Points: 100

Tags: forensics 

Poll rating:

Memory Analysis
100 points
Memory Analysis
Find the website that the fake svchost is accessing.
You can get the flag if you access the website!!

memoryanalysis.zip
The challenge files are huge, please download it first.
Hint1: http://www.volatilityfoundation.org/
Hint2: Check the hosts file

Writeups

ActionRatingAuthor team
Read writeup
not rated
ShellWarp
Read writeup
not rated
SoftTrack
Read writeup
not rated
p4
Read writeup
not rated
rawsec
Read writeup
5.0
crattack
Read writeup
not rated
nacayoshi00
Read writeup
not rated
0xD13A
Read writeup
not rated
PogTeam
Read writeup
not rated
Yacine101
Read writeup
not rated
h1dd3ntru7h
Read writeup
not rated
ITCMUDTU
Read writeup
not rated
DauGau
Read writeup
not rated
yharima
Read writeup
5.0
Capture the Swag
You need to authenticate and join a team to post writeups