2007-12-06, 20:21
#1
har kommer information jag fatt fran 3 olika servrar jag scannat med nmap.
den forsta anvande jag vaxeln "-sV Version scan probes open ports determining service & app names/versions", fick massor av information tillbaba som ni ser. dock fattar jag inte hur jag ska tyda den, eller igentligen vad det ar for info och vart den kommer ifran?
har ar information jag fick fran den andra jag scannade. fragan jag har har ar vall igentligen bara vad som menas med "filtered port". googlade och fick svaret: "Filtered simply sends back a reject response, while a closed port must wait for a timeout.". sa en filtrerad port och stangd port ar for mig samma sak?
tredje.
har vall igentligen ingen direkt fraga om informationen. rent teoretiskt om jag bara skulle vilja forstora och javlas. hur skulle ni gatt vidare med det ni har har nedanfor?
telnet> ip 26 : ESMTP Sendmail 8.13.8
om traden ar for "lam" och ni tycker jag ar en idot som borde lara mig och lasa mer innan jag staller fragor sa skit i att svara, pm en mod och be han/hon slanga traden.
den forsta anvande jag vaxeln "-sV Version scan probes open ports determining service & app names/versions", fick massor av information tillbaba som ni ser. dock fattar jag inte hur jag ska tyda den, eller igentligen vad det ar for info och vart den kommer ifran?
Kod:
(The 1658 ports scanned but not shown below are in state: filtered) PORT STATE SERVICE VERSION 21/tcp open ftp? 22/tcp open ssh OpenSSH 4.2p1 Debian-7 (protocol 2.0) 25/tcp closed smtp 80/tcp open http? 443/tcp open ssl OpenSSL 1 service unrecognized despite returning data. If you know the service/versi please submit the following fingerprint at http://www.insecure.org/cgi-bin/s cefp-submit.cgi : SF-Port80-TCP:V=3.81%D=12/1%Time=4751D69E%P=i686-pc-windows-windows%r(GetR SF:equest,2BA,"HTTP/1\.1\x20200\x20OK\r\nDate:\x20Sat,\x2001\x20Dec\x20200 SF:7\x2021:48:11\x20GMT\r\nServer:\x20NOYB\r\nX-Powered-By:\x20PHP/4\.4\.2 SF:-1\+b1\r\nConnection:\x20close\r\nContent-Type:\x20text/html\r\n\r\n\n< SF:HTML>\n\t<HEAD>\n\t\t<title>::\x20\x20::</title>\n\t\t<LINK\x20href='ht SF:tp://kundsystem\.idea-vmi\.se/admin/css/Internal\.css'\x20type='text/cs SF:s'\x20rel='stylesheet'>\n\t</HEAD>\n\t<body>\n\t\t<table\x20width=100%\ SF:x20height=100%>\n\t\t\t<tr>\n\t\t\t\t<td\x20valign=middle\x20align=cent SF:er>\n\t\t\t\t\t<img\x20src='logo_orginal_vmi_small\.gif'>\n\t\t\t\t\t<h SF:2></h2>\n\t\t\t\t\t<P> </P>\n\t\t\t\t\t<P>Denna\x20domän\x20& SF:auml;r\x20registrerad\x20av\x20<a\x20href='http://www\.vmi\.se'>VMI\x20 SF:Internet\x20Services\x20AB</a>\n\t\t\t\t\t<BR>\n\t\t\t\t\tKunden\x20har SF:\x20ännu\x20inte\x20lagt\x20upp\x20någon\x20information\x20h SF:är\.