Lab10
.docx
keyboard_arrow_up
School
Florida Atlantic University *
*We aren’t endorsed by this school
Course
4324
Subject
Information Systems
Date
Dec 6, 2023
Type
docx
Pages
5
Uploaded by JudgeLeopardMaster963
ISM 4324 Computer Forensics
Lab 10
Project 1 Password recovery with PRTK
In this project we are going to decrypt files named Those who owes.xls, How To Steal Credit Numbers.doc, and SLIST.doc in the forensic image files. After you decrypt the files, answer the questions.
1.
In the case that PRTK is not installed in your computer in the computer lab FL411, install PRTK first. The license is already included in our FTK Package. So it will be automatically authorized to be used for this lab.
2.
PRTK download: https://www.exterro.com/ftk-product-downloads/password-
recovery-toolkit-prtk-version-8-2-1
3.
Once you finish installing the PRTK, open the FTK.
4.
Create the case by clicking Case
New, enter the case name Lab10 and click OK. Add the given two forensic image files to FTK.
5.
In the Manage Evidence pop-up window, click add and add two given forensic images. After you successfully import the images, take a screenshot of your result and paste it here.
6.
Navigate to Overview > File Status > Encrypted Files. Take a screenshot of your result and paste it here.
7.
Filter Actual Files. Export the following files to the Encrypted folder (Create the folder for this lab) on the Desktop. Those who owes.xls, How To Steal Credit Numbers.doc, and SLIST.doc
Copyright © 2023 May not be copied, scanned, or posted, in whole or in part, except for use with the written permission.
8.
Exporting a custom word list:
Navigate to File > Export Word List. Click OK. Save the list in the Export folder (Create the folder for this lab) and name it “MantoothWordList”. Navigate to the Export folder on your desktop and view the word list. Take a screenshot of the results and paste it here.
Copyright © 2023 May not be copied, scanned, or posted, in whole or in part, except for use with the written permission.
9.
Importing a New Dictionary:
Open PRTK. Navigate to Tools > Dictionary Utility. Browse to the Export folder on your desktop and choose “MantoothWordList”. Click More Settings and review the options. Click Generate. Navigate to Dictionary Tools > Dictionary Browser. Note large dictionaries are Segmented at 500,000 words. Note the two new dictionaries for MantoothWordList: o
MantoothWordList-en-c.adf: English/Codepage - ASCII o
MantoothWordList-en-u.adf: English/Unicode xviii. View the entries in the MantoothWordList-en-c.adf file.
10.
Biographical Dictionary: Navigate to Dictionary Tools > Biographical Dictionary Utility. Enter Biographical data for Wes Mantooth:
Wes
Mantooth
Sweetie
D Town
Dollarhyde86
Take a screenshot of the Dictionary window and paste it here.
11.
Decrypt files: Click Files > Add File. Navigate to the Encrypted folder on the desktop and choose Those who owes.xls. Click Add. On the Profile Drop-Down menu choose the PRTK. Click Next > Finish. Double click on “running password attack”. View the rules and passwords per second. Take a screenshot of passwords/second graph, and paste it here.
Copyright © 2023 May not be copied, scanned, or posted, in whole or in part, except for use with the written permission.
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
- Access to all documents
- Unlimited textbook solutions
- 24/7 expert homework help