Eccouncil 212-89 Exam - Topic 3 Question 55 Discussion
John is performing memory dump analysis in order to find out the traces of malware.He has employed volatility tool in order to achieve his objective.Which of the following volatility framework commands he will use in order to analyze running process from the memory dump?
B) python vol.py pslist --profile=Win2008SP1x86 --f /root/Desktop/memdump.mem
A) python vol.py svcscan --profile=Win2008SP1x86 --f /root/Desktop/memdump.mem | more
C) python vol.py hivelist --profile=Win2008SP1x86 --f /root/Desktop/memdump.mem
D) python vol.py imageinfo -f /root/Desktop/memdump.mem
Stevie
8 months agoDenae
8 months agoLea
8 months agoTracie
8 months agoAliza
8 months agoCyril
9 months agoZona
9 months agoTresa
9 months agoJaime
9 months agoCandida
9 months agoMicaela
9 months agoEladia
9 months agoLeila
9 months agoLevi
9 months agoLeonor
10 months agoKara
10 months agoQuentin
2 years agoCharolette
2 years agoSalome
2 years agoPeter
2 years agoQuentin
2 years agoSalome
2 years ago