pjrinaldi / wombatforensics

linux c++, fox-toolkit, multi-threaded forensic gui tool
GNU General Public License v2.0
47 stars 12 forks source link

Parse NTFS System Artifacts #376

Open pjrinaldi opened 3 years ago

pjrinaldi commented 3 years ago

Need to parse the relevant $Secure, Journal, etc on top of I30 for NTFS so they display formatted HTML content when opened by the user.