![]() ![]() After image creation, you can choose from a range of compression options to reduce the size of the newly created image, increasing portability and saving disk space. Use OSFClone to save forensic meta-data (such as case number, evidence number, examiner name, description and checksum) for cloned or created images. ![]() Previous Version: OSFClone v ISO (49.5MB) ZIP (54.3MB) Installation Instructions DownloadĬlick to download the OSFClone zip (373 MB) OSFClone does its best not to leave artifacts or alter the source evidence drive. However due to different hardware, drivers variations and disk states, there could be a small chance of contamination, especially when the source drive is from a Linux / Unix machine. When integrity is of the utmost importance, we recommend using a write blocker in conjunction with OSFClone. To install OSFClone to a CD or DVD, you will need a CD/DVD writer and CD/DVD image writing software of your choosing. ![]() 32-bit users can still download - MajorGeeks download is 64-Bit.To run OSFClone, download and burn the osfclone.iso image to a CD or DVD, and choose to boot from the CD/DVD drive during system start up. GPT (GUID Partition Table) or MBR (Master Boot Record) When Partitioning a Drive?Īs of version, 64 Bit only.How to Format and Partition a Drive With PowerShell.OSFMount supports mounting images of CDs, which can be useful when a particular CD is often used, and the speed of access is critical. OSFMount also includes a second benefit - security - since the disk contents are not stored on a physical hard disk (but instead in RAM) and on system shutdown, the disk contents are not persistent. Because of this benefit in speed, it will be useful for applications that require high-speed disk access (database applications), games (game cache files), and browsers (cache files). By utilizing this option, you are provided with a speed benefit over using a hard disk. OSFMount also supports RAM disk creation this is a disk mounted into RAM. The image files are mounted as read-only by default, making sure that the original image files are not modified. ![]() You then have the option to analyze the disk image file with PassMark's OSForensics by using the mounted volume's drive letter. OSFMount permits local disk image file mounting (bit-for-bit copies of a disk partition) in Windows with a drive letter. ![]()
0 Comments
Leave a Reply. |
Details
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |