Windows symbol tables for Volatility 3

Overview

Windows Symbol Tables for Volatility 3

This repository is the Windows Symbol Table storage for Volatility 3.

How to Use

$ git clone https://github.com/JPCERTCC/Windows-Symbol-Tables.git
$ cp -R symbols/windows volatility3/volatility3/symbols

Reference

Symbol Table List

ntoskrnl version GUID-AGE OS
10.0.17763.379 8b11040a5928757b11390ac78f6b69251 Win10
10.0.17763.437 8cfb49428dc86a330ce257778e0c2f931 Win10
10.0.18326.535 616a94e33a4827b451b0e19c14c037921 Win10
10.0.18326.778 be3e0ff92c7a93433d4a950a037ef6561 Win10
10.0.18362.295 11bc9a513f1140ca359ecdf50f0122c11 Win10
10.0.18362.30 35a038b1f6e2e8caf642111e6ec66f571 Win10
10.0.18362.356 ce7ffb00c20b87500211456b3e905c471 Win10
10.0.18362.418 e0093f3aef15d58168b753c9488a40431 Win10
10.0.18362.476 90f5e1c8bbe1fe1fb8a714305ee06f361 Win10
10.0.18362.592 f3a4f64b6f639a058ad6f33155aca4f61 Win10
10.0.18362.657 84924f606dcfa4bef5c0d97c2668cf181 Win10
10.0.18362.720 2b5d086a9591c3a54729282e8f43bd821 Win10
10.0.18362.836 dca4ad4beeb4746d48f84c0125019e431 Win10
10.0.19041.1052 fc57f1c841c2c3f793d57ac134dc0efa1 Win10
10.0.19041.1110 f526dbb121425697cbbf4fb22502519f1 Win10
10.0.19041.1165 47114209a62f3b9930f6b8998dfd4a991 Win10
10.0.19041.329 bbed7c2955fbe4522aaa23f4b8677ad91 Win10
10.0.19041.388 110a2d89ed7a438feffc84f9cfdd6c001 Win10
10.0.19041.450 1c9875f76c8f0fbf3eb9a9d7c1c274061 Win10
10.0.19041.508 641f55c592201dcc4f59facc72ea54da1 Win10
10.0.19041.572 b16053724b46515388fdea9d0470d02e1 Win10
10.0.19041.630 15b12c74f0e177581b6b27dd4c5022c21 Win10
10.0.19041.685 4ef9a5375f61fe84b7eaef54bf025c0e1 Win10
10.0.19041.746 3d4400784115718818efc898413f36c41 Win10
10.0.19041.804 5278aff86c341677d7d7835c85b7b8441 Win10
10.0.19041.867 3fcc539ff307dd2d9c509206d352b9aa1 Win10
10.0.19041.928 769c521e4833ecf72e21f02bf33691a51 Win10
10.0.19041.985 992a9a48f30ec2c58b01a5934dce2d9c1 Win10
6.1.7601.24540 339e74133576439cbcdf7e0229da37731 Win7
6.3.9600.19913 22597d0b40394e23936f6a24c6c52d5b1 Win8.1
6.3.9600.19939 287e489f93aa4c6d94b9cd1469b7f9de1 Win8.1
6.3.9600.19962 06a508f37b81478e855a3542e272c0841 Win8.1
6.3.9600.19994 1e8593423c574a72be87ea4966e1377b1 Win8.1
6.3.9600.20012 bf4b4160c2cb414e9c4516da1e7b66091 Win8.1
6.3.9600.20040 c78ab9dbffed445096b4dcf7fdd6e5af1 Win8.1
6.3.9600.20065 4dc173cc51ec446e895dc545db61083e1 Win8.1
6.3.9600.20090 dfa4f6552dd34e03b16763d22438d8fa1 Win8.1
10.0.17763.2114 a1e1c9a90091da9805d0eba0470bec851 windows-2019
10.0.14393.4583 517e128f7b7c4ea79491de6b9b9ce1901 windows-2016
Owner
JPCERT Coordination Center
JPCERT/CC's official repositories maintained by staff and guests
JPCERT Coordination Center
Python with the scientific stack, compiled to WebAssembly.

Pyodide may be used in any context where you want to run Python inside a web browser.

9.5k Jan 09, 2023
String Spy is a project aimed at improving MacOS defenses.

