RE: How to DD NTFS?

From: Sawyer, John H. (JSawyerat_private)
Date: Thu Jan 02 2003 - 09:53:47 PST

  • Next message: Pieter-Bas IJdens: "Re: How to DD NTFS?"

    Take a look at F.I.R.E. (aka Biatchux).
    http://biatchux.dmzs.com/?section=main
    
    Quote from website:
    "FIRE is a portable bootable cdrom based distribution with the goal of
    providing an immediate environment to perform forensic analysis, incident
    response, data recovery, virus scanning and vulnerability assessment."
    
    Personally, I have used it several times in quite a few different scenarios:
    - dd images over the network
      -- allows you to mount SMB, NFS, and more
    - dd drives locally
    - contains autopsy and lots of other forensic utils
    - mounts drives read-only for viewing contents
    - network testing
    - data recovery
    - too many features and tools to be listed
    
    A lot of work has gone into this custom distro and the author deserves some
    credit for his hard work.  I have tested Trinux but found it to be a chore
    to get various utils downloaded/loaded off floppies compared to having
    everything right there on the bootable cd.
    
    -jhs
    
    =================================== 
    | John H. Sawyer                  | 
    | Environmental Horticulture Dept | 
    | University of Florida           | 
    | jsawyerat_private            | 
    ===================================
    
    -----------------------------------------------------------------
    This list is provided by the SecurityFocus ARIS analyzer service.
    For more information on this free incident handling, management 
    and tracking system please see: http://aris.securityfocus.com
    



    This archive was generated by hypermail 2b30 : Thu Jan 02 2003 - 18:41:57 PST