Difference between pages "Category:Vendor" and "Knoppix STD"

From ForensicsWiki
(Difference between pages)
Jump to: navigation, search
(External Links)
 
 
Line 1: Line 1:
WetStone Technologies offers Digital Investigation products and training.
+
{{Deprecated Software}}
Our products include:
+
*  [[Gargoyle Investigator™]]
+
* [[LiveWire Investigator™]].
+
* [[LiveDiscover™]]
+
* [[Stego Suite™]]
+
  
Our trainings include:
+
{{Infobox_Software |
* [[Hacking BootCamp for Investigators™]]
+
  name = Knoppix STD |
* [[Live Investigator Training™]].
+
  maintainer = [[STD project]] |
* [[Steganography Investigator Training™]]
+
  os = [[Linux]] |
 +
  genre = {{Live CD}} |
 +
  license = {{GPL}} |
 +
  website = [http://s-t-d.org/ s-t-d.org/] |
 +
}}
  
 +
Knoppix STD is a [[computer forensics]] / [[Incident Response|incident response]] [[Live CD]] based on Knoppix.
  
==Industry Awards==
+
== Tools ==
  
In both 2007 and 2008 WetStone was named Best Computer Forensics Solution from SC Magazine
+
=== Forensics ===
and the 2007 Innovator
+
  
== External Links ==
+
* [[Sleuthkit]] 1.66 : extensions to The Coroner's Toolkit forensic toolbox.
 +
* autopsy 1.75 : Web front-end to TASK. Evidence Locker defaults to /mnt/evidence
 +
* biew : binary viewer
 +
* bsed : binary stream editor
 +
* consh : logged shell (from F.I.R.E.)
 +
* coreography : analyze core files
 +
* dcfldd : US DoD Computer Forensics Lab version of dd
 +
* fenris : code debugging, tracing, decompiling, reverse engineering tool
 +
* fatback : Undelete FAT files
 +
* foremost : recover specific file types from disk images (like all JPG files)
 +
* ftimes : system baseline tool (be proactive)
 +
* galleta : recover Internet Explorer cookies
 +
* hashdig : dig through hash databases
 +
* hdb : java decompiler
 +
* mac-robber : TCT's graverobber written in C
 +
* [[md5deep]] : run md5 against multiple files/directories
 +
* memfetch : force a memory dump
 +
* pasco : browse IE index.dat
 +
* photorec : grab files from digital cameras
 +
* readdbx : convert Outlook Express .dbx files to mbox format
 +
* readoe : convert entire Outlook Express .directory to mbox format
 +
* rifiuti : browse Windows Recycle Bin INFO2 files
 +
* secure_delete : securely delete files, swap, memory....
 +
* testdisk : test and recover lost partitions
 +
* wipe : wipe a partition securely. good for prep'ing a partition for dd
 +
* and other typical system tools used for forensics (dd, lsof, strings, grep, etc.)
  
[http://www.wetstonetech.com]
+
== External Links ==
[http://www.wetstonetech.com/blogs/]
+
[http://www.wetstonetech.com/forensictools.html]
+
[http://www.wetstonetech.com/trainings.html]
+
  
 +
* [http://s-t-d.org/ Official Site]
 +
* [http://forum.s-t-d.org/ Support Forum]
  
[[Category:Vendor]]
+
[[Category:Incident response tools]]

Revision as of 06:24, 28 July 2012

40px-Ambox warning pn.png

This tool is deprecated.
The tool that this page describes is deprecated and is no longer under active development.
Further information might be found on the discussion page.

Knoppix STD
Maintainer: STD project
OS: Linux
Genre: Live CD
License: GPL
Website: s-t-d.org/

Knoppix STD is a computer forensics / incident response Live CD based on Knoppix.

Tools

Forensics

  • Sleuthkit 1.66 : extensions to The Coroner's Toolkit forensic toolbox.
  • autopsy 1.75 : Web front-end to TASK. Evidence Locker defaults to /mnt/evidence
  • biew : binary viewer
  • bsed : binary stream editor
  • consh : logged shell (from F.I.R.E.)
  • coreography : analyze core files
  • dcfldd : US DoD Computer Forensics Lab version of dd
  • fenris : code debugging, tracing, decompiling, reverse engineering tool
  • fatback : Undelete FAT files
  • foremost : recover specific file types from disk images (like all JPG files)
  • ftimes : system baseline tool (be proactive)
  • galleta : recover Internet Explorer cookies
  • hashdig : dig through hash databases
  • hdb : java decompiler
  • mac-robber : TCT's graverobber written in C
  • md5deep : run md5 against multiple files/directories
  • memfetch : force a memory dump
  • pasco : browse IE index.dat
  • photorec : grab files from digital cameras
  • readdbx : convert Outlook Express .dbx files to mbox format
  • readoe : convert entire Outlook Express .directory to mbox format
  • rifiuti : browse Windows Recycle Bin INFO2 files
  • secure_delete : securely delete files, swap, memory....
  • testdisk : test and recover lost partitions
  • wipe : wipe a partition securely. good for prep'ing a partition for dd
  • and other typical system tools used for forensics (dd, lsof, strings, grep, etc.)

External Links

This category currently contains no pages or media.