Difference between revisions of "File Analysis"

From ForensicsWiki
Jump to: navigation, search
 
m
(5 intermediate revisions by 4 users not shown)
Line 1: Line 1:
Malware Forensics
+
{{Expand}}
  
Here is a very helpful site that identifies/tracks/analyzes 100,000 new executable programs per day around the globe. The have a heurstic engine capable of sorting the good from the bad/harmful (malware): http://fileinfo.prevx.com/
+
'''File analysis''' is an important part of [[computer forensics]].
  
It's a significant tool in much of our research her at zlockie.
+
== Introduction ==
  
Hope this helps.
+
...
  
Best Regards,
+
== Malware Forensics ==
Tom Zlockie
+
 
Analysis Director
+
...
ZLOCKIE Research International
+
 
 +
== Tools ==
 +
 
 +
{{main|Tools:File Analysis}}
 +
 
 +
; [[Prevx1]]
 +
: http://fileinfo.prevx.com/
 +
: Very helpful site that identifies/tracks/analyzes 100,000 new executable programs per day around the globe. They have a heuristic engine capable of sorting the good from the bad/harmful ([[malware]]).
 +
 
 +
[[Hachoir]] — Python framework for binary file manipulation
 +
 
 +
==See also==
 +
[[File Format Identification]]
 +
 
 +
== External Links ==
 +
 
 +
* ...

Revision as of 23:06, 19 October 2008

Information icon.png

Please help to improve this article by expanding it.
Further information might be found on the discussion page.

File analysis is an important part of computer forensics.

Introduction

...

Malware Forensics

...

Tools

Main article Tools:File Analysis
Prevx1
http://fileinfo.prevx.com/
Very helpful site that identifies/tracks/analyzes 100,000 new executable programs per day around the globe. They have a heuristic engine capable of sorting the good from the bad/harmful (malware).

Hachoir — Python framework for binary file manipulation

See also

File Format Identification

External Links

  • ...
Retrieved from "http://forensicswiki.org/index.php?title=File_Analysis&oldid=3202"