regipy
« Back to VersTracker
Description:
Offline registry hive parsing tool
Type: Formula  |  Latest Version: 5.2.0@0  |  Tracked Since: Dec 20, 2025
Links: Homepage  |  GitHub  |  formulae.brew.sh
Stars: 265  |  Forks: 57  |  Language: Python  |  Category: Security
Tags: forensics windows registry parsing security
Install: brew install regipy
About:
Regipy is a Python-based tool designed for parsing Windows Registry hive files offline. It extracts and analyzes registry data without requiring a live Windows system, making it ideal for digital forensics and malware analysis. The tool supports multiple hive formats and provides structured output for further investigation.
Key Features:
  • Offline parsing of Windows Registry hives
  • Support for multiple hive formats (e.g., SAM, SYSTEM, SOFTWARE)
  • Structured JSON output for easy integration
  • Command-line interface for automation
  • Active development and community support
Use Cases:
  • Digital forensics investigations to extract evidence from registry hives
  • Malware analysis to identify persistence mechanisms or system changes
Alternatives:
  • Registry Explorer – GUI-based tool for Windows; requires live system or mounted hives
  • hivex – Library for reading/writing registry hives; more low-level than Regipy
Version History
Detected Version Rev Change Commit
Dec 20, 2025 10:48pm 5.2.0 0 VERSION_BUMP 9a45523a
Dec 12, 2024 8:16pm 0 VERSION_BUMP cb9c43c3