Difference between pages "Libbde" and "Libevt"

From ForensicsWiki
(Difference between pages)
Jump to: navigation, search
 
(Created page with "{{Infobox_Software | name = libevt | maintainer = Joachim Metz | os = Linux, FreeBSD, NetBSD, OpenBSD, Mac OS X, Windows | genre = {{Analys...")
 
Line 1: Line 1:
 
{{Infobox_Software |
 
{{Infobox_Software |
   name = libbde |
+
   name = libevt |
 
   maintainer = [[Joachim Metz]] |
 
   maintainer = [[Joachim Metz]] |
 
   os = [[Linux]], [[FreeBSD]], [[NetBSD]], [[OpenBSD]], [[Mac OS X]], [[Windows]] |
 
   os = [[Linux]], [[FreeBSD]], [[NetBSD]], [[OpenBSD]], [[Mac OS X]], [[Windows]] |
   genre = {{Disk Encryption}} |
+
   genre = {{Analysis}} |
 
   license = {{LGPL}} |
 
   license = {{LGPL}} |
   website = [http://code.google.com/p/libbde/ code.google.com/p/libbde/] |
+
   website = [http://code.google.com/p/libevt/ code.google.com/p/libevt/] |
 
}}
 
}}
  
The '''libbde''' package contains a library and applications to read the [[BitLocker Disk Encryption | BitLocker Disk Encryption (BDE)]] volumes.
+
The '''libevt''' package contains a library and applications to read [[EVT | Windows Event Log (EVT)]] files.
 
+
== Tools ==
+
The '''libbde''' package contains the following tools:
+
* '''bdeinfo''', which shows information about BDE Volumes.
+
* '''bdemount''', which FUSE mounts BDE Volumes.
+
  
 
== History ==  
 
== History ==  
  
Libbde was created by [[Joachim Metz]] in 2011.
+
Libevt was created by [[Joachim Metz]] in 2011.
 +
 
 +
== Tools ==
 +
The '''libevt''' package contains the following tools:
 +
* '''evtinfo''', which shows information about EVT files.
 +
* '''evtexport''', which exports information from EVT files.
  
 
== External Links ==
 
== External Links ==
  
* [http://code.google.com/p/libbde/ Project site]
+
* [http://code.google.com/p/libevt/ libevt project site]

Revision as of 14:58, 10 May 2012

libevt
Maintainer: Joachim Metz
OS: Linux, FreeBSD, NetBSD, OpenBSD, Mac OS X, Windows
Genre: Analysis
License: LGPL
Website: code.google.com/p/libevt/

The libevt package contains a library and applications to read Windows Event Log (EVT) files.

History

Libevt was created by Joachim Metz in 2011.

Tools

The libevt package contains the following tools:

  • evtinfo, which shows information about EVT files.
  • evtexport, which exports information from EVT files.

External Links