AskBiography Logo   Latest News  Follow Us on Twitter  Follow Us on Google Buzz  Became Fan - Facebook  Subscribe to RSSRSS   Bookmark and Share

Selective file dumper

Software information
Original authorNanni Bassetti and Denis Frati
Stable release1.5
Latest release dateMarch 21, 2008
Written inBash (shell script)
Operating systemLinux
Available inBash (shell script)
TypeComputer forensics
LicenseGNU General Public License
GNU Lesser General Public License

     Home | Software | Selective file dumper

Selective File Dumper (SFDumper) is a free open source computer forensics tool, written by Nanni Bassetti and Denis Frati, for Linux systems.

It is a Bash script which can retrieve all the files of a chosen type (e.g. .doc or .jpg), regardless if they are active, deleted or unallocated. It automatically runs Foremost for carving, and Sleuthkit for deleted files retrieval. It then eliminates duplicated files by comparing the SHA256 hashes of the carved files and the active and deleted files. Thanks to carving, files simply renamed to a different extension will be identified. Also, it is possible to expand the Foremost configuration file inside the script to add new extensions. Finally, it is possible to do a keyword search on the extracted files. The script can work on an image file or directly from a device.

It is free software licensed under the terms of the GNU General Public License (GPL) and GNU Lesser General Public License (LGPL).

Warning: simplexml_load_file( [function.simplexml-load-file]: failed to open stream: HTTP request failed! HTTP/1.0 410 Gone in /home/askbio/public_html/index_bio.php on line 257

Warning: simplexml_load_file() [function.simplexml-load-file]: I/O warning : failed to load external entity "" in /home/askbio/public_html/index_bio.php on line 257

Fatal error: Call to a member function children() on a non-object in /home/askbio/public_html/index_bio.php on line 260