Skip to content

ulisesrc/yavol

Repository files navigation

YaVol - GUI for volatility framework and yara

This is just another GUI for volatility and yara which could make someone's life easier. It is inteded for Incident responders for quick examination of a memory image. Results are stored in sqlite db for reuse.


Screenshots:

Pslist module output

yara scanner output

1. Installation

Clone repo

  • git clone https://Ft44k@bitbucket.org/Ft44k/yavol.git
  • default forder for yara sigs is /yara_rules

1.1 Prerequisites

you need to have installed Python (2.7), PyQt4, and sqlite3


2. Licensing

GPLv3 license, see LICENSE.txt for details.


3. Acknowledgements and Thanks

I would like to thank to my wife for tolerance an patience for my little projects. Also my thanks goes to all people who helped me to overcome the learning curve. I don't know them, but google found them on StackExchange :) Hope I will find some other people here who would like to contribute to make this small utility even better.

About

No description, website, or topics provided.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published