Skip to content

Commit

Permalink
winpmem module
Browse files Browse the repository at this point in the history
  • Loading branch information
Eric Capuano committed May 14, 2019
1 parent 4af8b30 commit 8bb0801
Show file tree
Hide file tree
Showing 2 changed files with 12 additions and 0 deletions.
12 changes: 12 additions & 0 deletions Modules/WinPmem.mkape
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
Description: WinPmem Memory Dump
Category: Memory
Author: Eric Capuano
Version: 1
Id: 1d284835-417b-459e-a396-d228edea3808
BinaryUrl: https://storage.googleapis.com/releases.rekall-forensic.com/v1.3.1/winpmem_1.6.2.exe
ExportFormat: dmp
Processors:
-
Executable: winpmem_1.6.2.exe
CommandLine: " %destinationDirectory%/memory.dmp"
ExportFormat: dmp
Binary file added kape.exe
Binary file not shown.

0 comments on commit 8bb0801

Please sign in to comment.