Windows Forensics Cookbook
上QQ阅读APP看书,第一时间看更新

Drive acquisition in RAW format with dc3dd

DC3DD (by Jesse Kornblum) is a patched version of the classic GNU dd utility with some computer forensics features. For example, the fly hashing with a number of algorithms, such as MD5, SHA-1, SHA-256, and SHA-512, showing the progress of the acquisition process, and so on.