Notifications
Clear all
26/05/2011 11:52 pm
Take a look at Michael Hale Ligh's technique using Volatility.
Also! you might want to consider looking at his book.
p.s. I would recommend using Volatility under Linux rather than Windows, some plugings require dependencies which you can't easily obtain under Windows. Of course you could go with Cygwin, but you may as well use native Linux or a vmware machine such as the one provided by SANS.
Page 2 / 2
Prev