Security Basics mailing list archives

Re: Forensic tool to recommend?


From: "Richard Lane" <lane.security () gmail com>
Date: Wed, 30 May 2007 22:55:49 +1000


I recommend the HELIX LiveCD distro.  It has both Windows and Linux "sides"
- booting from cold will give access to the Linux toolset, however loading
the CD in Windows provides access to a variety of Windows tools. 
 
http://www.e-fense.com/helix/
 
Good luck
 
Richard
 
 
 
From: Fabio Cerullo <fcerullo_at_gmail.com> 
Date: Tue, 29 May 2007 07:53:28 +0100
 
Hi All, 
I am evaluating some tools for gathering evidence in Linux and Windows
distros. 
In particular I am interested in recovering files/folders which have 
been deleted "accidentally" from the PC. 
I am aware there are some Live CD's with Linux installed that could 
mount a drive and try to recover those files but don't know anyone in 
particular. 
Any help will be really appreciated. 
Thank you very much. 
Greetings, 
Fabio 


Current thread: