首页| JavaScript| HTML/CSS| Matlab| PHP| Python| Java| C/C++/VC++| C#| ASP| 其他|
购买积分 购买会员 激活码充值

您现在的位置是:虫虫源码 > Java > volatilitux

volatilitux

  • 资源大小:31.56 kB
  • 上传时间:2021-06-30
  • 下载次数:0次
  • 浏览次数:0次
  • 资源积分:1积分
  • 标      签:

资 源 简 介

Volatilitux is pretty much the equivalent of Volatility for Linux systems. Volatilitux supports the following architectures for physical memory dumps: * ARM * x86 * x86 with PAE enabled It supports the following commands: * pslist: print the list of all process * memmap: print the memory map of a process * memdmp: dump the addressable memory of a process * filelist: print the list of all open files for a given process * filedmp: dump an open file It can easily be extended with new architectures, commands and classes. Volatilitux automatically detects kernel structure offsets within the memory dump, and can export its current configuration into a XML file. If it is unable to successfuly detect offsets, you can use the provided Loadable Kernel Module to generate a configuration file. Volatilitux has been tested with the following machines: * Android 2.1 * Fedora 5 and 8 * Debian 5 * CentOS 5 * Ubuntu 10.10 with and without PAE (some commands may

文 件 列 表

volatilitux
AUTHORS.txt
CHANGELOG.txt
commands
COPYING.txt
core
example.py
init.py
lkm
README.txt
TODO.txt
volatilitux.py
__init__.py
VIP VIP
0.213405s