Closed pjrinaldi closed 1 year ago
working on using liblnk.h to generate this html...
formatting is done. fixed datetime so it works with timezone display...
need to implement 3 and then 4...
3 is finished, now need to implement 4.
Lnk artfiact analysis/parsing is finished and working.
lnk file parsing without liblnk is almost working. I can't use liblnk because it requires a file and I parse a lot of artifacts straight out of memory, since most forensic systems have at least 8GB ram, I am using 4GB as the memory limit right now before i then parse the contents from a tmp file just need to finish parsing the remaining values and then generate the output string for plainview
lnk file parsing is working without liblnk. most is implemented and formatted. I still need to implement the following:
The below is how to convert asciidoc to pdf:
a2x -fpdf -dbook Windows\ Shortcut\ File\ (LNK)\ format.asciidoc
lnk file is working, will need to test and will open any tickets if I find things missing or incorrect.
Implement a pretty print view for lnk files