Top-Rated Free Essay

Week 4 Lab 2: Decoding an FTP Protocol Session for Forensic Evidence

Satisfactory Essays
Assessment Worksheet
Decoding an FTP Protocol Session for Forensic Evidence
Cybercrime Forensics
Course Name and Number: _____________________________________________________
Sara Komisarz
Student Name: ________________________________________________________________
Abena Shaw
Instructor Name: ______________________________________________________________

01/18/2015
Lab Due Date: ________________________________________________________________

Overview
In this lab, you used two very powerful forensic analysis tools, Wireshark and NetWitness
Investigator, to examine the same File Transfer Protocol (FTP) traffic capture file, and compare the results of each. FTP is a protocol that is used extensively in business and social communications as means to move files between a host and a client. Just about every time you download something from an Internet site, you are using a version of FTP to manage the process.
It the most-frequently used file transfer tool, but it is vulnerable. You explored the protocol capture file to see how FTP’s cleartext transmission can endanger an organization.

Lab Assessment Questions & Answers
1. Which analysis tool used in this lab helps organize the protocol session and interaction for easier protocol analysis and forensic investigating?
Netwitness is a tool that will help.

2. How are protocol capture and analysis linked to digital computer forensic investigations? It is linked because it helps to monitor traffic and see a user's username, password, IP address and much more to monitor what they have been doing.

3. What is the source IP address of the FTP client workstation and FTP server? client = 172.16.177.132 IP Address of server = 172.16.177.157

Copyright © 2014 by Jones & Bartlett Learning, LLC, an Ascend Learning Company. All rights reserved.

www.jblearning.com

Student Lab Manual

4. What was the username and password for the successful FTP connection?
Username = badguy
Password = you will never guess this !!

5. What is the MAC layer address of the FTP client workstation and FTP server?
172.16.177.132

6. What are the names of the two text files that were transferred to the server using FTP? badnotes1.txt and badnotes2.txt,

7. What is the port number for FTP? What would you recommend for securing FTP through the public Internet?
21

8. What was the total size of the FTP file transfer?
5.71KB

9. What is the directory on the FTP server where the two text files are located?
/home/badguy/

Copyright © 2014 by Jones & Bartlett Learning, LLC, an Ascend Learning Company. All rights reserved.

www.jblearning.com

Student Lab Manual

You May Also Find These Documents Helpful

  • Good Essays

    Week 2 Lab

    • 1049 Words
    • 5 Pages

    Lab 2 – Water Quality and Contamination Experiment 1: Effects of Groundwater Contamination Table 1: Water Observations (Smell, Color, Etc.) Beaker Observations 1 This beaker has water only, clear with no smell 2 I mixed oil in the water, the oil then started to settle at the top of the water. (oil is not a soluble) 3 Beaker contained vinegar and water, the water got a little cloudy and the vinegar smell is very strong. 4 The water and laundry detergent mix had a soapy look to it, water also…

    • 1049 Words
    • 5 Pages
    Good Essays
  • Satisfactory Essays

    Week 2 Lab

    • 482 Words
    • 2 Pages

    Week 2 Complete Lab 1. Solve the exponential equation by expressing each side as a power of the same base and then equating exponents. 6 x = 216 x = 3 2. Solve the exponential equation. Express the solution in terms of natural logarithms. Then use a calculator to obtain a decimal approximation for the solution. ex = 22.8 x= ~3.12676 3. Solve the following logarithmic equation. Be sure to reject any value of x that is not in the domain of the original logarithmic expression. Give…

    • 482 Words
    • 2 Pages
    Satisfactory Essays
  • Satisfactory Essays

    Week 4 Lab

    • 529 Words
    • 3 Pages

    1 What is the goal and purpose of a BIA? To identify the impact of outages. More specifically, the goal is to identify the critical functions that can affect the organization. 2 Why is a business impact analysis (BIA) an important first step in defining a business continuity plan (BCP)? The first step towards creating a serious BCP is to identify the potential disasters one by one and determining what the potential impact might be on your business. In order to generate a professional and…

    • 529 Words
    • 3 Pages
    Satisfactory Essays
  • Good Essays

    Week 2 Lab

    • 507 Words
    • 3 Pages

    1.) From the identified threats & vulnerabilities from Lab #1 – (List At Least 3 and No More than 5, High/Medium/Low Nessus Risk Factor Definitions for Vulnerabilities) a. Fire destroys primary data center b. User downloads an unknown e-mail attachment c. Hacker penetrates your IT infrastructure and gains access to your internal network d. Workstation OS has known software vulnerability 2.) For the above identified threats and vulnerabilities, which of the following COBIT P09 Risk Management control…

    • 507 Words
    • 3 Pages
    Good Essays
  • Powerful Essays

    NETW204 Week 4 lab

    • 1308 Words
    • 7 Pages

    Provide the requested answer In your own words, summarize what you have learned about Subnetting IP Address, Configuring Static Routes and Static Host Table. Section 2 Configuring RIPv1 and RIPv2 on the Same Network - 15 Points Task 3: Step 2 Related Explanation or Response Task 4: Step 2 Related Explanation or Response Task 4: Step 3 Related Explanation or Response Task 5: Step 1 Related Explanation or Response Summary Paragraph 1 1 1 1 1 1 1 1 7 Paste the…

    • 1308 Words
    • 7 Pages
    Powerful Essays
  • Satisfactory Essays

    Netw410 Week 4 Lab

    • 352 Words
    • 2 Pages

    NETW410 Week 4 Lab Joseph Lymas NETW410, Afzal 8/3/2013 Lab 4: Connecting Point A to Point B 1. How should an Internet connection be made for the current campus? Why did you select this option over the others? AT&T is the carrier providing service to the existing campus as well as the new campus. Examine the offerings for Internet access to select the one that should be used. The internet connection should be made through DSL connection with Category 5 CM-rated UTP cable for the current…

    • 352 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    Is 305 Week 4 Lab

    • 758 Words
    • 4 Pages

    Week 4 Lab: Assessment Worksheet Performing a Business Impact Analysis for an IT Infrastructure Overview Answer the following questions, specific to the creation and focus of Business Impact Analysis as well as BCP documentation. Lab Assessment Questions & Answers 1. What is the goal and purpose of a BIA? To identify which business units, operations and process are crucial to the survival of the business. A timeframe in which business functionality must be restored…

    • 758 Words
    • 4 Pages
    Good Essays
  • Satisfactory Essays

    Netw410 Week 2 Lab

    • 393 Words
    • 2 Pages

    NETW410 Week 2 Lab Report To complete the Week 2 Lab Report, answer the questions below concerning the Network Design Lab Scenario found in Doc Sharing. Please use the template starting on page 2 and submit it to the Week 2 iLab Dropbox by the due date. Have fun while learning. Krystofir Weaver NETW410, Ali Dayoub 1/18/13 Lab 2: Application of the Top Down Network Design Methodology Lab Report 1. What are the business goals? (10 points) The business goals are to expand the…

    • 393 Words
    • 2 Pages
    Satisfactory Essays
  • Satisfactory Essays

    statistics week 2 lab

    • 549 Words
    • 3 Pages

    Statistics – Lab Week 2 Name: Math221 Creating Graphs 1. Create a Pie Chart for the variable Car - 2. Create a histogram for the variable Height – 3. Create a stem and leaf chart for the variable Money – Stem-and-Leaf Display: Money Stem-and-leaf of Money N = 20 Leaf Unit = 1.0 9 0 124456667 (3) 1 249 8 2 128 5 3 03 3 4 27 1 5 2 Calculating Descriptive Statistics 4. Calculate descriptive…

    • 549 Words
    • 3 Pages
    Satisfactory Essays
  • Satisfactory Essays

    week 4 Lab 90

    • 298 Words
    • 4 Pages

    Oklahoma? A.1 B.4 C.3 D.0 E.2 Answer Key: E Feedback: Good job! Question 2 of 8 0.0/ 20.0 Points What are the airmasses present within the images below? A. cT B. mT C. mP D. cP Answer Key: B, D Feedback: The method to determine airmasses are based on where they are from and moisture content. Question 3 of 8 10.0/ 10.0 Points Which air mass forms over North America only in summer? A.cT B.mP C.mT D.cP Answer Key: A Question 4 of 8 10.0/ 10.0 Points…

    • 298 Words
    • 4 Pages
    Satisfactory Essays