RME-DisCo Research Group's repositories
windows-memory-extractor
Tool to extract contents from the memory of Windows systems.
pinVMShield
A pintool for protecting a sandbox application of common anti-virtualmachine and anti-sandbox detection techniques
processfuzzyhash
Volatility plugin to calculate and compare Windows processes fuzzy hashes
APOTHEOSIS
A specialized implementation of the Hierarchical Navigable Small World (HNSW) data structure adapted for efficient nearest neighbor lookup of approximate matching hashes
instant-messaging-artifact-finder
Tool to find memory artifacts present in instant messaging applications.
MOSTO-Modbus-simulator
MOSTO is a SCADA network device simulator based on ModbusTCP communications. Based on Python3
residentmem
Volatility plugin to obtain the number of the resident memory pages per module (exe or dll) and per driver from a Windows memory dump.
similarity-unrelocated-module
Volatility plugin to yield and compare similarity digest of modules on execution.
asistencia-aula-EINA-telegram-bot
Bot de Telegram para facilitar la entrada de datos de asistencia presencial en aulas de la EINA
dumd-mixer
Dump Module Mixer (dumd-mixer) is a Python script to generate a module from the same module extracted from a collection of memory dumps.
Secure_Socket
C++ Sockets implementing hybrid encryption
sum-plugin
Volatility 2.6 plugin to undo modifications done by relocation process on modules