Registry
- See Registry article
- Shellbags:
- A shellbag is a collection if values in the registry, which store information about explorer views. This can also contain file and directory information.
Windows Event Logging
- The tool havabusa is a parser to analyse larger evtx-Files.
Leave a Reply
You must be logged in to post a comment.