Forensicswiki.org has moved to this site, forensicswiki.xyz. For information, please join the Google Group forensicswiki-reborn

Search results

Jump to navigation Jump to search
  • * Simple volume * Spanned volume
    1 KB (170 words) - 02:44, 14 September 2012
  • ...implementation of the various storage media types, volume systems and file systems. === Volume systems ===
    2 KB (322 words) - 22:28, 17 September 2016
  • ...for other [http://en.wikipedia.org/wiki/Logical_Volume_Management Logical Volume Management] variants as well. Not all forensic tools have support for Linux Logical Volume Manager (LVM) volumes, but most modern Linux distributions do.
    4 KB (554 words) - 11:42, 8 January 2016
  • ...c tool that can be used by investigators to analyze file systems. The file systems supported by DiskExplorer are: <br> DiskExplorer for FAT file systems can accomplish the following tasks[http://www.runtime.org/diskexpl.htm]:
    2 KB (354 words) - 17:29, 20 April 2007
  • ...ecovery software to recover data and decrypt data from Bitlocker encrypted volume created on Windows Vista/7/8/8.1/10 and Windows Server 2012/2008 as long as # Recover deleted files from Bitlocker encrypted volume.
    2 KB (204 words) - 23:11, 19 April 2015
  • ...S]], Veritas [[VxFS]] and Veritas [[VxVM]], [[AVS]] as well as the Solaris Volume Manager ([[Solstice]]). [[Category:Operating systems]]
    1 KB (154 words) - 07:07, 28 August 2008
  • [[Category:Volume Systems]]
    332 bytes (42 words) - 05:36, 3 February 2014
  • [[Category:Volume Systems]]
    188 bytes (23 words) - 23:50, 1 January 2014
  • ...tlocker Loader for Mac''' is a forensic tool to unlock Bitlocker encrypted volume on Mac computer. ...cker recovery key or encryption password and then read Bitlocker encrypted volume on Mac computer.
    1 KB (156 words) - 01:02, 17 April 2015
  • ZFS is a combined file system and logical volume manager designed by [[Sun Microsystems]]. [[Category:File Systems]]
    374 bytes (47 words) - 22:16, 30 August 2013
  • [[Category:Volume Systems]]
    439 bytes (65 words) - 19:14, 14 April 2015
  • ...nd [[Twofish]]. As of version 6.0 TrueCrypt now supports hidden Operating Systems under Windows only. ...the outer volume is mounted, it is hard to prove whether there is a hidden volume or not.
    4 KB (553 words) - 18:35, 2 April 2016
  • ...ng from single-purpose stand-alone tools to integrated forensic processing systems. ...ats for digital evidence, disk partitioning schemes, volume managers, file systems, and structured files. The formats supported are summarized below.
    2 KB (361 words) - 11:30, 20 September 2012
  • ...done using a certificate. The certificate itself is saved on the encrypted volume, but it is encrypted with a password. Volumes can be configured so that the Several tools are available that can recover an EFS key or volume if the original encryption key (or passphrase) are lost. These include:
    2 KB (310 words) - 23:33, 18 September 2020
  • ==Supported operating systems== ==File systems==
    4 KB (503 words) - 07:49, 2 January 2018
  • ...in the computer forensics community for some time. It is intended for *nix systems, but has been ported to the [[Windows]] platform. It should be noted that t To use this tool in binary mode on Linux systems you would use the command:
    1 KB (191 words) - 12:04, 6 March 2008
  • ...lume the '''$MFT''' metadata file keeps records of all file entries in the volume. ...ere is at least one entry in the MFT for every file on an NTFS file system volume, including the MFT itself. All information about a file, including its size
    4 KB (597 words) - 13:04, 20 October 2021
  • ==Volume Shadow Copy Service== ...ofessional and Ultimate editions include tools to work with and manage the Volume Shadow Copy Service, including the ability to mount shadow volumes on disk
    11 KB (1,504 words) - 23:44, 8 August 2021
  • '''BitLocker Disk Encryption''' (BDE) is [[Full Volume Encryption]] solution by [[Microsoft]] first included with the Enterprise a ...me. The FVEK and/or TWEAK keys are encrypted using another key, namely the Volume Master Key (VMK). Several copies of the VMK are also stored in the metadata
    6 KB (799 words) - 07:35, 20 June 2016
  • ...-rddc.gc.ca/PDFS/unc236/p804237_A1b.pdf Forensic analysis of SGI IRIX disk volume], July 2016, by R. Carbone [[Category:File Systems]]
    2 KB (182 words) - 21:11, 28 October 2020

View (previous 20 | next 20) (20 | 50 | 100 | 250 | 500)