Open Source Software for Digital Forensics pp 117-124
Selective File Dumper
- First Online:
- Cite this paper as:
- Bassetti N., Frati D. (2010) Selective File Dumper. In: Huebner E., Zanero S. (eds) Open Source Software for Digital Forensics. Springer, Boston, MA
During a computer forensics investigation we faced a problem how to get all the interesting files we need fast. We work, mainly, using the Open Source software products and Linux OS, and we consider the Sleuthkit and the Foremost two very useful tools, but for reaching our target they were too complicated and time consuming to use. For this reason we developed the Selective File Dumper, a Linux Bash script which makes it possible to extract all the referenced, deleted and unallocated files and finally to perform a keyword search, in a simple way.