5

RegRipper

Abstract

This chapter provides a detailed discussion of the use of RegRipper, how to get the most out of using RegRipper, and how to extend the tool to meet your own needs.

Keywords

RegRipper; Rip
Information in this chapter
• What is RegRipper?
• Getting the most out of RegRipper

Introduction

Since it was first released, RegRipper has been downloaded a great number of times and seems to be used by a great many analysts. However, I tend to wonder just how many analysts really use RegRipper to get the most from the Registry hives they’re examining, as opposed to those that simply run the tool because they heard someone say that they should. There’s much more available to an analyst when employing a tool such as ...

Get Windows Registry Forensics, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.