mac-robber is a Forensics & Incident Response tool used to collect the Modified, Access, and Change (MAC) times from allocated files. It recursively reads MAC times of files and directories and prints them in 'time machine' format to STDOUT. This format is the same that the mactime tool from The Sleuth Kit[1] and The Coroners Toolkit (TCT)[2] read.
5 lines
254 B
Text
5 lines
254 B
Text
$NetBSD: distinfo,v 1.1.1.1 2006/04/20 10:53:48 poppnk Exp $
|
|
|
|
SHA1 (mac-robber-1.00.tar.gz) = 4d506e1a4f7c96ca9048432e376f8410140b9f8f
|
|
RMD160 (mac-robber-1.00.tar.gz) = 702e33935dddc92e3f0d5c970bb05bd9d32397a1
|
|
Size (mac-robber-1.00.tar.gz) = 11483 bytes
|