Forensics Tools Analysis
This playbook allows the user to analyze forensic evidence acquired from a host, such as registry files and PCAP files.
- Pack
- WindowsForensics
- Tasks
- 8
Inputs
- PcapEntryID — The entryid for the PCAP file to analyze.
- RegistryEntryId — The entryid for the registry file to analyze.