Windows symbol tables for Volatility 3

Overview

Windows Symbol Tables for Volatility 3

This repository is the Windows Symbol Table storage for Volatility 3.

How to Use

$ git clone https://github.com/JPCERTCC/Windows-Symbol-Tables.git
$ cp -R symbols/windows volatility3/volatility3/symbols

Reference

Symbol Table List

ntoskrnl version GUID-AGE OS
10.0.17763.379 8b11040a5928757b11390ac78f6b69251 Win10
10.0.17763.437 8cfb49428dc86a330ce257778e0c2f931 Win10
10.0.18326.535 616a94e33a4827b451b0e19c14c037921 Win10
10.0.18326.778 be3e0ff92c7a93433d4a950a037ef6561 Win10
10.0.18362.295 11bc9a513f1140ca359ecdf50f0122c11 Win10
10.0.18362.30 35a038b1f6e2e8caf642111e6ec66f571 Win10
10.0.18362.356 ce7ffb00c20b87500211456b3e905c471 Win10
10.0.18362.418 e0093f3aef15d58168b753c9488a40431 Win10
10.0.18362.476 90f5e1c8bbe1fe1fb8a714305ee06f361 Win10
10.0.18362.592 f3a4f64b6f639a058ad6f33155aca4f61 Win10
10.0.18362.657 84924f606dcfa4bef5c0d97c2668cf181 Win10
10.0.18362.720 2b5d086a9591c3a54729282e8f43bd821 Win10
10.0.18362.836 dca4ad4beeb4746d48f84c0125019e431 Win10
10.0.19041.1052 fc57f1c841c2c3f793d57ac134dc0efa1 Win10
10.0.19041.1110 f526dbb121425697cbbf4fb22502519f1 Win10
10.0.19041.1165 47114209a62f3b9930f6b8998dfd4a991 Win10
10.0.19041.329 bbed7c2955fbe4522aaa23f4b8677ad91 Win10
10.0.19041.388 110a2d89ed7a438feffc84f9cfdd6c001 Win10
10.0.19041.450 1c9875f76c8f0fbf3eb9a9d7c1c274061 Win10
10.0.19041.508 641f55c592201dcc4f59facc72ea54da1 Win10
10.0.19041.572 b16053724b46515388fdea9d0470d02e1 Win10
10.0.19041.630 15b12c74f0e177581b6b27dd4c5022c21 Win10
10.0.19041.685 4ef9a5375f61fe84b7eaef54bf025c0e1 Win10
10.0.19041.746 3d4400784115718818efc898413f36c41 Win10
10.0.19041.804 5278aff86c341677d7d7835c85b7b8441 Win10
10.0.19041.867 3fcc539ff307dd2d9c509206d352b9aa1 Win10
10.0.19041.928 769c521e4833ecf72e21f02bf33691a51 Win10
10.0.19041.985 992a9a48f30ec2c58b01a5934dce2d9c1 Win10
6.1.7601.24540 339e74133576439cbcdf7e0229da37731 Win7
6.3.9600.19913 22597d0b40394e23936f6a24c6c52d5b1 Win8.1
6.3.9600.19939 287e489f93aa4c6d94b9cd1469b7f9de1 Win8.1
6.3.9600.19962 06a508f37b81478e855a3542e272c0841 Win8.1
6.3.9600.19994 1e8593423c574a72be87ea4966e1377b1 Win8.1
6.3.9600.20012 bf4b4160c2cb414e9c4516da1e7b66091 Win8.1
6.3.9600.20040 c78ab9dbffed445096b4dcf7fdd6e5af1 Win8.1
6.3.9600.20065 4dc173cc51ec446e895dc545db61083e1 Win8.1
6.3.9600.20090 dfa4f6552dd34e03b16763d22438d8fa1 Win8.1
10.0.17763.2114 a1e1c9a90091da9805d0eba0470bec851 windows-2019
10.0.14393.4583 517e128f7b7c4ea79491de6b9b9ce1901 windows-2016
Owner
JPCERT Coordination Center
JPCERT/CC's official repositories maintained by staff and guests
JPCERT Coordination Center
Strong Typing in Python with Decorators

typy Strong Typing in Python with Decorators Description This light-weight library provides decorators that can be used to implement strongly-typed be

Ekin 0 Feb 06, 2022
Clackety Keyboards Powered by Python

KMK: Clackety Keyboards Powered by Python KMK is a feature-rich and beginner-friendly firmware for computer keyboards written and configured in Circui

KMK Firmware 780 Jan 03, 2023
Transform a Google Drive server into a VFX pipeline ready server

Google Drive VFX Server VFX Pipeline About The Project Quick tutorial to setup a Google Drive Server for multiple machines access, and VFX Pipeline on

Valentin Beaumont 17 Jun 27, 2022
Sodium is a general purpose programming language which is instruction-oriented (a new programming concept that we are developing and devising) [Still developing...]

Sodium Programming Language Sodium is a general purpose programming language which is instruction-oriented (a new programming concept that we are deve

Instruction Oriented Programming 22 Jan 11, 2022
Myrepo - A tool to create your own Arch Linux repository

myrepo A (experimental) tool to create your own Arch Linux repository Example We

Anton Hvornum 5 Feb 19, 2022
An Advent calendar of small programming puzzles for a variety of skill sets and skill levels.

Advent of Code 2021 The Advent of Code is an Advent calendar of small programming puzzles for a variety of skill sets and skill levels that can be sol

Evan Cope 0 Feb 13, 2022
Repository voor verhalen over de woningbouw-opgave in Nederland

Analyse plancapaciteit woningen In deze notebook zetten we cijfers op een rij om de woningbouwplannen van Nederlandse gemeenten in kaart te kunnen bre

Follow the Money 10 Jun 30, 2022
fast_bss_eval is a fast implementation of the bss_eval metrics for the evaluation of blind source separation.

fast_bss_eval Do you have a zillion BSS audio files to process and it is taking days ? Is your simulation never ending ? Fear no more! fast_bss_eval i

Robin Scheibler 99 Dec 13, 2022
Data Science Course at Dept. of Computer Engineering, Chula 2022

2110446 Data Science Course at Chula 2022 Short links for exercises: Week1: Intro to Numpy, Pandas Numpy: https://colab.research.google.com/github/kao

Kao Panboonyuen 17 Nov 27, 2022
Ahmed Hossam 12 Oct 17, 2022
This application demonstrates IoTVAS device discovery and security assessment API integration with the Rapid7 InsightVM.

Introduction This repository hosts a sample application that demonstrates integrating Firmalyzer's IoTVAS API with the Rapid7 InsightVM platform. This

Firmalyzer BV 4 Nov 09, 2022
MODeflattener deobfuscates control flow flattened functions obfuscated by OLLVM using Miasm.

MODeflattener deobfuscates control flow flattened functions obfuscated by OLLVM using Miasm.

Suraj Malhotra 138 Jan 07, 2023
Albert launcher extension for rolling dice.

dice-roll-albert-ext Extension for rolling dice in Albert launcher Installation Locate the modules directory in the Python extension data directory. T

Jonah Lawrence 1 Nov 18, 2021
TeamFleming is a multicultural group of 20 young bioinformatics enthusiasts participating in the 2021 HackBio Virtual Summer Internship

💻 Welcome to Team Fleming's Repo! #TeamFleming is a multicultural group of 20 young bioinformatics enthusiasts participating in the 2021 HackBio Virt

3 Aug 08, 2021
BlackMamba is a multi client C2/post exploitation framework

BlackMamba is a multi client C2/post exploitation framework with some spyware features. Powered by Python 3.8.6 and QT Framework.

Gustavo 873 Dec 29, 2022
A basic layout of atm working of my local database

Software for working Banking service 😄 This project was developed for Banking service. mysql server is required To have mysql server on your system u

satya 1 Oct 21, 2021
ABT aka Animated Background Tool is a windows only python program that makes it that you can have animated background.

ABT ABT aka Animated Background Tool is a windows only python program that makes it that you can have animated background. 𝓡𝓔𝓐𝓓 𝓜𝓔, An Important

Yeeterboi4 2 Jul 16, 2022
Py4J enables Python programs to dynamically access arbitrary Java objects

Py4J Py4J enables Python programs running in a Python interpreter to dynamically access Java objects in a Java Virtual Machine. Methods are called as

Barthelemy Dagenais 1k Jan 02, 2023
Use Fofa、shodan、zoomeye、360quake to collect information(e.g:domain,IP,CMS,OS)同时调用Fofa、shodan、zoomeye、360quake四个网络空间测绘API完成红队信息收集

Cyberspace Map API English/中文 Development fofaAPI Completed zoomeyeAPI shodanAPI regular 360 quakeAPI Completed Difficulty APIs uses different inputs

Xc1Ym 61 Oct 08, 2022
An application to see if your Ethereum staking validator(s) are members of the current or next post-Altair sync committees.

eth_sync_committee.py Since the Altair upgrade, 512 validators are randomly chosen every 256 epochs (~27 hours) to form a sync committee. Validators i

4 Oct 27, 2022