dfir,

The DFIR thing reg parsing #1

Jouni Jouni Follow Aug 29, 2024 · 1 min read
The DFIR thing reg parsing #1
Share this

This blog post was lost in migration from Wordpress to Github Pages. :(

I am using Regipy Python module to parse the registry files with the help of additional Python script. However, I don’t intend to rewrite the full blog post so please watch the youtube video below if you need to have more information how the parsing works currently.

Links:

GitHub repository

Youtube video series of the DFIR thing (part 1)

Jouni
Written by Jouni
Threat hunting nerd.