A copy of this work was available on the public web and has been preserved in the Wayback Machine. The capture dates from 2018; you can also visit the original URL.
The file type is application/pdf
.
A Compiled Memory Analysis Tool
[chapter]
2010
IFIP Advances in Information and Communication Technology
The analysis of computer memory is becoming increasingly important in digital forensic investigations. Volatile memory analysis can provide valuable indicators on what to search for on a hard drive, help recover passwords to encrypted hard drives and possibly refute defense claims that criminal activity was the result of a malware infection. Historically, digital forensic investigators have performed live response by executing multiple utilities. However, using a single tool to capture and
doi:10.1007/978-3-642-15506-2_14
fatcat:co6nqoenffeunjue27i6owcg2y