linuxsleuthing.blogspot.com linuxsleuthing.blogspot.com

LINUXSLEUTHING.BLOGSPOT.COM

Linux Sleuthing

Adventures in Linux-based data forensics. Tuesday, February 24, 2015. URLs : U R Loaded with Information. Consider the following URL:. Https:/ www.google.com/webhp? Most examiners would key in on the domain. And the end of the url,. And conclude this was a Google search for the term "linuxsleuthing", and they’d be right. But is there anything else to be gleaned from the URL? Just what do all those strings and punctuation mean, anyway? What’s in a URL. Http: - Internet surfing. Mailto: - Email operations.

http://linuxsleuthing.blogspot.com/

WEBSITE DETAILS
SEO
PAGES
SIMILAR SITES

TRAFFIC RANK FOR LINUXSLEUTHING.BLOGSPOT.COM

TODAY'S RATING

>1,000,000

TRAFFIC RANK - AVERAGE PER MONTH

BEST MONTH

August

AVERAGE PER DAY Of THE WEEK

HIGHEST TRAFFIC ON

Tuesday

TRAFFIC BY CITY

CUSTOMER REVIEWS

Average Rating: 3.5 out of 5 with 6 reviews
5 star
0
4 star
3
3 star
3
2 star
0
1 star
0

Hey there! Start your review of linuxsleuthing.blogspot.com

AVERAGE USER RATING

Write a Review

WEBSITE PREVIEW

Desktop Preview Tablet Preview Mobile Preview

LOAD TIME

0.5 seconds

CONTACTS AT LINUXSLEUTHING.BLOGSPOT.COM

Login

TO VIEW CONTACTS

Remove Contacts

FOR PRIVACY ISSUES

CONTENT

SCORE

6.2

PAGE TITLE
Linux Sleuthing | linuxsleuthing.blogspot.com Reviews
<META>
DESCRIPTION
Adventures in Linux-based data forensics. Tuesday, February 24, 2015. URLs : U R Loaded with Information. Consider the following URL:. Https:/ www.google.com/webhp? Most examiners would key in on the domain. And the end of the url,. And conclude this was a Google search for the term linuxsleuthing, and they’d be right. But is there anything else to be gleaned from the URL? Just what do all those strings and punctuation mean, anyway? What’s in a URL. Http: - Internet surfing. Mailto: - Email operations.
<META>
KEYWORDS
1 pages
2 blog
3 code snippets
4 google com
5 q=linuxsleuthing
6 protocol
7 https
8 wwwgoogle.com/webhp
9 examples
10 domain
CONTENT
Page content here
KEYWORDS ON
PAGE
pages,blog,code snippets,google com,q=linuxsleuthing,protocol,https,wwwgoogle.com/webhp,examples,domain,webhp,port,wwwgoogle.com 80,path,file /,parameters,sourceid=chrome instant,espv=2,ie=utf 8,search for,linuxsleuthing,sa=search,channel=fe,hl=en,caution
SERVER
GSE
CONTENT-TYPE
utf-8
GOOGLE PREVIEW

Linux Sleuthing | linuxsleuthing.blogspot.com Reviews

https://linuxsleuthing.blogspot.com

Adventures in Linux-based data forensics. Tuesday, February 24, 2015. URLs : U R Loaded with Information. Consider the following URL:. Https:/ www.google.com/webhp? Most examiners would key in on the domain. And the end of the url,. And conclude this was a Google search for the term "linuxsleuthing", and they’d be right. But is there anything else to be gleaned from the URL? Just what do all those strings and punctuation mean, anyway? What’s in a URL. Http: - Internet surfing. Mailto: - Email operations.

INTERNAL PAGES

linuxsleuthing.blogspot.com linuxsleuthing.blogspot.com
1

Linux Sleuthing: Getting Attached: Apple Messaging Attachments

http://linuxsleuthing.blogspot.com/2015/01/getting-attached-apple-messaging.html

Adventures in Linux-based data forensics. Wednesday, January 7, 2015. Getting Attached: Apple Messaging Attachments. The chats.db is found in the users directory in the. Location of chats.db. Library/Messages/ Library/Messages/Attachments Library/Messages/chat.db Library/Messages/chat.db-shm Library/Messages/chat.db-wal. As you can see, message attachments are located in the. Sub-folder. But how are they referenced in the chats.db, and how are they matched to the correct message? Style INTEGER ,. Was ded...

