Malware Monday: Regshot

Matt B
Matt B
Jan 3, 2017 · 5 min read

Regshot

Why Use Regshot?

Using Regshot

Screenshot of Regshot GUI
Screenshot of Regshot GUI with the Shot Menu
Screenshot of Regshot GUI with shot statistics
Screenshot of Regshot GUI after 2nd shot
Regshot 1.9.0 x64 Unicode
Comments:
Datetime: 2017/1/2 05:21:30 , 2017/1/2 05:22:16
Computer: BATMOBILE , BATMOBILE
Username: batman , batman
Screenshot of last line in Regshot compare text file
Screenshot of last line in Regshot compare text file with registry changes

Loading a Previous Hive

But wait..there’s more!

Screenshot of Regshot output showing a file system change

Matt B

Written by

Matt B

You don’t know my mind, You don’t know my kind. Digital forensics is part of my design.

Welcome to a place where words matter. On Medium, smart voices and original ideas take center stage - with no ads in sight. Watch
Follow all the topics you care about, and we’ll deliver the best stories for you to your homepage and inbox. Explore
Get unlimited access to the best stories on Medium — and support writers while you’re at it. Just $5/month. Upgrade