[Forensics-changes] [volatility] 01/01: debian/volatility-tools.README.Debian: updated the information about the new profile folder.

Eriberto Mota eriberto-guest at moszumanska.debian.org
Tue Apr 1 02:21:25 UTC 2014


This is an automated email from the git hooks/post-receive script.

eriberto-guest pushed a commit to branch debian
in repository volatility.

commit a2c140a9df67e06d494e930278810093f4b78b97
Author: Joao Eriberto Mota Filho <eriberto at eriberto.pro.br>
Date:   Mon Mar 31 23:20:17 2014 -0300

        debian/volatility-tools.README.Debian: updated the information about
        the new profile folder.
---
 debian/changelog                      | 7 +++++++
 debian/volatility-tools.README.Debian | 9 ++++++---
 2 files changed, 13 insertions(+), 3 deletions(-)

diff --git a/debian/changelog b/debian/changelog
index 0c55c2c..41e5f42 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,10 @@
+volatility (2.3.1-9) unstable; urgency=medium
+
+  * debian/volatility-tools.README.Debian: updated the information about
+    the new profile folder.
+
+ -- Joao Eriberto Mota Filho <eriberto at eriberto.pro.br>  Mon, 31 Mar 2014 20:30:41 -0300
+
 volatility (2.3.1-8) unstable; urgency=medium
 
   * debian/control: fixed the Vcs-Git field. Thanks to
diff --git a/debian/volatility-tools.README.Debian b/debian/volatility-tools.README.Debian
index 293df5c..6312b71 100644
--- a/debian/volatility-tools.README.Debian
+++ b/debian/volatility-tools.README.Debian
@@ -9,8 +9,10 @@ To generate a profile to a Linux version, follow these steps:
 4. Run 'make' command.
 5. Run 'zip profile-name-to-use.zip module.dwarf /boot/System.map-(?)'
 6. Copy the zip file to volatility profiles folder. Use the
-   'dpkg -L volatility-profiles' command to find the folder.
-7. Use the command 'volatility --info | grep Linux' to see if the profile
+   'dpkg -L volatility' command to find the folder. Generally at
+   /usr/lib/pythonVERSION/dist-packages/volatility/plugins/overlays/OS_FOLDER/,
+   where VERSION is python version and OS_FOLDER is linux, windows or mac.
+7. Use the command 'volatility --info | grep Linux' to see if the new profile
    was recognised.
 
 PS: In commands, (?) must be replaced by the correct option.
@@ -20,4 +22,5 @@ https://code.google.com/p/volatility/wiki/LinuxMemoryForensics
 
 Thanks.
 
- -- Joao Eriberto Mota Filho <eriberto at eriberto.pro.br>  Tue, 07 Jan 2014 16:52:30 -0200
+ -- Joao Eriberto Mota Filho <eriberto at eriberto.pro.br>  Tue, 07 Jan 2014 16:52:30 -0200,
+    Updated at Mon, 31 Mar 2014 23:01 -0300.

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/forensics/volatility.git



More information about the forensics-changes mailing list