ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 674 - 312-49v10 discussion

Report
Export

Consider a scenario where a forensic investigator is performing malware analysis on a memory dump acquired from a victims computer. The investigator uses Volatility Framework to analyze RAM contents; which plugin helps investigator to identify hidden processes or injected code/DLL in the memory dump?

A.
pslist
Answers
A.
pslist
B.
malscan
Answers
B.
malscan
C.
mallist
Answers
C.
mallist
D.
malfind
Answers
D.
malfind
Suggested answer: D
asked 18/09/2024
John Bascara
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first