Windows symbol tables for Volatility 3

Overview

Windows Symbol Tables for Volatility 3

This repository is the Windows Symbol Table storage for Volatility 3.

How to Use

$ git clone https://github.com/JPCERTCC/Windows-Symbol-Tables.git
$ cp -R symbols/windows volatility3/volatility3/symbols

Reference

Symbol Table List

ntoskrnl version GUID-AGE OS
10.0.17763.379 8b11040a5928757b11390ac78f6b69251 Win10
10.0.17763.437 8cfb49428dc86a330ce257778e0c2f931 Win10
10.0.18326.535 616a94e33a4827b451b0e19c14c037921 Win10
10.0.18326.778 be3e0ff92c7a93433d4a950a037ef6561 Win10
10.0.18362.295 11bc9a513f1140ca359ecdf50f0122c11 Win10
10.0.18362.30 35a038b1f6e2e8caf642111e6ec66f571 Win10
10.0.18362.356 ce7ffb00c20b87500211456b3e905c471 Win10
10.0.18362.418 e0093f3aef15d58168b753c9488a40431 Win10
10.0.18362.476 90f5e1c8bbe1fe1fb8a714305ee06f361 Win10
10.0.18362.592 f3a4f64b6f639a058ad6f33155aca4f61 Win10
10.0.18362.657 84924f606dcfa4bef5c0d97c2668cf181 Win10
10.0.18362.720 2b5d086a9591c3a54729282e8f43bd821 Win10
10.0.18362.836 dca4ad4beeb4746d48f84c0125019e431 Win10
10.0.19041.1052 fc57f1c841c2c3f793d57ac134dc0efa1 Win10
10.0.19041.1110 f526dbb121425697cbbf4fb22502519f1 Win10
10.0.19041.1165 47114209a62f3b9930f6b8998dfd4a991 Win10
10.0.19041.329 bbed7c2955fbe4522aaa23f4b8677ad91 Win10
10.0.19041.388 110a2d89ed7a438feffc84f9cfdd6c001 Win10
10.0.19041.450 1c9875f76c8f0fbf3eb9a9d7c1c274061 Win10
10.0.19041.508 641f55c592201dcc4f59facc72ea54da1 Win10
10.0.19041.572 b16053724b46515388fdea9d0470d02e1 Win10
10.0.19041.630 15b12c74f0e177581b6b27dd4c5022c21 Win10
10.0.19041.685 4ef9a5375f61fe84b7eaef54bf025c0e1 Win10
10.0.19041.746 3d4400784115718818efc898413f36c41 Win10
10.0.19041.804 5278aff86c341677d7d7835c85b7b8441 Win10
10.0.19041.867 3fcc539ff307dd2d9c509206d352b9aa1 Win10
10.0.19041.928 769c521e4833ecf72e21f02bf33691a51 Win10
10.0.19041.985 992a9a48f30ec2c58b01a5934dce2d9c1 Win10
6.1.7601.24540 339e74133576439cbcdf7e0229da37731 Win7
6.3.9600.19913 22597d0b40394e23936f6a24c6c52d5b1 Win8.1
6.3.9600.19939 287e489f93aa4c6d94b9cd1469b7f9de1 Win8.1
6.3.9600.19962 06a508f37b81478e855a3542e272c0841 Win8.1
6.3.9600.19994 1e8593423c574a72be87ea4966e1377b1 Win8.1
6.3.9600.20012 bf4b4160c2cb414e9c4516da1e7b66091 Win8.1
6.3.9600.20040 c78ab9dbffed445096b4dcf7fdd6e5af1 Win8.1
6.3.9600.20065 4dc173cc51ec446e895dc545db61083e1 Win8.1
6.3.9600.20090 dfa4f6552dd34e03b16763d22438d8fa1 Win8.1
10.0.17763.2114 a1e1c9a90091da9805d0eba0470bec851 windows-2019
10.0.14393.4583 517e128f7b7c4ea79491de6b9b9ce1901 windows-2016
Owner
JPCERT Coordination Center
JPCERT/CC's official repositories maintained by staff and guests
JPCERT Coordination Center
Goddard A collection of small, simple strategies for Freqtrade

Goddard A collection of small, simple strategies for Freqtrade. Simply add the strategy you choose in your strategies folder and run. ⚠️ General Crypt

Shane Jones 118 Dec 14, 2022
Python Monopoly Simulator

Monopoly simulator Original creator: Games Computer Play YouTube: https://www.youtube.com/channel/UCTrp88f-QJ1SqKX8o5IDhWQ Config file (optional) conf

Games Computers Play 37 Jan 03, 2023
This is a Python 3.10 port of mock, a library for manipulating human-readable message strings.