String Spy is a project aimed at improving MacOS defenses. It allows users to constantly monitor all running processes for user-defined strings, and if it detects a process with such a string it will

10 Dec 13, 2022
Repository for 2021 Computer Vision Class @ Chulalongkorn University

2110443 - Computer Vision (2021/2) Computer Vision @ Chulalongkorn University Anaconda Download Link https://www.anaconda.com/download/ Miniconda and

Chula PIC Lab 5 Jul 19, 2022
Coursework project for DIP class. The goal is to use vision to guide the Dashgo robot through two traffic cones in bright color.

Coursework project for DIP class. The goal is to use vision to guide the Dashgo robot through two traffic cones in bright color.

Yueqian Liu 3 Oct 24, 2022
A dead-simple service that notifies you when something goes down.

Totmannschalter Totmannschalter (German for dead man's switch) is a simple service that notifies you when it has not received any message from a servi

1 Dec 20, 2021
My solutions to Advent of Code 2021 (written in Python)

Advent of Code 2021 This repository contains my solutions for the 2021 edition of Advent of Code. Please do not expect perfectly polished solutions, m

Nils 2 May 29, 2022
NYCU(NCTU)-差勤-助教

NCTU-TA-fill 填寫 差勤-助教時數 有沒有覺得在差勤系統填助教時數有點浪費生命? 今天有個懶鬼浪費好多時間幫大家寫了code 只要填好的必要的資料,就可以讓電腦自動幫你完成差勤助教的時數填寫喔! https://pt-attendance.nctu.edu.tw/verify/userL

14 Dec 21, 2021
Data repo for one-among.us

Our Data Data repo for one-among.us File Structure Directory /people/userid/: Data for a specific person info.json5: Profile information page.md: Pr

Hykilpikonna 55 Dec 30, 2022
Code and data for learning to search in local branching

Code and data for learning to search in local branching

Defeng Liu 7 Dec 06, 2022
Ultimate Microsoft Edge Uninstaller!

Ultimate Microsoft Edge Uninstaller

1 Feb 08, 2022
Your self-hosted bookmark archive. Free and open source.

Your self-hosted bookmark archive. Free and open source. Contents About LinkAce Support Setup Contribution About LinkAce LinkAce is a self-hosted arch

Kevin Woblick 1.7k Jan 03, 2023
Mechanized literally means automation.

Mechanized literally means automation. And this branch which you are now observing is automated by the python script. This python project actually automates my workflow related to Git & Github.

Shreejan Dolai 4 Nov 11, 2022
Handwrite - Type in your Handwriting!

Handwrite - Type in your Handwriting! Ever had those long-winded assignments, that the teacher always wants handwritten?

coded 7 Dec 06, 2022
Python Classes Without Boilerplate

attrs is the Python package that will bring back the joy of writing classes by relieving you from the drudgery of implementing object protocols (aka d

The attrs Cabal 4.6k Jan 02, 2023
calculadora financiera hecha en python

Calculadora financiera Calculadora de factores financieros basicos, puede calcular tanto factores como expresiones algebraicas en funcion de dichos fa

crudo 5 Nov 10, 2021
El Niño - Southern Oscillation analysis compared to minimum flow rates of rivers in northeast Brazil

ENSO (El Niño - Southern Oscillation) analysis in northeast Brazil É comprovada a influência dos fenômenos El Niño e La Niña nas secas no nordesde bra

Weyder Freire 1 Jan 13, 2022
This is a library for simulate probability theory problems specialy conditional probability

This is a library for simulate probability theory problems specialy conditional probability. It is also useful to create custom single or joint distribution with specific PMF or PDF to get probabilit

Mohamadreza Kariminejad 6 Mar 30, 2022
Library to emulate the Sneakers movie effect

py-sneakers Port to python of the libnms C library To recreate the famous data decryption effect shown in the 1992 film Sneakers. Install pip install

Nicolas Rebagliati 11 Aug 27, 2021
Python AVL Protocols Server for Codec 8 and Codec 8 Extended Protocols

pycodecs Package provides python AVL Protocols Server for Codec 8 and Codec 8 Extended Protocols This package will parse the AVL Data and log it in hu

Vardharajulu K N 2 Jun 21, 2022
This application demonstrates IoTVAS device discovery and security assessment API integration with the Rapid7 InsightVM.

Introduction This repository hosts a sample application that demonstrates integrating Firmalyzer's IoTVAS API with the Rapid7 InsightVM platform. This

Firmalyzer BV 4 Nov 09, 2022