2

Linux Sleuthing: Calculating Embedded OS X Times

http://linuxsleuthing.blogspot.com/2011/02/calculating-embedded-os-x-times.html

Adventures in Linux-based data forensics. Monday, February 21, 2011. Calculating Embedded OS X Times. I recently examined a Macintosh computer where I needed to look at Internet History. The only installed browser was Safari, and the history was stored in /Users/. Library/Safari/History.plist, an XML file with visit dates in recorded in epoch format. An example of that time is "314335349.7". Mon Feb 21 08:53:57 PST 2011. Date -d "2001-01-01 314335349.7 sec PST". Sat Dec 18 03:22:29 PST 2010. EDIT: When p...

3

Linux Sleuthing: June 2013

http://linuxsleuthing.blogspot.com/2013_06_01_archive.html

Adventures in Linux-based data forensics. Wednesday, June 19, 2013. SQLite on the Case. It is very common in SQLite databases for integers to represent a deeper meaning than their numeric value. We usually refer to this as a flag. Take the iOS call history.db for example: the call. Table has a column literally called flags. And the integers in that column represent the type of call. Duration INTEGER ,. Flags INTEGER ,. Id INTEGER ,. Assisted INTEGER ,. Face time data BLOB. Pdp ip INTEGER ,. The best reso...

4

Linux Sleuthing: SQLite on the Case

http://linuxsleuthing.blogspot.com/2013/06/sqlite-on-case.html

Adventures in Linux-based data forensics. Wednesday, June 19, 2013. SQLite on the Case. It is very common in SQLite databases for integers to represent a deeper meaning than their numeric value. We usually refer to this as a flag. Take the iOS call history.db for example: the call. Table has a column literally called flags. And the integers in that column represent the type of call. Duration INTEGER ,. Flags INTEGER ,. Id INTEGER ,. Assisted INTEGER ,. Face time data BLOB. Pdp ip INTEGER ,. The best reso...

5

Linux Sleuthing: iOS6 Photo Streams: "Recover" Deleted Camera Roll Photos

http://linuxsleuthing.blogspot.com/2013/05/ios6-photo-streams-recover-deleted.html

Adventures in Linux-based data forensics. Sunday, May 19, 2013. IOS6 Photo Streams: "Recover" Deleted Camera Roll Photos. The dawning of Apple iCloud in 2011, a new service was born: the iCloud Photo Stream. Photo Stream syncs photos taken with an iDevice with other devices registered by the user. The user must have an iCloud account and enable Photo Stream through the. Menu for the service to work. Photo Stream comes in two flavors, if you will: the basic. IDevice with iOS 6.0. IDevice with iOS 5.1.

UPGRADE TO PREMIUM TO VIEW 14 MORE

TOTAL PAGES IN THIS WEBSITE

19

LINKS TO THIS WEBSITE

nannibassetti.blogspot.com nannibassetti.blogspot.com

Nanni Bassetti All&Nothing: febbraio 2015

http://nannibassetti.blogspot.com/2015_02_01_archive.html

Blog dedicato alla digital forensics e a quello che mi pare e piace. Mercoledì 25 febbraio 2015. Corso digital forensics e laboratorio a Bari - crediti formativi ingegneri. Ciao a tutti,. Solo per segnalarvi di un corso in partenza a Bari di Digital Forensics Laboratorio, docente Nanni Bassetti. Il corso darà diritto al riconoscimento di 4 CFP per la formazione obbligatoria degli Ingegneri. Il costo del corso è di € 69,00 oltre iva. Maggiori informazioni sono reperibili qui:. Link a questo post.

nannibassetti.blogspot.com nannibassetti.blogspot.com

Nanni Bassetti All&Nothing: Corso introduttivo alla digital forensics presso Ordine Ingegneri Bari

http://nannibassetti.blogspot.com/2014/11/corso-introduttivo-alla-digital.html

Blog dedicato alla digital forensics e a quello che mi pare e piace. Giovedì 13 novembre 2014. Corso introduttivo alla digital forensics presso Ordine Ingegneri Bari. Terrò un corso all'ordine degli ingegneri di Bari il 24/11/2014. Iscriviti a: Commenti sul post (Atom). Corso introduttivo alla digital forensics presso O. Bari, Ba, Italy. Blog dedicato alla digital e computer forensics e tutt gli eventi connessi. Visualizza il mio profilo completo.

