CDQR - Cold Disk Quick Response Logo

CDQR - Cold Disk Quick Response

0
Free
Visit Website

The CDQR tool uses Plaso to parse forensic artifacts and/or disk images with specific parsers, creating easy-to-analyze custom reports that group similar items together, following the Live Response Model for investigations. It generates up to 18 reports based on triaging best practices and parsing options, making it a valuable starting point for forensic analysis.

FEATURES

ALTERNATIVES

Universal hexadecimal editor for computer forensics, data recovery, and IT security.

Forensic imaging program with full hash authentication and various acquisition options.

A library to access the Windows New Technology File System (NTFS) format with read-only support for NTFS versions 3.0 and 3.1.

Windows event log fast forensics timeline generator and threat hunting tool.

A shell script for basic forensic collection of various artefacts from UNIX systems.

A library to access FileVault Drive Encryption (FVDE) encrypted volumes on Mac OS X systems.

A library to access and parse Windows NT Registry File (REGF) format.

Automated tool for parsing Windows registry hives and extracting valuable information for forensic analysis.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved