JPCERTCC / Windows-Symbol-TablesLinks
Windows symbol tables for Volatility 3
☆91Updated last year
Alternatives and similar repositories for Windows-Symbol-Tables
Users that are interested in Windows-Symbol-Tables are comparing it to the libraries listed below
Sorting:
- RegRipper4.0☆72Updated 2 months ago
- A small util to brute-force prefetch hashes☆78Updated 3 years ago
- Volatility3 plugins developed and maintained by the community☆59Updated 2 years ago
- Volatility, on Docker 🐳☆39Updated last week
- JPCERT/CC public YARA rules repository☆110Updated 10 months ago
- YARA rule analyzer to improve rule quality and performance☆105Updated 6 months ago
- A guide on how to write fast and memory friendly YARA rules☆154Updated 8 months ago
- Elastic Security Labs releases☆81Updated last week
- Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR☆248Updated 7 months ago
- Volatility Symbol Generator for Linux Kernels☆36Updated last year
- Cobalt Strike Beacon configuration extractor and parser.☆157Updated 4 years ago
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆60Updated 2 years ago
- Parses amcache.hve files, but with a twist!☆142Updated 9 months ago
- A collection of tools and detections for the Sliver C2 Frameworj☆131Updated 2 years ago
- Volatility 3 Plugins☆21Updated 3 years ago
- Dump quarantined files from Windows Defender☆67Updated 3 years ago
- A ProcessMonitor visualization application written in rust.☆184Updated 2 years ago
- Initial triage of Windows Event logs☆102Updated last year
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Updated 2 years ago
- A specification and style guide for YARA rules☆59Updated last year
- LILO based Pulse Secure appliance disk image decryptor☆13Updated last year
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆32Updated 3 years ago
- A C# based tool for analysing malicious OneNote documents☆117Updated 2 years ago
- Lazarus analysis tools and research report☆57Updated last year
- Repository of Yara Rules☆123Updated last month
- Linux Evidence Acquisition Framework☆118Updated last year
- Collection of Volatility2 profiles, generated against Linux kernels.☆53Updated 2 months ago
- Volatility3 Linux profiles☆59Updated last month
- Yara Rules for Modern Malware☆79Updated last year