0% found this document useful (0 votes)
58 views

Cyber Forensic Lab Assignment 1-4

The document describes a packet tracer lab assignment to: 1. Build a simple network topology using various networking devices connected by cables. 2. Configure the devices and verify the connections by launching a packet tracer and observing the traffic. 3. Analyze and save the results, concluding how the network was built and configured and the connections between devices.

Uploaded by

aman raj
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
58 views

Cyber Forensic Lab Assignment 1-4

The document describes a packet tracer lab assignment to: 1. Build a simple network topology using various networking devices connected by cables. 2. Configure the devices and verify the connections by launching a packet tracer and observing the traffic. 3. Analyze and save the results, concluding how the network was built and configured and the connections between devices.

Uploaded by

aman raj
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 12

LAB AssIGNMENT 1

Packe Tracer > Cseate a emple Netoo rk usng


Bueket Tmacet.

Topology
WRT 30ON
neleS Routey

Cable Modem P7

pC- PT Cloud- PT
PC Tntewnet o

Laptop-P7 Sewe pT
Lap topD Ciso Om

Addresai Tasle
LP Addrey Swont Mata Dyaut ate ao ay
Deviee Interface 192- l68.0, |

(92-16B0) 2S 2SS.2SS.b
wles LAN
Ro ute
iees Lnteenet DH CP
ROnteu 2SS. 25S.253. o
202- ,?-220-22o
C isco Com Rhent D
Semwey
DHCP

OBJECTIVE a gimple netrk is the legical


Tepogt
Lanch packet Tra cey
Step |-
Step 2 Build the Topologg
Netoork Devices
ConfgwAe the

Veity Connetulkg
ue and cloae Packet Tracen.
D Sauwe the
CONLUSION

Though the actwty, we Ceaunt heo to buila


tet the
a Netoork ) Configue the olevices and
the devices
connectiwig among

OI MooEL >
(osr) model dee eribes
Inteaconneeton to communicate
(he open sytem ystem
Seuen Cayeas hat comnputer
bare On the concept
netooh , It is into 3even
a communication ystem
a
Spliting p
albstract cayeS

KAUS HIK AKHAN!


Name ’ dOO2002

Sec >
LAB AssIGNn\ENT 2
ExPERIM ENT 2i- 0ieshaLk as a Neloosk Pooto co
Analyze
PART’1 - ORESHARK EN VIRONMENT
vaeerous command ?
gecteon menu ba enales

Ans.Ple opt ion enaes all tese acttorng

. Psnt = File Prnt


Open = pile open isedien
Export Packet D
Fle
" Expot =
Pile Baue Quit = Fle
e Save
menu Bay contaio iteme to ind pacheks ?
Ohat Seletion b
all hese act uong.
Edit' opton enabla
" ftnd a packet
Time Peerence
" Tine Rfe en ce
Bdt ’ mak Packet (s)
" macK Pactket e

Pyuens staot K Stop


one to
onat n menu Bay aoco

captae e edit 7

Ans "Capture " opteon en ables all these adieng


Capte Start
Stop Captue
Eit coptore > Edit Captuee FUters
2tatsthcs 2
selection n Menu Ban conto n
0hat
neee actéens.
enables
"8tot itice ! opt on ’ CaPkue
captuned packes - 8 t a tist ics Fle Popet eg
Sunman
-Stalaties Protocol Hienaachyt.
. Prctocol henachy
tendeo ,campute4
?mode
mode.
netoork all attuck.
captuueoenning
nteaca
netoosk compete4 captue move netoork
Congwme
punpose
cLous
poomis not
to
cortains
eoms
to
pDmycuos
to jut
not to that
s computen
theat
Chude eobpages
he
aome all
aclions ieshank
About
’ teface othe Can
Page
Manual
5HelpHelp toneed you
enable
data Coptulng
atorage
anayig
or neces,asucf
potentalnot
lens &0cwitg, alloos
,i exposes
nclucin9
tratie
netoork
te
here netoork to kmemery
alloog
Baa
monu

