TShark Challenge II:Directory
Last updated
Last updated
The aim of the game is to find some questions that needs to be answered Use the techniques learned from past education so you can be better at what you are looking for
Tshark
Virus total
First Question: What is the name of the malicious domain?
Second Question: What is the total number of HTTP requests sent to the malicious domain?
Third Question: What is the IP Address Associated with the malicious domain?
Fourth Question: What is the server info of the suspicious domain?
Fifth Question and Sixth Question
#Note this command will work on the sixth answere aswell, you just need to obtain the first HTML code, paste it in your attack box, save it as .html and open it with browser.
What is the SHA256 value of the malicious file?
Search the SHA256 value of the file on VirtusTotal.
What is the "PEiD packer" value?
What does the "Lastline Sandbox" flag this as?
Thank you for following the guide.