mirror of
https://github.com/Ponce/slackbuilds
synced 2024-11-14 21:56:41 +01:00
d6bef62cfd
Signed-off-by: David Spencer <idlemoor@slackbuilds.org>
13 lines
739 B
Text
13 lines
739 B
Text
plaso (Forensic Super-Timeline)
|
|
|
|
Plaso is the Python based back-end engine used by tools such as log2timeline
|
|
for automatic creation of a super timelines. The goal of log2timeline (and
|
|
thus plaso) is to provide a single tool that can parse various log files and
|
|
forensic artifacts from computers and related systems, such as network equipment
|
|
to produce a single correlated timeline. This timeline can then be easily
|
|
analysed by forensic investigators/analysts, speeding up investigations by
|
|
correlating the vast amount of information found on an average computer system.
|
|
|
|
Please pay close attention to the build order for plaso and its requirements
|
|
(particularly dfvfs). Read the README files and do NOT rely on automated
|
|
package tools.
|