home/categories/debugging/sherifeldeeb-agentskills-skills-forensics-registry-forensics-skill-md
debuggingtools

registry-forensics

Analyze Windows Registry hives for forensic investigation. Use when investigating malware persistence, user activity, system configuration changes, or evidence of program execution. Supports offline registry analysis from disk images or extracted hives.

SherifEldeeb
maintainer
SherifEldeeb
آخر تحديث 1/14/2026
النجوم
0
التفرعات
0
quick start

Installation and usage

Analyze Windows Registry hives for forensic investigation. Use when investigating malware persistence, user activity, system configuration changes, or evidence of program execution. Supports offline registry analysis from disk images or extracted hives.

التثبيت
$ install --globalskills.sh
الاستخدام

بعد التثبيت، يمكنك استخدام هذه المهارة بتشغيل الأمر التالي في الطرفية:

skills use registry-forensics