orlikoski / CDQR

The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted drives and extracted artifacts from Windows, Linux, MacOS, and Android devices
GNU General Public License v3.0
332 stars 51 forks source link

Make MFT and USNJRNL Optional #44

Closed orlikoski closed 5 years ago

orlikoski commented 5 years ago

Due to the quality of results and how long it takes to process MFT and USNJRNL entries with Plaso consider either making them opt in or opt out from default parser lists

orlikoski commented 5 years ago

completed in 5.0