
When you launch ProDiscover Basic you first need to create or load a project and add evidence from the 'Add' node. You can also search for data using the Search node based on the criteria you specify. Once you add a forensic image you can view the data by content or by looking at the clusters that hold the data. ProDiscover Basic is a simple digital forensic investigation tool that allows you to image, analyse and report on evidence found on a drive. Use the top menu bar to open a tool, or launch it manually from a terminal window. There is also a good explanation of where to find evidence on a system.
#Free oxygen forensic tool how to#
When you first boot into the SIFT environment, I suggest you explore the documentation on the desktop to help you become accustomed to what tools are available and how to use them. SIFT includes tools such as log2timeline for generating a timeline from system logs, Scalpel for data file carving, Rifiuti for examining the recycle bin, and lots more. It supports analysis of Expert Witness Format (E01), Advanced Forensic Format (AFF), and RAW (dd) evidence formats. The SANS Investigative Forensic Toolkit (SIFT) is an Ubuntu based Live CD which includes all the tools you need to conduct an in-depth forensic or incident response investigation. You might also need additional utilities such a file viewers, hash generators, and text editors and many other tools as well.Įven if you may have heard of some of these tools before, I'm confident that you'll find a gem or two amongst this list. This is by no means an extensive list and may not cover everything you need for your investigation. As such, they all provide the ability to bring back in-depth information about what's "under the hood" of a system. Whether it's for an internal human resources case, an investigation into unauthorized access to a server, or if you just want to learn a new skill, these suites and utilities will help you conduct memory forensic analysis, hard drive forensic analysis, forensic image exploration, forensic imaging and mobile forensics.
#Free oxygen forensic tool free#
Here are the best 20 free tools that will help you conduct a cyber forensic investigation.
