Security

yarp – yet another registry parser

yarp is yet another registry parser.

The goals of the project are:

  • Parse Windows registry files in a proper way (with forensics in mind).
  • Expose values of all fields of underlying registry structures.
  • Support for truncated registry files and registry fragments.
  • Support for recovering deleted keys and values.
  • Support for carving of registry hives.
  • Support for transaction log files.

This is free and open source software.

Website: github.com/msuhanov/yarp
Support:
Developer: Maxim Suhanov
License: GNU General Public License v3.0

yarp help

yarp is written in Python. Learn Python with our recommended free books and free tutorials.


Related Software

Forensics Memory Tools
MemProcFSView physical memory as files in a virtual file system
pypykatzPython implementation of Mimikatz
PCILeechSecurity research and memory acquisition tool
VolatilityAdvanced memory forensics framework
AVMLAcquire Volatile Memory for Linux
VolshellCLI tool for working with memory
LeechCorePhysical memory acquisition library
EVTXtractRecovers and reconstructs fragments of EVTX log files
mquireMemory forensics and analysis tool
LEMONMemory acquisition utility
yarpYet Another Registry Parser
emdCommand line memory acquisition tool for Linux systems
AutoTimelinerExtract forensic timeline from volatile memory dump

Read our verdict in the software roundup.


Best Free and Open Source Software Explore our comprehensive directory of recommended free and open source software. Our carefully curated collection spans every major software category.

This directory is part of our ongoing series of informative articles for Linux enthusiasts. It features hundreds of detailed reviews, along with open source alternatives to proprietary solutions from major corporations such as Google, Microsoft, Apple, Adobe, IBM, Cisco, Oracle, and Autodesk.

You’ll also find interesting projects to try, hardware coverage, free programming books and tutorials, and much more.

Discovered a useful open source Linux program that we haven’t covered yet? Let us know by completing this form.
Subscribe
Notify of
guest
0 Comments
Oldest
Newest Most Voted