from the memory dump?
John is performing a memory dump analysis in order to find traces of malware. He has employed Volatility tool in order to achieve his objective.
Which of the following volatility framework command she will use in order to analyze the running process
from the memory dump?
A . python vol.py pslist–profile=Win2008SP1x86 -f/root/Desktop/memdump.mem
B . python vol.py imageinfo -f/root/Desktop/memdump.mem
C . python vol.py hivelist –prof le=Win2008SP1x86 -f/root/Desktop/mem dump.mem
D . python vol.py svcscan–profile=Win2008SP1x86 -f/root/Desktop/mem dump.mem | more
Answer: D
Latest 212-89 Practice Questions with 163 Q&As
Updated Study Material | Instant Download | Detailed Answers and Explanations
Its A