forked from Matir/scorebot
-
Notifications
You must be signed in to change notification settings - Fork 0
/
scorebot.cfg
executable file
·154 lines (142 loc) · 5.77 KB
/
scorebot.cfg
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
BLUETEAM VAJRA
DNS=10.150.101.100
domain.alpha.net:100=80/tcp-10-uri:/-content:IIS7
filesvr.alpha.net:10=80/tcp-10-uri:/-content:Under Construction
www.alpha.net:10=21/tcp-50,80/tcp-50-uri:/-content:shopping cart program by Zen Cart
drupal.alpha.net:10=21/tcp-10-password:Plantain1,80/tcp-50-uri:drupal/-content:Drupal 7
ftpsvr.alpha.net:10=21/tcp-50-password:Melon1
mail.alpha.net:10=80/tcp-50-uri:/-content:Just another WordPress site,25/tcp-50
suse.alpha.net:10=80/tcp-50-uri:/-content:Just another WordPress site
wiki.alpha.net:10=80/tcp-50-uri:dokuwiki/doku.php-content:DokuWiki snapshot,22/tcp-50
FLAG=domu,0xbecBT1
FLAG=pf,0x54a722734
FLAG=lp,0x89b3b0b04
FLAG=sf,0x5c2c7089b
FLAG=X1FS,0xd51e1dce2
FLAG=23FS,0x330089847
FLAG=281FS,0x222bfe285
FLAG=282FS,0x31f464a3e
FLAG=C1FS,0x3ac1eadd
FLAG=D1FS,0x16e8af95e5
FLAG=SFS,0xe8dee6cf9
FLAG=U1FS,0x16bc6dbaee
FLAG=U2FS,0x161162d3e1
FLAG=FFS,0xbf964e6c6
FLAG=NFS,0x159017e60c
FLAG=AJ,c2ee3ac13f79f6b7b1f0af397cf19a20
FLAG=JC,f7872db0f70352753457bd10874b3216
FLAG=JP,4edb25db0ad3229ab75da157c1609068
FLAG=WO1,8acc860c913121eaf168245a68319c25
FLAG=WO2,d63bd21fc80ee3d1c01dafd9865a85e8
FLAG=DNS,10.150.102.100
BLUETEAM BEER
DNS=10.150.103.100
domain.gamma.net:100=80/tcp-10-uri:/-content:IIS7
filesvr.gamma.net:100=80/tcp-10-uri:/-content:Under Construction
www.gamma.net:10=21/tcp-50,80/tcp-50-uri:/-content:shopping cart program by Zen Cart
drupal.gamma.net:10=21/tcp-10-password:Cherry1,80/tcp-50-uri:drupal/-content:Drupal 7
ftpsvr.gamma.net:10=21/tcp-50-password:Apple1
mail.gamma.net:10=80/tcp-50-uri:/-content:Just another WordPress site,25/tcp-50
suse.gamma.net:10=80/tcp-50-uri:/-content:Just another WordPress site
wiki.gamma.net:10=80/tcp-50-uri:dokuwiki/doku.php-content:DokuWiki snapshot,22/tcp-50
FLAG=domu,0x13cbBT3
FLAG=pf,0x914132c89
FLAG=lp,0x15803653e5
FLAG=sf,0x796b546cb
FLAG=X1FS,0xd51e1dce2
FLAG=23FS,0x3fd2bab1f
FLAG=281FS,0x3b70b60cb
FLAG=282FS,0x1420f9ecf9
FLAG=C1FS,0x1f639d878
FLAG=D1FS,0x7b8175269
FLAG=SFS,0xb75811d2e
FLAG=U1FS,0x323c9cfd2
FLAG=U2FS,0x60aa4d45
FLAG=FFS,0xae6e31942
FLAG=NFS,0x116e7daec1
FLAG=AJ,ee7d3a77e1519326538be6adac592aca
FLAG=JC,d558ca7a56b2c72c2cce03fbfd84a478
FLAG=JP,9b0723d5624695f1a4341d3d14b4dc55
FLAG=WO1,a5e856ea1d4a34bb14b86952f6acd6a4
FLAG=WO2,a3601364ea5914a3fd5abb468ca743f0
BLUETEAM SOGGYSOCKET
DNS=10.150.103.100
domain.delta.net:100=80/tcp-10-uri:/-content:IIS7
filesvr.delta.net:100=80/tcp-10-uri:/-content:Under Construction
www.delta.net:10=21/tcp-50,80/tcp-50-uri:/-content:shopping cart program by Zen Cart
drupal.delta.net:10=21/tcp-10-password:Kiwi12,80/tcp-50-uri:drupal/-content:Drupal 7
ftpsvr.delta.net:10=21/tcp-50-password:Honeydew1
mail.delta.net:10=80/tcp-50-uri:/-content:Just another WordPress site,25/tcp-50
