<?xml version="1.0"?>
<?xml-stylesheet type="text/css" href="http://www.forensicswiki.org/w/skins/common/feed.css?303"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>http://www.forensicswiki.org/w/index.php?title=Knoppix_STD&amp;feed=atom&amp;action=history</id>
		<title>Knoppix STD - Revision history</title>
		<link rel="self" type="application/atom+xml" href="http://www.forensicswiki.org/w/index.php?title=Knoppix_STD&amp;feed=atom&amp;action=history"/>
		<link rel="alternate" type="text/html" href="http://www.forensicswiki.org/w/index.php?title=Knoppix_STD&amp;action=history"/>
		<updated>2013-05-24T23:54:41Z</updated>
		<subtitle>Revision history for this page on the wiki</subtitle>
		<generator>MediaWiki 1.20.3</generator>

	<entry>
		<id>http://www.forensicswiki.org/w/index.php?title=Knoppix_STD&amp;diff=7356&amp;oldid=prev</id>
		<title>Joachim Metz at 10:24, 28 July 2012</title>
		<link rel="alternate" type="text/html" href="http://www.forensicswiki.org/w/index.php?title=Knoppix_STD&amp;diff=7356&amp;oldid=prev"/>
				<updated>2012-07-28T10:24:13Z</updated>
		
		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table class='diff diff-contentalign-left'&gt;
				&lt;col class='diff-marker' /&gt;
				&lt;col class='diff-content' /&gt;
				&lt;col class='diff-marker' /&gt;
				&lt;col class='diff-content' /&gt;
			&lt;tr style='vertical-align: top;'&gt;
			&lt;td colspan='2' style=&quot;background-color: white; color:black;&quot;&gt;← Older revision&lt;/td&gt;
			&lt;td colspan='2' style=&quot;background-color: white; color:black;&quot;&gt;Revision as of 10:24, 28 July 2012&lt;/td&gt;
			&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt;&amp;#160;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;color: red; font-weight: bold; text-decoration: none;&quot;&gt;{{Deprecated Software}}&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt;&amp;#160;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;color: red; font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;{{Infobox_Software |&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;{{Infobox_Software |&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; name = Knoppix STD |&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; name = Knoppix STD |&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;background: #ffa; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; maintainer =&amp;#160; |&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; maintainer = &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[STD project]] &lt;/ins&gt; |&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;background: #ffa; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; os = &lt;del class=&quot;diffchange diffchange-inline&quot;&gt; &lt;/del&gt;|&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; os = &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[Linux]] &lt;/ins&gt;|&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; genre = {{Live CD}} |&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; genre = {{Live CD}} |&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; license = {{GPL}} |&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&amp;#160;&amp;#160; license = {{GPL}} |&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;</summary>
		<author><name>Joachim Metz</name></author>	</entry>

	<entry>
		<id>http://www.forensicswiki.org/w/index.php?title=Knoppix_STD&amp;diff=7355&amp;oldid=prev</id>
		<title>Fsck at 10:53, 4 August 2007</title>
		<link rel="alternate" type="text/html" href="http://www.forensicswiki.org/w/index.php?title=Knoppix_STD&amp;diff=7355&amp;oldid=prev"/>
				<updated>2007-08-04T10:53:03Z</updated>
		
		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table class='diff diff-contentalign-left'&gt;
				&lt;col class='diff-marker' /&gt;
				&lt;col class='diff-content' /&gt;
				&lt;col class='diff-marker' /&gt;
				&lt;col class='diff-content' /&gt;
			&lt;tr style='vertical-align: top;'&gt;
			&lt;td colspan='2' style=&quot;background-color: white; color:black;&quot;&gt;← Older revision&lt;/td&gt;
			&lt;td colspan='2' style=&quot;background-color: white; color:black;&quot;&gt;Revision as of 10:53, 4 August 2007&lt;/td&gt;
			&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 8:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 8:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;}}&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;}}&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;background: #ffa; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;Knoppix STD is a [[&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;Computer Forensics|&lt;/del&gt;computer forensics]] / [[Incident Response|incident response]] [[&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;live &lt;/del&gt;CD]] based on Knoppix.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;Knoppix STD is a [[computer forensics]] / [[Incident Response|incident response]] [[&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Live &lt;/ins&gt;CD]] based on Knoppix.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;== Tools ==&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;== Tools ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;</summary>
		<author><name>Fsck</name></author>	</entry>

