PsExec Hunt Write-up
Last updated
Last updated
Our Intrusion Detection System (IDS) has raised an alert, indicating suspicious lateral movement activity involving the use of PsExec. To effectively respond to this incident, your role as a SOC Analyst is to analyze the captured network traffic stored in a PCAP file.
Wireshark
Link: (pass: )
Medium:
Answer: 10.0.0.130
Answer: sales-pc
Answer: ssales
Answer: PSEXESVC.exe
Answer: ADMIN$
Answer: IPC$
Answer: Marketing-PC
Blog:
Linkedin:
Facebook:
Tryhackme: