CDQR - Cold Disk Quick Response Logo

CDQR - Cold Disk Quick Response

0
Free
Visit Website

The CDQR tool uses Plaso to parse forensic artifacts and/or disk images with specific parsers, creating easy-to-analyze custom reports that group similar items together, following the Live Response Model for investigations. It generates up to 18 reports based on triaging best practices and parsing options, making it a valuable starting point for forensic analysis.

FEATURES

ALTERNATIVES

A library to access the Windows New Technology File System (NTFS) format with read-only support for NTFS versions 3.0 and 3.1.

Automated digital image forensics tool

A collaborative forensic timeline analysis tool for organizing and analyzing data with rich annotations and comments.

Orochi is a collaborative forensic memory dump analysis framework.

DMG2IMG is a tool for converting Apple compressed dmg archives to standard image disk files with support for zlib, bzip2, and LZFSE compression.

A forensic tool to find hidden processes and TCP/UDP ports by rootkits or other hidden techniques.

IE10Analyzer can parse and recover records from WebCacheV01.dat, providing detailed information and conversion capabilities.

NBD is a userland implementation of the Network Block Device protocol, allowing for remote access to block devices over a network.

PINNED