Seabreg / RegshotLinks
Regshot is a small, free and open-source registry compare utility that allows you to quickly take a snapshot of your registry and then compare it with a second one - done after doing system changes or installing a new software product
☆444Updated 6 years ago
Alternatives and similar repositories for Regshot
Users that are interested in Regshot are comparing it to the libraries listed below
Sorting:
- Prefetch Explorer Command Line☆275Updated 10 months ago
- Arsenal Image Mounter mounts the contents of disk images as complete disks in Microsoft Windows.☆670Updated last week
- Parses $MFT from NTFS file systems☆279Updated 6 months ago
- Forensics tool for NTFS (parser, mft, bitlocker, deleted files)☆555Updated 2 years ago
- A PowerShell script that attempts to help malware analysts hide their Windows VirtualBox Windows VM's from malware that may be trying to …☆389Updated 5 months ago
- Lnk Explorer Command line edition!!☆330Updated 10 months ago
- Content for sysinternals.com☆77Updated 6 years ago
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆689Updated last month
- Encyclopedia for Executables☆459Updated 4 years ago
- RegRipper3.0☆665Updated 11 months ago
- A GUI and CLI tool for removing bloat from executables☆432Updated 4 months ago
- This is a fork of Regshot (original found at https://sourceforge.net/projects/regshot/) with very enhanced functionality.☆86Updated 4 years ago
- $MFT directory tree reconstruction & FILE record info☆320Updated last year
- Windows 10/11 hardening scripts☆264Updated last week
- Handbook of windows forensic artifacts across multiple Windows version with interpretation tips and some examples. Work in progress!☆411Updated last year
- Extract $MFT record info and log it to a csv file.☆281Updated last year
- The multi-platform memory acquisition tool.☆894Updated last month
- ☆220Updated 5 months ago
- A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analys…☆415Updated 10 months ago
- C# based evtx parser with lots of extras☆337Updated 3 months ago
- A tool that takes over Windows Updates to craft custom downgrades and expose past fixed vulnerabilities☆690Updated last year
- Total Registry - enhanced Registry editor/viewer☆1,557Updated 3 months ago
- PEiD detects most common packers, cryptors and compilers for PE files.☆314Updated 8 years ago
- Windows Registry Knowledge Base☆189Updated last week
- http://moaistory.blogspot.com/2018/10/winsearchdbanalyzer.html☆126Updated last year
- Microsoft Windows DLL Export Browser (Enumerate Exports, COM Methods and Properties) with Advanced Search Features.☆248Updated last year
- Sysmon configuration file template with default high-quality event tracing☆528Updated 2 months ago
- OneDrive log .ODL reader☆153Updated last year
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆226Updated last year
- Commandline low level file extractor for NTFS☆305Updated 6 years ago