Following part I where we wrote about tools to parse and read Windows Event Logs we will start analyzing our Super Timeline. First we start by filtering out the Super Timeline in Excel and look at WinEVTX artifacts and their meaning. To be able to find interesting events we need to have a good understanding […]
🛡️ VERIFIED CYBER INTELLIGENCE ID: #37979
🕵️ Digital Forensics – SuperTimeline & Event Logs – Part II
⏱️ vor 3899d 4h (25.11.2015 um 22:33 Uhr) 📂 🕵️ Reverse Engineering 📡 Feed 🔗 Quelle: countuponsecurity.com