Points: 100

Tags: forensics memory 

Poll rating:

The reason that we took rick's PC memory dump is because there was a malware infection. Please find the malware process name (including the extension)

BEAWARE! There are only 3 attempts to get the right flag!

format: CTF{flag}

Writeups

ActionRatingAuthor team
Read writeup
not rated
BugD0sDk
Read writeup
not rated
CHIqueen & CHIking
Read writeup
not rated
ZenHack
Read writeup
not rated
TORI
Read writeup
not rated
dcua
Read writeup
not rated
GVTs
You need to authenticate and join a team to post writeups