JPCERTCC / MalConfScan

Volatility plugin for extracts configuration data of known malware
Other
485 stars 67 forks source link

Volatility 3 Support #9

Open malware-kitten opened 5 years ago

malware-kitten commented 5 years ago

While it's still in pre-release, it looks like the volatility team is gearing up for the release of version 3. https://volatility-labs.blogspot.com/ https://github.com/volatilityfoundation/volatility3

Are there plans to update this plugin to support Volatility 3 when it's released?

shu-tom commented 5 years ago

Yes. This is future work.

evandrix commented 4 years ago

looking forward to this, volatility 2.6.1 doesn't seem to support Windows 10 v2004 build 19041 :/

doomedraven commented 3 years ago

i have made few public examples if that helps you to migrate https://github.com/doomedraven/Tools/blob/master/Vol3/zbotscan.py https://github.com/doomedraven/Tools/blob/master/Vol3/pony.py#L189