FTK imager Forensics tool

Channel:
Subscribers:
5,860
Published on ● Video Link: https://www.youtube.com/watch?v=g-CRODoRth4



Duration: 1:46
50 views
2


FTK Imager is a data preview and imaging tool that lets you quickly assess electronic evidence to determine if further analysis with a forensic tool such as AccessData Forensic Toolkit (FTK) is warranted.
FTK Imager can also create perfect copies (forensic images) of computer data without making changes to the original evidence.


Capabilities To Empower You

- Parse XFS file systems when investigating and collecting from RHEL Linux environments.
-Capture and view APFS images from Mac® hard drives. You only need one tool for all operating systems.
-Create forensic images of local hard drives, CDs and DVDs, thumb drives or other USB devices, entire folders, or individual files from various places within the media.
-Preview files and folders on local hard drives, network drives, CDs and DVDs, thumb drives or other USB devices.
-Preview the contents of forensic images stored on the local machine or on a network drive.
-Mount an image for a read-only view that leverages Windows® Internet Explorer® to see the content of the image exactly as the user saw it on the original drive.
- Export files and folders from forensic images.
-See and recover files that have been deleted from the Recycle Bin, but have not yet been overwritten on the drive.
-Create hashes of files to check the integrity of the data by using either of the two hash functions available in FTK Imager: Message Digest 5 (MD5) and Secure Hash Algorithm (SHA-1).
#ftkimager #FTK #Accessdata #forensics #digitalforensics







Tags:
#ftkimager
#FTK
#Accessdata
#forensics
#digitalforensics