Yes, you can.
A Volatility plugin can be found here. The plugin allows to use Volatility commands on any transition of a REVEN trace.
In the Uroburos malware study, Volatility is used to dump binaries that were dropped in memory by the malware.
Yes, you can.
A Volatility plugin can be found here. The plugin allows to use Volatility commands on any transition of a REVEN trace.
In the Uroburos malware study, Volatility is used to dump binaries that were dropped in memory by the malware.
Comments
0 comments
Please sign in to leave a comment.