fred - Microsoft registry hive editor

Property Value
Distribution Fedora 29
Repository CERT Forensics Tools x86_64
Package filename fred-0.1.1-1.fc29.x86_64.rpm
Package name fred
Package version 0.1.1
Package release 1.fc29
Package architecture x86_64
Package type rpm
Category Applications/Forensics Tools
License GPL
Maintainer -
Download size 198.07 KB
Installed size 690.42 KB
Forensic Registry EDitor (fred) is a cross-platform M$ registry hive
editor. This project was born out of the need for a reasonably good registry
hive viewer for Linux to conduct forensic analysis. Therefore it includes
some functions not found in normal "free" registry editors like a hex viewer
with data interpreter and a reporting function that can easily be extended
with custom ECMAScript report templates. The current version contains the
following reports: NTUSER_RecentDocs, NTUSER_TypedUrls, SAM_UserAccounts,
SOFTWARE_WindowsVersion, SYSTEM_CurrentNetworkSettings, SYSTEM_SystemTimeInfo
and SYSTEM_UsbStorageDevices.


Package Version Architecture Repository
fred- noarch RPM Sphere
fred-0.1.1-1.fc29.i686.rpm 0.1.1 i686 CERT Forensics Tools
fred - - -


Name Value
hivex - - - - - - - - - - - - - - -
qtwebkit -
rtld(GNU_HASH) -


Name Value
fred = 0.1.1-1.fc29
fred(x86-64) = 0.1.1-1.fc29


Type URL
Binary Package fred-0.1.1-1.fc29.x86_64.rpm
Source Package fred-0.1.1-1.fc29.src.rpm

Install Howto

  1. Download cert-forensics-tools-release-29 rpm:
  2. Install cert-forensics-tools-release-29 rpm:
    # rpm -Uvh cert-forensics-tools-release*rpm
  3. Install fred rpm package:
    # dnf --enablerepo=forensics install fred



See Also

Package Description
fundl-2.0-1.fc29.noarch.rpm A File UNDeLetion program built on top of the Sleuthkit
galleta-20040505_1-1.fc29.x86_64.rpm Examine the contents of cookie files
ghidra-9.0.4-PUBLIC_20190516.3.fc29.x86_64.rpm ghidra - Software reverse engineering (SRE) suite of tools
ghostpdl-9.27-1.fc29.x86_64.rpm Artifex Software's implementation of the PCL-5™ and PCL-XL™ family of page description languages
grokevt-0.5.0-2.fc29.x86_64.rpm Read and process Windows Event Files
guymager-0.8.11-2.fc29.x86_64.rpm Imager for forensic media acquisition
hachoir-core-1.3.4-1.fc29.noarch.rpm Library for carving binary files
hachoir-metadata-1.3.3-2.fc29.noarch.rpm Extracts metadata from multimedia files
hachoir-parser-1.3.5-1.fc29.noarch.rpm File format parser fo hachoir suite
hachoir-regex-1.0.5-1.fc29.noarch.rpm A Python library for regular expression (regex or regexp) manupulation
hachoir-subfile-0.5.3-1.fc29.noarch.rpm A tool based on hachoir-parser to find subfiles in any binary stream
hachoir-urwid-1.1-1.fc29.noarch.rpm A binary file explorer based on Hachoir library to parse the files
hachoir-wx-0.3.1-1.fc29.noarch.rpm A wxWidgets-based program that provides a user-friendly interface to hachoir-parser
jafat-1.1.6-2.fc29.x86_64.rpm JAFAT is an assortment of tools to assist in the forensic investigation of computer systems
kracked-0.1-1.fc29.x86_64.rpm kracked - create word lists from files