Which of the following volatility framework command she will use in order to analyze the running process from the memory dump?

John is performing a memory dump analysis in order to find traces of malware. He has employed Volatility tool in order to achieve his objective.

Which of the following volatility framework command she will use in order to analyze the running process from the memory dump?
A . python vol.py hivelist-prof le=Win2008SP1x86 -f/root Desktop/memdump.mem
B . python vol.py pslist-profile=Win2008SP1x86 -f/root/Desktop/memdump.mem
C . python vol.py imageinfo -f/root/Desktop/memdump.mem
D . python vol.py svcscan–profile=Win2008SP1x86 -f/root/Desktop/memdump.mem | more

Answer: B

Latest 212-89 Dumps Valid Version with 163 Q&As

Latest And Valid Q&A | Instant Download | Once Fail, Full Refund

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments