收起左侧

PassMark OSForensics Professional 5.2 Build 1005

[复制链接]
查看: 53|回复: 3

网站编辑

Rank: 8Rank: 8

发表于 2018-2-24 00:04:19 | 显示全部楼层 |阅读模式

OSForensics 是一个数据恢复工具软件,能够快速地找到电脑中隐藏的东西,快速地查找索引文件,恢复已删除文件,并鉴别可疑的文件,数字签名等。结果将会组织并生成报告文件。OSForensics是一个强大的快速文件识别与分析工具,允许你通过Hash值来校验文件的安全性,通过对比即可得知文件是否完整,或是被病毒感染。
PassMark OSForensics Professional 5.x | 81.3 Mb
OSForensics allows you to identify suspicious files and activity with hash matching, drive signature comparisons, e-mails, memory and binary data. It lets you extract forensic evidence from computers quickly with advanced file searching and indexing and enables this data to be managed effectively.
Features:
Discover Forensic Evidence Faster
Find files faster, search by filename, size and time
Search within file contents using the Zoom search engine
Search through email archives from Outlook, ThunderBird, Mozilla and more
Recover and search deleted files
Uncover recent activity of website visits, downloads and logins
Collect detailed system information
Password recovery from web browsers, decryption of office documents
Discover and reveal hidden areas in your hard disk
Browse Volume Shadow copies to see past versions of files
Identify Suspicious Files and Activity
Verify and match files with MD5, SHA-1 and SHA-256 hashes
Find misnamed files where the contents don't match their extension
Create and compare drive signatures to identify differences
Timeline viewer provides a visual representation of system activity over time
File viewer that can display streams, hex, text, images and meta data
Email viewer that can display messages directly from the archive
Registry viewer to allow easy access to Windows registry hive files
File system browser for explorer-like navigation of supported file systems on physical drives, volumes and images
Raw disk viewer to navigate and search through the raw disk bytes on physical drives, volumes and images
Web browser to browse and capture online content for offline evidence management
ThumbCache viewer to browse the Windows thumbnail cache database for evidence of images/files that may have once been in the system
SQLite database browser to view the and analyze the contents of SQLite database files
ESEDB viewer to view and analyze the contents of ESE DB (.edb) database files, a common storage format used by various Microsoft applications
Prefetch viewer to identify the time and frequency of applications that been running on the system, and thus recorded by the O/S's Prefetcher
Plist viewer to view the contents of Plist files commonly used by MacOS, OSX, and iOS to store settings
$UsnJrnl viewer to view the entries stored in the USN Journal which is used by NTFS to track changes to the volume
Manage Your Digital Investigation
Case management enables you to aggregate and organize results and case items
HTML case reports provide a summary of all results and items you have associated with a case
Centralized management of storage devices for convenient access across all OSForensics' functionality
Drive imaging for creating/restoring an exact copy of a storage device
Rebuild RAID arrays from individual disk images
Install OSForensics on a USB flash drive for more portability
Maintain a secure log of the exact activities carried out during the course of the investigation
Professional and Bootable Editions
The professional and bootable editions of OSForensics have many features not available in the free edition, including;
Import and export of hash sets
Customizable system information gathering
No limits on the amount of cases being managed through OSForensics
Restoration of multiple deleted files in one operation
List and search for alternate file streams
Sort image files by colour
Disk indexing and searching not restricted to a fixed number of files
No watermark on web captures
Multi-core acceleration for file decryption
Customizable System Information Gathering
View NTFS directory $I30 entries to identify potential hidden/deleted files
Home Page - http://www.osforensics.com/
Download rapidgator
https://rg.to/file/e82273cd5c18b14429f790f2b1d30ada/PassMark.OSForensics.Professional.v5.2.Build.1005.rar.html
Download nitroflare
http://nitroflare.com/view/5335F5CB26EF668/PassMark.OSForensics.Professional.v5.2.Build.1005.rar
Download 城通网盘
https://u7940988.ctfile.com/fs/7940988-238936414
下载地址:
游客,本付费内容需要支付 20CG币 才能浏览   CG币充值:【点击充值CG币】
VIP会员免费下载本资源:【点击充值VIP】(若链接失效请联系客服!)购买
回复

使用道具 举报

论坛元老

Rank: 8Rank: 8

发表于 2018-2-24 06:04:54 | 显示全部楼层
不错 支持下感谢分享资源
回复 支持 反对

使用道具 举报

永久VIP

Rank: 9Rank: 9Rank: 9

发表于 2018-3-5 22:13:58 | 显示全部楼层
精品  感谢楼主
回复 支持 反对

使用道具 举报

永久VIP

Rank: 9Rank: 9Rank: 9

发表于 2018-5-21 18:43:13 来自手机 | 显示全部楼层
感谢分享 看起来好像不错的样子
回复 支持 反对

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

精彩图文
QQ在线客服(工作时间:9:00-22:00)
QQ:2900020342
扫一扫关注我们

Copyright   ©2015-2016  ABC素材网  Powered by©Discuz!  技术支持:ab素材网    安全联盟  ( 新ICP备15001038号-2 )