question in $logfil...
 
Notifications
Clear all

question in $logfile

2 Posts
2 Users
0 Reactions
486 Views
(@3ammary)
Active Member
Joined: 12 years ago
Posts: 10
Topic starter  

how to get the time stamp of every transaction in the $logfile
thanks


   
Quote
joakims
(@joakims)
Estimable Member
Joined: 15 years ago
Posts: 224
 

That's not easy to answer at all. You can try this one and see what you get; http//mft2csv.googlecode.com/files/LogFile_Parser_v1.0.0.13.zip

Quick answer is that not all transactions have timestamps to them. And for the rest of them it needs a little bit training to understand. Remember it is a log for all that is going on on a complex and advanced filesystem.

Other options are
1. http//code.google.com/p/ntfs-log-tracker/downloads/list
2. ANJP by David Cowen

I am not very familiar with the output of the last 2. However I am the author of the first one.


   
ReplyQuote
Share: