Prev | Current Page 63 | Next

Mark D. Spivey

"Practical Hacking Techniques and Countermeasures"


Description: The Sam Spade Web site located at http://www.samspade.
org provides a variety of tools against a target such as registrant
information and tracing the route to the target.
Procedure: From the http://www.samspade.org Web site enter the
target hostname or IP.
In this example, the target site is http://www.spiveytech.com.
Target Enumeration  129
By clicking the Do Stuff button the registrant information is retrieved by
a WHOIS query.
The results of this example show that:
 http://www.spiveytech.com has the IP address of 64.217.60.4.
 The site is registered through the Wild West Domains, Inc. Registrar.
 The site uses the DNS Name servers of NS1I.TEXNET.NET and NS2I.TEXNET.NET.
 In this example the registrant personal information is hidden behind the Wild
West Domains, Inc. The name server information may also provide useful
targets to an attacker.
 An application of Sam Spade is also available for purchase for Windows.
130  Practical Hacking Techniques and Countermeasures
In this example, the target is http://www.hotmail.com.
The results reveal the IP address range owned, the address of the registrant,
the name servers used, and the date registered.
*Note: Keep in mind that this type of information gathering is completely under the
radar and not detected by the target.
Target Enumeration  131
Lab 25: Operating System Identification
Gather OS Runtime and Registered IPs: Netcraft
Prerequisites: None
Countermeasures: None
Description: Determining the target operating system (OS) lets a potential
attacker know what attacks to launch.


Pages:
51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75