impfuzzy
volatility3
Our great sponsors
impfuzzy | volatility3 | |
---|---|---|
1 | 7 | |
82 | 2,207 | |
- | 6.6% | |
0.0 | 9.4 | |
over 1 year ago | 9 days ago | |
Python | Python | |
GNU General Public License v3.0 only | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
impfuzzy
-
Where do you get old versions of Visual C++?
I want to use this plugin so I try to install its required module, which fails (whether using 'pip' or 'setup.py') for the same reason as distorm3. The installation of ssdeep as required by pyimpfuzzy also fails, but for a different reason that I haven't started looking into yet.
volatility3
- Volatility 3 2.4.1 - New Linux and Windows plugins
-
Using volatility 3 to retrieve clipboard contents
The plugin has not been ported to vol3 yet and there's seem to be a feature request regarding this: https://github.com/volatilityfoundation/volatility3/issues/710
- Wie kompiliert man vollständig den Source-Code auf einem Debian Linux?
-
PChunter equivalent on Linux?
volatility - Version 2 Version 3
- I found a box of intact harddrives laying in an abandoned schools playground. Did i strike gold or witness a crime? Or is this just trash?
-
Unexpected log2timeline behavior/questions
I figured out the first part, combining the memory body file with the plaso dump. Log2timeline expects all (or at least most) columns to be in place. The details are in an issue I opened in volatility3: https://github.com/volatilityfoundation/volatility3/issues/542
-
Cannot process recent Windows 10 memory dumps in Volatility
As has been said, use volatility 3.
What are some alternatives?
aurora - Malware similarity platform with modularity in mind.
volatility - An advanced memory forensics framework
pyDenStream - Implementation of the DenStream algorithm in Python.
Loki - Loki - Simple IOC and YARA Scanner
Python-Rootkit - Python Remote Administration Tool (RAT) to gain meterpreter session
Autopsy-Plugins - Autopsy Python Plugins
wifiphisher - The Rogue Access Point Framework
fatcat - FAT filesystems explore, extract, repair, and forensic tool
hosts - 🔒 Consolidating and extending hosts files from several well-curated sources. Optionally pick extensions for porn, social media, and other categories.
gosecretsdump - Dump ntds.dit really fast
MalConfScan - Volatility plugin for extracts configuration data of known malware