DEV Community

Cover image for [Open Source] ๐Ÿš€ TRACE: Toolkit for Retrieval and Analysis of Cyber Evidence ๐Ÿš€
sdasdd
sdasdd

Posted on

[Open Source] ๐Ÿš€ TRACE: Toolkit for Retrieval and Analysis of Cyber Evidence ๐Ÿš€

๐Ÿ“‚๐Ÿ” TRACE is a digital forensic analysis tool I developed for my final year project, designed with a user-friendly interface for investigating disk images. ๐Ÿ“‚๐Ÿ”

ย 

๐Ÿ‘€ Preview

Preview

ย 

๐Ÿ”ง Features

  • ๐Ÿ—‚๏ธ *Image Mounting: Mount forensic disk images. (Windows only)
  • ๐ŸŒณ Tree Viewer: Navigate disk image structures.
  • ๐Ÿ” Detailed File Analysis: View file content in HEX, text, and application-specific formats.
  • ๐Ÿ“ธ EXIF Data Extraction: Extract and display EXIF metadata from pictures.
  • ๐Ÿ—‚๏ธ Registry Viewer: Examine Windows registry files.
  • ๐Ÿ”ช *Basic File Carving -not fully integrated: Recover deleted files from disk images.
  • ๐Ÿฆ  Virus Total API Integration: Scan files for malware using Virus Total.
  • โœ… E01 Image Verification & Conversion: Verify integrity and convert E01 images to raw format.
  • ๐Ÿ’ฌ Message Decoding: Decode messages from base64, binary, and other encodings.
  • And more!

ย 

๐Ÿ’ป๐Ÿ–ฅ๏ธ Cross-Platform Compatibility

Operating System Screenshot
macOS Sonoma ๐Ÿ macOS Screenshot
Kali Linux 2024 ๐Ÿง Kali Linux Screenshot
Windows 10 ๐Ÿ—” Windows Screenshot

ย 

๐Ÿ’พ Supported Image Formats

Image Format Extensions
EnCaseยฎ Image File (EVF / Expert Witness Format) *.E01 *.Ex01
SMART/Expert Witness Image File *.s01
Single Image Unix / Linux DD / Raw *.dd, *.img, *.raw
ISO Image File *.iso
AccessData Image File *.ad1

ย 

๐Ÿงฑ Built With

ย 

๐Ÿ”— Explore TRACE on GitHub:

https://github.com/Gadzhovski/TRACE-Forensic-Toolkit/?abc

ย 

Socials ๐Ÿ‘จโ€๐Ÿ’ป

LinkedIn


VersionLicense

Top comments (0)