5. What is the last 4 characters of the MD5 hash of the dumped malicious executable?
any help ??
I extract 2 files base on answers
python3 vol.py -f Spice.mem windows.filescan | grep -i
python3 vol.py -f Spice.mem windows.dumpfiles --virtaddr
any of that md5sum does not work
mea culpa
wrong commands
for last question
└─$ python3 vol.py -f Spice.mem windows.pstree
└─$ python3 vol.py -f Spice.mem windows.pslist --pid --dump
└─$ md5sum
1 Like
Edited…
—>
Community Service 
######################
Task 3 starts with “P”.
Once you have that data, the other two (tasks 4 and 5 are routine: gifted).

-CHALLENGE COMPLETED-
with the help of one of the previous commands from user @Dalibor_Zeman3705
—> I didn’t find a button to select “Solution”, I hope administrators activate that option 