+ All Categories
Home > Documents > Seculabs eBook - Exiftool Forensics Tool

Seculabs eBook - Exiftool Forensics Tool

Date post: 14-Apr-2018
Category:
Upload: rifqi-multazam
View: 220 times
Download: 0 times
Share this document with a friend
13
7/29/2019 Seculabs eBook - Exiftool Forensics Tool http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 1/13
Transcript
Page 1: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 1/13

Page 2: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 2/13

 

SECUGENIUS SECURITY SOLUTIONS 

--------------------------------------------------------------------------------------

(A UNIT OF HARKSH TECHNOLOGIES PVT. LTD)

Company Profile:

Secugenius Security Solutions is a Student Entrepreneurial Company started by 2 Social Student

Entrepreneurs in 2010 with an aim to make our country Cyber Crime Free. We at SECUGENIUS

are headquartered at Ludhiana, the Manchester of Punjab. The main activities of Secugenius

Security Solutions are providing training in Information Security and various professional courses.

Secugenius Security Solutions is an organization which believes in inventing and implementing newideas to influence the technological minds of the youngsters

Looking at the number of Cyber Crimes since last many years, We at Secugenius Security

Solutions provides training on Ethical hacking & Cyber Security to students, IT Professionals, Bank 

Employees, Police officials.

Secugenius conducts workshops in all parts of the country in various Colleges/institutions for the

benefit of the students & making them aware of the latest trends in technological era of the

Computer age. We believe in spreading knowledge to all the youngsters & growing minds of the

nation so that they could serve the nation with perfect skill-sets in the field of Cyber Crime

Investigation & Forensic Sciences

Secugenius provides various security solutions to its clients by securing their websites from cyber

attacks. We provide training to college students, graduates and professionals in various fields.

Education is delivered to students through two modes i.e. Regular mode and Distance mode which

are available as short term and long term courses.

In the workshops conducted by Secugenius, participants can claim to be trained by the highly

experienced & skilled corporate trainers from different parts of the nation. We believe in making

the base of students to be as strong as possible. All the modules have been designed in order to

provide students with specialized knowledge by specialized trainers.

This library was furnished, managed and funded by the Founders and Directors of Secugenius

Er. Harpreet Khattar & Er. Kshitij Adhlakha. The overall resource person for the content of 

the series of this Digital Library is Er. Chetan Soni - Sr. Security Specialist, Secugenius Security

Solutions.

This Online Digital Library has been initiated as a free resource & permanent

resource on specialization basis for every student of Team Secugenius.

Page 3: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 3/13

 

Exiftool Forensics Tool

Product ID No: SG/ODL/13012

Founder & Director: Harpreet Khattar & Kshitij Adhlakha

Resource Person: Chetan Soni

Secugenius Security Solutions 

SCO-13A, Model Town Extn, Near Krishna Mandir,

Ludhiana-141002, Punjab – India

[email protected][email protected] 

www.secugenius.com , www.seculabs.in 

Page 4: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 4/13

 

What is Exiftool ?

It is a Forensic tool , which is preinstalled on Backtrack 5 Operating System.

It can be used to extract the metadata information from different files i.e.Image file , Powerpoint file and a Pdf file. We can find lots of informationabout a particular file with this forensic tool. So for gathering informationfrom a particular file , Exiftool is a good forensic tool to use .

Step 1  –  

To Start this forensic tool please follow this path

Backtrack -> Firensics -> Firensic Analysis Tools -> exiftool

Page 5: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 5/13

 

Step 2  –  

Let us take any example, we simply put all files on the Desktop.

(chetansoni.jpg, chetansoni.pdf, chetansoni.ppt)

Step 3  –  

Now Copy all files from /root/Desktop to this /pentest/misc/exiftooldirectory by typying these commands.

Page 6: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 6/13

 

Step 4  –  

Lets Start the exiftool, it looks like this.

Step 5  –  

Go To Exiftool directory, please type this command.

root@bt:~# cd /pentest/misc/exiftool 

Page 7: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 7/13

 

Step 6  –  

For Analysis of Image File , type this command

Syntax – 

 root@bt:~# ./exiftool <File Name> 

Example  –  root@bt:~# ./exiftool chetansoni.jpg 

Page 8: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 8/13

 

Step 7  –  

Similarly for analysis of PDF File, type this command,

root@bt:~# ./exiftool chetansoni.pdf  

Page 9: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 9/13

 

Step 8  –  

For Analysis in Verbose Mode we use  – v option.

root@bt:~# ./exiftool – 

v chetansoni.jpg 

Page 10: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 10/13

 

Step 9  –  

We can also set the language by typing this command

root@bt:~# ./exiftool – 

lang fr chetansoni.jpg 

Step 10 – 

 

We can also generate the HTML format binary dump file by typing thiscommand.

root@bt:~#  ./exiftool  – htmlDump chetansoni.jpg >chetansoni.html

Page 11: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 11/13

 

 And Here’s the output of HTML File, To View this html file, type this command 

root@bt:~# firefox chetansoni.html 

Page 12: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 12/13

 

Step 11  –  

For Analysis of PPT File , type this command in your terminal,

root@bt:~# ./exiftool chetansoni.ppt 

Step 12  –  

We can also import the analysis information in a html format file by typing

this command,

root@bt:~# ./exiftool chetansoni.ppt > chetansonippt.html 

Page 13: Seculabs eBook - Exiftool Forensics Tool

7/29/2019 Seculabs eBook - Exiftool Forensics Tool

http://slidepdf.com/reader/full/seculabs-ebook-exiftool-forensics-tool 13/13

 

To View this HTML format in your browser, please type this command,

root@bt:~# firefox chetansonippt.html 


Recommended