Friday, November 12, 2010

Tool for timeline analysis: log2timeline

log2timeline, a framework for automatic creation of a super timeline. The main purpose is to provide a single tool to parse various log files and artifacts found on suspect systems (and supporting systems, such as network equipment) and produce a timeline that can be analysed by forensic investigators/analysts.

Example of usage: introduction  and solution

Paper

No comments:

Post a Comment