skip to Main Content

Volatility Memory Forensics | DumpIt

Before you can conduct victim system analysis you need to capture memory.

MoonSols DumpIt is used to generate a physical memory dump of Windows machines. It works with both x86 (32-bits) and x64 (64-bits) machines. Only a double click on the executable is enough to generate a copy (.raw) of the physical memory in the current directory. Perfect to deploy the executable on USB keys, for quick incident responses needs.

MoonSols DumpIt

MoonSols DumpIt

Back To Top