Quantcast
Channel: BOT24
Viewing all articles
Browse latest Browse all 8064

Volatility Plugins

$
0
0
Plugins

uninstallinfo.py - Dumps HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall from memory

prefetch.py - scan memory for prefecth files and dump filename and timestamps

idxparser.py - scan memory Java IDX files and extract details

and more here..........https://github.com/superponible/volatility-plugins

Viewing all articles
Browse latest Browse all 8064

Trending Articles