Question: Digital Forensics - Memory Analysis I ' m using volatility to analyze a memory image.vmem The question I ' m trying to answer is are
Digital Forensics Memory Analysis
Im using volatility to analyze a memory image.vmem
The question Im trying to answer is are there any suspicious processes? I was thinking it was vshost.exe based on the times, but Im not positive. How do I know what processes are suspicious?
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
