Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

Lab Assessment Questions & Answers 1. What information can you obtain by using t

ID: 3724902 • Letter: L

Question

Lab Assessment Questions & Answers

1. What information can you obtain by using the WHOIS tool contained within Sam Spade?

2. Besides the WHOIS utility covered in this lab, what other functions did you discover are possible with the Sam Spade utility?

3. What is the purpose of the tracert command? What useful information does the trace route tool provide? How can this information be used to attack the targeted website? 4. Is Sam Spade an intrusive tool? What is your perspective on the use of a freeware utility such as Sam Spade?

5. By its nature, WHOIS information must be publicly available. What do you think companies and organizations should do with regard to this information?

6. How can you find out who is the CEO of a company?

7. What is the goal when trying to use a search engine for data gathering or footprinting?

8. Based upon the information you uncovered, who are the primary technical contacts for the x128bit.com, iskytap.com and cloudparadox.com domains?

9. Where do you think the servers are located that host the x128bit.com, iskytap.com and cloudparadox.com domains? Provide evidence to support your claims.

10.What are the primary IP addresses for DNS servers hosted on the x128bit.com, iskytap.com and cloudparadox

Explanation / Answer

1)Answer:

Below information, i can get obtain by using the WHOIS tool contained within Sam Spade

Domain owner, including contact names, numbers, addresses, and the names of associated servers.

2)Answer:

That you can Ping, nslookup, Whois, IP Block, Dig, Traceroute, Finger SMTP Verify, Time, Blacklist, and Abuse Lookup.

3)Answer:

It identifies the network path that must be followed to reach one system from another. It provides the names and IP addresses of all intermediate systems and can be used to identify potential intermediate attack points

4)Answer:

Sam Spade is intrusive because it is a tool that you can use to find vulnerabilities or entrancesto a website. I believe that if used correctly, you can do good with it, however there are alwaysthe people who like to abuse the power

5)Answer:

If you do not want your company's information to be seen, you can hide it using an agent. Youwill end up paying them but instead of finding your information when you use whois, you will findthe agents information.

6)Answer:

Google is usually the fastest way to get that type of information.

7)Answer:

You are attempting to locate any useful information for a possible exploit. Either through a future socialengineering or phishing scam to a physical breach of the facility, it all begins with the information gathering andmapping/ foot-printing phase

8)Answer:

Werner Speissl is the admin for apples.com; Bob Jones admin for oranges.com; Linda Stoneadmin for bananas.com

9)Answer:

apples.com is located in the Gambia

oranges.com is located in the US

bananas.com is located in the US

10)Answer:

apples.com 10.20.100.20

oranges.com 192.168.40.9

banans.com 192.168.3.5