RegRipper is an open source tool, written in Perl, for extracting/parsing information (keys, values, data) from the Registry and presenting it for analysis.

RegRipper consists of two basic tools, both of which provide similar capability. The RegRipper GUI allows the analyst to select a hive to parse, an output file for the results, and a profile (list of plugins) to run against the hive. When the analyst launches the tool against the hive, the results go to the file that the analyst designated. If the analyst chooses to parse the System hive, they might also choose to send the results to system.txt. The GUI tool will also create a log of it’s activity in the same directory as the output file, using the same file name but using the .log extension (i.e., if the output is written to system.txt, the log will be written to system.log).

Installed size: 7.60 MB
How to install: sudo apt install regripper

  • kali-defaults
  • perl
  • wine
[email protected]:~# regripper -h
┏━(Message from Kali developers)
┃ You may need to install the wine32 package first:
┃  # dpkg --add-architecture i386 && apt update && apt -y install wine32

Updated on: 2022-Aug-05