Thanks for the Memories: Identifying Malware from a Memory Capture
contextis.com
contextis.com
https://code.google.com/p/volatility/wiki/CommandReferenceMa...
Edit: Also, this approach is basically how the Detekt [1] tool works -- it loads Volatility and scans process memory using its own set of Yara rules.
Seems to be generated on a previous system failure.
http://www.forensicswiki.org/wiki/Tools:Memory_Imaging
Anecdotally, I've heard from forensic practitioners that the KnTTools are very solid (and, importantly, unlikely to crash a running system during acquisition), but they're not free.