Forensic Registry EDitor (FRED) Logo

Forensic Registry EDitor (FRED)

0
Free
Visit Website

Forensic Registry EDitor (FRED) is a cross-platform registry hive editor that allows for forensic analysis. It includes features such as a hex viewer with data interpreter and a reporting engine that can be extended with custom ECMAScript report templates. FRED is free software, distributed under the GNU General Public License, and is available for download.

FEATURES

ALTERNATIVES

An open source format for storing digital evidence and data, with a C/C++ library for creating, reading, and manipulating AFF4 images.

MFT and USN parser for direct extraction in filesystem timeline format with YARA rule support.

A recognition framework for identifying products, services, operating systems, and hardware by matching fingerprints against network probes.

IE10Analyzer can parse and recover records from WebCacheV01.dat, providing detailed information and conversion capabilities.

MalConfScan is a Volatility plugin for extracting configuration data of known malware and analyzing memory images.

A binary analysis platform for analyzing binary programs

Easy-to-use live forensics toolbox for Linux endpoints with various capabilities such as process inspection, memory analysis, and YARA scanning.

Windows anti-forensics USB monitoring tool with the ability to shutdown the computer upon detecting the unplugging of a specified USB device.

PINNED