AF Logical OSE (Open Source Edition) is a tool used to extract data from Android devices. It’s part of the Open Source Android Forensics project and is often used for logical extraction, which means pulling data like contacts, messages, and call logs without directly accessing the file system. Here’s a step-by-step guide to using AF Logical OSE to extract data from an Android device.
- Visit the AFLogical OSE GitHub page and download the latest release.
- Alternatively, you can clone the repository using Git.
- AF Logical OSE requires Java to run.
- Make sure you have Java installed on your machine.
- You can download it from the official Java website.
- ADB is a command-line tool that allows communication with Android devices.
- Download it from the Android Developer's website and install it on your system.
- Add ADB to your system's PATH environment variable to easily run ADB commands from the terminal or command prompt.
-
On the Android device, go to:
Settings > About Phone
-
Tap Build Number seven times to enable Developer Options.
-
Go to:
Settings > Developer Options
-
Enable USB Debugging.
- Use a USB cable to connect the Android device to your computer.
- Open Command Prompt on Windows or Terminal on macOS/Linux and run:
adb devices
- This command lists connected devices.
- If your device is listed, you are ready to proceed.
- If not, ensure that USB Debugging is enabled and that the correct drivers are installed.
- Navigate to the directory where you have downloaded or extracted AFLogical OSE.
- Run the following command to install the AFLogical OSE APK on the device:
adb install af logical.apk- This installs the AF Logical app on the device, which will be used to collect data.
- On the Android device, open the AF Logical app.
- You’ll see options to extract various types of data (e.g., contacts, SMS, MMS, call logs).
- Select the data types you want to extract.
- Once you’ve selected the data types, the app will start the extraction process.
- Data is stored in
.csvfiles on the device’s storage, typically in a directory namedaf logical.
- After extraction, you need to transfer the data files from the Android device to your computer.
- Run:
adb pull /sd card/af logical /path/to/destination- Replace
/path/to/destinationwith the directory path where you want to save the extracted data on your computer.
- Navigate to the destination directory and check the
.csvfiles to ensure all required data has been extracted.
- Use Excel, Google Sheets, or any text editor to open and analyze the
.csvfiles. - These files contain the extracted data like contacts, SMS, MMS, and call logs.
- Carefully review the data for any relevant information.
- Document your findings and consider exporting the data into a report format for further analysis.
- Once data extraction is complete, you can uninstall the AFLogical OSE app from the Android device by running:
adb uninstall com.viaforensics.android.aflogical- Safely disconnect the Android device from your computer.
By following these steps, you can use AF Logical OSE to effectively extract and analyze data from an Android device. This process is valuable for forensic investigations, especially when dealing with logical data that doesn’t require root access to the device.
The Android device was successfully connected and data was extracted using AFLogical OSE. Contacts, messages and call logs were collected in CSV format and transferred to the computer for forensic examination.