@@cavementech4u Hey, thanks for responding. I didn't adjust any settings. I ran the Letsdefend VM that is provided within the Lesson. Once it booted up I opened followed all the instructions from the lesson and opened all the necessary programs. I even selected "Run as Administrator" for them all instead of just double clicking. For Wireshark I chose "Ethernet" as the network to monitor once it booted up. I didn't change any settings whats so ever. Every other aspect of the lab works except Wireshark displaying the SMTP traffic. This was also an issue in the following lesson Dynamic Malware Analysis Example #2. Wireshark wouldn't display SMTP traffic for that lab either.
built my own malware sample room,and going to go over similar steps analyzing sample malware,thanks!
I tried to do this lab recently and got stuck. The reason was that my Wireshark was not capturing the SMTP traffic. Would you have any idea why?
You may have selected the wrong interface. Kindly describe your lab setup
@@cavementech4u Hey, thanks for responding. I didn't adjust any settings. I ran the Letsdefend VM that is provided within the Lesson. Once it booted up I opened followed all the instructions from the lesson and opened all the necessary programs. I even selected "Run as Administrator" for them all instead of just double clicking. For Wireshark I chose "Ethernet" as the network to monitor once it booted up. I didn't change any settings whats so ever. Every other aspect of the lab works except Wireshark displaying the SMTP traffic. This was also an issue in the following lesson Dynamic Malware Analysis Example #2. Wireshark wouldn't display SMTP traffic for that lab either.
I am having the same issue. @@carltonhurd3890
I just read that we will have to turn off promiscuous mode
use 'dns' as a filter. then you will find domain
As im stuck with some thing
goated