CH-2 Footprinting
Footprinting kisi bhi hacker
ke liye first step hota hai.
Jankari means target
system live hai ki nahi uska ip address kiya hai geographical location kya
hai.kitne security system hai jaise ki ide or firewall.konsi operating system
hai or kitne domain name hai ya organization kitni badi hai.phone number
employed ke bare puri jankari.ye sab jankari akatra karkar hi hacker apne kaam
ko anjam deta hai.ye vaisa hi jaise koi chor bank me chori karne ke pahle ye
jaan leta hai ki camera kaha hai, security guard kitne hai,cash kis counter par
milge. Ek samjdar chor to in tariko ko apnata hi hai.
WHAT IS FOOTPRINTING
“The fine art of gathering target information”
Yani ki ssamjdari se
target ki puri jaankari ko ekatra karna footprinting kahlata hai.
Footprinting ke do part
hote hai
· 1st Active
· 2nd Passive
Active Footprinting-:
Active footprinting me ye
chijo ka use hota hai
· website mirroring
· Email trashing
· Server varifaction
1. Website mirroring
Website mirroring se hum
website ke saare contant ko offline use kar sakte hai or analyse kar sakte hai. mirroring website ko at is it
copy kara jata hai.
Isliye kitne tools ka use
hota hai. is me se kuch niche diye hue hai
· Teleport pro
· iMiser
· httrack website coppiar
website ko miiror karne
ke baad ofline varnubilty dhundhi jati hai isse me risk naa ke barabar hota hai
ham aap ko httrack
website coppiar ka use kar kar dikhate hai.
1. Sab se pahle httrack website coppiar
install kijiye or open kijiye to aap ko niche di hui screen dikhai degi.
httrack website coppiar
2. Ab next paar click kigiye yaha project name me aap ka project ka naam likhiye or part set kijiye or next par click kijiye.is parth me aapki website copy hoyegi
3. Web address me url daliye jise aap copy karna chate hai. Jaise maine ya ha http://indianghoststories.com/category/ghost-stories-in-hindi/ ye url type kiya hai
4. Ab aap set option par click kijiye
yaha par scan rules par click kijiye hai or aap kya kya copy karna chate hai us
par click kijiye or next par click kijiye.
5. Ab finish par click kijiye par click kijiye
7. Is tarah website copy honi suru ho
jayegi use pura ho jane dijiye.
8. Jb aap ki website copy ho jayegi to
aap use ofline use kar sakte hai jb website copy ho jayegi to aap ko screen saw
hogi
Or aap us location par
jaker us website ko open kar sakte hai.
2. Email trashing
Email trashing me Email aap ko kaha
se bhaija gaya hai.kis kis server se aaya hai uska ip Address kiya hai ye pata
lagaya jata hai.
Is liye ham
kuch tools ka use karte hai jaise ki
· Email tracking pro
· MSGTAG
· Polite Mail
· Zendio
Koi aap ko fake mail bhejta hai to us email ka ip address pata karna vo
kaha se bheja gaya hai ye location pata karna.
Ham aap ko email tracker pro ka use kar ke dikhayege.
1) Sabse pahle aap email tracker pro
install kar lijiye to aap ko yeh screen saw hogi
2) Ab aap ok par click kigiye. ab aap
trace hader par click kijiye
3) Ab aapko is liye email header chayiye is liye
aap jis email ko trace karna chaahte hai vo email open kijiye
Or screen pe dikhi de
raha hai vaha par click kijiye.jaise ki arrow par show orijnal par.ab header ko copy kar lijiye .
4) Header ko email tracking pro me past
kar dijiye or trace par click kar dijiye Email Trace hona suru ho jayega
5) Ab aapko sab router ke ip address mil
jaye ge.
3. Server verification
Server verification me hum ye pata karte hai server reachable hai ki nahi
yani server us samay on hai ki nahi. Ek hacker ye jaankar hi hacking karna suru
karta hai kyuki agar server online nahi hai to use hack karna hai bahut hi
muskil ho jata hai.
