Analyzing a Hack from A to Z (Part 2)

We will finish analyzing the scan packet trace to pull out all the profiling information, and begin the network attack.

Now we left off in part one having looked at the opening packet sequence sent by Nmap. The sequence sent began with an ICMP echo reply to ascertain whether or not a computer or network was assigned to the IP address. Furthermore, we were able to take a guess that the victim computer network was likely a Microsoft Windows based one, based on the ttl in the ICMP echo reply packet it sent back to the attacker. What we shall now do is carry on looking at the remaining packets in the Nmap scan, and pull out the remaining information which will allow us to profile the victim network.

Source: Windows Security

No comments yet. Be the first.

Leave a reply

You must be logged in to post a comment.