Phishing Analysis. Ojectives Phishing Internet Protocol (IP) addresses Domain Name System (DNS) names Analyse “From” addresses Analyse URL’s Trace the.

Slides:



Advertisements
Similar presentations
1. XP 2 * The Web is a collection of files that reside on computers, called Web servers. * Web servers are connected to each other through the Internet.
Advertisements

The Internet 8th Edition Tutorial 3 Using Web-Based Services for Communication and Collaboration.
University of Leeds Academic Services How to use ISS filtering service to remove spam with Outlook Qin Li ISS Service Coordinator
XP New Perspectives on Browser and Basics Tutorial 1 1 Browser and Basics Tutorial 1.
® Microsoft Office 2010 Browser and Basics.
Top-Down Network Design Chapter Six Designing Models for Addressing and Naming Copyright 2010 Cisco Press & Priscilla Oppenheimer.
Outlook 2010 Quick Guide Table of Contents: Overview of client, Sending/Receiving , Using the address book………..……… Sent Items……………………………………………………………………………………………..…..8.
Outlook 2013 Web App (OWA) User Guide Horizon School Division #205.
Basics. 2 Class Outline Part 1 - Introduction –Explaining –Parts of an address –Types of services –Acquiring an account.
XP Browser and Basics1. XP Browser and Basics2 Learn about Web browser software and Web pages The Web is a collection of files that reside.
Recap of last class History of the Internet – DARPA – ARPANet – Key Players Other non-sense – File sharing (Napster) – Personal information security (Experian)
1 of 6 This document is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, IN THIS DOCUMENT. © 2007 Microsoft Corporation.
Browser Basics Tutorial 2 Introduction to Microsoft Internet Explorer.
1 of 6 Parts of Your Notebook Below is a graphic overview of the different parts of a OneNote 2007 notebook. Microsoft ® OneNote ® 2007 notebooks are digital.
CIS 251 – Lesson 4 File Management and The Internet Rod Rodrigues.
CSC586 Network Forensics IP Tracing/Domain Name Tracing.
1 of 5 This document is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, IN THIS DOCUMENT. © 2006 Microsoft Corporation.
Browser and Basics Tutorial 1. Learn about Web browser software and Web pages The Web is a collection of files that reside on computers, called.
Internet Basics.
GroupWise Tutorial What is GroupWise? GroupWise is an and calendar service (much like Microsoft outlook) for Collin College faculty and staff.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Addressing Fundamentals Internetworking Fundamentals Instructor: Abdirahman I. Abdi.
Practical PC, 7 th Edition Chapter 9: Sending and Attachments.
Computer Skills CIS Qais Marji 1. Chapter 6: INTERNET AND 2.
Outlook 2000 Summertime Technology 2002 Vicki Blackwell Tangipahoa Parish Schools.
Communication Through Internet ADE100- Computer Literacy Lecture 25.
Using Interact!. OPENING THE NECESSARY SOFTWARE To access the Interact service, you need to use software entitled “FirstClass.” Click and hold the Apple.
Lecturer: Ghadah Aldehim
1 ITGS - introduction A computer may have: a direct connection to a net (cable); or remote access (modem). Connect network to other network through: cables.
Internet & Overview Internet n A network of networks n It connects computers around the world.
XP New Perspectives on Browser and Basics Tutorial 1 1 Browser and Basics Tutorial 1.
Microsoft Outlook 2007 Basics Distance Learning (860) 343 – 5756 Chapman 633/632 Middlesex Community College Visit
Encryption Cisco Ironport using Click here to begin Press the ‘F5’ Key to Begin.
© 2003 Everett Public Schools Information Systems and Technology Department Getting Started with FirstClass October 10, 2015.
Basics. 2 Professional Development Centre Class Outline Part 1 - Introduction –Explaining –Parts of an address –Types of services.
Unit 10 Communication Services
