Analyzing Windows Amcache Artifacts

Parses and analyzes the Windows Amcache.hve registry hive to extract evidence of program execution, application installation, and driver loading for digital forensics investigations.

mukul975 Updated 24.6k repo stars

File contents

mukul975/Anthropic-Cybersecurity-Skills/tree/main/skills/analyzing-windows-amcache-artifacts commit 673da1f3b0

Frequently asked questions

npx skillmds@latest add mukul975/analyzing-windows-amcache-artifacts