From ForensicsWiki
Revision as of 14:41, 12 July 2013 by Joachim Metz (Talk | contribs) (External Links)

Jump to: navigation, search
Maintainer: Joachim Metz
OS: Linux, FreeBSD, NetBSD, OpenBSD, Mac OS X, Windows
Genre: Analysis
License: LGPL

The libregf package contains a library and applications to read the Windows NT Registry File (REGF) format.


The libregf package contains the following tools:

  • regfinfo, which shows information about REGF files.
  • regfmount, which mounts the keys and values in a REGF file as directories and files.


Libregf was created by Joachim Metz in 2009, while working for Hoffmann Investigations.

Also See

External Links