	<entry>
		<id>http://www.forensicswiki.org/w/index.php?title=Knoppix_STD&amp;diff=7354&amp;oldid=prev</id>
		<title>Fsck: New page: {{Infobox_Software |   name = Knoppix STD |   maintainer =  |   os =  |   genre = {{Live CD}} |   license = {{GPL}} |   website = [http://s-t-d.org/ s-t-d.org/] | }}  Knoppix STD is a [[Co...</title>
		<link rel="alternate" type="text/html" href="http://www.forensicswiki.org/w/index.php?title=Knoppix_STD&amp;diff=7354&amp;oldid=prev"/>
				<updated>2007-08-04T10:50:09Z</updated>
		
		<summary type="html">&lt;p&gt;New page: {{Infobox_Software |   name = Knoppix STD |   maintainer =  |   os =  |   genre = {{Live CD}} |   license = {{GPL}} |   website = [http://s-t-d.org/ s-t-d.org/] | }}  Knoppix STD is a [[Co...&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{Infobox_Software |&lt;br /&gt;
  name = Knoppix STD |&lt;br /&gt;
  maintainer =  |&lt;br /&gt;
  os =  |&lt;br /&gt;
  genre = {{Live CD}} |&lt;br /&gt;
  license = {{GPL}} |&lt;br /&gt;
  website = [http://s-t-d.org/ s-t-d.org/] |&lt;br /&gt;
}}&lt;br /&gt;
&lt;br /&gt;
Knoppix STD is a [[Computer Forensics|computer forensics]] / [[Incident Response|incident response]] [[live CD]] based on Knoppix.&lt;br /&gt;
&lt;br /&gt;
== Tools ==&lt;br /&gt;
&lt;br /&gt;
=== Forensics ===&lt;br /&gt;
&lt;br /&gt;
* [[Sleuthkit]] 1.66 : extensions to The Coroner's Toolkit forensic toolbox.&lt;br /&gt;
* autopsy 1.75 : Web front-end to TASK. Evidence Locker defaults to /mnt/evidence&lt;br /&gt;
* biew : binary viewer&lt;br /&gt;
* bsed : binary stream editor&lt;br /&gt;
* consh : logged shell (from F.I.R.E.)&lt;br /&gt;
* coreography : analyze core files&lt;br /&gt;
* dcfldd : US DoD Computer Forensics Lab version of dd&lt;br /&gt;
* fenris : code debugging, tracing, decompiling, reverse engineering tool&lt;br /&gt;
* fatback : Undelete FAT files&lt;br /&gt;
* foremost : recover specific file types from disk images (like all JPG files)&lt;br /&gt;
* ftimes : system baseline tool (be proactive)&lt;br /&gt;
* galleta : recover Internet Explorer cookies&lt;br /&gt;
* hashdig : dig through hash databases&lt;br /&gt;
* hdb : java decompiler&lt;br /&gt;
* mac-robber : TCT's graverobber written in C&lt;br /&gt;
* [[md5deep]] : run md5 against multiple files/directories&lt;br /&gt;
* memfetch : force a memory dump&lt;br /&gt;
* pasco : browse IE index.dat&lt;br /&gt;
* photorec : grab files from digital cameras&lt;br /&gt;
* readdbx : convert Outlook Express .dbx files to mbox format&lt;br /&gt;
* readoe : convert entire Outlook Express .directory to mbox format&lt;br /&gt;
* rifiuti : browse Windows Recycle Bin INFO2 files&lt;br /&gt;
* secure_delete : securely delete files, swap, memory....&lt;br /&gt;
* testdisk : test and recover lost partitions&lt;br /&gt;
* wipe : wipe a partition securely. good for prep'ing a partition for dd&lt;br /&gt;
* and other typical system tools used for forensics (dd, lsof, strings, grep, etc.)&lt;br /&gt;
&lt;br /&gt;
== External Links ==&lt;br /&gt;
&lt;br /&gt;
* [http://s-t-d.org/ Official Site]&lt;br /&gt;
* [http://forum.s-t-d.org/ Support Forum]&lt;br /&gt;
&lt;br /&gt;
[[Category:Incident response tools]]&lt;/div&gt;</summary>
		<author><name>Fsck</name></author>	</entry>

	</feed>