Seabreg / Regshot
Regshot is a small, free and open-source registry compare utility that allows you to quickly take a snapshot of your registry and then compare it with a second one - done after doing system changes or installing a new software product
☆339Updated 5 years ago
Alternatives and similar repositories for Regshot:
Users that are interested in Regshot are comparing it to the libraries listed below
- Prefetch Explorer Command Line☆243Updated last month
- A PowerShell script that attempts to help malware analysts hide their Windows VirtualBox Windows VM's from malware that may be trying to …☆286Updated last year
- Extract $MFT record info and log it to a csv file.☆264Updated 4 months ago
- Arsenal Image Mounter mounts the contents of disk images as complete disks in Microsoft Windows.☆566Updated last week
- Forensics tool for NTFS (parser, mft, bitlocker, deleted files)☆500Updated last year
- Lnk Explorer Command line edition!!☆290Updated last month
- snippets for power users☆304Updated 3 weeks ago
- Content for sysinternals.com☆71Updated 5 years ago
- PowerShell Set File Type Association☆295Updated 2 years ago
- A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analys…☆337Updated last month
- Parses $MFT from NTFS file systems☆221Updated 2 weeks ago
- Simple tool for retrieving information about Windows errors codes.☆272Updated this week
- 🚀AutoRuns is a PowerShell module that will help do live incident response and enumerate autoruns artifacts that may be used by legitima…☆265Updated last month
- $MFT directory tree reconstruction & FILE record info☆298Updated 4 months ago
- An index of Windows binaries, including download links for executables such as exe, dll and sys files☆634Updated this week
- Run PS1, VBS, CMD, EXE, MSI, Intunewin, MSIX, or extract ISO, ZIP in Windows Sandbox very quickly just from a right-click☆800Updated 6 months ago
- The multi-platform memory acquisition tool.☆752Updated 3 months ago
- http://moaistory.blogspot.com/2018/10/winsearchdbanalyzer.html☆121Updated 7 months ago
- Handbook of windows forensic artifacts across multiple Windows version with interpretation tips and some examples. Work in progress!☆324Updated 6 months ago
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆172Updated 10 months ago
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆588Updated last week
- Win 10/11 related research☆184Updated last year
- GUI to Manage Software Restriction Policies and harden Windows Home OS☆520Updated last month
- RegRipper3.0☆579Updated 2 months ago
- Graphical frontend to PS1-to-EXE-compiler PS2EXE.ps1☆312Updated last year
- PEiD detects most common packers, cryptors and compilers for PE files.☆269Updated 7 years ago
- ☆113Updated last month
- A GUI and CLI tool for removing bloat from executables☆383Updated last month
- Windows 10/11 hardening scripts☆243Updated 2 months ago
- Generate and manage your windows sandbox☆167Updated 3 years ago