Unit 2—Using the Computer Lesson 14 and Electronic Communication.
XP New Perspectives on The Internet, Sixth Edition— Comprehensive Tutorial 1 1 Browser Basics Introduction to the Web and Web Browser Software Tutorial.
Communication Between Networks How the Internet Got Its Name.
A Quick and Easy Guide to Skype Amazing Aardvarks of Alliteration Alex Hood Alex Huang John Milne Aaron Zell.
1 of 8 This document is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, IN THIS DOCUMENT. © 2007 Microsoft Corporation.
ITEC 1001 Tutorial 1 Browser and Basics. Web browser software & Web pages The Web is a collection of files that reside on computers, called Web.
Phishing Lab. Lab 9: Phishing ● Step 1: Acquire Some Data ● Open the Phishing_Evidence document. This is the original in its initial format as.
INTERNET PRESENTATION. WHAT IS THE INTERNET? The worlds largest computer network. A collection of local, regional and national computer networks linked.
Internet Presentation. What is the Internet? The worlds largest computer network. A collection of local, regional and national computer networks linked.
Concepts  messages are passed through the internet by using a protocol called simple mail transfer protocol.  The incoming messages are.
Exchange 2013 Web App (OWA) User Guide. Table of Contents How to Logon Opening View Navigation Mail Contacts Calendar 2.
1 UNIT 13 The World Wide Web Lecturer: Kholood Baselm.
The Internet 8th Edition Tutorial 3 Using Web-Based Services for Communication and Collaboration.
Walk MS Online Fundraising Guide. walk MS: Step by Step Guide How To: Access your Participant Center Personalize your Personal Page Create an Address.
HTML, Third Edition--Illustrated Brief 1 HTML, Third Edition Illustrated Brief Unit A Creating an HTML Document.
XP Browser and Basics COM111 Introduction to Computer Applications.
IPv6. Why IPv6? Running out of IPv4 addresses Internet Assigned Numbers Authority allocated the last 5 /8 blocks on 3 Feb 2011 Internet Assigned Numbers.
Technical Awareness on Analysis of Headers.
Amanda Fristy Damara Thea Bayu Gerhana Yuda Evita Fitri Ila Uswatun Hasanah Putri Ayuning Kartika Presented by :
RYAN HICKLING. WHAT IS AN An messages distributed by electronic means from one computer user to one or more recipients via a network.
A STEP-BY-STEP GUIDE FOR NAVIGATING AROUND THE HOME PANE COMPOSING & SENDING MESSAGES REPLYING TO MESSAGES ATTACHING FILES DELETING MESSAGES PRINTING MESSAGES.
For the benefit of business and people Lotus Notes R6 Training 4 February 2016 IT Division.
OWA Training Outlook Web Access Basics: , Calendars, and Contacts.
The Internet, Fourth Edition-- Illustrated 1 The Internet – Illustrated Introductory, Fourth Edition Unit B Understanding Browser Basics.
Microsoft Office 2008 for Mac – Illustrated Unit D: Getting Started with Safari.
INTERNET ADDRESSING Today’s topics:  What are Internet addresses?  Why do we need them?  How are they used?
Word and the Writing Process. To create a document 1.On the Start menu, point to Programs, and then click Microsoft Word. A new document opens in Normal.
Microsoft Windows 7 - Illustrated Unit G: Exploring the Internet with Microsoft Internet Explorer.
OWA Basic Training. Topics Mail Logging into OWA Navigating mailbox: Reading messages New messages New mail folders Reply/Forward/Print/Delete Mark, Flag,
1 UNIT 13 The World Wide Web. Introduction 2 The World Wide Web: ▫ Commonly referred to as WWW or the Web. ▫ Is a service on the Internet. It consists.
IP Addresses IPv4 IPv6.
Top-Down Network Design Chapter Six Designing Models for Addressing and Naming Copyright 2010 Cisco Press & Priscilla Oppenheimer.
Getting started with ICANN
Active Orders Supplier Administrator Training Getting Started Activities This training presentation describes the Getting Started activities that will.
IPv6 Allocation Service in JPNIC
Presentation transcript:

