Site Logo
Home Posts HTB Gallery
HomePostsHTBGallery
  1. Tags
  2. dfir

Entries tagged with

dfir
  • HTB Sherlock: Caught

    HTB Sherlock: Caught

    HTB Sherlock Caught writeup covering Active Directory DFIR, malicious shortcut analysis, Sliver C2, credential dumping, GPO abuse, and WMI persistence.

    May 13, 2026
    22 min read
    htb
    sherlock
    hard
    writeup
    dfir
    +10 more
  • HTB Sherlock: Hunter

    HTB Sherlock: Hunter

    HTB Sherlock Hunter writeup covering lateral movement, credential attacks, PCAP analysis, KAPE triage, Autopsy, KeePass, and incident response.

    May 8, 2026
    20 min read
    htb
    sherlock
    insane
    writeup
    dfir
    +10 more
  • HTB Sherlock: Easy Money

    HTB Sherlock: Easy Money

    HTB Sherlock Easy Money writeup covering giveaway lure malware, Yandex Browser CVE clues, PowerShell, DLL hijacking, and Windows forensics.

    April 21, 2026
    1 min read
    htb
    medium
    writeup
    sherlock
    dfir
    +10 more
  • HTB Sherlock: SillyEli

    HTB Sherlock: SillyEli

    HTB Sherlock SillyEli writeup covering BYOD compromise, fake MS Teams installer malware, PowerShell, scheduled tasks, and reverse shell analysis.

    April 6, 2026
    1 min read
    htb
    sherlock
    hard
    writeup
    dfir
    +6 more
  • HTB Sherlock: Novitas

    HTB Sherlock: Novitas

    HTB Sherlock Novitas writeup covering memory forensics, malware behavior, Volatility triage, .NET reverse engineering, and Windows compromise.

    March 27, 2026
    27 min read
    htb
    insane
    writeup
    sherlock
    dfir
    +6 more
  • HTB Sherlock: Safecracker

    HTB Sherlock: Safecracker

    HTB Sherlock Safecracker writeup covering ransomware investigation, Windows and WSL artifacts, malware analysis, timeline reconstruction, and IOCs.

    March 24, 2026
    21 min read
    htb
    sherlock
    insane
    writeup
    dfir
    +8 more

© 2026 pacho. All rights reserved.

Search site

Search all indexed posts and pages. Shortcut: Ctrl K

Wheel to zoom - drag to pan - double-click reset