Skip to search.

Breaking News Visit Yahoo! News for the latest.

×Close this window

win4n6 · Windows Forensic Analysis

The Yahoo! Groups Product Blog

Check it out!

Group Information

  • Members: 1039
  • Category: Other
  • Founded: Jan 12, 2008
  • Language: English
? Already a member? Sign in to Yahoo!

Yahoo! Groups Tips

Did you know...
Real people. Real stories. See how Yahoo! Groups impacts members worldwide.

Messages

Advanced
Messages Help
Messages 8618 - 8647 of 8647   Newest  |  < Newer  |  Older >  |  Oldest
Messages: Simplify | Expand Author Sort by Date v
8647 Weg, Jimmy
jimmyweg Send Email
May 17, 2013
11:17 pm
Thanks, guys. I'm using sqliteexpert as we speak. Jimmy MT DCI From: win4n6@yahoogroups.com [mailto:win4n6@yahoogroups.com] On Behalf Of Lance Mueller Sent:...
8646 Dave
cyber5oh Send Email
May 17, 2013
9:08 pm
SQLite which support write ahead logging (WAL) are not supported by that browser. Look for SQLite Manager which is a FireFox add on. If on a Mac environment...
8645 Lance Mueller
lancemueller Send Email
May 17, 2013
9:05 pm
I find this works very well: http://www.sqliteexpert.com/ ... I find this works very well: http://www.sqliteexpert.com/ On Fri, May 17, 2013 at 4:35 PM, Weg,...
8644 Weg, Jimmy
jimmyweg Send Email
May 17, 2013
8:36 pm
Every now and then I come across a sqlite database (typically places.sqlite) that I can't open with the free Sqlite Database Browser from Sourceforge. It...
8643 Steve Lillard
slaughter_dchi Send Email
May 17, 2013
7:15 pm
Can someone point me to a post or article that discusses the differences between the Recycler and the $Recycle Bin? I am seeing both on an image that I am...
8642 lakshmi narayanan raj...
laksnr Send Email
May 17, 2013
4:12 pm
Dan, Thanks for sharing the detailed writeup on UserAssist artifact. Much appreciated. Lakshmi N ________________________________ From: dan_4n6k...
8641 dan_4n6k Send Email May 17, 2013
1:18 pm
Sure thing. Thanks!...
8640 Stefan Kelm
sk081557... Send Email
May 17, 2013
10:05 am
... Great stuff, Dan, thanks for sharing! Cheers, Stefan. -- Stefan Kelm <skelm@...> BFK edv-consulting GmbH http://www.bfk.de/ ...
8639 dan_4n6k Send Email May 16, 2013
10:32 pm
Hi everyone. Just wanted to pass this along to the list. I posted a write-up that goes into detail on what to expect and how to make sense of UserAssist ...
8638 Frank Zellers
fzellers Send Email
May 16, 2013
6:08 pm
This is a local user's mailbox cache ost file found under his user account. appdata directory....
8637 Jesse Kornblum
jessekornblum Send Email
May 16, 2013
5:32 pm
Hi everybody, To paraphrase Barney Stinson, when people on the Internet make me sad, I stop being sad and go be awesome. Today I'm publishing a method to use...
8636 [win4n6] Markus Loyen
maloy_de Send Email
May 16, 2013
4:27 pm
Frank, I would assume that this is part of the public folders that are populated by the exchange server and will or could be seen by every user. maybe this is...
8635 Frank Zellers
fzellers Send Email
May 16, 2013
3:47 pm
I am looking at the directory structure inside an Outlook *.ost file. In the "Root - Mailbox" directory on the same level of the IPM_SUBTREE there is a sub...
8634 Jeff Wold
specialidiot Send Email
May 15, 2013
4:20 pm
Thanks Ray, What I ended up doing was using virtualdub to export the raw audio, then imported that to Audacity. It gave me the information I needed. It was...
8633 Rob Lee
rob_t_lee Send Email
May 15, 2013
3:24 pm
http://computer-forensics.sans.org/blog/2013/05/15/sans-eu-dfir-summit-in-prague-call-for-speakers-now-open/ The 4th annual Forensics and Incident Response...
8632 sir10ken Send Email May 15, 2013
1:33 pm
Frank, Microsoft Premier customers can request that MS conduct a Risk Assessment Program to ensure the servers are backed up, configured to prevent outages,...
8631 Ray Foo
rayfoo2011 Send Email
May 14, 2013
5:50 am
Adobe Premiere? Regards, Ray...
8630 J L
gl33da Send Email
May 13, 2013
10:02 pm
For those of you interested in applying memory forensics to your malware analysis and rootkit detection efforts, we've just posted a new blog with some...
8629 Frank Zellers
fzellers Send Email
May 13, 2013
4:50 pm
We were able to locate some artifacts on our subject's workstation computer. This system was NOT a server. I noticed that these were on our subject's...
8628 keydet89 Send Email May 11, 2013
5:09 pm
... No problem. Let me know if there's something I can do to assist you, if you decide to move forward while you're waiting....
8627 Phil
philrodo Send Email
May 10, 2013
10:55 pm
Harlan: Thanks for the feedback. ... Yes, the laptop doesn't have a CD/DVD drive and I've matched the ParentIdPrefix shown under the MountedDevices key for the...
8626 Stefan Kelm
sk081557... Send Email
May 10, 2013
12:56 pm
Hey Adam, ;) ... Thanks for sharing, I wasn't aware of that plugin. However, dnscache.py doesn't work w/ Volatility 2.3_alpha, does it? Cheers, Stefan. -- ...
8625 keydet89 Send Email May 10, 2013
12:39 pm
... Exactly. In my original post, I used a reference to malware because it was (a) close in my mind, and (b) somewhat easy to relate to for a wide range of...
8624 Mike Wilkinson
writeblocked Send Email
May 10, 2013
11:32 am
Sorry for the late reply on this, I a few things going on at the moment. ... I find it interesting that in this case most of the focus has been on 'suspicious&#39;...
8623 Jeff Wold
specialidiot Send Email
May 10, 2013
4:07 am
Good evening everyone. I'm looking for a utility that can play an AVI video file and display the audio visually in a waveform, much like Audacity does. It...
8622 Chris Sanft
cgsanft Send Email
May 10, 2013
1:48 am
Anyone create an Apple VM which can run on a MAC from e01 or raw files. Thanks Chris...
8621 keydet89 Send Email May 10, 2013
1:16 am
Phil, ... First question...are you sure that the D:\ volume is an external device? ... Not that I'm aware of, as part of the OS on XP. Win7 has the EMDMgmt...
8620 Mike Wilkinson
writeblocked Send Email
May 9, 2013
11:52 pm
DFIROnline is starting at 8pm EDT with Meghana Reddy & Lan Hang from PWC taking us through some methods of data visualization for DFIR. This is a really...
8619 Phil
philrodo Send Email
May 9, 2013
9:16 pm
... I've been able to determine pretty much all the information that can be retrieved about this flash drive from the System Hive (USBSTOR, USB, DeviceClass, &...
8618 Baker, Dave
frnzxguy Send Email
May 9, 2013
8:25 pm
DFRWS, organizers of the longest-running research conference in digital forensics (http://www.dfrws.org), invite you to participate in the 13th annual...
Messages 8618 - 8647 of 8647   Newest  |  < Newer  |  Older >  |  Oldest
Add to My Yahoo!      XML What's This?

Copyright © 2010 Yahoo! Inc. All rights reserved.
Privacy Policy - Terms of Service - Guidelines NEW - Help