Skip to content

Commit

Permalink
Create memory_analysis_ransomware.md
Browse files Browse the repository at this point in the history
  • Loading branch information
BlackAnon22 authored Aug 1, 2024
1 parent e961371 commit a9d4835
Showing 1 changed file with 6 additions and 0 deletions.
6 changes: 6 additions & 0 deletions posts/blueteamlabs/memory_analysis_ransomware.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
![image](https://github.com/user-attachments/assets/fb48335a-29f1-49f4-9c81-fe274a9fcf7e)


## First Question

Run “vol.py -f infected.vmem --profile=Win7SP1x86 psscan” that will list all processes. What is the name of the suspicious process?

0 comments on commit a9d4835

Please sign in to comment.