CTF memory forensics

Job ID: 33370997

Budget: $10 – $30 USD

I have a memory forensics challenge that I would like to solve and also understand how to solve.

The CTF question just says "What is the offset of the process that contains the backdoor in evidence.zip?". There is a hint that says "You'll need to use memory analysis techniques for this one!"

evidence.zip is 814MB in size so may take some time to download.

The attachment is a screenshot of the question in case that helps.
Related categories: Linux Computer Security Digital Forensics