GrabThePhisher Write-up
Last updated
Last updated
:الحمد لله والصلاة والسلام على رسول الله وعلى آله وصحبه أما بعد
Uncompress the lab (pass: )
An attacker compromised a server and impersonated , a decentralized exchange native to BNB Chain, to host a phishing kit at . The attacker set it as an open directory with the file name “pankewk.zip”.
Provided the phishing kit, you as a soc analyst are requested to analyze it and do your threat intel homework.
Link:
Medium:
After Download the zip file you will notice an index.html file open it
The answer will be the first wallet, and the answer depends on the folder named after it in the zip file
Answer: Metamask
Answer: What is the file name that has the code for the phishing kit?
Answer: PHP
Answer: Sypex Geo
Answer: 3
Answer: father also recycle embody balance concert mechanic believe owner pair muffin hockey
Answer: Telegram
Answer: 5457463144:AAG8t4k7e2ew3tTi0IBShcWbSia0Irvxm10
Answer: 5442785564
Answer: j1j1b1s@m3r0
Answer: Marcus Aurelius
Answer: pumpkinboii
Request the api to get the answers “
Blog: /
Linkedin:
Facebook:
Tryhackme: