Tuesday, December 6, 2022

TryHackMe.com - Advent of Cyber 2022 - Day 6 - writeup

Advent of Cyber is now regular seasonal room on TryHackMe page. This is their 4th time and again with awsome story to follow each day's assignment. Here are my solutions for the Day 6, if anyone gets stuck. Open the email in text editor and can solve most of the questions with analysis
  1. Q1

  2. Answer hides in 4th line of the email file - From:
  3. Q2

  4. Answer hides in 14th line of the email file - Return-Path:
  5. Q3

  6. Answer hides in 4th line of the email file.
  7. Q4

  8. Answer hides in 11th line of the email file - X-spam score
  9. Q5

  10. Copy value from message ID to the CyberChef and decode from base64. Output is the answer to this question.
  11. Q6

  12. GO to EmailRep and enter the sender email. Answer will appear right below the entry box where you have entered email.
  13. Q7

  14. Open terminal and move to the eml_attachments fodler on desktop and run:
    sha256sum file_name
    to get hash value which is the answer of Q7.
  15. Q8

  16. Visit VirusTotal site and enter attachment's hash
  17. Q9

  18. Visit InQuest site, enter attachment's hash and look for answer on the site
I hope anyone who gets stuck finds it helpful
AudiTTRSi

No comments:

Post a Comment

How to Install PostgreSQL on Debian 12: A Step-by-Step Guide

PostgreSQL, commonly known as Postgres, is a powerful, open-source relational database management system renowned for its advanced features ...