Cybersecurity Lab 01

SIMULATION MODE
Lab Environment Scenario
"RAT has been setup in one of the machines connected to the network to steal sensitive corporate documents located on the Desktop of a server. Further investigation revealed the IP address of the server: 20.20.10.26."

Question:

Determine the number of files present in the Desktop folder.

  • A. 2
  • B. 4
  • C. 3
  • D. 5

Lab Hint

Thief tool is located at Z:\CCT-Tools\CCT Module 01 Information Security Threats and Vulnerabilities\Remote Access Trojans (RAT)\Thief

Explanation

After establishing a connection to 20.20.10.26 using the Thief Client, the Desktop directory reveals exactly 3 files: file1.docx, report.pdf, and creds.txt. Therefore, the correct answer is C.

Attacker Machine Interface
Tool: Thief Client v1.0.4
Thief Client OS v4.2.0-stable
Copyright (c) 2024 Shadow-Net Systems.
Waiting for command...
[Directory: C:\Users\Admin\Desktop]
📄 file1.docx
📕 report.pdf
📝 creds.txt