The Art of Memory Forensics真是一本很棒的书籍,其中使用volatility对内存进行分析的描述可以辅助我们对更高级类的木马进行分析和取证,这里对书中的命令进行了笔记记录。
(The Art of Memory Forensics is really a great book. The description of using volatility to analyze memory can help us analyze and collect evidence for more advanced Trojan horses. Here is a note record of the commands in the book.)