BCIS 4630 Lab 4 Worksheet
Name: ________________
BCIS 4630 Lab 4 Worksheet
Question 4.1 Eternal Blue Attack
4.1.1. Were you able to compromise the victim and get a meterpreter prompt? Support your answer with screenshot.
4.1.2. What did the sysinfo output tell you about the victim? Support your answer with screenshot.
4.1.3. Were you able to capture the desktop of the victim? Support your answer with screenshot.
4.1.4. Were you able to obtain a shell to the victim? What path of the working directory was displayed in front of the shell prompt (the part in front of the > symbol). Support your answer with screenshot.
4.1.5. Were you able to create the C:\hacked folder? Support your answer with screenshot.
Question 4.2 Post-Exploit Actions
4.2.1 Were you able to create a new account for yourself and add it to the local administrators group? Support your answer with screenshot.
4.2.2. Did Meterpreter capture the characters you typed into the URL bar? Support your answer with a screenshot.
4.2.3. Did Meterpreter detect correctly whether the victim is a virtual machine? Support your answer with a screenshot.
4.2.4. Were you able to insert into the hosts file a new record that maps the domain name cob.unt.edu to the IP address 10.1.xx.228? Support your answer with a screenshot. (Important! You must accomplish this successfully before you move on to the next section. Contact your instructor if this step doesn't succeed).
Question 4.3 IE CSS Import Attack
Were you able to obtain a Meterpreter prompt? What's the ID of the user you're accessing the Windows 7 machine with? Support your answer with a screenshot.
Question 4.4 Amitage
Were you able to compromise the victim from inside Armitage? Support your answer with a screenshot showing that.
PAGE
Spring 2020 Lab 4 Worksheet - 1
BCIS 4630 Fundamentals of IT Security