Forensics Distribution / Resources in Linux

Try Backtrack 4 and Knoppix-STD. Both are good to perform forensic analysis of computer systems.

You can get lots of information from CMU-SEI which is the First Responders Forensics Guide, and you can also get literature from the internet. WinHex is a program that does forensic analysis in Windows.

The web page by Gary Kessler gives excellent forensics information.

Visit to download the toolkit for Fedora or Ubuntu. You can also get the source code. This toolkit relies on python.