Daily Blog #622: Solution Saturday 2/9/19 - Amcache Hive Challenge Winner Announcement

Amcache Hive Challenge Winner Announcement by David Cowen - Hacking Exposed Computer Forensics Blog

Hello Reader,
             This week Oleg Skulkin has come in with another win! Oleg found some interesting results. In Oleg's testing all of his executions were caught by the Amcache, except those programs executed from external storage volumes. Very interesting! I think we will have to go back to Syscache and Amcache again in the near future to find more about what Oleg was seeing!

The Challenge:

What are all the methods of execution you can find that are not recorded in the Amcache hive?

The Winning Answer:
Oleg Skulkin

Also Read: Daily Blog #621

Post a Comment