az4n6.blogspot.com az4n6.blogspot.com

AZ4N6.BLOGSPOT.COM

Another Forensics Blog

The primary purpose of this blog is to aid the occasional Google researcher in the field of computer forensics. The content may not be ground breaking or earth shattering, but simply a way to pass along what I hope is useful information. Monday, June 22, 2015. SQLite Deleted Data Parser Update - Leave no "Leaf" unturned. One of the things I love. Table B-Tree page type. He updated my code on GitHub and BAM! Just like that, the SQLite Deleted Data parser now recovers this information. Tuesday, June 9, 2015.

http://az4n6.blogspot.com/

WEBSITE DETAILS
SEO
PAGES
SIMILAR SITES

TRAFFIC RANK FOR AZ4N6.BLOGSPOT.COM

TODAY'S RATING

>1,000,000

TRAFFIC RANK - AVERAGE PER MONTH

BEST MONTH

October

AVERAGE PER DAY Of THE WEEK

HIGHEST TRAFFIC ON

Tuesday

TRAFFIC BY CITY

CUSTOMER REVIEWS

Average Rating: 3.4 out of 5 with 7 reviews
5 star
2
4 star
3
3 star
0
2 star
0
1 star
2

Hey there! Start your review of az4n6.blogspot.com

AVERAGE USER RATING

Write a Review

WEBSITE PREVIEW

Desktop Preview Tablet Preview Mobile Preview

LOAD TIME

3 seconds

FAVICON PREVIEW

  • az4n6.blogspot.com

    16x16

  • az4n6.blogspot.com

    32x32

  • az4n6.blogspot.com

    64x64

  • az4n6.blogspot.com

    128x128

CONTACTS AT AZ4N6.BLOGSPOT.COM

Login

TO VIEW CONTACTS

Remove Contacts

FOR PRIVACY ISSUES

CONTENT

SCORE

6.2

PAGE TITLE
Another Forensics Blog | az4n6.blogspot.com Reviews
<META>
DESCRIPTION
The primary purpose of this blog is to aid the occasional Google researcher in the field of computer forensics. The content may not be ground breaking or earth shattering, but simply a way to pass along what I hope is useful information. Monday, June 22, 2015. SQLite Deleted Data Parser Update - Leave no Leaf unturned. One of the things I love. Table B-Tree page type. He updated my code on GitHub and BAM! Just like that, the SQLite Deleted Data parser now recovers this information. Tuesday, June 9, 2015.
<META>
KEYWORDS
1 another forensics blog
2 pages
3 downloads
4 posted by
5 mari degrazia
6 no comments
7 email this
8 blogthis
9 share to twitter
10 share to facebook
CONTENT
Page content here
KEYWORDS ON
PAGE
another forensics blog,pages,downloads,posted by,mari degrazia,no comments,email this,blogthis,share to twitter,share to facebook,share to pinterest,you've got mail,noticed all,method 1 convert,1 install virtualbox,for more details,3 comments,executed
SERVER
GSE
CONTENT-TYPE
utf-8
GOOGLE PREVIEW

Another Forensics Blog | az4n6.blogspot.com Reviews

https://az4n6.blogspot.com

The primary purpose of this blog is to aid the occasional Google researcher in the field of computer forensics. The content may not be ground breaking or earth shattering, but simply a way to pass along what I hope is useful information. Monday, June 22, 2015. SQLite Deleted Data Parser Update - Leave no "Leaf" unturned. One of the things I love. Table B-Tree page type. He updated my code on GitHub and BAM! Just like that, the SQLite Deleted Data parser now recovers this information. Tuesday, June 9, 2015.

INTERNAL PAGES

az4n6.blogspot.com az4n6.blogspot.com
1

Another Forensics Blog: USN Journal: Where have you been all my life

http://az4n6.blogspot.com/2015/03/usn-journal-where-have-you-been-all-my.html

The primary purpose of this blog is to aid the occasional Google researcher in the field of computer forensics. The content may not be ground breaking or earth shattering, but simply a way to pass along what I hope is useful information. Wednesday, March 4, 2015. USN Journal: Where have you been all my life. But what happens when the malware has already been remediated by a Systems Administrator, deleted by an attacker, or new AV signatures are being pushed out, resulting in the malware being removed?

