TestDrive

Wear a hat as a Victim

Updated

In this section, you will go through the experience as a victim. You will open the email using outlook, open the attachment etc., all the steps what victim had gone through.


This attack is phishing email turned into a ransomware.

Brief Instructions

  1. Set up outlook without an email account. For more instructions in detail, CLICK HERE.
  2. Open & Export, Import from another program or file
  3. Import Outlook Data File (.pst) located C:\Users\Public\Desktop\eric.shun
    • Note: Please be sure to import pst file from the given location.
  4. Open the Word document attachment in the email from Ann Teek (ann.teek@freecoupon.tk)

For elaborated step-by-step walkthrough and detailed instructions, CLICK HERE.

Elaborated Instructions

  1. Click on Start and search outlook, right click to run as administrator

Outlook Setup

2. Click on Next

3. Select the radio button No

4. Click on Next

Use Outlook without email account

5. Check "Use Outlook without an email account"

6. Click on Finish

Import/Export

7. [If prompted] click Ask me later

8. Click on File of Outlook window

9. Select Open & Export

Import from another program

10. Select Import from another program or file

11. Click on Next

Select Outlook Data File

12. Select Outlook Data File (.pst)

Browse to file

Note: Don't click anywhere other than Browse

13. Click on Browse...

Open .pst file

14. Type in the Windows explorer browser. 

  • C:\Users\Public\Desktop\

Note: It is important that you type the exact location.

Tip: If you are using Horizon client (not browser), you can copy/paste this location from this guide to TestDrive user experience environment.

15. Select eric.shun (This is the outlook pst file)

16. Click on open

Verify File

Note: Verify that you are importing the right pst file such as eric.shun.pst

17. Click on Next

Finish

18. Click on Finish

After import is completed.

19. Click on Inbox

Open Attachment

20. [Optional] Read the 1st email from Ann Teek (ann.teek@freecoupon.tk)

21. Click and open attachment, the Word document

22. Click on Enable Editing

Enable Content

23. Click on Enable Content

Note: You will see Google Chrome and notepad opened up automatically. It is part of the user experience, explained in detail here.

Previous Article Attack Stages Overview
Next Article Wear a hat as a security operations center (SOC) analyst