libregf Logo

libregf

0
Free
Visit Website

libregf is a library to access the Windows NT Registry File (REGF) format. It provides a way to read and parse registry files, with planned features including Dokan support and multi-threading support. The library is licensed under LGPLv3+ and is currently in alpha status. For more information, see the project documentation and building instructions.

FEATURES

ALTERNATIVES

A digital investigation platform for parsing, searching, and visualizing evidences with advanced analytics capabilities.

An open source digital forensic tool for processing and analyzing digital evidence with high performance and multiplatform support.

Accessing databases stored on a machine by the Chrome browser and dumping URLs found.

A library to access the Expert Witness Compression Format (EWF) for digital forensics and incident response.

A collection of tools for extracting and analyzing information from .git repositories

Windows event log fast forensics timeline generator and threat hunting tool.

A Python-based engine for automatic creation of timelines in digital forensic analysis

Open source tool for generating YARA rules about installed software from a running OS.

PINNED