Search the web
Sign In
New User? Sign Up
linux_forensics
? Already a member? Sign in to Yahoo!

Yahoo! Groups Tips

Did you know...
Hear how Yahoo! Groups has changed the lives of others. Take me there.

Best of Y! Groups

   Check them out and nominate your group.
Having problems with message search? Fill out this form to ensure your group is one of the first to be migrated to the new message search system.

Messages

  Messages Help
Advanced
Messages 3135 - 3164 of 3164   Newest  |  < Newer  |  Older >  |  Oldest
Messages: Simplify | Expand   (Group by Topic) Author Sort by Date v
3164
Whoops. My previous posting was in error. We already have a metadata extractor for ODF; its called "odf_extractor" I have added it to the 0.5.10 version. ...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Nov 26, 2009
1:17 am
3163
docx_extractor.py is in Python and will run on any Python platform. We didn't make it handle OpenOffice documents, but that's a good idea. I'll add it this...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Nov 25, 2009
9:34 pm
3162
On Tue, 24 Nov 2009 21:59:39 -0800, Simson Garfinkel wrote ... Hi Simson, Seems like a very cool app!  Quick question - not having access to a Linux system at...
subscribe
farmerduderl
Offline Send Email
Nov 25, 2009
4:28 pm
3161
Hi. The program that extracts metadata from Microsoft Office XML files is is called docx_extractor.py. I just added this tool to the "python" directory of the...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Nov 25, 2009
6:00 am
3160
... linux_forensics@yahoogroups.com ... Михай Гимпу во вторник подписал ряд указов об отзыве еще шести...
Serii92S
serii92
Offline Send Email
Nov 24, 2009
2:34 pm
3159
Caine 1.5 is online! http://www.caine-live.net/ The Changelog is in home page. New tools, new manual, new web site, new graphics, new kernel. Thanks :-) ... ...
Nanni Bassetti
nannib7013
Offline Send Email
Nov 18, 2009
12:38 pm
3158
Hello Friends, I am really new to Forensic field. I am doing Master of Engineering in Information Systems Security. I like this IT Security Field. Since, I am...
santoshmtl
Offline Send Email
Nov 15, 2009
11:18 am
3157
Today was born Caine 1.0, new tools, new mounting policies (safer), new patch....enjoy it! http://www.caine-live.net/ bye ... Dott. Nanni Bassetti Consulente...
Nanni Bassetti
nannib7013
Offline Send Email
Oct 29, 2009
11:54 pm
3156
Hi, folks ! What ssdeep hashset do you use to sort/filter a forensic image ? NSRL doesn't have it, yeah ? []s -- Tony Rodrigues, CISSP, CFCP Forense...
Tony Rodrigues
fotografo_to...
Offline Send Email
Oct 19, 2009
9:07 pm
3155
I use libextractor for traditional MS Office files and custom-written tools for the XML-based file formats. You may also find this interesting: Garfinkel, S.,...
Simson Garfinkel
simsongarfinkel
Offline Send Email
Oct 12, 2009
1:14 am
3154
If you are into Perl programing, look at Harlan Carvey's Perl mod File::MSWord and see: http://windowsir.blogspot.com/2006/09/metadata-and-ediscovery.html you...
Bob Kardell
bobkardell
Offline Send Email
Oct 8, 2009
11:49 pm
3153
linkblast: https://blogs.sans.org/computer-forensics/2009/07/10/office-2007-metadata/ http://blog.kiddaland.net/dw/cat_open_xml.pl ...
Jeff Bryner
jbryner1
Offline Send Email
Oct 8, 2009
11:24 pm
3152
Take a look here for several ideas: http://viaforensics.com/computer-forensic-howtos/howto-extract-metadata- microsoft-word-linux.html ...
Lehr, John
slopd4256
Offline Send Email
Oct 8, 2009
9:10 pm
3151
Payne Consulting's Metadata Assistant for versions of Office prior to 2007. Make sure that you have Office 2003 installed not Office 2007 and don't convert...
sean.mclinden
Offline Send Email
Oct 8, 2009
9:03 pm
3150
Hi all, Please forgive the cross-posting. I am trying to find any information on MS office metadata, and how to extract it. Is there a spec available for...
Donald Raikes
dnraikes
Offline Send Email
Oct 8, 2009
8:36 pm
3149
We brought out the SFDumper 2.1, now finally all the problems on the file names and filtering by extension have been resolved. Try it: ...
Nanni Bassetti
nannib7013
Offline Send Email
Oct 6, 2009
9:32 am
3148
Hi farmerdude I am looking for a feature in web server that is it possible to IDENTIFY about status of data. I mean that weather it is system/browser...
nehal dattani
e_motion_nmd
Offline Send Email
Oct 4, 2009
4:10 pm
3147
Although I normally don't top post, I suspect that is probably more practical in your case. Not sure if the accessibility software properly skips to the...
Jacques B.
jboucher_work
Offline Send Email
Oct 4, 2009
1:28 am
3146
Jacques, Thank you for the honest response and warnings. I realize there are some real issues with trying to hunt this down, however, since I have been...
Donald Raikes
dnraikes
Offline Send Email
Oct 4, 2009
1:06 am
3145
Hi Nehal, Are you looking to identify if the Tamper Data plugin was installed on a system, or something else? Am not clear. Cheers! farmerdude ...
farmerdude
farmerduderl
Offline Send Email
Oct 3, 2009
11:05 pm
3144
Hi All, Recently I came across a firefox plug-in named Tamper Data. And during its trial run i found that it is easy to tamper even encrypted data using this ...
nehal dattani
e_motion_nmd
Offline Send Email
Oct 3, 2009
8:24 pm
3143
... Hash: SHA1 Don, The important part is to get an image as early as possible. I wouldn't worry too much about the method you use to image. There has been...
echo6
echo6_uk
Offline Send Email
Oct 3, 2009
7:04 pm
3142
I'd suggest using some basic timeline analysis to see what that turns up. If there is a file being written to log keystrokes, it should lite up in a timeline....
Jeff Bryner
jbryner1
Offline Send Email
Oct 3, 2009
5:53 pm
3141
... I must admit I was thinking of the same thing. Are you going to examine your machines for evidence of malware? You mention that you want to see if...
Jacques B.
jboucher_work
Offline Send Email
Oct 3, 2009
12:51 pm
3140
Don If I were you I would start your adventures at http://www.linuxleo..com and read the introductory guide available there! It will give you some answers but...
Stuart Bird
e_tective
Offline Send Email
Oct 3, 2009
10:04 am
3139
Scott, I would like to use netcat to copy the drives, but the commands I got from the web didn't make a whole lot of sense to me. If you have any...
Donald Raikes
dnraikes
Offline Send Email
Oct 3, 2009
9:03 am
3138
Hello Gents, Maybe I am not seeing the proverbial "Schwartz" here, but once you have the image how are you going to go about and try and find the key logger?...
Adrian Cuellar
adriancuellar
Offline Send Email
Oct 3, 2009
9:03 am
3137
The fastest/easiest way to do it will just be power down the machines, put the hard drives in the Debian machine and use dd. Putting all the drives on the...
swinginscott
Offline Send Email
Oct 2, 2009
10:09 pm
3136
Hello, I am new to this field. I am trying to learn my way into the world of computer forensics, and as such, I have a "real-world" need for the tools...
Donald Raikes
dnraikes
Offline Send Email
Oct 2, 2009
9:33 pm
3135
The Register - LinuxCon 2009: Does Linux desktop even need to be popular? There are, shall we say, differing options among the open source cognoscenti gathered...
Douglas
digitalforen...
Online Now Send Email
Sep 26, 2009
1:17 pm
Messages 3135 - 3164 of 3164   Newest  |  < Newer  |  Older >  |  Oldest
Advanced
Add to My Yahoo!      XML What's This?

Copyright © 2009 Yahoo! Inc. All rights reserved.
Privacy Policy - Terms of Service - Guidelines - Help