2

Another Forensics Blog: September 2014

http://az4n6.blogspot.com/2014_09_01_archive.html

The primary purpose of this blog is to aid the occasional Google researcher in the field of computer forensics. The content may not be ground breaking or earth shattering, but simply a way to pass along what I hope is useful information. Tuesday, September 2, 2014. SQLite Deleted Data Parser - GUI Added. Last year I wrote a Python script to parse deleted data from SQLite Databases ( original post here. The GUI is pretty self explanatory:. Choose the path to the SQLite database. On on my GitHub page.

3

Another Forensics Blog: Dealing with compressed vmdk files

http://az4n6.blogspot.com/2015/04/dealing-with-compressed-vmdk-files.html

The primary purpose of this blog is to aid the occasional Google researcher in the field of computer forensics. The content may not be ground breaking or earth shattering, but simply a way to pass along what I hope is useful information. Tuesday, April 7, 2015. Dealing with compressed vmdk files. To verify that I had not received some corrupted files, I used the VMWares disk. Utility to check the partitions in the vmdk file. This tool showed two volumes, so it appeared the vmdk file was not corrupted:.

4

Another Forensics Blog: Python Parser to Recover Deleted SQLite Database Data

http://az4n6.blogspot.com/2013/11/python-parser-to-recover-deleted-sqlite.html

The primary purpose of this blog is to aid the occasional Google researcher in the field of computer forensics. The content may not be ground breaking or earth shattering, but simply a way to pass along what I hope is useful information. Wednesday, November 6, 2013. Python Parser to Recover Deleted SQLite Database Data. Soooo last week I was listening to the Forenisc Lunch. And the topic of parsing deleted. While a commerical tool is good, its always nice to have an open source alternative. After hea...

5

Another Forensics Blog: What's the Word - Thunderbird! - Parser that is....

http://az4n6.blogspot.com/2014/04/whats-word-thunderbird-parser-that-is.html

The primary purpose of this blog is to aid the occasional Google researcher in the field of computer forensics. The content may not be ground breaking or earth shattering, but simply a way to pass along what I hope is useful information. Thursday, April 24, 2014. What's the Word - Thunderbird! What tipped me off that the profile was not being parsed correctly? Because the email profile was corrupted, I wanted to test the same programs with a "normal" profile. I actually use Thunderbird as my email cl...

UPGRADE TO PREMIUM TO VIEW 14 MORE

TOTAL PAGES IN THIS WEBSITE

19

LINKS TO THIS WEBSITE

blog.digital-forensics.it blog.digital-forensics.it

ZENA FORENSICS: January 2015

http://blog.digital-forensics.it/2015_01_01_archive.html

Tuesday, January 13, 2015. Last October, I participated as speaker at the SANS DFIR. It was a great meeting and I am very happy to have been able to participate. My speech was focused on DPAPI. And how it could be used during a post-mortem digital investigation to access protected information: overcoming system's security it's sometimes necessary to access data otherwise not available. I like to call this "process" ODI. I want to be brief, skipping any DPAPI introduction and only providing some links.

aztcs.org aztcs.org

Tucson Computer Society Links to Members Web sites

http://aztcs.org/members/memlinks.shtml

Check for current events. Books, software, hardware, games, etc. Informative notes, Web links, and photos from our meetings. Technical advice and free online training. Can't find what you're looking for? Visit our Site Map. TCS members with a home page - either personal or business - can be listed on this page by sending an e-mail to the Webmaster. If you're not a member, consider joining. Please help promote our organization by using our logo/graphic to link back to the TCS home page! Yahoo Group. H...

