From Forensics Wiki
Revision as of 12:25, 3 December 2008 by Jessek
The following tools can be used to conduct memory analysis
Memory Analysis Framework
- Volatility - A complete framework for analyzing Windows XP Service Pack 2 memory images.
Browser Email Memory Tool
- pdgmail is a python script to extract gmail artifacts from memory images. Made for images extracted with pdd, but works with any memory image.