Search the web
Sign In
New User? Sign Up
linux_forensics
? Already a member? Sign in to Yahoo!

Yahoo! Groups Tips

Did you know...
Show off your group to the world. Share a photo of your group with us.

Best of Y! Groups

   Check them out and nominate your group.
Having problems with message search? Fill out this form to ensure your group is one of the first to be migrated to the new message search system.

Messages

  Messages Help
Advanced
Messages 3098 - 3127 of 3157   Oldest  |  < Older  |  Newer >  |  Newest
Messages: Simplify | Expand   (Group by Topic) Author Sort by Date ^
3098
Does anyone here know, how to read a cc skimmer from linux? we have a case in here, we found a credit card skimmer, but we still have problem to read the data...
Mada R Perdhana
mrp_bpp
Offline Send Email
Jul 3, 2009
1:46 am
3099
Hi I have the same problem and would also like some advice. The device in my possession has no markings or model number. Any help will do Beaunard Grobler ...
CCIU
ccu@...
Send Email
Jul 3, 2009
5:31 am
3100
Are you sure that the devices are self contained models? Some of the devices I have seen are designed to connect either to a handheld device (pocket pc) or...
Patrick
mingthemercil
Offline Send Email
Jul 3, 2009
11:44 am
3101
frag_find is a program that searches the blocks of disk IMAGE for one or more TARGET files. It does this by checking the SHA1 hash of every block of the target...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Jul 5, 2009
4:12 am
3102
Can you send a picture? Also what types of cables you are using to connect to your system. I am not sure about finding a reliable device driver for those...
mark mendelson
arduousbyte
Offline Send Email
Jul 5, 2009
5:26 am
3103
Hi Everyone, I have found evidence of credit card fraud in Windows Vista system restore volumes with a grep expression. The suspect appears to have been...
Lehr, John
slopd4256
Offline Send Email
Jul 13, 2009
8:45 pm
3104
Well, from within Windows, programatically speaking, the Shadow Volumes just map back to the physical volume. Meaning, if you have ten HarddiskShadowCopyXX...
swinginscott
Offline Send Email
Jul 14, 2009
12:03 pm
3105
... As far as I know you should operate on the original disk (write-blocked) from a Windows Vista OS. By using vssadmin.exe and mkink.exe you can have access...
fpi
francesco.pi...
Offline Send Email
Jul 14, 2009
12:19 pm
3106
You may find this resource useful. http://sansforensics.wordpress.com/2008/10/10/shadow-forensics/ Jon. ... From: swinginscott <swinginscott@...> ...
Echo6
echo6_uk
Offline Send Email
Jul 14, 2009
12:55 pm
3107
Thank you for your replies. Looking at the shadow volumes with a hex viewer, the volumes look like databases as Scott suggests from his review of the API....
Lehr, John
slopd4256
Offline Send Email
Jul 14, 2009
6:29 pm
3108
I believe you can do the restoration with the Windows 7 RC1. The RC has a 180 day eval license. ... From: "Lehr, John" <jlehr@...> To:...
styroteqe
Offline Send Email
Jul 14, 2009
7:11 pm
3109
configure: ***************************************** configure: AFFLIB 3.3.6 configuration configure: Amazon S3 Support: no configure: LZMA Compression: yes...
Stuart Bird
e_tective
Offline Send Email
Jul 22, 2009
6:42 am
3110
Hi. What platform are you compiling on, and do you have SHA256? You might want to compare the compile environment of the test program in the log file with the...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Jul 22, 2009
10:37 am
3111
Hi Simson I am compiling on Slackware 12.2 (32 bit). I couldn't find a specific package for SHA-256 although I did install a package called mhash which I was...
Stuart Bird
e_tective
Offline Send Email
Jul 22, 2009
1:24 pm
3112
Fellow Professionals, This is the last week to register for the Digital Forensics Seminar. HiTek Digital Forensics is holding a one day seminar on July 29,...
Dennis Leslie
drleslie46
Offline Send Email
Jul 22, 2009
1:39 pm
3113
Does anyone know of any online forensic seminars to earn some CPE. I need to get a few hours in before the end of the year without spending too much money to...
Bob Kardell
bobkardell
Offline Send Email
Jul 22, 2009
2:06 pm
3114
Stu/Simson, Doesn't something like OpenSSL or libcrypto provide these? Jon Sent from my iPhone ... [Non-text portions of this message have been removed]...
Echo Six
echo6_uk
Offline Send Email
Jul 22, 2009
3:31 pm
3115
That's your problem. You need to install the current version of OpenSSL. ... [Non-text portions of this message have been removed]...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Jul 22, 2009
3:40 pm
3116
SHA-256 is not present in all versions of OpenSSL, which is why the configure script checks for it. My hunch is that the system below has multiple copies of...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Jul 22, 2009
3:40 pm
3117
Thanks Jon, a newer openssl package sorted the issue. Stu ________________________________ From: Echo Six <echo6_uk@...> To:...
Stuart Bird
e_tective
Offline Send Email
Jul 22, 2009
3:50 pm
3118
Simson Now sorted thanks, it was an outdated openssl package at fault. Stu ________________________________ From: Simson Garfinkel <simsong@...> To:...
Stuart Bird
e_tective
Offline Send Email
Jul 22, 2009
3:54 pm
3119
Thanks. I should add this to the configure program. ... [Non-text portions of this message have been removed]...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Jul 22, 2009
4:34 pm
3120
DFLabs is proud to announce the new "video" section on the website dedicated to the PTK project. Thanks to the new section features that have already...
Michele Zambelli
mizambo
Offline Send Email
Jul 29, 2009
8:48 am
3121
Hi All, I'm an experienced linux user/developer/sysadmin and am looking to work up a bit of knowledge (and experience) with regards to performing data recovery...
skyphyr@...
skyphyr...
Offline Send Email
Aug 23, 2009
10:53 am
3122
-Alan, If you're looking to use a tool for data recovery for Linux systems then I would recommend SMART for Linux. It is the Linux equivalent to the windows...
abanks600
Offline Send Email
Aug 23, 2009
1:53 pm
3123
Hi Andre, ... Thanks for the link. From what I've found on the page this is a purely software based tool. Do you have any suggestions for kit to assist in the...
Alan Jones
skyphyr...
Offline Send Email
Aug 23, 2009
11:06 pm
3124
... Take a look at the movies in the presentations section on www.myharddrivedied.com Some good info there. Harry....
Harry Duncan
usr.src.linux@...
Send Email
Aug 24, 2009
12:11 am
3125
Alan -- Why are you asking a forensics forum about data recovery? ...they are different fields! --sef ========= ... MicroCom Worldwide Data Recovery < ...
Steve Fowler
sfowler@...
Send Email
Aug 24, 2009
6:19 pm
3126
Hi Steve, ... Errrr... that's a good question. My bad. I assumed in forensics you'd have to deal with drives damaged in an attempt to prevent data being...
Alan Jones
skyphyr...
Offline Send Email
Aug 24, 2009
10:30 pm
3127
Hi Alan -- Well, it does happen occasionally that a hard drive is intentionally damaged to hide evidence and, if the intender is knowledgeable, the effort is...
Steve Fowler
sfowler@...
Send Email
Aug 25, 2009
1:47 am
Messages 3098 - 3127 of 3157   Oldest  |  < Older  |  Newer >  |  Newest
Advanced
Add to My Yahoo!      XML What's This?

Copyright © 2009 Yahoo! Inc. All rights reserved.
Privacy Policy - Terms of Service - Guidelines - Help