scancode.io
scancode.io copied to clipboard
Improve Windows package detection
https://github.com/forensicanalysis/artifacts was spun from GRR and contains interesting Windows-related pointers that we could reuse
https://github.com/log2timeline/dfwinreg/tree/main/dfwinreg is another take (from Google's sec team members) on a registry parser based on https://github.com/libyal/libreg and used here https://github.com/log2timeline/plaso/tree/main/plaso/parsers/winreg_plugins and there https://github.com/libyal/winreg-kb ... also with many interesting bits.