Windows symbol tables for Volatility 3
☆98Jul 11, 2024Updated 2 years ago
Alternatives and similar repositories for Windows-Symbol-Tables
Users that are interested in Windows-Symbol-Tables are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Generate Volatility3 profiles from BTF.☆35Dec 21, 2024Updated last year
- Collection of Volatility2 profiles, generated against Linux kernels.☆56Oct 30, 2025Updated 8 months ago
- My Linux profiles built for Volatility 2/3☆11Oct 11, 2025Updated 9 months ago
- ETW forensic tool for Volatility3 plugin☆17Nov 15, 2024Updated last year
- Collection of Linux and macOS Volatility3 Intermediate Symbol Files (ISF), suitable for memory analysis 🔍☆313Jun 24, 2026Updated 3 weeks ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Just Another broken Registry Parser (JARP)☆16May 23, 2024Updated 2 years ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆22Sep 30, 2022Updated 3 years ago
- A modified fork of Be.HexEditor for use in debug tools☆15Jan 5, 2022Updated 4 years ago
- ☆26Jul 23, 2024Updated last year
- 使用Docker一键制作vol3取证需要的的SymbolTables☆12Aug 31, 2025Updated 10 months ago
- Memory mapping profiles for forensic analysis using volatility 2☆53Sep 23, 2022Updated 3 years ago
- Defeating Anti-Debugging Techniques for Malware Analysis☆12Oct 1, 2022Updated 3 years ago
- This repository contains a variety of plugins and scripts, related to the Volatility framework.☆19Feb 9, 2025Updated last year
- Google Filestream Forensic Tool☆22Mar 10, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- StickyParser - Sticky Notes Forensic. A Windows Sticky Notes Praser (snt and plum.sqlite supported). Additional Feature: SQLite Recovery …☆22Jul 18, 2023Updated 3 years ago
- ☆24Apr 22, 2025Updated last year
- MacOS forensic collector for Velociraptor. 70 artefacts covering browsers, communications, user activity, persistence, security, logs, fi…☆16May 26, 2026Updated last month
- Volatility3 plugins developed and maintained by the community☆69Mar 19, 2023Updated 3 years ago
- Rhaegal is a tool written in Python 3 used to scan Windows Event Logs for suspicious logs. Rhaegal uses custom rule format to detect sus…☆43Sep 21, 2023Updated 2 years ago
- Volumetric Development☆11Mar 19, 2024Updated 2 years ago
- ☆93Jul 30, 2025Updated 11 months ago
- Volatility, on Docker 🐳☆41Nov 20, 2025Updated 8 months ago
- A curated list of ressources for Volatility 2 & 3☆14Mar 17, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.☆341Dec 3, 2025Updated 7 months ago
- Volatility Symbol Generator for Linux Kernels☆37Nov 15, 2023Updated 2 years ago
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 5 years ago
- WLEAPP is an open source project that aims to parse Windows OS artifacts for the purpose of triage analysis.☆35Nov 16, 2023Updated 2 years ago
- ☆23Mar 12, 2025Updated last year
- ☆62Oct 12, 2024Updated last year
- Forensic cheatsheets for use with cheat☆15Dec 2, 2021Updated 4 years ago
- Memory mapping profiles for forensic analysis using volatility 3☆32Apr 24, 2022Updated 4 years ago
- ☆33Oct 25, 2021Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Evtx Log (xml) Browser☆60Mar 12, 2023Updated 3 years ago
- A powershell parser for https://github.com/ufrisk/MemProcFS☆45May 12, 2021Updated 5 years ago
- Search Index Database Reporter☆139Oct 28, 2025Updated 8 months ago
- Linux Memory Forensics Framework That Transforms Memory Dumps Into a Navigable Filesystem☆190Jul 4, 2026Updated 2 weeks ago
- JPCERT/CC public YARA rules repository☆111Mar 9, 2026Updated 4 months ago
- http://moaistory.blogspot.com/2018/10/winsearchdbanalyzer.html☆132Jul 20, 2024Updated 2 years ago
- macOS Artifact Intelligence Tool☆13Apr 30, 2019Updated 7 years ago