Posts Tagged ‘windows forensics’

Most Recent
 
Read More
2018-01-20

Anatomy of the thread suspension mechanism in Windows

Windows NT constantly uses the terms “user mode” and “kernel mode” when discussing the architecture of the OS, so you should determine what it means. This article is divided into separate sections. The first section will discuss the user mode, and the second section will discuss the kernel mode. In both sections, the issue of the suspension and resumption of process flows is discussed.

8
 
Read More
2018-01-17

Detecting Tor communications

More and more people are trying to preserve the inviolability of their frequent life from the long nose of the special services. And then anonymous Tor network comes to their aid. Because it can provide a single individual with a significant weakening of obsessive attention, incidentally removing almost all restrictions on movement on the World Wide Web. In addition, the TOR output nodes are public.

30
 
Read More
2018-01-17

Basics of Powershell Scripting

It is a good idea using Powershell Scripting for DFIR, system administrators and a field work. Hrushikeshk has shared a post ‘Powershell 101’ which contains on notes about how to use Powershell Scripting.

 

19
 
Read More
2018-01-15

Recovering deleted Web History from System restore points

Foxton Forensics provides free and commercial tools for capturing, extracting and analyzing Internet history from the main web browsers on the desktop. They offer products that are primarily focused on the field of digital forensics and are used worldwide by law enforcement, government, military, corporate and educational organizations.

 

46
Latest Headlines
 
Read More
17
 
Read More
37
 
Read More
128

Trending Topics
digital forensics
computer forensics
mobile forensics
Articles
DFIR
digital forensics software
Android forensics
windows forensics
iOS forensics
Top Stories
 
 
Right Now
 
bstrings 1.0 released
Top Five
Heat Index
 
1
Decrypting encrypted WhatsApp databases without the key
 
2
Chip-off Technique in Mobile Forensics
 
3
How to Make the Forensic Image of the Hard Drive
 
4
Extracting WhatsApp database and the cipher key from a non-rooted Android device
 
5
Android forensic analysis with Autopsy