MemProcFS v3.0 releases: The Memory Process File System


The Memory Process File System (MemProcFS) is an easy and convenient way of accessing physical memory as files a virtual file system.

Easy trivial point and click memory analysis without the need for complicated commandline arguments! Access physical memory content and artefacts via files in a mounted virtual file system or via a feature-rich .dll application library to include in your own projects!

Analyze memory dump files – or even live memory in read-write mode via linked pcileech and pcileech-fpga devices!

Use your favorite tools to analyze memory – use your favorite hex editors, your python and powershell scripts, your disassemblers – all will work trivially with the Memory Process File System by just reading and writing files!

Read more…