AccessData FTK Imager Logo

AccessData FTK Imager

0
Free
Visit Website

AccessData FTK Imager is a digital forensic tool that allows users to create forensic images of computer hard drives and other digital media. It is a part of the Forensic Toolkit (FTK) and is used to preserve and analyze digital evidence. The tool provides a comprehensive solution for digital forensic investigations, including data acquisition, analysis, and reporting.

FEATURES

ALTERNATIVES

Easy-to-use live forensics toolbox for Linux endpoints with various capabilities such as process inspection, memory analysis, and YARA scanning.

AMExtractor is an Android Memory Extractor tool.

Tool for parsing NTFS journal files, $Logfile, and $MFT.

Python script to parse macOS MRU plist files into human-friendly format

A library to access and read QEMU Copy-On-Write (QCOW) image file formats with support for zlib compression and AES-CBC encryption.

A library and tools for accessing and analyzing Linux Logical Volume Manager (LVM) volume system format.

A cross-platform registry hive editor for forensic analysis with advanced features like hex viewer and reporting engine.

Tool used for dumping memory from Android devices with root access requirement and forensic soundness considerations.