1 00:00:10,320 --> 00:00:16,470 So in the last lecture and the previous one to that, we saw what is an impression and also discussed 2 00:00:16,860 --> 00:00:23,220 different types of enumeration, and now it's time to make your hands dirty so super can. 3 00:00:23,220 --> 00:00:27,560 And in this lecture, you are going to see network numeration using superscreen. 4 00:00:28,200 --> 00:00:34,260 So I suppose can scanners, can DCP Port Scanner Bingo and resolve. 5 00:00:34,980 --> 00:00:41,640 Its features include extensive windows hosting numeration capability, DCP synchronization scanning 6 00:00:41,970 --> 00:00:43,070 and EUTERPE scanning. 7 00:00:44,610 --> 00:00:48,180 So without wasting any much time, let us get started. 8 00:00:48,690 --> 00:00:51,720 So now first we have to download a super scan. 9 00:00:52,080 --> 00:00:54,450 So on Google type download. 10 00:00:54,450 --> 00:00:55,320 Super scan. 11 00:00:58,400 --> 00:01:03,950 So this turtling that you can see on the screen, superscreen from cell phone to download, click there 12 00:01:04,520 --> 00:01:07,790 and proceed and follow the instructions to download super superscreen. 13 00:01:10,010 --> 00:01:13,880 We will wait till the software gets downloaded our machine. 14 00:01:19,870 --> 00:01:26,500 So you can see the super scan, the file has been downloaded click extract here to get the setup. 15 00:01:42,730 --> 00:01:49,040 So you can see the superscreen set up, click Double-Click, and yes, the error is you must have total 16 00:01:49,060 --> 00:01:50,160 administrator privileges. 17 00:01:50,170 --> 00:01:54,190 So right, click on the setup and then click run as administrator. 18 00:01:59,040 --> 00:02:06,180 So I guess it is already preinstalled Vergence or minimize the rest of the window and let us start exploring 19 00:02:06,180 --> 00:02:07,450 what is superscreen. 20 00:02:07,620 --> 00:02:10,260 So what is the purpose of Superscreen? 21 00:02:11,100 --> 00:02:18,690 The purpose of super is to gather information such as account threshold, local groups and user enumeration 22 00:02:18,930 --> 00:02:25,200 global groups and user accounts, then check for user accounts with blank passwords and other forms. 23 00:02:25,200 --> 00:02:32,790 Also now, during enumeration, information is systematically collected and individual systems are identified, 24 00:02:33,480 --> 00:02:39,270 penetration testers examine systems in their entirety to evaluate security weaknesses. 25 00:02:39,810 --> 00:02:46,800 So in this lab, we will extract net bios, information, user group and accounts, network shares and 26 00:02:46,800 --> 00:02:48,540 other TCP and UDP books. 27 00:02:49,920 --> 00:02:57,390 You know that for all the purposes you are using the website provided by the council that is w w w dot 28 00:02:57,510 --> 00:02:58,940 certified HÃ¥kon dot com. 29 00:03:00,930 --> 00:03:03,750 So click on the Windows enumeration tab. 30 00:03:05,640 --> 00:03:07,960 Now enter the IP address of the target machine. 31 00:03:07,960 --> 00:03:14,850 So to find out the IP address of the target machine, we will use the ping command to issue the target 32 00:03:14,850 --> 00:03:22,380 IP address Sopan command prompt and typing w w w dot certified hacker dot com. 33 00:03:29,590 --> 00:03:30,260 There you go. 34 00:03:30,280 --> 00:03:38,110 We have the IP address controversy, copy the IP address and go to superscreen and then paste it in 35 00:03:38,110 --> 00:03:38,920 the target field. 36 00:03:43,030 --> 00:03:48,730 Now, since are using certified hacker dot com, we have this IP address, if you want to use or if 37 00:03:48,730 --> 00:03:51,620 you are doing proper penetration test, this may differ in your lap. 38 00:03:52,180 --> 00:03:55,030 Now check the types of the enumeration you want to perform. 