</P>\n\t\t\t\t</td>\n\t\t\t</tr>\n\t\t</table>\n\t</body>\n</H SF:TML>\n")%r(HTTPOptions,2BA,"HTTP/1\.1\x20200\x20OK\r\nDate:\x20Sat,\x20 SF:01\x20Dec\x202007\x2021:48:11\x20GMT\r\nServer:\x20NOYB\r\nX-Powered-By SF::\x20PHP/4\.4\.2-1\+b1\r\nConnection:\x20close\r\nContent-Type:\x20text SF:/html\r\n\r\n\n<HTML>\n\t<HEAD>\n\t\t<title>::\x20\x20::</title>\n\t\t< SF:LINK\x20href='http://kundsystem\.idea-vmi\.se/admin/css/Internal\.css'\ SF:x20type='text/css'\x20rel='stylesheet'>\n\t</HEAD>\n\t<body>\n\t\t<tabl SF:e\x20width=100%\x20height=100%>\n\t\t\t<tr>\n\t\t\t\t<td\x20valign=midd SF:le\x20align=center>\n\t\t\t\t\t<img\x20src='logo_orginal_vmi_small\.gif SF:'>\n\t\t\t\t\t<h2></h2>\n\t\t\t\t\t<P> </P>\n\t\t\t\t\t<P>Denna\x2 SF:0domän\x20är\x20registrerad\x20av\x20<a\x20href='http://www\. SF:vmi\.se'>VMI\x20Internet\x20Services\x20AB</a>\n\t\t\t\t\t<BR>\n\t\t\t\ SF:t\tKunden\x20har\x20ännu\x20inte\x20lagt\x20upp\x20någon\x20 SF:information\x20här\.</P>\n\t\t\t\t</td>\n\t\t\t</tr>\n\t\t</table> SF:\n\t</body>\n</HTML>\n")%r(RTSPRequest,2BA,"HTTP/1\.1\x20200\x20OK\r\nD SF:ate:\x20Sat,\x2001\x20Dec\x202007\x2021:48:17\x20GMT\r\nServer:\x20NOYB SF:\r\nX-Powered-By:\x20PHP/4\.4\.2-1\+b1\r\nConnection:\x20close\r\nConte SF:nt-Type:\x20text/html\r\n\r\n\n<HTML>\n\t<HEAD>\n\t\t<title>::\x20\x20: SF::</title>\n\t\t<LINK\x20href='http://kundsystem\.idea-vmi\.se/admin/css SF:/Internal\.css'\x20type='text/css'\x20rel='stylesheet'>\n\t</HEAD>\n\t< SF:body>\n\t\t<table\x20width=100%\x20height=100%>\n\t\t\t<tr>\n\t\t\t\t<t SF:d\x20valign=middle\x20align=center>\n\t\t\t\t\t<img\x20src='logo_orgina SF:l_vmi_small\.gif'>\n\t\t\t\t\t<h2></h2>\n\t\t\t\t\t<P> </P>\n\t\t\ SF:t\t\t<P>Denna\x20domän\x20är\x20registrerad\x20av\x20<a\x20hr SF:ef='http://www\.vmi\.se'>VMI\x20Internet\x20Services\x20AB</a>\n\t\t\t\ SF:t\t<BR>\n\t\t\t\t\tKunden\x20har\x20ännu\x20inte\x20lagt\x20upp\x2 SF:0någon\x20information\x20här\.</P>\n\t\t\t\t</td>\n\t\t\t</t SF:r>\n\t\t</table>\n\t</body>\n</HTML>\n"); Nmap finished: 1 IP address (1 host up) scanned in 891.061 seconds
har ar information jag fick fran den andra jag scannade. fragan jag har har ar vall igentligen bara vad som menas med "filtered port". googlade och fick svaret: "Filtered simply sends back a reject response, while a closed port must wait for a timeout.". sa en filtrerad port och stangd port ar for mig samma sak?
Kod:
(The 1655 ports scanned but not shown below are in state: closed) PORT STATE SERVICE 135/tcp filtered msrpc 139/tcp filtered netbios-ssn 445/tcp filtered microsoft-ds 548/tcp filtered afpovertcp 593/tcp filtered http-rpc-epmap 1025/tcp filtered NFS-or-IIS 17300/tcp filtered kuang2 27374/tcp filtered subseven Nmap finished: 1 IP address (1 host up) scanned in 4.316 seconds
tredje.
har vall igentligen ingen direkt fraga om informationen. rent teoretiskt om jag bara skulle vilja forstora och javlas. hur skulle ni gatt vidare med det ni har har nedanfor?
Kod:
(The 1651 ports scanned but not shown below are in state: filtered) PORT STATE SERVICE 21/tcp open ftp 22/tcp open ssh 25/tcp closed smtp 26/tcp open unknown 80/tcp open http 110/tcp open pop3 113/tcp closed auth 143/tcp open imap 443/tcp open https 993/tcp open imaps 995/tcp open pop3s 3306/tcp open mysql Nmap finished: 1 IP address (1 host up) scanned in 18.857 seconds
telnet> ip 26 : ESMTP Sendmail 8.13.8
om traden ar for "lam" och ni tycker jag ar en idot som borde lara mig och lasa mer innan jag staller fragor sa skit i att svara, pm en mod och be han/hon slanga traden.
... javligt trott pa svar som dina...