Digital forensics using volatility 2.5

Job ID: 32130923

Budget: $10 – $30 USD

use Volatility 2.5 (can be downloaded here) to investigate an image of a laptop RAM. For each question you need to clearly write the volatility instruction that got you the correct answer, followed by the answer. Make sure to only display the answer and not the entire output of an instruction.
Questions:
1. What is the profile of the operating system that this memory is taken from?
2. How many CPU processors were there?
3. What were the processes running on the device at the time the image was taken?
4. How many text files were open, and what are there process IDs?
5. Did the user use the command prompt, and what were the commands used?
6. What are the different users (and their names) that were installed on this machine?
7. List the names of the files and directories that were saved on the desktop.
8. Using filescan, what are the non-system (non-Windows) programs (executables) that were installed
on the machine?
9. Retrieve a screenshot to see what the user was doing.
10. Using userassist, what was the number of times and the last time the browsers (FireFox, Chrome,
IE explorer) were used.
11. Using userassist, which web browser was used the most?
Related categories: Computer Science