Difference between revisions of "Reference Documents"
From SleuthKitWiki
(Copied from sleuthkit.org/links.php) |
|||
(8 intermediate revisions by one user not shown) | |||
Line 1: | Line 1: | ||
− | =Tools and Libraries that are used by The Sleuth Kit= | + | =Tools and Libraries that are used by [[The Sleuth Kit]]= |
(in alphabetical order) | (in alphabetical order) | ||
* [http://www.afflib.org/ AFFLib] (AFF image format support) | * [http://www.afflib.org/ AFFLib] (AFF image format support) | ||
* [ftp://ftp.astron.com/pub/file/ file] (detects file type) | * [ftp://ftp.astron.com/pub/file/ file] (detects file type) | ||
* [http://www.uitwisselplatform.nl/projects/libewf/ libewf] (EnCase / Expert Witness image format support) | * [http://www.uitwisselplatform.nl/projects/libewf/ libewf] (EnCase / Expert Witness image format support) | ||
− | |||
− | = | + | =File Hash Databases= |
(in alphabetical order) | (in alphabetical order) | ||
− | * [http:// | + | * [http://rk.cyberabuse.org/?page=credits CyberAbuse Rootk(it)ID project] |
− | * [http://www. | + | * [http://www.hashkeeper.org/ Hash Keeper] |
− | * [http://www. | + | * [http://www.knowngoods.org/ KnownGoods] |
− | + | * [http://www.nsrl.nist.gov/ NIST NSRL SW Fingerprint Database] | |
− | + | * [http://www.rpm.org/ RPM] Use on Linux systems with '-V -a' to identify binaries that are different than the local database says | |
− | + | * [http://sunsolve.Sun.COM/pub-cgi/fileFingerprints.pl Solaris Fingerprint Database] | |
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | * [http://www. | + | |
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | * Solaris Fingerprint Database | + | |
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + | ||
− | + |
Latest revision as of 20:11, 5 June 2012
Tools and Libraries that are used by The Sleuth Kit
(in alphabetical order)
- AFFLib (AFF image format support)
- file (detects file type)
- libewf (EnCase / Expert Witness image format support)
File Hash Databases
(in alphabetical order)
- CyberAbuse Rootk(it)ID project
- Hash Keeper
- KnownGoods
- NIST NSRL SW Fingerprint Database
- RPM Use on Linux systems with '-V -a' to identify binaries that are different than the local database says
- Solaris Fingerprint Database