Chapter 3

Integrating Python With MPE+

Abstract

This chapter walks through the process and associated Python scripts necessary to interface with AccessData’s Mobile Phone Examiner Plus (MPE +). The scripts provided will demonstrate the direct interface with the embedded Python scripter capability of MPE + and provide a template Python script. In addition, a Python script to perform a hash search of files contained with and MPE + image is provided along with the multiple output methods.

Keywords

Python; Forensics; Python Standard Library; hashlib; Time; os; sys; argv; Python forensic template; Logging; UTC; Dictionary; List; Key; Value; MPE +; AccessData; LogEvent; CSV write; PF_MPE_PARAMETERS.py; PF_MPE_BASIC.py; PF_HashSearch.py; CSV

Get Integrating Python with Leading Computer Forensics Platforms now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.