0xbadcoffee

digital security and other possibly related topics

Link to the CTF itself
TryHackMe - Forensics

Type
Memory forensics

Challenge

Task 1 Volatility forensics

This is a memory dump of the infected system. Download the file attached to this Task.

The MD5 hash of the uncompressed file is: ba44c4b977d28132faeb5fb8b06debce

Download the vic...