ForensicsWiki will continue to operate as it has before and will not be shutting down. Thank you for your continued support of ForensicsWiki.

Difference between pages "Libbde" and "Libevt"

From ForensicsWiki
(Difference between pages)
Jump to: navigation, search
 
(Created page with "{{Infobox_Software | name = libevt | maintainer = Joachim Metz | os = Linux, FreeBSD, NetBSD, OpenBSD, Mac OS X, Windows | genre = {{Analys...")
 
Line 1: Line 1:
 
{{Infobox_Software |
 
{{Infobox_Software |
   name = libbde |
+
   name = libevt |
 
   maintainer = [[Joachim Metz]] |
 
   maintainer = [[Joachim Metz]] |
 
   os = [[Linux]], [[FreeBSD]], [[NetBSD]], [[OpenBSD]], [[Mac OS X]], [[Windows]] |
 
   os = [[Linux]], [[FreeBSD]], [[NetBSD]], [[OpenBSD]], [[Mac OS X]], [[Windows]] |
   genre = {{Disk Encryption}} |
+
   genre = {{Analysis}} |
 
   license = {{LGPL}} |
 
   license = {{LGPL}} |
   website = [http://code.google.com/p/libbde/ code.google.com/p/libbde/] |
+
   website = [http://code.google.com/p/libevt/ code.google.com/p/libevt/] |
 
}}
 
}}
  
The '''libbde''' package contains a library and applications to read the [[BitLocker Disk Encryption | BitLocker Disk Encryption (BDE)]] volumes.
+
The '''libevt''' package contains a library and applications to read [[EVT | Windows Event Log (EVT)]] files.
 
+
== Tools ==
+
The '''libbde''' package contains the following tools:
+
* '''bdeinfo''', which shows information about BDE Volumes.
+
* '''bdemount''', which FUSE mounts BDE Volumes.
+
  
 
== History ==  
 
== History ==  
  
Libbde was created by [[Joachim Metz]] in 2011.
+
Libevt was created by [[Joachim Metz]] in 2011.
 +
 
 +
== Tools ==
 +
The '''libevt''' package contains the following tools:
 +
* '''evtinfo''', which shows information about EVT files.
 +
* '''evtexport''', which exports information from EVT files.
  
 
== External Links ==
 
== External Links ==
  
* [http://code.google.com/p/libbde/ Project site]
+
* [http://code.google.com/p/libevt/ libevt project site]

Revision as of 19:58, 10 May 2012

libevt
Maintainer: Joachim Metz
OS: Linux, FreeBSD, NetBSD, OpenBSD, Mac OS X, Windows
Genre: Analysis
License: LGPL
Website: code.google.com/p/libevt/

The libevt package contains a library and applications to read Windows Event Log (EVT) files.

History

Libevt was created by Joachim Metz in 2011.

Tools

The libevt package contains the following tools:

  • evtinfo, which shows information about EVT files.
  • evtexport, which exports information from EVT files.

External Links