Malware Traffic Analysis Dot Net Series WOKEMOUNTAIN (Video Only)
The writeups will be a series to document my learning experience with Wireshark and IR report writing for the malicious traffic from Malware-Traffic-Dot-Net, hope you will enjoy it :)
Note, this series will be video only :)
Malware Traffic Analysis Dot Net Series WOKEMOUNTAIN Video Walkthrough
Update for finding the Windows User Account which not included in the video
Apply filter “kerberos.CNameString” in wireshark, look for kerberos CNAME.string, we find the Windows User Account is “orlando.mccoy”