This is a Python 3.10 port of mock, a library for manipulating human-readable message strings.

Alexander Bartolomey 1 Dec 31, 2021
BasicVSR++ function for VapourSynth

BasicVSR++ BasicVSR++: Improving Video Super-Resolution with Enhanced Propagation and Alignment Ported from https://github.com/open-mmlab/mmediting De

Holy Wu 34 Nov 28, 2022
Быстрый локальный старт

Быстрый локальный старт

Anton Ogorodnikov 1 Sep 28, 2021
because rico hates uuid's

terrible-uuid-lambda because rico hates uuid's sub 200ms response times! Try it out here: https://api.mathisvaneetvelde.com/uuid https://api.mathisvan

Mathis Van Eetvelde 2 Feb 15, 2022
Results of Robot Framework 5.0 survey

Robot Framework 5.0 survey results We had a survey asking what features Robot Framework community members would like to see in the forthcoming Robot F

Pekka Klärck 2 Oct 16, 2021
MeepoBenchmark - This project aims at providing the scripts, logs, and analytic results for Meepo Blockchain

MeepoBenchmark - This project aims at providing the scripts, logs, and analytic results for Meepo Blockchain

Peilin Zheng 3 Aug 16, 2022
Files for QMC Workshop 2021

QMC Workshop 2021 This repository contains the presented slides and example files for the Quantum Monte Carlo (QMC) Workshop 5 October - 23 November,

QMCPACK 39 Nov 04, 2022
An application to see if your Ethereum staking validator(s) are members of the current or next post-Altair sync committees.

eth_sync_committee.py Since the Altair upgrade, 512 validators are randomly chosen every 256 epochs (~27 hours) to form a sync committee. Validators i

4 Oct 27, 2022
Functions to analyze Cell-ID single-cell cytometry data using python language.

PyCellID (building...) Functions to analyze Cell-ID single-cell cytometry data using python language. Dependecies for this project. attrs(=21.1.0) fo

0 Dec 22, 2021
全局指针统一处理嵌套与非嵌套NER

GlobalPointer 全局指针统一处理嵌套与非嵌套NER。 介绍 博客:https://kexue.fm/archives/8373 效果 人民日报NER 验证集F1 测试集F1 训练速度 预测速度 CRF 96.39% 95.46% 1x 1x GlobalPointer (w/o RoPE

苏剑林(Jianlin Su) 183 Jan 06, 2023
Prop-based map editor for the Apex Legends mod, R5Reloaded

R5R Map Editor A tool to build maps out of props in the Apex Legends mod, R5Reloaded Instuctions Install R5R Download this program Get the prop spawne

7 Dec 16, 2022
The Blinker Herald includes helpers to easily emit signals using the excellent blinker library.

Blinker Herald The Blinker Herald includes helpers to easily emit signals using the excelent blinker library. Decorate a function or method with @blin

SatelliteQE 7 Nov 03, 2022
CMPE 204 Modelling Project

CISC/CMPE 204 Modelling Project Welcome to the major project for CISC/CMPE 204 (Fall 2021)! Change this README.md file to summarize your project (few

totallyrin 2 May 16, 2022
Convex Optimisation MVA course - Assignment

Convex Optimisation MVA course - Assignment This repository contains the coding files of the third assignment in the MVA Convex Optimisation course. U

1 Nov 27, 2021
Runtime inspection utilities for Python typing module

Typing Inspect The typing_inspect module defines experimental API for runtime inspection of types defined in the Python standard typing module. Works

Ivan Levkivskyi 284 Dec 29, 2022
Margin Calculator - Personally tailored investment tool

Margin Calculator - Personally tailored investment tool

1 Jul 19, 2022
Buggy script to play with GPOs

GPOwned /!\ This is a buggy PoC I made just to play with GPOs in my lab. Don't use it in production! /!\ The script uses impacket and ldap3 to update

45 Dec 15, 2022
PyMedPhys is an open-source Medical Physics python library

PyMedPhys is an open-source Medical Physics python library built by an open community that values and prioritises code sharing, review, improvement, and learning from each other. I

PyMedPhys 238 Dec 27, 2022