ADD is a physical memory anti-analysis tool designed to pollute memory with fake artifacts. This tool was first presented at Shmoocon 2014. Please note that this is a proof of concept tool. It forges OS objects in memory (poorly). It would be easy (very e ...
Belkasoft Live RAM Capturer is a tiny free forensic tool to reliably extract the entire content of the computer's votatile memory - even if protected by an active anti-debugging or anti-dumping system. Separate 32-bit and 64-bit builds are avaiable in ord ...