Is liye ping command ka use hota hai
Apne system se target system tak hame pahuchne ke liye ham kitne router
se hoker gujar rahe hai.ye pata lagaya jata hai isme server verification aa
jata hai.
Is liye tools ka use kiya jata hai
· Ping
· Tracert
· Visual Traceroutr
· Sam Spade
· TCR Trace Route
Conetivity dekhni ho tum ping command ka hi use karte hai. Ping ka cammnd
ka use ye hai ki server se hamari conetivity kaisi hai.server online hai ki
nahi.koi net problem to nahi hai.
Hum aap ko Ping command ka use karna batate hai
1)
Sabse
pahle command pramot open kijiye.
2)
Ab
ping likhiye or uske baad me url type kijiye jai se ki agar aap ko google ka
server check karna ho to ping google.com
type kijiye
3)
Yaha
aap ko google ka ip address pata chal jayega agar aapki connectivity 100% ya
50% hai to server on hai.
Passive Footprinting-:
Passive footprint me attacker apne target se directly contact nahi karta
passive footprinting me apne target ke najar me aaye bina ya apne target ki
information jaha pahle se avelibal hai vaha se ki jati hai.
Jaise
· Google search
· Who is queries
· DNS lookup
· Social network
1) Google search
Google searching ya google hacking ka use us
target ke liye kiya jata hai jb koi hacker gupt jankari ko khojne ka praytn
karta hai search enjoin ya browser ke dvara .jab ki google quires ko block kar
kar rakhta hai ya use hack karne ka praytn karta hai.par sach to ye hai ki
hacker ko google database hack karne se
ya hack ki website ki kamiyo ko ya unke loop hall ko hack karne se nahi rock
pata hai.google hacking ka apna ek praroop hai hai.isme kuch chaynit sabdo ka
use hota hai jinhe aap quary kar sakte hai.in ka prayog ham colum ke saath
karte hai jaise ki inurl , intitle,site,filtype .
Website ka
use karkar details kaise nikale
1)sabse pahle google.com par click kijiye or ghdb search kijiye
2) ab aap hackerforcharity.org/ghdb ya
www.exploit-db.com/google-hacking-database open kijiye. In website ne pahle se
hi google database hack kar kar rakhe
hai.
exploit-db.com/google-hacking-database open karte hai.
Yaha aap ko foothold web server Detection jaise or bhi
data mil jayege.
Ab http://www.hackersforcharity.org/ghdb/
open karte hai yaha bhi aapko data mil jayege.
2) Who
is quary
Who is quary
se hame niche di hui jankari milti hai.
· Domain name
· Registration date
· Owner ka name
· Owner ka phone number
· Owner ka address
· Location
Is liye sabse pahle whois.com open kijiye or jis domain ka pata lagana
chahte hai use type kar ke search kijiye
3) Jaise ki facebook.com type kar ke search karte hai.
To aap ko uska pura detail mil jaayegi
Jaise ki aap screenshot me dikh raha hai.
3) Social
network
Social
networking me apni details nakhna aam baat ho gayi hai.ham social networking me
apni saari details naakh deta hai.jaise ki phone number kiya hai address kiya
hai pin code kya hai pet name kiya hai etc.
Jb koi
hacker ko aap ka paasword hack karna hota hai to vo yahi sab ka use kar kar
paasword guess karte hai.
Is liye hum is website ka use karte hai
1) spokeo.com yaha aap name,email,phone
or address se victim ka pata laga sakte hai
2) jaise ki hum email se search karte
hai.email type kijiye or search kijiye
3) ye website paid hai yaani ki victim
ki jankari ke liye aap ko paise dene padege. Jb search khatm ho jayega to ye
screen show hogi.iska matlab ki ye email id vale user ka pata chal gaya hai
1 comments:
Write commentsThanks For Sharing this......
ReplyEmoticonEmoticon