Welcome to easymetadata! With a focus on helping you understand and analyze information better. This site is geared towards anyone with some technology understanding including IT professionals, Information Security and Computer Forensics analysts. I try to make it accessible to everyone with an interest in looking at the meta-data that lurks in files and on devices!

ShadowKit

MetaDiver

The goal of MetaDiver is an easy to use solution for extracting and reviewing metadata from files, email and system artifacts on Windows systems. Find out who created files, when and where it was created and much more.

Read More

ShadowKit

ShadowKit

A solution for recovering previous versions of files in Windows! You won’t be able to do this with Windows Explorer, but you can with ShadowKit! If you are using Windows 8 or later this may be your only way to recover the previous versions of files you are looking for.

Read More

SQLiteDiver

SQLiteDiver

A simple SQLite database viewer that can convert date times for known fields.

Read More

Available for download from easymetadata.com. Or just look at all available downloads.

MetaDiver

 

ShadowKit3_webShadowKit

 

Capture1_sqlitediver_0.5SQLiteDiver

 

Links

Blogs and sites with great information and research

http://www.easymetadata.com/links/

Social media

Here are a few social resources
Forensic Lunch (Video Podcasts) Learn Forensics is a channel devoted to computer forensics.
#DFIR Digital Forensics and Incident Response posts and discussions on Twitter.
@sansforensics  Sans DFIR for great articles, webcasts and re-tweets.
@HECFBlog Our own Hacking Exposed Computer Forensic’s Author Blog by David Cowen. David posts daily!The Hacking Exposed Computer Forensic’s Blog (HECF) is a highly informational blog with very technical posts and discussions about forensics.
 #InfoSec Information security related posts.

Books on Forensics!