Skip to main content
  • Japanese
  • English
Home

Forensicist

Digital Forensics/Incident Response
toggle
  • Home
  • About
  • Projects
    • USN Analytics
    • Bulk Extractor with Record Carving
    • KaniVola
    • mssql_4n6
    • fte
    • NSRLJP
    • HFS Journal Parser
    • FCNS_RAR
    • PolAdtEv Parser
  • Resources
by Dr. Radut

WinFE based on WinPE for Windows 10

Sun, 12/02/2018 - 13:15

WinFE based on WinPE for Windows 10 (English) is available.

OSDFCon 2018 Presentation & bulk_extractor-rec03

Thu, 11/01/2018 - 22:52

OSDFCon 2018 slides are now available. I talked about "A Combination of Advanced Carver and Intelligent Parser" and bulk_extractor-rec03 has been released.

Carving utmp records for intrusion analysis

Sat, 02/03/2018 - 23:44

I posted about Carving utmp records for intrusion analysis using utmp scanner of bulk_extractor-rec

USN Analytics

Sat, 01/27/2018 - 08:00

Analysis Tool for USN Journal/Change Journal, USN Analytics has been released.

bulk_extractor-rec02

Sun, 01/21/2018 - 11:10

bulk_extractor-rec02 has been released.

Bulk Extractor with Record Carving

Tue, 12/12/2017 - 23:24

To carve out in NTFS internal records and Unix utmp records, Bulk Extractor with Record Carving has been released.

PolAdtEv for Windows 10(1607)

Tue, 02/07/2017 - 22:56

A structure of PolAdtEv key has changed since Windows 10(1607)/2016.

Web Site Renewal

Sun, 02/05/2017 - 21:05

I have arranged the contents on the site.

Pagination

  • First page « First
  • Previous page ‹ Previous
  • Page 1
  • Current page 2
Subscribe to