suse.delta.net:10=80/tcp-50-uri:/-content:Just another WordPress site
wiki.delta.net:100=80/tcp-50-uri:dokuwiki/doku.php-content:DokuWiki snapshot,22/tcp-50
FLAG=domu,0x4fe9BT4
FLAG=pf,0x96a279f24
FLAG=lp,0x1c1a1afa0
FLAG=sf,0x15c0a8595a
FLAG=X1FS,0x103ee247f2
FLAG=23FS,0x1641461d42
FLAG=281FS,0xed4d4d40a
FLAG=282FS,0x780ff0b6a
FLAG=C1FS,0x11248903ab
FLAG=D1FS,0xf7b873fac
FLAG=SFS,0x6cbaefb64
FLAG=U1FS,0x135ebca19d
FLAG=U2FS,0x10e381839e
FLAG=FFS,0x7e26f90a8
FLAG=NFS,0xe4f6218a5
FLAG=AJ,ee7d3a77e1519326538be6adac592aca
FLAG=JC,d558ca7a56b2c72c2cce03fbfd84a478
FLAG=JP,9b0723d5624695f1a4341d3d14b4dc55
FLAG=WO1,a5e856ea1d4a34bb14b86952f6acd6a4
FLAG=WO2,a3601364ea5914a3fd5abb468ca743f0
INJECT 1:5000:180 HEAD
INJECT SUBJECT: Change Record
Create a spreadsheet of all the changes your team makes. You must email
these logs at the time specified
INJECT FOOTER
INJECT 2:5000:60 HEAD
INJECT SUBJECT: New Users
Please add 5 users in your Active Directory server. The users must have email accounts on your mail server. The username/passwords are:
a. Edgar Smythe/Lucas1834
b. Judy Thompson/Besson2012
c. Roland Henderson/Lean3258
d. Mary Campo/Geffen2834
e. Jack Crow/Lasseter1999
INJECT FOOTER
INJECT 3:5000:30 HEAD
INJECT SUBJECT: Audit Deliverable
Managament has been asked by Audit to provide a complete inventory of all systems presently active in the company's networks, both internal and external.
IT teams are to take a total assessment of the systems they are responsible for and reply to this email with a list. Present the data in table format. For each system, the following pieces of information are equired:
* Hostname
* IP address
* Operating System
* Running Services
* Internet-facing vs. Internal
Employees should be aware that audit will be verifying our presented inventories with independent scans, so it is imperetive that the list be accurate and complete. Failure to do so will result in an audit finding for the team.
INJECT FOOTER
INJECT 4:5000:60 HEAD
INJECT SUBJECT: DNS update
Add the following entries to the DNS server
www2 (last octet is .99)
mail2 (last octet is .108)
db (last octet is .66)
db2 (last octet is .88)
INJECT FOOTER
INJECT 5:5000:60 HEAD
INJECT SUBJECT: Connections are slow
The helpdesk is receiving calls that our services are slow. Please investigate and remedy the solution.
Reply with a diagnosis of the issue and what was done to remedy it. Include the time the fix was implemented.
INJECT FOOTER
INJECT 6:5000:60 HEAD
INJECT SUBJECT: Inventory Report
Management would like a downtime report. Please give a full report with the following fields for each affected system and service:
System Name
Services Down
Outage Duration
Expected Recovery Time
Reason for the outage
INJECT FOOTER
INJECT 7:5000:60 HEAD
INJECT SUBJECT: Fix Tomcat
It has come to Management's attention that the Tomcat instances on win2k8-1 and win2k8-2 are not functioning. Please remedy this immediately.
INJECT FOOTER