4n6k.com 4n6k.com

4n6k: Forensic FOSS: 4n6k_volatility_installer.sh - Install Volatility For Linux Automatically

http://www.4n6k.com/2014/08/forensic-foss-4n6kvolatilityinstallersh.html

Tuesday, August 26, 2014. Forensic FOSS: 4n6k volatility installer.sh - Install Volatility For Linux Automatically. These posts will consist of open source software for use in everyday forensic investigations. Of this project by @wzod. 4n6k volatility installer.sh. Is a bash script that installs Volatility 2.4 (and all dependencies) for Ubuntu Linux with one command. Why Do I Need It? An internet connection and an APT-based Linux distribution [for the time being]. This script has been tested on stock...

4n6k.com 4n6k.com

4n6k: September 2011

http://www.4n6k.com/2011_09_01_archive.html

Wednesday, September 28, 2011. Forensics Quickie: Mounting Split .vmdk. These posts will consist of small tidbits of useful information that can be explained very succinctly. You're tasked with examining a VMware virtual disk. On your way to acquire the .vmdk file, you notice that there's not one, but several .vmdk files. A split VM! You know FTK Imager supports mounting .vmdk, so you go ahead and attempt to mount it. But.it only accepts one .vmdk file! For spurring this topic. Links to this post. Jump L...

4n6k.com 4n6k.com

4n6k: May 2013

http://www.4n6k.com/2013_05_01_archive.html

Tuesday, May 14, 2013. UserAssist Forensics (timelines, interpretation, testing, and more). Everything I've learned on the subject of digital forensics has been a direct result of both experience and reading forensics books, blogs, and list-serv responses written by people like Ken Pryor, Harlan Carvey, Eoghan Casey, Chad Gough,. Before I get into the bulk of it a ll,. Let me note that UserAssist artifacts are nothing new. Didier Stevens. Each count subkey contains ROT-13 encoded values; each value is a ...

4n6k.com 4n6k.com

4n6k: About

http://www.4n6k.com/p/about.html

TL;DR: I enjoy doing research and writing about it. More details on LinkedIn. I've taken up the task of learning as much as possible about digital forensics on my own time. My particular focus and interest lie within behavioral analysis of user activity/malware artifacts. Discovering the process by which a user interacts with a computer could be a key determinant in the prosecution or defense of a guilty or innocent individual - I'd say that's a pretty big deal, wouldn't you? Add me on LinkedIn. Registry...

4n6k.com 4n6k.com

4n6k: Posts

http://www.4n6k.com/p/forensic-posts.html

Shellbags Forensics: Addressing a Misconception. Interpretation, step-by-step testing, new findings, and more). Timelines, interpretation, testing, and more). Jump List Forensics: AppIDs Part 1. Jump List Forensics: AppIDs Part 2. Jump List Forensics: AppID Master List (400 AppIDs). Forensics Quickie: PowerShell Versions and the Registry. Forensics Quickie: NTUSER.DAT Analysis (SANS CEIC 2015 Challenge #1 Write-Up). Forensics Quickie: Merging VMDKs and Delta/Snapshot Files (2 Solutions). Possible Unknown...

4n6k.com 4n6k.com

4n6k: January 2012

http://www.4n6k.com/2012_01_01_archive.html

Sunday, January 8, 2012. Forensics Quickie: Recovering Deleted Files With Scalpel (.CR2 Photos). These posts will consist of small tidbits of useful information that can be explained very succinctly. SD card was accidentally formatted; RAW photos in .cr2 format from a Canon Rebel T3 needed to be recovered. Boot up a Linux VM (I chose Ubuntu) and install Scalpel with:. Sudo apt-get install scalpel. Check to see if the required filetype signature is supported by Scalpel by default :. Links to this post.

4n6k.com 4n6k.com

4n6k: UserAssist Forensics (timelines, interpretation, testing, & more)

http://www.4n6k.com/2013/05/userassist-forensics-timelines.html

Tuesday, May 14, 2013. UserAssist Forensics (timelines, interpretation, testing, and more). Everything I've learned on the subject of digital forensics has been a direct result of both experience and reading forensics books, blogs, and list-serv responses written by people like Ken Pryor, Harlan Carvey, Eoghan Casey, Chad Gough,. Before I get into the bulk of it a ll,. Let me note that UserAssist artifacts are nothing new. Didier Stevens. Each count subkey contains ROT-13 encoded values; each value is a ...

