Phishing Analysis

  1. Who is the primary recipient of this email? (1 points)

    Answer: kinnar1975@yahoo.co.uk

  2. What is the subject of this email? (1 points)

    Answer: Undeliverable: Website contact form submission

  3. What is the date and time the email was sent? (1 points)

    Answer: 18 March 2021 04:14

  4. What is the Originating IP? (1 points)

    Answer: 103.9.171.10

  5. Perform reverse DNS on this IP address, what is the resolved host? (whois.domaintools.com) (1 points)

    Answer: c5s2-1e-syd.hosting-services.net.au

  6. What is the name of the attached file? (2 points)

    Answer: Website contact form submission.eml

  7. What is the URL found inside the attachment? (1 points)

    Answer: https://35000usdperwwekpodf.blogspot.sg?p=3D9swghttps://35000usdperww=ekpodf.blogspot.co.il?o=3D0hnd

  8. What service is this webpage hosted on? (1 points)

    Answer: Blogspot

  9. Using URL2PNG, what is the heading text on this page? (Doesn't matter if the page has been taken down!) (1 points)

    Answer: Blog has been removed


Tags

  1. email (Private)
  2. phishing (Private)