cyber-ir.com
Memory Forensics with Vshot and Remnux (process objects, network artifacts and attacker activity,3)
This is the third post on memory analysis and I will quickly go throug the followin plugins from the Vshot script. dlllist getsids svcscan consoles shimcache userassist cmdscan connections connscan…