Chapter 1

Malware Incident Response: Volatile Data Collection and Examination on a Live Windows System

Solutions in this chapter:

ent Building Your Live Response Toolkit

ent Volatile Data Collection Methodology

ent Current and Recent Network Connections

ent Collecting Process Information

Correlate Open Ports with Running Processes and Programs

Identifying Services ...

Get Malware Forensics now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.