enalble
Contents
be
Lrottic necd Thu
for
tntended
tng. howeng
for 4raiencuding
computen.
youn Con2urnplion
>
S4
cpU,
n
mocle
all
o'eshaer aluoay
trchuteshoo conceun
’Prwacly
A >
Rish
clior
? option
As Help
oplon
Hetp" to copturie
cuous
hencwieghauk,
netiooyk
al CDDrachacke adduon
ohen
eNen
ResouseR
u . Acas
Pags
Manual
aele
help "Hetp"
Help net
isproom
Ohal
to Basic Onllne
d
ul
Sho
for may
to
OS) Ay
" (
PART ’ 3: Analring Sample PbU captunes
(Q3) cohal potocol s
Ag Centrot Menage Protocof (Tcmp)
Tntexnet controf
Name

an 'detination"?
A RIO) ypes of *s0unce'
t7

adres n
locate "sownoe"and 'letenalisn'3
netooy k
he pa chet detaies Pane ohen analyzing
trafic.
genden or
oneye packek s gent
owce port ncemben asoclated
D SoCe Pot ’
poces hat
generated the packet.
(B) DESTINAeON AopRESS
dres
AddeK ’ Thes -ts fhe Te ad
ODestnation LP eent
cohich he packee s
device
the
Ag9ocoled
(i) Destnalion Port ’ detinalion olevibe
n he
applcation or proces
0ilh the
the fixt echo equert
belou,
Analyreeano and
reply and omplete he fae
and
First Echo first Echo
Request Reply
frame Number 3040q 30854
|2409:4089:le18: 2404:686D : 46D4:
Source Te Address a032: 2Sab: as4: Bo3:: 2604
ze4 b3ct
2404: 686D 2 46042409:4 D89:le18 :Q032:
Destinaton TP Addres B03:: 2604 35aG i abyy:2e g4
b3et
TCMP pe Vaue 128 129

ICmp Ape- Code Vatue


74:12: b3:b3: bb3 4| 52:49: bO:c& !93:73
Source Ethemet Address
Destiratn Cthemet Addey 52:49.b0:c8:43:3| 4:12:b3:b3:bb3
Intemet Proto(o Vesion 6

Tine To Live (TT Vaue l28

B. HTTP PDU CAPTURe


name S the oebsite actessed by
a) what do you think is the
the host?
Ana) edqedt . ne. qvti .. com the website
6) hat us the protveal that was sed in esolvirg
a stondard ame
mame to a corres ponding IP Ad dress by doirg
queny?
Arn) HTTP (Huper Tezt Transter Protolal)
fart |- Checu TCP Hand sha king Using Wireshark
8) ind the sequence munber, wndouo size ard krgth ethe Serder.
Ans) seg. mo =0
Win 6ZS3S
Len
the
ind he sequence mumber, windoo size and length tor
t) receiver.
An) seq. moo =6S33S
win
Len
Ack

Conclusion
this capeiment, we fomi ar2ed nth Wireshark appuation
Thouh Qt and perfoh TeP
and petomed Pbu capture ahcd analyas 4it
Hand shaking

NAME: KAUSHIK LAKHANI


RE G 204lO1200 2
SEC :cSIT- D
LAB A3sIGNMEN T’3
SERVIcE & CoNNECIONS

Netgtat|TPcone he gewiceg
Gome
(Q) ote dousn tne name
ODNs Cçent
Aug OTP Helper
o Embedded Moce Fa Ple Syne telper
coent gewice 7
Q T he DHCP
lient Bewice es
yes, DHCP
SewiceR hat
3) Note doon the Netroork Jrspectio
genvice
Delenden Antivis
As OMieosoft
Nelloqon Pg and Plug
O Seswiee
Oallet
O Véntual Duk the
System,
out ne TP add'
poonfg
|42: 168.57- 222
OTP,y Addres (ec74db9:995: SSA
+ qeaB:
Addes 2M09: u0e9 2d82:
() TPvb
Pnd mac aldek
44-12- B3-B3 - B 3 7
?
atwe
ae
(6) tteo mangwrelen LAN Adapte, oi-Pi
'1
EXPwRER
SySNTeRNALS PROCess
Set,
ePU, Prwate eytes
(aD fnd the PID, name -for tne
deseriptsRn , compang
Procew aystomfU<o.0, PID Slb
-2436 k
Put Byte = 304Ok
gmes.ee PIP S76

PD (062

( aeauices ee CPU< O,o| ) PIb=|40


Put

Oeveing set 729 2K


ePUk 0.ol } PLD =1304
(vchost . exe 2 14036k
Pvt Byte Set = 24,660
Dindo0g geuwices
Prces
= Host.
Descvip (ion
Mico soft Compoalion
Name -
Compay gewiee ?
you disabe the menenge genviee , by
Con he menegea
cas disable
Yes , oe Propeees
24Be gabs
MeKeqing Serwice ’
Stouep
NETSTAT he
Local
foregn Qddes
C)ohat
estasehed connecls ?
ADpRess
Locat ega]:623y
4s2es 3eb3:
yos4:QA82:ea 5: atd0:
TP C24 0e1
P(D
Apoee sS
PoactaN
443
o02 23!20031 t
C24o4 i6Bo0 4
Q2 hat ase he dieent stule
Connetion that you see 7
ESOBUI sHeD
FIN-WAT- 2 OLAst-A CK

nunber he estabUshed conn eal ion?


hat he port

O6)364
O62369

IPCONFlG
Ote deon he gubnet mak B Local conmpute
25S.2ss.25S.O

|92 (6.S7 6O
A Cocal
ase to
(Q)ere
suczenfallyt ?
Yes, 0th local
IP addre
You abe to
Q Dene auccenht
DN3

(As) Yes, wh
TRACERT awilale cot tace t
all fhe option
to hostname.
OPTION Don't eowe adades
seaHch fo taget
no. o hops 40 host -eR
masm youte along
Coose gounee m'uliceconds
for each
o i t toneou
race ord-trp alh
-R astar
Sowice
LAB AsSTGNMeNT ’4
TCP DUMPoume cAr
menege
Ar TCP
Ne
1

Destinal ion Length uy3 CriN, ACK]


2 44423

UDP
Protoo
N SOURCe Datonal ten
192- 168. S222 SS. |O-80.L

Lengh Info eqcPo bY 413UD6Y


DCID
13 (0
Tep connecr 2
bandshakin for
C olocate the 3-oay
Ne

CSVNJ
Dest(NAT (ON PROTOcoL 44424 ’ 448
T
DESTINANON
SouRCE

4u3>4q42
seqsD,Ack|

wn64768
Conne'on tesunnale ?

(03) Did the TepP connecon


-(emenated,
q)
CA Yes, the %0uce q0|:edesie d &c
O2i42'SA.86243 409i40392dO6 7bd
2
2023-(2-1S
Protoco( Length
Destinat'on 42

CeN, AcI
4942 3 ’443
Tme SoURCe
2023)2-S 2u09 -g4:2d ob4ot: edes i edbc: qau

Deunato Potocol (ength Anfo


42 4q423443ACKJ Seq -2
Ace= 2

(Q)Ohat oa he the connecton ?

packet Dtth insecwne 471P profocol ?


S) coas there any ingecwe H P profocol.
No, heue any conncet on

QoY yes, fnel


Ao. ?
port nmbens uye
X seuwen
a Ohat ae cent Cient Port q43
424 ;
Sewice Port - 4a detinatsn.
? Fnd
DNS pa eket
DNS packet. 57. 60
Yes ,hene |42"l68
Destination =
|42-|68.S7.222 nead foom
3ow = 0lenable geu fo
comand n He t ASCIL
ohat tep dmp owtput eontent
and gho he
the coptne
celimt
tehaK
-- hex dunp
Captunefte · pcapng
Neme ogthe

LAKHANI
KAUSHIK
NAMe ’
ReG No> oyLo2OO2
3ec ’CSIT D

You might also like

pFad - Phonifier reborn

Pfad - The Proxy pFad of © 2024 Garber Painting. All rights reserved.

Note: This service is not intended for secure transactions such as banking, social media, email, or purchasing. Use at your own risk. We assume no liability whatsoever for broken pages.


Alternative Proxies:

Alternative Proxy

pFad Proxy

pFad v3 Proxy

pFad v4 Proxy