Investigative Tools used

In addition to inquisitiveness, skepticism, tenacity as well as deductive and inductive reasoning skills, I also have used the following:

For Hermitian’s sake, I will be documenting, step-by-step instructions as to how to extract relevant data.

Software tools used

qpdf – A content preserving PDF transformation tool
exiftool – Extract metadata, thumbnails
jpegquality
jpeginfo – Useful JPEG information
find – Unix Tool
grep – Unix Tool
hex fiend – Hex Editor
Poppler tools – Variety of PDF tools
pdfimages – To extract images from PDF
pdfmetadata
pdf-parser.py – Python script
deflate.py – Implement FlateDecode filter
text editor
Preview
Acrobat reader
GIMP – Photoshop like tool
Illustrator
Photoshop

3 thoughts on “Investigative Tools used

  1. NBC

    “pdfimages – To extract images from PDF”

    What image file formats can be extracted?

  2. What image file formats can be extracted?

    Geez, RTFM…

    Pdfimages saves images from a Portable Document Format (PDF) file as Portable Pixmap (PPM), Portable Bitmap (PBM), or JPEG files.

    Pdfimages reads the PDF file, scans one or more pages, PDF-file, and writes one PPM, PBM, or JPEG file for each image, image-root-nnn.xxx, where nnn is the image number and xxx is the image type (.ppm, .pbm, .jpg).

    NB: pdfimages extracts the raw image data from the PDF file, without performing any additional transforms. Any rotation, clipping, color inversion, etc. done by the PDF content stream is ignored.

    PS: You can also extract them using simple hex editing skills to confirm they do not create the label

    And of course, I checked…

    Leagues out of…

Comments are closed.