期刊文献+
共找到1篇文章
< 1 >
每页显示 20 50 100
A Method on Extracting Network Connection Information from 64- bit Windows 7 Memory Images 被引量:3
1
作者 wang lianhai xu lijuan zhang shuhui 《China Communications》 SCIE CSCD 2010年第6期44-51,共8页
Memory analysis gains a weight in the area of computer live forensics.How to get network connection information is one of the challenges in memory analysis and plays an important role in identifying sources of malicio... Memory analysis gains a weight in the area of computer live forensics.How to get network connection information is one of the challenges in memory analysis and plays an important role in identifying sources of malicious cyber attack. It is more difficult to fred the drivers and get network connections information from a 64-bit windows 7 memory image file than from a 32-bit operating system memory image f'de. In this paper, an approach to fred drivers and get network connection information from 64-bit windows 7 memory images is given. The method is verified on 64-bit windows 7 version 6.1.7600 and proved reliable and efficient. 展开更多
关键词 computer forensics computer live forensics memory analysis digital forensics
下载PDF
上一页 1 下一页 到第
使用帮助 返回顶部