nannibassetti.blogspot.com nannibassetti.blogspot.com

Nanni Bassetti All&Nothing: marzo 2015

http://nannibassetti.blogspot.com/2015_03_01_archive.html

Blog dedicato alla digital forensics e a quello che mi pare e piace. Domenica 29 marzo 2015. ONIF - Osservatorio Nazionale Informatica Forense. A fine gennaio/2015 è nata l'associazione. Osservatorio Nazionale Informatica Forense), fondata da un gruppo di professionisti tra i più noti ed attivi in Italia, nella disciplina della digital forensics (informatica forense). Ulteriori informazioni le trovate sul sito. Link a questo post. Iscriviti a: Post (Atom). ONIF - Osservatorio Nazionale Informatica Forense.

nannibassetti.blogspot.com nannibassetti.blogspot.com

Nanni Bassetti All&Nothing: maggio 2015

http://nannibassetti.blogspot.com/2015_05_01_archive.html

Blog dedicato alla digital forensics e a quello che mi pare e piace. Giovedì 14 maggio 2015. Sono in mezzo a noi! Il sottotitolo a questo articolo potrebbe essere: " il ritorno dell'ignoranza e della superstizione. Dal 1992 che sono sulle reti telematiche, prima con FidoNet poi con Internet e da persona curiosa, come mi ritengo essere, leggo un po' di tutto dai forum ai social network. Insomma, le fonti ufficiali sono dei video con musiche inquietanti, fonti mai controllate, guru del nulla, persone che s...

nannibassetti.blogspot.com nannibassetti.blogspot.com

Nanni Bassetti All&Nothing: Varie di fine 2014

http://nannibassetti.blogspot.com/2014/10/varie-di-fine-2014.html

Blog dedicato alla digital forensics e a quello che mi pare e piace. Martedì 21 ottobre 2014. Varie di fine 2014. BARI - 03/10/2014 - Assicuriamoci il progresso. ITI M Panetti - Bari ". MATERA - 25/10/2014 - Linux Day. UDINE - 29/11/2014 Open Source Day. Partecipato e classificato sesto nella CybeSecurity Week. Lanciato Caine 6.0 "Dark Matter". Iscriviti a: Commenti sul post (Atom). Varie di fine 2014. Bari, Ba, Italy. Blog dedicato alla digital e computer forensics e tutt gli eventi connessi.

4n6k.com 4n6k.com

4n6k: Forensic FOSS: 4n6k_volatility_installer.sh - Install Volatility For Linux Automatically

http://www.4n6k.com/2014/08/forensic-foss-4n6kvolatilityinstallersh.html

Tuesday, August 26, 2014. Forensic FOSS: 4n6k volatility installer.sh - Install Volatility For Linux Automatically. These posts will consist of open source software for use in everyday forensic investigations. Of this project by @wzod. 4n6k volatility installer.sh. Is a bash script that installs Volatility 2.4 (and all dependencies) for Ubuntu Linux with one command. Why Do I Need It? An internet connection and an APT-based Linux distribution [for the time being]. This script has been tested on stock...

4n6k.com 4n6k.com

4n6k: About

http://www.4n6k.com/p/about.html

TL;DR: I enjoy doing research and writing about it. More details on LinkedIn. I've taken up the task of learning as much as possible about digital forensics on my own time. My particular focus and interest lie within behavioral analysis of user activity/malware artifacts. Discovering the process by which a user interacts with a computer could be a key determinant in the prosecution or defense of a guilty or innocent individual - I'd say that's a pretty big deal, wouldn't you? Add me on LinkedIn. Registry...

4n6k.com 4n6k.com

4n6k: Posts

http://www.4n6k.com/p/forensic-posts.html

Shellbags Forensics: Addressing a Misconception. Interpretation, step-by-step testing, new findings, and more). Timelines, interpretation, testing, and more). Jump List Forensics: AppIDs Part 1. Jump List Forensics: AppIDs Part 2. Jump List Forensics: AppID Master List (400 AppIDs). Forensics Quickie: PowerShell Versions and the Registry. Forensics Quickie: NTUSER.DAT Analysis (SANS CEIC 2015 Challenge #1 Write-Up). Forensics Quickie: Merging VMDKs and Delta/Snapshot Files (2 Solutions). Possible Unknown...

4n6k.com 4n6k.com

4n6k: January 2012

http://www.4n6k.com/2012_01_01_archive.html

Sunday, January 8, 2012. Forensics Quickie: Recovering Deleted Files With Scalpel (.CR2 Photos). These posts will consist of small tidbits of useful information that can be explained very succinctly. SD card was accidentally formatted; RAW photos in .cr2 format from a Canon Rebel T3 needed to be recovered. Boot up a Linux VM (I chose Ubuntu) and install Scalpel with:. Sudo apt-get install scalpel. Check to see if the required filetype signature is supported by Scalpel by default :. Links to this post.

blog.digital-forensics.it blog.digital-forensics.it

ZENA FORENSICS: Digital Forensics Tools Bookmarks

http://blog.digital-forensics.it/2014/06/digital-forensics-tools-bookmarks.html

Sunday, June 15, 2014. Digital Forensics Tools Bookmarks. We want to share with you a list of bookmarks related to hardware and software tools for Digital Forensics acquisition and analysis. The bookmark file is in Mozilla Firefox, so it can be directly imported into it. You can download the file from. Http:/ www.realitynet.it/bookmarks.html. If you are interested in adding a tool to our list, please contact me at mattia @ realitynet.it. Subscribe to: Post Comments (Atom). REALITY NET - System Solutions.

UPGRADE TO PREMIUM TO VIEW 120 MORE

TOTAL LINKS TO THIS WEBSITE

130

OTHER SITES

linuxslate.org linuxslate.org

Linuxslate.com

Long before there was an iPad or an Android Phone, I saw the promise of Portable Tablet Computing combined with Open Source and UNIX-based Software. In the late 1990's I, along with others, did some work to modify existing XFree86. Pen tablet drivers to support Fujitsu, Ricoh, and IBM pen-based PC's. Linuxslate.com was registered in 2000 to distribute, document, discuss, and support these drivers and related software. Today, all Android Phones and Tablets are LinuxSlates. Or the Review Pages. Review the ...

linuxslaves.com linuxslaves.com

Linuxslaves

Linux blog which delivers tutorial, tips, solution, news, themes and application reviews. Monday, January 9, 2017. How to Install or Upgrade to Inkscape 0.92 in Ubuntu Linux. Author : Tiwo Satriatama. Install Inkscape 0.92 in Ubuntu, Linux Mint, Elementary, and derivatives -. Inkscape is a professional free vector graphics editor alternative to corel draw for Linux, Mac OS X and Windows. More than free, Inkscape. Saturday, January 7, 2017. BlankOn 10 Codename Tambora Released With Lots of New Features.

linuxsleuth.com linuxsleuth.com

penguinsleuth.org - Home

I am proud to introduce the new Penguin Sleuth Kit! This is the initial release and is only available for download through a Bit Torrent Link provided by vmware.com. Visit forums for details. Penguin Sleuth Boot CD. Latest Virus Info Map. Kicking it up a notch! Welcome to our new home! Confusion over this new website and new project. News Feeds up and Available. New Penguin Sleuth Kit Available via Source Forge. Penguin Sleuth Kit Details. New Penguin Sleuth Kit Available via Source Forge. I ask that you...

linuxsleuthing.blogspot.com linuxsleuthing.blogspot.com

Linux Sleuthing

Adventures in Linux-based data forensics. Tuesday, February 24, 2015. URLs : U R Loaded with Information. Consider the following URL:. Https:/ www.google.com/webhp? Most examiners would key in on the domain. And the end of the url,. And conclude this was a Google search for the term "linuxsleuthing", and they’d be right. But is there anything else to be gleaned from the URL? Just what do all those strings and punctuation mean, anyway? What’s in a URL. Http: - Internet surfing. Mailto: - Email operations.

linuxsleuthing.com linuxsleuthing.com

Verity Linux