I was looking for a way to generate logs running cmd command lines, thanks for the explanation of using "shell" on the C2 connection as it actually leaves evidence. I accidentally did half of the investigation of today in yesterday's blog, but I will try again using the process guid this time. Awesome video as always.
This is so great. Thank you It is a pity that I haven't been able to practice all these alone due to the credit card issue with cloud providers. However, I keep following the challenge and take down notes for practice later on when I finally get a card that works. I wanted to be part of the giveaway because I knew I'd do well, but that didn't happen. I do hope when I get the chance to practice, I'll be able to show you what I was able to create.
Hello. In the video threat protection is disabled but the firewall section is still enabled. That is why file gets deleted. Thank you for sharing your knowledge.
That GUID advice is really amazing.
I'm using it everytime I hunt now.
Thanks a lot Steven 🙏
Great to hear!
I was looking for a way to generate logs running cmd command lines, thanks for the explanation of using "shell" on the C2 connection as it actually leaves evidence. I accidentally did half of the investigation of today in yesterday's blog, but I will try again using the process guid this time. Awesome video as always.
This is so great. Thank you
It is a pity that I haven't been able to practice all these alone due to the credit card issue with cloud providers.
However, I keep following the challenge and take down notes for practice later on when I finally get a card that works.
I wanted to be part of the giveaway because I knew I'd do well, but that didn't happen. I do hope when I get the chance to practice, I'll be able to show you what I was able to create.
i have to say the investigating side is very interesting. great video
Thank you Steven. Very interactive, and makes me more curious. Day 28 done.
Real work! I'm catching up!
This is the real amazing and enjoyable video so far love it ❤
Thank you so much!!
Hello.
In the video threat protection is disabled but the firewall section is still enabled. That is why file gets deleted.
Thank you for sharing your knowledge.
Thank you Steven 🎉🎉
Day 28 ✅Thank you Steven 🎉🙂
please answer this question, can we unlink card with the vultr?
Done...!!!
Thank You
#Day20 Investigating Mythic Agent
Investigate Mythic Agent | Day 28- Thank you