0% found this document useful (0 votes)
72 views5 pages

CF Practical 3

The document outlines a practical exercise in cyber forensics focused on analyzing the memory dump of a running computer system. It details the steps to extract volatile data, including open processes, network connections, and registry information using tools from the Sysinternal Suite. The author is Moazzam Mulla, a student in the TYCS(A) class.

Uploaded by

samiyasp23hcs
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
72 views5 pages

CF Practical 3

The document outlines a practical exercise in cyber forensics focused on analyzing the memory dump of a running computer system. It details the steps to extract volatile data, including open processes, network connections, and registry information using tools from the Sysinternal Suite. The author is Moazzam Mulla, a student in the TYCS(A) class.

Uploaded by

samiyasp23hcs
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd

Practical No.

3
Aim: Analyze the memory dump of a running computer system.
 Extract volatile data, such as open processes, network connections, and
registry information.

Name: Moazzam Mulla


Class: TYCS(A)
Roll No: 27
Subject: Cyber Forensics
Sign:
Name: Moazzam Mulla
Class: TYCS(A)
Roll No: 27
Practical No. 3
Aim: Analyze the memory dump of a running computer system.
 Extract volatile data, such as open processes, network connections, and
registry information.

Open Process:-
Go to Sysinternal Suite  ProcMonRight Click on it and Open As Administrator.

Cyber Forensics
Name: Moazzam Mulla
Class: TYCS(A)
Roll No: 27
Network Connections
Go to SysinternalSuite  TCPview

Cyber Forensics
Name: Moazzam Mulla
Class: TYCS(A)
Roll No: 27
Registry Information
Click on Search Bar on the Taskbar  Type Regedit  Click on Registry Editor

View the desired registries to be analyzed

Cyber Forensics
Name: Moazzam Mulla
Class: TYCS(A)
Roll No: 27

Cyber Forensics

You might also like