| ID: | 2014 |
|---|---|
| 标题: | The Pilot |
| 描述: | Description My grandfather had saved some sensitive information in a sepecific website. Can you find what's been hidden in the history of his default browser. That's the goal of this challenge. Memory Dump: Download Author: Raf² What volatility profile is the most appropriate for this machine? | Weight: +25 What is the MD5 hash of the memory dump? | Weight: +25 What is the hostname? | Weight: +25 What is the PID of the Notepad process? | Weight: +25 What is the PID of the Explorer process? | Weight: +25 What is the parent process start time of notepad.exe? | Weight: +50 What is the IP Address used by the machine? | Weight: +50 What is the executable path for process ID 1164? | Weight: +75 My Grandfather calls CMD, the Black Language, can you find the flag there? | Weight: +50 My Grandfather is environmental, can you find the flag? | Weight: +75 My Grandfather left something on the Desktop, can you find it? | Weight: +100 My Grandfather copied his password, can you find it? | Weight: +100 |
| 类型: | MISC |
| 网站: | bugku |
| 题目链接: | https://ctf.bugku.com/challenges/detail/id/2160.html |
| 赛事: | SecurinetsFriendly2022 |
| 年度: | 2022 |
| Flag值: | SecurinetsFriendly2022 |
| writeup: |
无法找到 The Pilot https://www.shititong.cn/cha-kan/shiti/00067e06-b554-ff48-c057-7fada8eb4500.html |