Development of Kernel Mode RAM Driver for RAM Image on Windows
In the field of computer forensics live analysis through immediate intervention is an important way of gathering electronic evidence. The way to obtain evidence from volatile data using live analysis is to take an image of the RAM (Random Access Memory). The entire RAM has to be copied in order to i...
Main Authors: | , , |
---|---|
Format: | Article |
Language: | English |
Published: |
Suleyman Demirel University
2019-08-01
|
Series: | Süleyman Demirel Üniversitesi Fen Bilimleri Enstitüsü Dergisi |
Online Access: | http://dergipark.org.tr/tr/download/article-file/784774 |