Hello MHL,
thanks for the quick reply. I would also use the slower version of the
apihooks plugin in 2.1a for the first approach... ;-)
Do you have some kind of beta available for testing?
Regards
Mic
-----Ursprüngliche Nachricht-----
Von: Michael Hale Ligh [mailto:michael.hale@gmail.com]
Gesendet: Mittwoch, 13. Juni 2012 16:28
An: Michael Felber
Cc: vol-users(a)volatilityfoundation.org
Betreff: Re: [Vol-users] missing apihooks
Right now you have to use the apihooks plugin from malware.py with
volatility 2.0.
Before the 2.1 release, apihooks will make it into core. Its actually
written, we're just working on some speed improvements before committing it.
MHL
On Wed, Jun 13, 2012 at 10:14 AM, Michael Felber <MichaelFelber(a)gmx.net>
wrote:
Hi all,
I did not use apihooks for a while. Now I am playing around with that
flame sample from Mike Lambert (THX a lot!!) and miss that plugin.
It may have gone with the integration of the malware plugin directly
to the Volatility core.
Is it still available somewhere for 2.1a or do I have to reuse an
older version?
Regards
Michael
_______________________________________________
Vol-users mailing list
Vol-users(a)volatilityfoundation.org
http://lists.volatilityfoundation.org/mailman/listinfo/vol-users