usbrip

usbrip ndeye yekuraira-mutsara forensics chishandiso chinokutendera kuti utarise zvigadzirwa zvakasiiwa ne USB zvishandiso. Yakanyorwa muPython3.

Inoongorora matanda kuti ivake matafura ezviitiko, angave aine ruzivo rwunotevera: zuva rekubatanidza mudziyo uye nguva, mushandisi, ID yemutengesi, ID yechigadzirwa, nezvimwe.

Mukuwedzera, chishandiso chinogona kuita zvinotevera:

  • kunze kwenyika yakaunganidzwa ruzivo seJSON dump;
  • gadzira runyoro rwezvakatenderwa (zvakavimbika) USB zvishandiso nenzira yeJSON;
  • tarisa zviitiko zvinofungirwa zvine chekuita nemidziyo isiri murondedzero yemidziyo yakatenderwa;
  • gadzira encrypted kuchengetedza (7zip archives) ye otomatiki backup (izvi zvinogoneka kana yakaiswa ne -s mureza);
  • tsvaga rumwe ruzivo nezve chaiyo USB mudziyo neVID yayo uye/kana PID.

Source: linux.org.ru

Voeg