Contact Us
Hacker Tools New Update | Download Directory |

| Windows | Linux | Mac OS X | Pocket PC | Assessment | Defense | Documents | Miscellaneous |
Hacker Tools » Download -> Windows-> Forensics » Rifiuti v1.0
This Directory TOP10
dumpAutoComplete v0.7
msnshadow-0.2-beta.tar.bz2
Patchit v2.0
NTLast™ v3.0
Pasco v1.0
ShoWin v2.0
Galleta v1.0
Rifiuti v1.0
LaBrea Honeypot 2.5
Vision v1.0
Search
Rifiuti v1.0
File Size: 456KB
Update Time: 2006-12-09
Developer: http://www.foundstone.com/
Description:     Many important files within Microsoft Windows have structures that are undocumented. One of the principals of computer forensics is that all analysis methodologies must be well documented and repeatable, and they must have an acceptable margin of error. Currently, there are a lack of open source methods and tools that forensic analysts can rely upon to examine the data found in proprietary Microsoft files.

Many computer crime investigations require the reconstruction of a subjects Recycle Bin. Since this analysis technique is executed regularly, we researched the structure of the data found in the Recycle Bin repository files (INFO2 files). Rifiuti, the Italian word meaning "trash", was developed to examine the contents of the INFO2 file in the Recycle Bin. The foundation of Rifiutis examination methodology is presented in the white paper located here. Rifiuti will parse the information in an INFO2 file and output the results in a field delimited manner so that it may be imported into your favorite spreadsheet program. Rifiuti is built to work on multiple platforms and will execute on Windows (through Cygwin), Mac OS X, Linux, and *BSD platforms.
Download:
Click Here To Download