muninn
Memory analysis helper
A tool to assist in memory forensics analysis on Windows systems by automating the process of extracting and exporting relevant data from memory images.
A short and small memory forensics helper.
52 stars
11 watching
9 forks
Language: Python
last commit: almost 9 years agoLinked from 1 awesome list
memory-forensicspythonvolatility
Related projects:
| Repository | Description | Stars |
|---|---|---|
| Automated tool for forensic analysis of Windows memory dumps | 555 | |
| A memory analysis toolkit for macOS developed in Python | 166 | |
| A tool to detect and analyze malicious code in process memory by executing Python scripts on YARA matches | 12 | |
| A web-based tool for analyzing memory dumps using the Volatility framework. | 381 | |
| Analyzes and validates physical memory from various systems to extract process information and hypervisor details | 281 | |
| Automates memory analysis of malware samples and memory dumps by extracting binaries, injections, strings, and analyzing code using heuristics and YARA/Clam AV scanners. | 264 | |
| A tool for processing Windows memory images to extract relevant information | 260 | |
| A tool to track and analyze memory corruption in C programs | 253 | |
| A tool for designing and analyzing digital filters with a graphical user interface. | 658 | |
| A Linux kernel module designed to help analyze volatile memory without the limitations of traditional memory dumping tools. | 115 | |
| Analyzes and processes NTFS file system data to extract timeline information and run YARA rules for malware detection. | 12 | |
| A forensic tool for analyzing NTFS volumes and decrypting encrypted files | 485 | |
| A tool for analyzing memory on Windows systems to detect malware IOCs | 707 | |
| Analyze Windows machine RAM artifacts using Winpmem and Volatility | 218 | |
| A .NET-based port of ReClass with additional features and support for various data types and memory analysis tools. | 1,850 |