VolDlllist

Volatility script for command ldrmodules

javascript · Volatility (Deprecated)

Details

IDVolDlllist
Languagejavascript
From Version5.0.0
Tagsmemory forensics volatility server

README

The Volatility script for command ldrmodules.

Script Data


Name Description
Script Type javascript
Tags memory, forensics, volatility, server

Inputs


Argument Name Description
memdump The path to memory dump the file on the system being used.
system The system with Volatility installed to be used for the analysis.
pid The process ID to pass to Volatility as a parameter of the dlllist command.
profile The Volatility profile to use.

Outputs


There are no outputs for this script.

var cmdline = 'dlllist -p ' + args.pid;
var out = executeCommand('Volatility', {memdump:args.memdump, profile:args.profile, system: args.system, cmd:cmdline});
return out;