What is the os reported by nmap of the target machine

Assignment Help Other Subject
Reference no: EM133180632

HACK 2200 Hacking and Exploits - Durham college

Lab: Scanning and Enumeration

Introduction

Scanning is one of the most important phases of intelligence gathering for an attacker. In the process of scanning, the attacker tries to gather information about the specific IP addresses that can be accessed over the Internet, the target's operating systems and system architecture, and the services running on each computer [1].

One of the tools used to conduct network scanning is Nmap ("Network Mapper"). It is a free and open-source (license) utility for network discovery and security auditing. Nmap uses raw IP packets to determine:

• what hosts are available on the network,

• what services (application name and version) those hosts are offering,

• what operating systems (and OS versions) they are running, and

• what type of packet filters/firewalls are in use.

It was designed to rapidly scan large networks, but works fine against single hosts. Nmap runs on all major computer operating systems.

After scanning, we want to enumerate the network. Enumeration is usually the first step taken by a hacker to compromise a system. During enumeration, the attacker's objective is to identify valid user accounts or groups that will provide anonymity once the system has been compromised. Enumeration involves making active connections to the target system or subjecting it to direct queries.
In this lab we will explore:

Part 1 - Network Scanning Part 2 - Enumeration

Lab Setup
We will use the machines you preprated during the first week: 1- Kali Linux 2020.4 (KaliVM)
2- Metasploitable 3 Ubuntu (MS3UBUNTU)
3- Metasploitable 3 Windows Server 2008 (MS3WS2008)

Part 1 - Network Scanning

Step 1: Start the lab virtual machines

1. Start your Kali virtual machine (KaliVM), your Mestapolitable3 Windows Server 2008 machine (MS3WS2008), and Metaspolitable3 Ubuntu (MS3UBUNTU) machine.
2. Login to each machine, and take a note of each machine's IP address. Write the IP
addresses in your answer file.

Question 1 - What is the IP address of your KaliVM, MS3WS2008, and MS3UBUNTU? Write your answers in the answer file.

3. On your KaliVM, change the terminal prompt to be your first name. You can do that using the following command:
(kali@kali)-[~] PS1='[`date "+%D"`] yourfirstname [`date "+%r"`] -[~]'

Your terminal should look similar to the screen below:

All commands in the following tasks are to be run on your KaliVM, targeting your MS3WS2008 and MS3UBUNTU VMs.

Step 2: Scanning MS3WS2008 using nmap
We will use nmap to scan our target machines and find the services running on them:
1. On your KaliVM, scan the MS3WS2008 machine, using the IP address you obtained in the previous step:

KaliVM# sudo nmap -sS -sV -O [target IP address]
Take a screenshot to replace the one below, and place it under Screenshot#1 in the answer file.

We can see that there is a number of open ports and services on the target machine such as ftpd on port 21. These services may contain vulnerabilities that can be exploited.
Based on the results of your scan, answer the following questions:

Question 2 - What is the OS reported by nmap of the target machine?

Question 3 - List 5 of the running services with their version and the ports they are running on.

Step 3: Scanning MS3UBUNTU using nmap
Repeat Step 2 while targeting MS3UBUNTU machine.
Take a screenshot to replace the one below, and place it under Screenshot#2 in the answer file.

Based on the results of your scan, answer the following questions:

Question 4 - What is the OS reported by nmap of the target machine?

Question 5 - List 5 of the running services with their version and the ports they are running on.

Part 2 - Enumeration

Step 1: Enumerating users with snmp_enumusers
In this task, we will use the msfconsole on your KaliVM to run snmp_enumusers script .
1- Start an msf console, and change the console prompt:
KaliVM# msfconsole
Msf6> set PROMPT %yel%L %grn%T %grnyourfirstname

2- To use the snmp_enumusers script, run the following commands using MS3WS2008 as your target machine:

msfconsole# use auxiliary/scanner/snmp/snmp_enumusers msfconsole# show options
msfconsole# set RHOSTS [target IP address] msfconsole# run

Take a screenshot to replace the one below, and place it under Screenshot#3 in the answer file.

Question 6 - List 3 user accounts that were found by the snmp_enumusers script Exit msfconsole.
Step 2: Repeat Step 1 while targeting MS3UBUNTU machine, but use enum4linux command instead running the following command in the kali linux terminal:
KaliVM# enum4linux Take a screenshot to replace the one below, and place it under Screenshot#4 in the answer file.

Question 7 - List 3 user accounts that were found by the enum4linux script

Attachment:- Scanning and Enumeration.rar

Reference no: EM133180632

Questions Cloud

Record the necessary journal entries : Record the necessary journal entries assuming a small (10%) stock dividend, a large (100%) stock dividend, and a 2-for-1 stock split
Compute earnings per share of common stock : Compute earnings per share of common stock for 2020 under the following independent situations - The dividend to preferred stockholders was declared
Selection of new healthcare information system : Imagine that you are a project manager with a large hospital. You are responsible for facilitating the selection of a new healthcare information system.
Define the dual mandate of the federal reserve : Question - Define the dual mandate of the federal reserve and describe 2 monetary policy actions that the fed uses to achieve their goal
What is the os reported by nmap of the target machine : What is the IP address of your KaliVM and What is the OS reported by nmap of the target machine
Describing key audit risks posed by your selected company : Question - Prepare a written memo and make an oral presentation describing the key audit risks posed by your selected company: Walmart
Compute the book value per share of common stock : Campbell Corporation's common stock was selling at $52 per share at the end of its fiscal year. Compute the book value per share of common stock
Show the allocation of dividends to each class of stock : During its first year, the corporation issued 49,000 shares of $5 par value preferred stock. Show the allocation of dividends to each class of stock
What inventory balance would company a report : On January 1, 2021, Company A adopted the dollar-value LIFO method. The inventory cost on this date was $700,000. What inventory balance would Company A report

Reviews

Write a Review

Other Subject Questions & Answers

  Cross-cultural opportunities and conflicts in canada

Short Paper on Cross-cultural Opportunities and Conflicts in Canada.

  Sociology theory questions

Sociology are very fundamental in nature. Role strain and role constraint speak about the duties and responsibilities of the roles of people in society or in a group. A short theory about Darwin and Moths is also answered.

  A book review on unfaithful angels

This review will help the reader understand the social work profession through different concepts giving the glimpse of why the social work profession might have drifted away from its original purpose of serving the poor.

  Disorder paper: schizophrenia

Schizophrenia does not really have just one single cause. It is a possibility that this disorder could be inherited but not all doctors are sure.

  Individual assignment: two models handout and rubric

Individual Assignment : Two Models Handout and Rubric,    This paper will allow you to understand and evaluate two vastly different organizational models and to effectively communicate their differences.

  Developing strategic intent for toyota

The following report includes the description about the organization, its strategies, industry analysis in which it operates and its position in the industry.

  Gasoline powered passenger vehicles

In this study, we examine how gasoline price volatility and income of the consumers impacts consumer's demand for gasoline.

  An aspect of poverty in canada

Economics thesis undergrad 4th year paper to write. it should be about 22 pages in length, literature review, economic analysis and then data or cost benefit analysis.

  Ngn customer satisfaction qos indicator for 3g services

The paper aims to highlight the global trends in countries and regions where 3G has already been introduced and propose an implementation plan to the telecom operators of developing countries.

  Prepare a power point presentation

Prepare the power point presentation for the case: Santa Fe Independent School District

  Information literacy is important in this environment

Information literacy is critically important in this contemporary environment

  Associative property of multiplication

Write a definition for associative property of multiplication.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd