Difference between revisions of "File Analysis"

From ForensicsWiki
Jump to: navigation, search
m
m
(One intermediate revision by one other user not shown)
Line 12: Line 12:
  
 
== Tools ==
 
== Tools ==
 +
 +
{{main|Tools:File Analysis}}
  
 
; [[Prevx1]]
 
; [[Prevx1]]
Line 18: Line 20:
  
 
[[Hachoir]] — Python framework for binary file manipulation
 
[[Hachoir]] — Python framework for binary file manipulation
 +
 +
==See also==
 +
[[File Format Identification]]
  
 
== External Links ==
 
== External Links ==
  
 
* ...
 
* ...

Revision as of 23:06, 19 October 2008

Information icon.png

Please help to improve this article by expanding it.
Further information might be found on the discussion page.

File analysis is an important part of computer forensics.

Introduction

...

Malware Forensics

...

Tools

Main article Tools:File Analysis
Prevx1
http://fileinfo.prevx.com/
Very helpful site that identifies/tracks/analyzes 100,000 new executable programs per day around the globe. They have a heuristic engine capable of sorting the good from the bad/harmful (malware).

Hachoir — Python framework for binary file manipulation

See also

File Format Identification

External Links

  • ...
Retrieved from "http://forensicswiki.org/index.php?title=File_Analysis&oldid=3202"