Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
0% found this document useful (0 votes)
48 views2 pages

Lab Session 2: (Submission Deadline: 20 January 2008 Sunday Midnight)

Download as pdf or txt
Download as pdf or txt
Download as pdf or txt
You are on page 1/ 2

Ankit Fadia Certified Ethical Hacker (AFCEH) 2.

Lab Session 2
(Submission Deadline: 20th January 2008 Sunday midnight) Before you start work on this lab session, it is highly recommended that you carefully watch all WEEK 2 video lectures of the AFCEH course. Answers to all the questions can be found within the course video lectures or your text books. In case you have any doubts, clarifications or questions, feel free to post your queries on the course mailing list or try to do a simple Google search. A) Using the tools and techniques discussed in the ICMP Scanning and OS Fingerprinting sections determine the operating system running on the following systems www.relianceinfo.com, www.hackingmobilephones.com and 203.94.11.12. You may use any of the tools discussed in this section or your own tools for this lab session. You MUST describe the exact procedure that you followed in this lab session. B) Using email forging techniques taught in this course send the following forged email: Senders Name: Bill Gates Senders Email Address: billgates@microsoft.com Recipients Email Address: afceh.labsessions@gmail.com CC Email Address: Your Personal Email Address Subject: Job Proposal Body: Job Proposal C) Analyze the following email header in detail line by line:
X-Apparently-To: ankitfadia2001@yahoo.com via 216.136.175.43; 29 Apr 2003 09:31:11 -0700 (PDT) Return-Path: <amolkane@email.com> Received: from 205.158.62.158 (HELO spf1.us.outblaze.com) (205.158.62.158) by mta114.mail.scd.yahoo.com with SMTP; 29 Apr 2003 09:31:11 -0700 (PDT) Received: (qmail 24665 invoked from network); 29 Apr 2003 16:30:13 -0000 Received: from unknown (205.158.62.146) by spf1.us.outblaze.com with QMQP; 29 Apr 2003 16:30:13 -0000 Received: (qmail 6652 invoked from network); 29 Apr 2003 16:25:58 -0000 Received: from unknown (HELO ws3-3.us4.outblaze.com) (205.158.62.93) by 205-158-62146.outblaze.com with SMTP; 29 Apr 2003 16:25:58 -0000 Received: (qmail 20307 invoked by uid 1001); 29 Apr 2003 16:30:54 -0000 Message-ID: <20030429163054.20306.qmail@email.com> Content-Type: text/plain; charset="iso-8859-1" Content-Disposition: inline

Ankit Fadia Certified Ethical Hacker (AFCEH) 2.0


Content-Transfer-Encoding: 7bit MIME-Version: 1.0 X-Mailer: MIME-tools 5.41 (Entity 5.404) Received: from [128.61.130.108] by ws3-3.us4.outblaze.com with http for amolkane@email.com; Tue, 29 Apr 2003 11:30:53 -0500 From: "Amol Kane" <amolkane@email.com> | This is spam | Add to Address Book To: ankitfadia2001@yahoo.com Date: Tue, 29 Apr 2003 11:30:53 -0500 Subject: Re: help me please! X-Originating-Ip: 128.61.130.108 X-Originating-Server: ws3-3.us4.outblaze.com Content-Length: 1141

D) Assume that your system is being DOS attacked right now. What are the various steps that you will take to counter the attack? Mention the countermeasures in the same order that you will take them. E) In the Trojans section we discussed some very innovative ways of installing the Trojan on the victims computer. Brainstorm and describe any 2 other techniques that have not already been discussed in the video lectures. F) Using the password cracking techniques discussed in the video lectures, reading material and books, crack the password of the ZIP file named afceh.zip which has been uploaded to the course website (under Week 2) and to the Files section of the course mailing list. You may use any tools that are available on the Internet or your own scripts. In the answer to this question, you need to mention the cracked password and the text contained in the zipped file. HINT: Make sure you try all password cracking techniques like password guessing, dictionary based attacks, brute force and so on.

SUBMISSION INSTRUCTIONS Kindly submit your answers to Ankit Fadia via email at afceh.labsessions@gmail.com and make sure you mention your full name in the email. Subject of the email should be Lab Session 2 (otherwise your lab session work will not be accepted). All answers MUST contain only text. DO NOT include any screenshots, photos or videos in your lab session submissions. No late submissions will be accepted under any circumstances at all. You will receive an auto reply email confirmation once you have submitted the lab session. We have strict policies against cheating.

You might also like