Forensic reconstruction of executables from Windows 7 physical memory | IEEE Conference Publication | IEEE Xplore