Tags: malicious volatility
Rating:
./vol2 -f KnightSquad.DMP --profile=Win7SP1x64_23418 filescan | grep .exe
found a exe file named MadMan which is the malicious file.
Check youtube video for details.https://www.youtube.com/watch?v=dCwRMGqFewk
I don't remember