Regardless of which side of this equation you're on, it's a struggle to keep up ...The hacker tool, dubbed DECAF, is designed to counteract the Computer Online Forensic Evidence Extractor, aka COFEE. The latter is that run from a script. Microsoft combined the programs into a portable tool that can be used by law enforcement agents in the field before they bring a computer back to their forensic lab. The script runs on a USB stick that agents plug into the machine.a suite of 150 bundled, off-the-shelf forensic tools. The tools scan files and gather information about activities performed on the machine, such as where the user surfed on the internet or what files were downloaded.
Posted by rlssec