UPGRADE TO PREMIUM TO VIEW 93 MORE

TOTAL LINKS TO THIS WEBSITE

102

OTHER SITES

az4less.com az4less.com

Arizona Foreclosures and Trustee Sales - Arizona Foreclosures and Trustee Sales

Arizona Foreclosures and Trustee Sales. Call us today at 602-357-0087 to get get started investing in Arizona real estate! We are a full service trustee bid service. All Arizona trustee sales covered. Compressive due diligence services provided. Learn more about our foreclosure bid services here. AZ Foreclosures 4 Less is a leading Arizona trustee auction bidder, distressed real estate acquisition and real estate marketing firm. More about Arizona Foreclosures 4 Less. No Cost or Obligation.

az4me.com az4me.com

Arizona for me! •Az4Me.com

Find Arizona Homes For Sale and Arizona Real Estate, free with Home Listings Arizona's free MLS search. There is no obligation. Plus get Free Property Alerts! No doubt about it, it's Arizona for me! Arizona: the 48th State of the Union. The Grand Canyon State. Welcome to paradise, we knew you'd want to stay. So much to do right here so come on out to play! Bert L. Roos, PC. Divorce Attorney, family matters, custody, child support, alimony, bankruptcies, legal document preparation, wills.

az4mecbh.blogspot.com az4mecbh.blogspot.com

The 17 Doors

My names casey. im 15 and i love reading. help me by following my blog. wish me luck Casey. View my complete profile. Wednesday, August 3, 2011. Subscribe to: Posts (Atom). Http:/ www.eifaudio.blogspot.com. Create Fake Magazine Covers. With your own picture at MagMyPic.com. Jenny: Love, Dream, Believe. EIF Audio Myspace Do you needs a stereo and or interior them click the link below. Http:/ www.myspace.com/eifaudio. Watermark template. Powered by Blogger.

az4n6.blogspot.com az4n6.blogspot.com

Another Forensics Blog

The primary purpose of this blog is to aid the occasional Google researcher in the field of computer forensics. The content may not be ground breaking or earth shattering, but simply a way to pass along what I hope is useful information. Monday, June 22, 2015. SQLite Deleted Data Parser Update - Leave no "Leaf" unturned. One of the things I love. Table B-Tree page type. He updated my code on GitHub and BAM! Just like that, the SQLite Deleted Data parser now recovers this information. Tuesday, June 9, 2015.

az4norml.com az4norml.com

Home

October 11th, 2014 - 3pm. Ward 6 Council Office (map). Come in thru the back door). 3202 E. 1st Street. Ward 6 Council Office in Tucson. The office is located at 3202 E. 1st Street, Tucson,. Ward 6 Council Office in Tucson. The office is located at 3202 E. 1st Street, Tucson,. 2954 N Campbell Ave #324. Tucson, AZ 85719. HELL JUST FROZE OVER! Last Updated: 28 August 2014. The federal government is looking for a company to grow marijuana for them! Yes, the feds want someone to grow pot for them! The Arizon...

az4norml.org az4norml.org

AZ4NORML – Tucson's AZ4NORML

AZ4NORML – Tucson’s NORML chapter. AZ4NORML works to educate the community about the benefits of medical cannabis, the safety of responsible adult use, and the value of industrial hemp. AZ4NORML is a non-profit organization. The AmazonSmile Foundation will donate 0.5% of the price of eligible purchases to the charitable organizations selected by customers. Smile.amazon.com. Meetings are every 2nd Saturday 3:00pm – 5:30pm. Ward 6 Council Offices. 3202 E 1stSt Tucson AZ. 408 E 7th St, Tucson, AZ 85705.