A good wiping tool is available in all Windows systems since Windows 2000
A very brief post, just a reminder about a very useful volatility feature.
Recently, during a forensic analysis on a laptop of an employee charged with corporate espionage, I’ve carved from disk a suspicious Excel file.
Just some thoughts about memory, Forensics and Volatility!
Malware analysis and digital forensic analysis are processes that often needs the analyst to look into system memory.In this regard, a good analyst must have at least a base knowledge of Windows Memory Management.