From e5ee601e1d01e3e371c0c3b419871e36b642120b Mon Sep 17 00:00:00 2001 From: rshipp Date: Mon, 18 May 2015 10:19:02 -0600 Subject: [PATCH] Add @aim4r VolDiff --- README.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/README.md b/README.md index d7e6a03..979995d 100644 --- a/README.md +++ b/README.md @@ -364,6 +364,8 @@ the [browser malware](#browser-malware) section.* forked from Volatility in 2013. * [TotalRecall](https://github.com/sketchymoose/TotalRecall) - Script based on Volatility for automating various malware analysis tasks. +* [VolDiff](https://github.com/aim4r/VolDiff) - Run Volatility on memory + images before and after malware execution, and report changes. * [Volatility](https://github.com/volatilityfoundation/volatility) - Advanced memory forensics framework. * [WinDbg](https://msdn.microsoft.com/en-us/windows/hardware/hh852365) - Live