FAQ: Dynamic Malware Analysis Example #1

This FAQ, collaboratively created by the community, addresses the content of the lesson titled “Dynamic Malware Analysis Example #1

You can locate this exercise within the LetsDefend content:

Dynamic Malware Analysis
SOC Analyst Learning Path

If there are any specific questions regarding the lesson or exercise, please don’t hesitate to ask them here.

I am using the VM on Let defend. I am unable to capture SMTP traffic in wireshark. I tried disabling promiscuous mode that did not work as well.

Wrong tip.
Filter for DNS.