Rootkit Cold Case

Data

Validations

470 Compromissions 16%

Note  Notation

5 votes

Description

We found this Linux machine that was running in 2003. At the time, we suspected an infection but we had never managed to find the origin.
Show us your skills by analyzing the running machine. Your goal is to recover the password of the stolen user and the PID of the malicious process.
This machine is associated with the "Forensic / Cold case" challenge.

Temps de compromission

2 heures

Système d'exploitation

 linux

démarrer cet environnement virtuel

Résultats du CTF alltheday Résultats du CTF alltheday pour Rootkit Cold Case

Pseudonyme Environnement Virtuel Nombre d'attaquant Date de début Environnement compromis en
- Rootkit Cold Case 0 2 marzo 2019 to 23:55 -
- Rootkit Cold Case 1 28 febbraio 2019 to 22:19 -
- Rootkit Cold Case 1 28 febbraio 2019 to 17:22 -
- Rootkit Cold Case 0 28 febbraio 2019 to 17:43 -
- Rootkit Cold Case 3 27 febbraio 2019 to 22:19 -

 177 Environnements Virtuels

Résultats Cognome Validations Difficulté  Difficulté Autore Note  Notation
pas_valide Metasploitable 2 40% 8663
pas_valide Basic pentesting 1 32% 4756
pas_valide LAMP security CTF5 25% 3894
pas_valide Docker - I am groot 51% 3138 Ech0
pas_valide LAMP security CTF4 35% 2725
pas_valide SSH Agent Hijacking 26% 2393 mayfly
pas_valide SSRF Box 18% 1815 sambecks
pas_valide Metasploitable 12% 1733
pas_valide Mr. Robot 1 21% 1646
pas_valide End Droid 35% 1352
pas_valide Imagick 22% 1053 sambecks
pas_valide SamBox v2 13% 990 sambecks
pas_valide Docker - Sys-Admin’s Docker 40% 976 Ech0
pas_valide Kioptrix level 2 24% 972
pas_valide LAMP security CTF7 39% 891
pas_valide VulnVoIP 17% 861
pas_valide SamBox v1 7% 727 sambecks
pas_valide Docker - Talk through me 42% 664 Ech0
pas_valide Django unchained 23% 634 TiWim
pas_valide Well-Known 10% 627 sm0k
pas_valide Windows - Group Policy Preferences Passwords 26% 613
pas_valide LAMP security CTF6 18% 606
pas_valide Kioptrix level 3 32% 575
pas_valide Shared Objects Hijacking 13% 568 das
pas_valide BreakingRootme2020 15% 521 Laluka
pas_valide Windows XP pro 01 5% 498 g0uZ
pas_valide Awky 8% 497 sbrk
pas_valide Windows - KerbeRoast 18% 482
pas_valide Rootkit Cold Case 16% 470 franb
pas_valide Kioptrix level 4 34% 462
pas_valide Websocket - 0 protection 6% 455 Worty
pas_valide Windows - ASRepRoast 35% 441
pas_valide Bluebox - Microsoft Pentest 4% 422
pas_valide pWnOS 32% 402
pas_valide Hackademic RTB1 19% 364
pas_valide DC-1 15% 348
pas_valide SamBox v3 5% 334 sambecks
pas_valide Bluebox 2 - Pentest 3% 311 sambecks
pas_valide Exploit KB Vulnerable Web App 12% 306
pas_valide SAP Pentest 7% 293 iggy
pas_valide Holynix v1 24% 292
pas_valide LAMP security CTF8 14% 291
pas_valide /dev/random : Pipe 5% 236
pas_valide A bittersweet shellfony 12% 234 mayfly
pas_valide LordoftheRoot 25% 232
pas_valide Hopital Bozobe 8% 230 sambecks
pas_valide Acid: Server 12% 219
pas_valide FristiLeaks 1.3 28% 216
pas_valide SkyTower 24% 214
pas_valide Ubuntu 8.04 weak 5% 206 g0uZ