Search the web
Sign In
New User? Sign Up
linux_forensics
? Already a member? Sign in to Yahoo!

Yahoo! Groups Tips

Did you know...
Show off your group to the world. Share a photo of your group with us.

Best of Y! Groups

   Check them out and nominate your group.
Having problems with message search? Fill out this form to ensure your group is one of the first to be migrated to the new message search system.

Messages

  Messages Help
Advanced
Messages 3063 - 3092 of 3157   Oldest  |  < Older  |  Newer >  |  Newest
Messages: Simplify | Expand   (Group by Topic) Author Sort by Date ^
3063
I've discussed this idea on-and-off with a few other people on this list. I finally got around to writing up the program. Feedback is appreciated. -Simson ...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Mar 1, 2009
11:18 pm
3064
Very nice program....I'll test it ASAP ;-) and I'll report this new in my mailing list. bye ... Dott. Nanni Bassetti Consulente Informatico ...
Nanni Bassetti
nannib7013
Offline Send Email
Mar 2, 2009
8:05 am
3065
Dear all, does anyone here ever deal with evidence which using PGPDisk? any short way to bypass or maybe access the encrypted disk and read it as unencrypted...
Mada R Perdhana
mrp_bpp
Offline Send Email
Mar 3, 2009
11:43 am
3066
Its real hard process. Even if you know the password. If you dont know the password access data prtk says can broute force to pgp disks. But i never tried...
Bar HIZIR
bhizir
Offline Send Email
Mar 3, 2009
12:00 pm
3067
I have had to work on these, you can get a bootable CD from PGP to decrypt the disk back to its original form but you will need to have 2 clones for evidence...
Jonathan Fitzgerald
vipor350
Online Now Send Email
Mar 3, 2009
1:20 pm
3068
I already clone the disk, as it is a basic step in forensic, to avoid crashing the evidence disk. regards, Mada "Never Trust an Operating System You don't have...
Mada R Perdhana
mrp_bpp
Offline Send Email
Mar 3, 2009
2:30 pm
3069
"Never Trust an Operating System You don't have the Source for..." "Closed Source for device Driver are ILLEGAL and not Ethical... act!" "Isn't it, MS Windows...
Mada R Perdhana
mrp_bpp
Offline Send Email
Mar 3, 2009
2:30 pm
3070
Prtk is supposed to work with whole-disk encryption. But it may take a while. I've run it for several weeks on an encrypted laptop disk and gotten no positive...
Steve Burgess
diarmiud
Offline Send Email
Mar 3, 2009
2:49 pm
3071
Hi Mada, I guess you want to decrypt the PGP Whole Disk Encryption. I have no experience with this tool, but from my experience using similar tool from other...
Tedi Heriyanto
tedi_heriyanto
Offline Send Email
Mar 4, 2009
2:19 pm
3072
You can check this page for info. http://breach-inv.blogspot.com/2007/05/defeating-whole-disk-encryption-part-1.html ... [Non-text portions of this message...
Barış HIZIR
bhizir
Offline Send Email
Mar 5, 2009
5:09 am
3073
I was hoping to get help from someone in the group who may have used the above program, frag_find, written by Simson Garfinkel. I've made attempts to contact...
bpatterson_461
Offline Send Email
Mar 13, 2009
7:13 pm
3074
Hi. I didn't get your email. Thanks for sending it here. I didn't get your mail because you are sending it with forged Yahoo ... This frequently happens when...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Mar 13, 2009
7:45 pm
3075
Simson, I want to thank you. The information you provided did the trick. And thank you for the heads up on my yahoo email account. I definitely have to look...
bpatterson_461
Offline Send Email
Mar 16, 2009
1:57 pm
3076
Bruce, Thanks for the report. Did you have good a good experience with frag_find? Regards, Simson ... [Non-text portions of this message have been removed]...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Mar 16, 2009
4:50 pm
3077
... Hash: SHA1 Hmmm, the blog post is quite old. A couple of observations, regarding Adam's tools, the python memimage and winlockpwn tool won't work using a...
echo6
echo6_uk
Offline Send Email
Mar 18, 2009
7:50 pm
3078
yes, indeed, I'm screwed, another disk contai .pgd file which another virtual disk encrypted with pgp.;( "Never Trust an Operating System You don't have the...
Mada R Perdhana
mrp_bpp
Offline Send Email
Mar 19, 2009
1:57 am
3079
Hi All, I found this strange behaviour: If I attach an empty NTFS device to Windows, I see that the $Logfile changed, but its metadata don't change (date and...
Nanni Bassetti
nannib7013
Offline Send Email
Mar 23, 2009
7:36 am
3080
I think I've seen the same phemonon for other NTFS system files such as $MFT and $BITMAP. Certainly, both of these files change over time but I believe the...
Riley, John H
jriley@...
Send Email
Mar 23, 2009
3:42 pm
3081
Hi all, I'm glad to announce the Linux Live Forensics distro Caine, made for the netbooks and all usb booting systems: NBCAINE - http://www.caine-live.net/ I...
nannib7013
Offline Send Email
Mar 29, 2009
9:45 am
3082
  I;m using smart eval ver, and trying to do some forensic things on 80Gb dd image, and after I run the the filesystem-SMART-study menu for 10 sec, then...
Mada R Perdhana
mrp_bpp
Offline Send Email
Mar 29, 2009
11:05 am
3083
Personally, I wouldn't run with anything less than 1 GB. I have run SMART on 0.7 GB, but that wasn't particularly enjoyable. Cheers, Ron ... -- Ronald L....
ron@...
Send Email
Mar 29, 2009
6:00 pm
3084
looks like my attachment file could not send to this mailing list , well here are my lshw from my laptop which I use for running SMART ubuntu-laptop    ...
Mada R Perdhana
mrp_bpp
Offline Send Email
Mar 30, 2009
11:54 am
3085
I already upgrade my RAM into $Gb RAM but still out memory.... Berselancar lebih cepat. Internet Explorer 8 yang dioptimalkan untuk Yahoo! otomatis membuka 2...
Mada R Perdhana
mrp_bpp
Offline Send Email
Mar 31, 2009
3:19 pm
3086
Perhaps your SMART issue is better served at the SMART forum? http://www.smartforensics.net/ Cheers! farmerdude http://www.onlineforensictraining.com ...
farmerdude
farmerduderl
Offline Send Email
Mar 31, 2009
3:50 pm
3087
thanks a lot dude I'm on my way "Never Trust an Operating System You don't have the Source for..." "Closed Source for device Driver are ILLEGAL and not...
Mada R Perdhana
mrp_bpp
Offline Send Email
Apr 1, 2009
12:15 am
3088
All, Based on user feedback, I am happy to announce the release of frag_find version 1.1.1. This program is part of the NPS Bloom Filter package. You can...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Apr 12, 2009
5:36 pm
3089
Hi all, I developed a new bash script tool Raw2FS, based on TSK: It's possible to resolve the file name starting from the carved file name generated by the...
Nanni Bassetti
nannib7013
Offline Send Email
Apr 20, 2009
8:52 am
3090
Does anyone have a good resource, or know anyone that has done some good analysis of the Vista Volume Snapshot Service? I'm looking for information on the...
swinginscott
Offline Send Email
Apr 20, 2009
2:57 pm
3091
... I'm sorry for the bad url, this is the right url: http://scripts4cf.sourceforge.net/tools.html and I just developed a new release of Raw2FS, I hope it will...
nannib7013
Offline Send Email
Apr 22, 2009
11:34 pm
3092
I need to image a RAID 5 server. Can dcfldd image the logical volumes instead of the individual disks? Are there other tools that can do what I need? Thanks...
basho4n6
Offline Send Email
May 8, 2009
10:20 pm
Messages 3063 - 3092 of 3157   Oldest  |  < Older  |  Newer >  |  Newest
Advanced
Add to My Yahoo!      XML What's This?

Copyright © 2009 Yahoo! Inc. All rights reserved.
Privacy Policy - Terms of Service - Guidelines - Help