39 00:03:55,060 --> 00:03:59,110 We have checked all the types of enumeration and now click enumerate. 40 00:04:00,510 --> 00:04:03,180 We will wait till we get further information. 41 00:04:19,620 --> 00:04:26,970 Super can starts enumerating the provided hostname and displays the results, as you can see on the 42 00:04:26,970 --> 00:04:30,710 screen, and we will wait till we arrive for the results. 43 00:04:37,170 --> 00:04:42,990 You can see that we have successfully completed the enumeration after the liberation is complete, please 44 00:04:42,990 --> 00:04:44,880 press the button changes. 45 00:04:47,230 --> 00:04:51,310 Now, since it has already stopped automatically, you can't see a stop button there. 46 00:04:52,060 --> 00:04:55,630 So now scroll the window to see the results of enumeration. 47 00:04:56,240 --> 00:05:00,480 We can see the groups present on 30 dot com. 48 00:05:00,490 --> 00:05:03,120 There are users, presentence, whatever dot com. 49 00:05:03,490 --> 00:05:07,690 There are also shares which represent Rossotti, dot com drivers are present. 50 00:05:07,700 --> 00:05:13,420 So basically this super scan or this information that you can see on the screen will not give you the 51 00:05:13,420 --> 00:05:17,860 results, but will just tell you whether a thing is present or not. 52 00:05:17,860 --> 00:05:23,680 Since this is a numeration, it will just give you an answer in the form of yes or no. 53 00:05:24,030 --> 00:05:25,040 Are users present? 54 00:05:25,090 --> 00:05:25,480 Yes. 55 00:05:25,800 --> 00:05:26,920 Are groups present? 56 00:05:26,950 --> 00:05:27,400 Yes. 57 00:05:27,730 --> 00:05:28,850 Are shares present? 58 00:05:28,970 --> 00:05:29,290 Yes. 59 00:05:29,650 --> 00:05:35,860 So now you have to use the other tools to actually get the users and the groups. 60 00:05:36,730 --> 00:05:42,730 Now we will go to tools in this tool will again. 61 00:05:43,120 --> 00:05:51,550 It is asking us to put the hostname IP url so we'll just type w w w dot certified hucko dot com. 62 00:05:59,700 --> 00:06:06,360 And now we will gather information which we had gathered using the multiple to just click hostname or 63 00:06:06,360 --> 00:06:11,170 IP lookup, and there you go, we find the IP address. 64 00:06:11,490 --> 00:06:12,930 Now let us get ping. 65 00:06:13,860 --> 00:06:17,340 Yes, it is pinging now, zone transfer. 66 00:06:18,390 --> 00:06:19,350 Let's see what we get. 67 00:06:21,080 --> 00:06:26,450 So the domain is death dot com and there are 10, which is the zone for 31 dot com. 68 00:06:27,030 --> 00:06:28,250 Let's go to who is. 69 00:06:30,230 --> 00:06:36,230 And the legal it is network solutions, which we had found out using multicore also superscreen is a 70 00:06:36,230 --> 00:06:42,980 tool which is used to analyze and document the results related to the host or target of each other and 71 00:06:42,980 --> 00:06:43,520 find out. 72 00:06:43,760 --> 00:06:46,550 So this was all for today's lecture. 73 00:06:46,550 --> 00:06:49,850 In this lecture, we saw how to use superscreen. 74 00:06:49,850 --> 00:06:57,020 And the conclusion for this lecture is to you will only get the answer in the form of yes or no. 75 00:06:57,260 --> 00:06:59,390 You won't get the detailed information. 76 00:06:59,390 --> 00:07:02,450 You will have to use other tools such as multicore and other devices. 77 00:07:02,840 --> 00:07:04,970 But yes, you will get a clear answer. 78 00:07:05,030 --> 00:07:07,130 The users are present on the target website. 79 00:07:07,470 --> 00:07:08,960 The shares are present or not. 80 00:07:09,290 --> 00:07:13,540 So in the next lecture we will see a numeration using HAINA.