5. What is the last 4 characters of the MD5 hash of the dumped malicious executable?
any help ??
I extract 2 files base on answers
python3 vol.py -f Spice.mem windows.filescan | grep -i
python3 vol.py -f Spice.mem windows.dumpfiles --virtaddr
any of that md5sum does not work