Skip to content

Latest commit

 

History

History
12 lines (9 loc) · 580 Bytes

README.md

File metadata and controls

12 lines (9 loc) · 580 Bytes

log2timeline_script

This is a wrapper bash script to streamline the process of creating DFIR super timelines using Log2Timeline Plaso

Features to be added

  • If you are using Debian systems, download and install super timeline if it's not present already [done]
  • Prompt for particular dates/timestamps when performing Psort
  • Prompt to choose particular timezone
  • Prompt to choose particular Collection Filters/Plugins

How to execute the script

Downlaod the plaso_runner.sh and perform chmod +x plaso_runner.sh. Once changed, run the script as ./plaso_runner.sh