Secuneus Labs – TryHackMe Walk-through : Wireshark : Network Packet Forensics CTF
Secuneus Room : TryHackme
Join Room :
Walkthrough : Wireshark
1. Find the Total number of packets originated from Suspicious IP Address :
Ans:- Go to the “Statistics” menu at the top of the Wireshark window.Select “Summary.”In the “Summary” window, you can find various statistics about the captured packets, including the total number of packets, the number of packets matching your filter, and more.
The answer is 26.
4. Find a source person ip address, who tries to access, during office hours. It’s Bad..!
Ans:-tls.handshake.extensions_server_name ==
5. Someone tries to DOS Attack using PING from different machine on Target ?Find the total number of PING Packet.?
Ans:- icmp and (ip.dst ==
6. Our VAPT Team Member are asking about Version of Internet Group Management Protocol. Find the Version of Internet Group Management Protocol
Ans:- igmpv2
7. We need a mac address of the device, can you help us to find the mac address of the device associated with
Ans:- find arp packets using filter arp
8. Verify in the Packet Captured File & provide an IP Address who Access the Wiki Leaks Website.
tls.handshake.extensions_server_name ==
Tag:CTF, Secuneus, TryHackeMe, Walkthrough