home/categories/debugging/sherifeldeeb-agentskills-skills-forensics-registry-forensics-skill-md
debuggingtools

registry-forensics

Analyze Windows Registry hives for forensic investigation. Use when investigating malware persistence, user activity, system configuration changes, or evidence of program execution. Supports offline registry analysis from disk images or extracted hives.

SherifEldeeb
maintainer
SherifEldeeb
Updated 1/14/2026
Stars
0
Forks
0
quick start

Installation and usage

Analyze Windows Registry hives for forensic investigation. Use when investigating malware persistence, user activity, system configuration changes, or evidence of program execution. Supports offline registry analysis from disk images or extracted hives.

Installation
$ install --globalskills.sh
Usage

Once installed, you can use this skill by running the following command in your terminal:

skills use registry-forensics