:38:53 -0700
- In-reply-to: <[EMAIL PROTECTED]>
- References: <[EMAIL PROTECTED]>
 |
| |
Check out:
FIRE <http://fire.dmzs.com/>
Knoppix <http://www.knopper.net/knoppix/index-en.html#description>
Quoting JJ <[EMAIL PROTECTED]>:
> All,
>
> I'm looking for good tools that will allow me to do a full investigation of a
> Windows image using linux. I'm looking at Autopsy and Sleuthkit now. Are
> there any other tools that will allow me to do the full investigation (view
> registry structures, undelete files, etc) under linux?
>
> Thanks,
> JJ
>
> ---------------------
> J. J. Horner
> CISSP,CCNA,CHSS,CHP
>
> -----------------------------------------------------------------
> This list is provided by the SecurityFocus ARIS analyzer service.
> For more information on this free incident handling, management
> and tracking system please see: http://aris.securityfocus.com
>
>
-----------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management
and tracking system please see: http://aris.securityfocus.com
| |