Quantcast
Channel: Forensic Focus Forums - Recent Topics
Browsing all 20102 articles
Browse latest View live
↧

Mobile Phone Forensics: When was iPhone Restored to Factory Settings?

good afternoon, assuming the handset clock is accurate, check the timestamp attributes for the re-initialised file system. also consider checking the network records for the associated telephone number...

View Article


Services Required: Physical Image of Blackberry 9720

Hi Darren, Sent you a quick PM - if this is still a live issue, perhaps we can help. Regards, Ross @afentis p.s I'm not sure you're using the right tool for the job here - a BB physical dump...

View Article


General Discussion: Windows 8 browsing storage

Hi, I am currently at the early stages of planning my Final year project that i aim to complete on Private Browsing. I have noticed that since the arrival of windows 8 and newer versions of internet...

View Article

Mobile Phone Forensics: iPhone screenshot formats...

How sure are you that the photo was taken with the iphone camera? And that it hasn't been synced from a computer to the camera roll folder? I did a bit of reading to try and find 'what format does the...

View Article

General Discussion: Windows 8/IE10 browsing storage

Danielle92 wrote: I just wondered if anybody had any advice or information about any changes that have emerged in how windows 8 stores browser information, and why index.dat is no longer used like in...

View Article


Mobile Phone Forensics: Forensically accepted way to Root HTC Wildfire S 2.3.5

I am doing a university mobile forensic project. I need to root HTC Wildfire S running 2.3.5. I tried many many ways but nothing root the device. Some says kernel is patched. Is there a way to temp...

View Article

Employment and Career Issues: Questions about intrustion analyst (DFIR) career

I had the impression (possibly wrong) that as soon as a NLEITE (Non Law Enforcement Information Technology Expert, an acronym I just put together for the fun of it ) finds *any* evidence of any CP (or...

View Article

Mobile Phone Forensics: Pantech Forensics

I have a PANTECH p7040p phone that I would like to recover text messages from. I contacted Guidance and AD because I wanted to know if my current software would analyze this phone and they stated that...

View Article


Classifieds: F-Response TACTICAL dongles (license good for 2years+)

Hi Jo, I got a quick response from Mary. Here comments are below. I'd be happy to forward you the email if you would like as well. If you are interested and want to go forward please contact me...

View Article


Mobile Phone Forensics: iPhone screenshot formats...

Two pieces of info (not necessarily useful). 1) iOS uses .PNG for screenshots (at least in some versions, but I found no evidence this changed) 2) the .PNG format used is non-standard (i.e. it uses a...

View Article

Mobile Phone Forensics: Forensically accepted way to Root HTC Wildfire S 2.3.5

If you have a Cellebrite device, use the HTC file system extraction bypassing passcode lock. This uses a download method which bypasses the need for adb mode to be access the data on the phone. I...

View Article

Forensic Hardware: SuperImager by mediaclone Issues

Bulldawg wrote: Based on your description, this is no doubt the issue. I'm not familiar with this duplicator, so check but check for a firmware update. There is no excuse for not handling 4K sectors in...

View Article

Forensic Hardware: Macbook Air firmware password

jdyalden wrote: Is anyone aware of a way to bypass the fireware password? Yes. At least: Apple: http://support.apple.com/kb/TS3554 https://jamfnation.jamfsoftware.com/discussion.html?id=5474 These guys...

View Article


Mobile Phone Forensics: LG MS323

The UFED Touch is trying to install a data extraction software client onto the device, however there is not enough internal storage. You can avoid the use of a client by alternatively doing a physical...

View Article

Mobile Phone Forensics: When was iPhone Restored to Factory Settings?

Code:: /private/var/mobile/Library/Logs/AppleSupport/general.log

View Article


Mobile Phone Forensics: Pantech Forensics

GARRETTDISCOVERY wrote: I reached out to Pantech Level 3 engineering group and they stated "it is not possible to recover text messages, only multimedia and phone book". I haven't seen many Pantech...

View Article

Classifieds: Current FTK Dongle - Expires Jan 31, 2015

Lowering to $2,250

View Article


General Discussion: Processing thousands of images

Sometimes the hard way is the only way If this is a CP related job then I would just bite the bullet and start reviewing with minimal exclusions because you never know what will be relevant. You may...

View Article

General Discussion: Moving large amounts of data within the network

Yeah I could probably use some compression but I didn't really have any idea how long the storing process was going to take so I just opted for the fastest option. Some of the data is probably highly...

View Article

General Discussion: Processing thousands of images

Hi, you can use Vizx2 from ZIUZ or LACE from Bluebear. These soft are not free but you can ask for trial version. ther are designed to analyze large amount of picturze and video. you can use hash...

View Article
Browsing all 20102 articles
Browse latest View live