Skip to content

Abdibimantara/Writeup-Blue-Team-Lab-Online-Phising-Analysis

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
 
 

Repository files navigation

Writeup BTLO- Phising Analysis

image

Simple Writeup, Bluteam CTF from Blue Team Labs Online

Scenario

A user has received a phishing email and forwarded it to the SOC. Can you investigate the email and attachment to collect useful artifacts?

https://blueteamlabs.online/home/challenge/16

image

Challenge Submission

1. Who is the primary recipient of this email ?

image

2. What is the subject of this email ?

image

Answer : Undeliverable: Website contact form submission

3. What is the date and time the email was sent ?

image

Answer : 18 March 2021 04:14

4. What is the Originating IP?

image

Answer : 103.9.171.10

5. Perform reverse DNS on this IP address, what is the resolved host? (whois.domaintools.com) ?

image

Answer : c5s2-1e-syd.hosting-services.net.au

6. What is the name of the attached file ?

image

Answer : Website contact form submission.eml

7. What is the URL found inside the attachment ?

image

8. What service is this webpage hosted on ?

image

Answer : blogspot

9. What service is this webpage hosted on ?

image

Answer : Blog Has been removed

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published