welcome to windows, friends of the fellowship.

Please read the entire README thoroughly before modifying anything on this computer.

Competition Info

This image is a part of ImaginaryCTF 2023. When you reach a certain number of points on the image, you will recieve the flag on your scoring report. At the beginning of the competition, you will need 100 points to get the flag. As the competition continues, every two hours the score needed to claim the flag will decrease by 1. This threshold will keep decreasing until the first team attains the flag.

Image Download

Download the image here.

Errata

There is a check that is duplicated on your scoring report. If you have this check, subtract 2 points from your score, as it will only be counted once by the server.

Competition Scenario

Hello again! The Fellowship has somehow gotten their hands on a new computer. It seems to be running something called "window" but they aren't quite sure. They wish to eventually use it to route their emails in the future, as well as for web browsing and everyday use. Please secure this machine to industry standards, as quick as possible. No one knows what dangers lurk out there.

Fellowship security policies require that all user accounts be password protected, and secure passwords must be chosen. Please enforce this by setting the minimum password length to exactly 10.

The use of authorized business software is allowed on this machine. This includes the latest versions of Opera GX, Thunderbird, and Brackets. Please make sure that these tools are installed and up to date.

The presence of any media files or "hacking tools", as well as games, is prohibited on this device. This computer is for official use by the Fellowship and other authorized users only. Please secure this image so that it is compliant with Fellowship standards, and follows secure best practices for all software and systems.

You will receive points for correctly answering Forensics Questions. Valid (scored) Forensics Questions will only be located on your Desktop as a shortcut. We highly recommend reading all Forensics Questions thoroughly before doing anything to this computer, because you could destroy information necessary for answering the forensics question.

Authorized Administrators (user:password):

frodo:Pa$$w0rd10 (YOU)
gandalf:Pa$$w0rd10
samwise:Pa$$w0rd10

Authorized Users:

gandalf
samwise
elrond
aragorn
legolas
gimli
pippin
merry
boromir
arwen
galadriel
bilbo
eowyn
faramir
treebeard
eomer
theoden

Critical Services:

SMTP (MailEnable)
HTTP (IIS)