Phishing Analysis

Ojectives Phishing Internet Protocol (IP) addresses Domain Name System (DNS) names Analyse “From” addresses Analyse URL’s Trace the

Phishing utilizing social engineering Induces the recipient to reveal desired personal information Bank account SSN Address Etc. Sometimes entices the recipient to go to a malicious web site

IP Addressing Each interface on a network is assigned a 32-bit IP address The address has a prefix and suffix ● Network and host ID

Finding Your IP Address Examples – – – Finding your own address –Open a Command window –Type ipconfig/all on Windows

Opening a Command Prompt

Your IP Address

The Easy Way

Who Owns an IP Address Managed by the Internet Assigned Numbers Authority (IANA)IANA Users are assigned IP addresses by Internet Service Providers (ISPs) ISPs obtain allocations of IP addresses from their appropriate Regional Internet Registry (RIR)

Regional Internet Registries (RIR) APNIC (Asia Pacific Network Information Centre) AfriNIC (African Network Information Center) ARIN (American Registry for Internet Numbers) – North AmericaARIN (American Registry for Internet Numbers) LACNIC (Regional Latin-American and Caribbean IP Address Registry) – Latin America and parts of the CaribbeanLACNIC (Regional Latin-American and Caribbean IP Address Registry) RIPE NCC (Réseaux IP Européens) – Europe, parts of the Middle East and AsiaRIPE NCC (Réseaux IP Européens)

Researching IP Addresses ARIN

At Your Finger Tips

Address Geographic Location

URL’s Uniform Resource Locater The name of a web site First name – Top Level Domain.com.biz.edu.net.gov.org.mil.etc

Family Tree Second name is the organization’s name Third name www is particular web server of Geobytes After the / is the directory and document to be displayed IpLocator.htm Default is index.html

Domain Name System Associates URL Names to IP addresses Examples –ww.sou.edu = ww.sou.edu The Domain Name System (DNS) is a set of servers that together know all the names used on the Internet More about this later…

Schemes/Scams Advertisers Spammers Scammers Phishers Spear Phishers

Structure To: From: C: BC: Subject Body

Basic Header

Header Info Header info can be faked –From –Reply to –Return-path –Subject –Date Don't believe it!

Long Headers NOT EASY Different for each client Sometimes impossible For campus Groupwise Open Click on “Message Source”

AOL 1.Open AOL 2.Open the that you wish to check by double-clicking it 3.Under the To: line, there should be a “Sent from the Internet (Details)” line 4.Single left click the word “Details” to open an Internet Information window 5.This should display the full header information

Gmail 1.Log into the Gmail account 2.Open the message in question 3.To the right of the sender’s message will be a “show details” hyperlink and to the right of that is a “Reply” button (I.e., Reply is the default option at least of 10/15/2007). To the right of the word “Reply” is a pipe mark (I.e. |) and a down arrow. Single left-click the down arrow to display a small window of options. 4.Single left-click the word “show option” 5.The headers, in their entirety, will now be displayed in a new window

Hotmail 1.Log into your Hotmail account single left-click the “View Source” option. 2.Single, right-click the you wish to inspect 3.Single, ;eft-click the “View Source” option 4.The will now be displayed in its native HTML-based format with the header information at the very top.

MS Outlook Open Microsoft Outlook Open the that you wish to check the mail header information by double-clicking it Looking at the Office 2007 horizontal "ribbon" menu, move your cusor to the "Options" square Underneath the three icons for Categorize, Followup, & Mark as Unread, there is the word "Options" and to the right of it is a small three-sided square with a diagonal arrow in it Hovering over this miniature icon produces a popup with the wording "Message Options" Single, left-click the miniature icon A "Message Options" window will display The selected header information will be at the bottom of the window to the left of "Internet headers:"

Yahoo! Login to the Yahoo! account in question Single, left-click the "Options" hyperlink text from the top menu Single, left-click the "General Preferences" hyperlink text Scroll down to the Messages section of the page and place a dot in the second radio button option that reads "Show all headers on incoming messages" Scroll down to the bottom of the page and single, left-click the "Save" button Navigate to and open the message in question The full header information will now be displaye

Reading Long Header Info Check path by looking at “received” list Read it upside down (originator is at the bottom of the list) Uses the passive voice, so can be confusing

Actual

Long Header Example

Real Spam

Long Headers

Real Owner of IP Address

Real Spam

Look for Real Link

Checking whois For URL

Another Example Just have to reply to the But where do you go? Not where you think.

Where you think you are going.

Another look at the

ARIN Whois Result Go to Afrinic

Check out Afrinic

Phishing Again Probably should not reply to Nigeria and give them your bank account number

Summary IANA assigns IP addresses Regional Registries assign addresses for regions Start with ARIN when researching –ARIN will tell you where to go for non- American addresses Turn on long headers in Don't fall for silly stuff in the body of the