[clug] Simple computer forensics?

Michael James Michael.James at csiro.au
Thu Oct 13 05:17:06 GMT 2005

A friend just called, they need a (windows) PC
 vetted for keyloggers and other malware.

Anyone out there do simple forensics commercially?

Who presented the python disk forensics at CLUG?

Know a good dd command to clone a disk?
(Don't know if it's FAT or NTFS)

Can a suspect windows PC
 be comprehensively checked for malware,
 or is re-building the only sure path?


Michael James                         michael.james at csiro.au
System Administrator                    voice:  02 6246 5040
CSIRO Bioinformatics Facility             fax:  02 6246 5166

No matter how much you pay for software,
 you always get less than you hoped.
Unless you pay nothing, then you get more.

More information about the linux mailing list