
adiskreader-secretsdump
Extract registry and NTDS secrets from local or remote disk images
digital-forensicsincident-responsepassword-attacks+3
45

Extract registry and NTDS secrets from local or remote disk images

Brute-force tool that recovers full executable paths from Windows prefetch hashes using bodyfiles, supporting XP, Vista, and 2008 hash functions for…