CyberTalents offers many cybersecurity courses in different areas

Apply Now
CyberTalents Logo CyberTalents Logo
  • For Talents
    • For Talents
    • Learn
    • Practice
    • Compete
    • Browse Jobs
    • Become an Expert
    • Become a Certified Trainer
    • Worldrank
  • For Companies
    • For Companies
    • Hire Talents
    • Cybersecurity as a Service
    • Personnel Assessment
    • Training solutions
    • Host a CTF
  • For Academia
    • For Universities
    • For Students
  • Register
  • Login
  • Details
  • Lessons
  • Statistics
  • Leaderboard
  • My Submissions
Challenge Name:  

FIN7

Category Icon Category:
Digital Forensics
Level Icon Level:
medium
Created at Icon Created At:
8 months ago
Tries Icon Tries:
1 Times
Solved Icon Solved:
1 Times
Points Icon Points:
100
Difficulty Level
Reported by other talents
Basic Advanced
Rating
How other talents liked this challenge

During an investigation, traces of suspicious activity were uncovered on a system. A process was injected with a malicious code that resulted in dropping and executing malicious files, which eventually led to a connection attempt to a suspicious domain.

Your task is to analyze the activity and uncover key components of the attack.

 

🔍 What to find:

X: The malicious domain that was resolved (domain.tld).

Y: The file extensions of the two malicious files that were dropped and executed (one extension) (.ext).

Z: The attackers have used a suspicious flag with one of the processes to escalate privileges, what is the flag? (flag)

 

Flag format: flag{X:Y:Z}

📁 All relevant logs are available in the FIN7 index.

🧠 Use the available data to trace the chain of events and identify the core elements of this compromise.

Credentials: admin/123456789

Note: Access the Splunk instance on port 8000, and note that the machine will remain up for one hour then you will have to restart it again.

Document Lock Icon

Sign in to view the challenge

Start Now
About
  • About us
  • FAQ
  • Blog
Talents
  • For Talents
  • Learn
  • Compete
  • Practice
  • Browse Jobs
  • Become a Certified Trainer
  • Become an Expert
  • Worldrank
  • Pricing
  • Register
Businesses
  • For Companies
  • Hire Talents
  • Cybersecurity as a Service
  • Personnel Assessment
  • Host a CTF
  • Training solutions
  • Pricing
  • Try for Free
Email
  • [email protected]
Egypt

B214, F5, Smart Village, Km 28 Cairo Alex Desert Rd., Giza, Egypt

UAE

DSO, Dubai Silicon Oasis Free Zone, Techno Hub Dubai, UAE

USA

2035 Sunset Lake Road, Suite B-2, Delaware, USA

Copyright © Cyber Talents 2025. All Rights Reserved.