Historias
Slashboxes
Comentarios
 
Este hilo ha sido archivado. No pueden publicarse nuevos comentarios.
Mostrar opciones Umbral:
Y recuerda: Los comentarios que siguen pertenecen a las personas que los han enviado. No somos responsables de los mismos.
  • ¿Seguro?

    (Puntos:1, Interesante)
    por Defero (14845) el Jueves, 06 Agosto de 2009, 23:00h (#1164403)
    ( http://www.ekinabokatuak.com/ | Última bitácora: Jueves, 22 Febrero de 2018, 07:45h )

    Siguiendo esto [nmap.org], me sale lo siguiente:

    root@dan:[/home/dandebian]# nmap -O -v -PN bing.com

    Starting Nmap 4.68 ( http://nmap.org/ [nmap.org] ) at 2009-08-07 00:44 CEST
    Initiating Parallel DNS resolution of 1 host. at 00:44
    Completed Parallel DNS resolution of 1 host. at 00:44, 0.00s elapsed
    Initiating SYN Stealth Scan at 00:44
    Scanning bing.com (64.4.8.147) [1715 ports]
    Discovered open port 443/tcp on 64.4.8.147
    Discovered open port 80/tcp on 64.4.8.147
    Completed SYN Stealth Scan at 00:45, 32.97s elapsed (1715 total ports)
    Initiating OS detection (try #1) against bing.com (64.4.8.147)
    Retrying OS detection (try #2) against bing.com (64.4.8.147)
    Host bing.com (64.4.8.147) appears to be up ... good.
    Interesting ports on bing.com (64.4.8.147):
    Not shown: 1713 filtered ports
    PORT STATE SERVICE
    80/tcp open http
    443/tcp open https
    Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
    Device type: general purpose
    Running (JUST GUESSING) : FreeBSD 6.X (85%)
    Aggressive OS guesses: FreeBSD 6.2-RELEASE (85%)
    No exact OS matches for host (test conditions non-ideal).
    Uptime: 46.969 days (since Sun Jun 21 01:29:35 2009)
    TCP Sequence Prediction: Difficulty=261 (Good luck!)
    IP ID Sequence Generation: Randomized

    Read data files from: /usr/share/nmap OS detection performed. Please report any incorrect results at http://nmap.org/submit/ [nmap.org] . Nmap done: 1 IP address (1 host up) scanned in 39.232 seconds
    Raw packets sent: 3519 (159.972KB)
    | Rcvd: 21 (1164B)

    Y también esto:

    root@dan:[/home/dandebian]# nmap -sV -O -PN -v 64.4.8.147

    Starting Nmap 4.68 ( http://nmap.org/ [nmap.org] ) at 2009-08-07 00:50 CEST
    Initiating Parallel DNS resolution of 1 host. at 00:50
    Completed Parallel DNS resolution of 1 host. at 00:50, 1.46s elapsed
    Initiating SYN Stealth Scan at 00:50
    Scanning origin.bay.ux.search.live.com (64.4.8.147) [1715 ports]
    Discovered open port 443/tcp on 64.4.8.147
    Discovered open port 80/tcp on 64.4.8.147
    Completed SYN Stealth Scan at 00:51, 31.52s elapsed (1715 total ports)
    Initiating Service scan at 00:51 Scanning 2 services on
    origin.bay.ux.search.live.com (64.4.8.147)
    Service scan Timing: About 50.00% done; ETC: 00:52 (0:00:31 remaining)
    Completed Service scan at 00:52, 95.66s elapsed (2 services on 1 host)
    Initiating OS detection (try #1) against origin.bay.ux.search.live.com (64.4.8.147)
    Retrying OS detection (try #2) against origin.bay.ux.search.live.com (64.4.8.147)
    SCRIPT ENGINE: Initiating script scanning.
    SCRIPT ENGINE: error while initializing script rules:
    /usr/share/nmap/scripts/skype_v2-version.nse:6: module 'comm' not found:
    no field package.preload['comm']
    no file '/usr/share/nmap/nselib/comm.lua'
    no file './comm.lua'
    no file '/usr/local/share/lua/5.1/comm.lua'
    no file '/usr/local/share/lua/5.1/comm/init.lua'
    no file '/usr/local/lib/lua/5.1/comm.lua'
    no file '/usr/local/lib/lua/5.1/comm/init.lua'
    no file '/usr/lib/nmap/nselib-bin/comm.so'
    no file './comm.so'
    no file '/usr/local/lib/lua/5.1/comm.so'
    no file '/usr/local/lib/lua/5.1/loadall.so'
    stack traceback:
    [C]: in function 'require'
    /usr/share/nmap/scripts/skype_v2-version.nse:6: in main chunk
    [C]: ?
    [C]: in function 'Entry'
    /usr/share/nmap/scripts/script.db:11: in main chunk
    [C]: ?
    [C]: ?
    SCRIPT ENGINE: Aborting script scan.
    Host origin.bay.ux.search.live.com (64.4.8.147) appears to be up ... good.
    Interesting ports on origin.bay.ux.search.live.com (64.4.8.147):
    Not shown: 1713 filtered ports
    PORT STATE SERVICE VERSION
    80/tcp open http?
    443/tcp open ssl/http Microsoft IIS httpd
    1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at
    http://www.insecure.org/cgi-bin/servicefp-submit .cgi :
    SF-Port80-TCP:V=4.68%I=7%D=8/7%Time=4A7B5E6B%P=i 686-pc-linux-gnu%r(GetRequ
    SF:est,265,"HTTP/1\.1\x20302\x20Found\r\nCache-C ontrol:\x20private\r\nCont
    SF:ent-Length:\x200\r\nLocation:\x20http://www\. live\.com/\r\nP3P:\x20CP=\
    SF:"NON\x20UNI\x20COM\x20NAV\x20STA\x20LOC\x20CU Ra\x20DEVa\x20PSAa\x20PSDa
    SF:\x20OUR\x20IND\",\x20policyref=\"http://priva cy\.msn\.com/w3c/p3p\.xml\
    SF:"\r\nEdge-control:\x20no-store\r\nSet-Cookie: \x20_HOP=I=1&TS=1249599023
    SF:;\x20path=/\r\nSet-Cookie:\x20mkt1=norm=-ES;\ x20path=/\r\nSet-Cookie:\x
    SF:20mkt2=ui=es-ES;\x20path=/\r\nSet-Cookie:\x20 SRCHUID=V=2&GUID=0532B9B71
    SF:CBA4A80AF6FA1EBEEF61442;\x20expires=Sat,\x200 6-Aug-2011\x2022:50:23\x20
    SF:GMT;\x20path=/\r\nSet-Cookie:\x20SRCHUSR=AUTO REDIR=0&GEOVAR=&DOB=200908
    SF:06;\x20expires=Sat,\x2006-Aug-2011\x2022:50:2 3\x20GMT;\x20path=/\r\nDat
    SF:e:\x20Thu,\x2006\x20Aug\x202009\x2022:50:23\x 20GMT\r\nConnection:\x20cl
    SF:ose\r\n\r\n")%r(HTTPOptions,125,"HTTP/1\.1\x2 0405\x20Method\x20Not\x20A
    SF:llowed\r\nCache-Control:\x20private\r\nAllow: \x20GET,HEAD,TRACE\r\nCont
    SF:ent-Length:\x200\r\nContent-Type:\x20text/htm l\r\nP3P:\x20CP=\"NON\x20U
    SF:NI\x20COM\x20NAV\x20STA\x20LOC\x20CURa\x20DEV a\x20PSAa\x20PSDa\x20OUR\x
    SF:20IND\",\x20policyref=\"http://privacy\.msn\. com/w3c/p3p\.xml\"\r\nDate
    SF::\x20Thu,\x2006\x20Aug\x202009\x2022:50:23\x2 0GMT\r\nConnection:\x20clo
    SF:se\r\n\r\n")%r(RTSPRequest,95,"HTTP/1\.1\x204 00\x20Bad\x20Request\r\nCo
    SF:ntent-Type:\x20text/html\r\nDate:\x20Thu,\x20 06\x20Aug\x202009\x2022:50
    SF::24\x20GMT\r\nConnection:\x20close\r\nContent -Length:\x2020\r\n\r\n
    SF:Bad\x20Request")%r(FourOhFourRequest,111D,"HT TP/1\.1\x20404\x20Not
    SF:\x20Found\r\nCache-Control:\x20private\r\nCon tent-Length:\x2015097\r\nC
    SF:ontent-Type:\x20text/html;\x20charset=utf-8\r \nP3P:\x20CP=\"NON\x20UNI\
    SF:x20COM\x20NAV\x20STA\x20LOC\x20CURa\x20DEVa\x 20PSAa\x20PSDa\x20OUR\x20I
    SF:ND\",\x20policyref=\"http://privacy\.msn\.com /w3c/p3p\.xml\"\r\nEdge-co
    SF:ntrol:\x20bypass-cache\r\nEdge-control:\x20no -store\r\nDate:\x20Thu,\x2
    SF:006\x20Aug\x202009\x2022:50:30\x20GMT\r\nConn ection:\x20close\r\n\r\nSF:DOCTYPE\x20html\x20PUBL IC\x20\"-//W3C//DTD\x20XHTML\x201\.0\x20Transiti
    SF:onal//EN\"\x20\"http://www\.w3\.org/TR/xhtml1 /DTD/xhtml1-transitional\.
    SF:dtd\">SF:\.org/1999/xhtml\"\x20xmlns:Web=\"ht tp://schemas\.live\.com/Web/\">SF:d>SF:ent-type\"\ x20/>//SF:T=new\x20Date\n//\]\]>//SF:\[CDATA\[\nva r\x20Globals=new\x20function\(\){this\.ST=si_ST\?s i_ST:new
    SF:\x20Date;this\.Mkt=\"es-ES\";this\.RTL=false; this\.Ver=\"5_05_0_377599\
    SF:";this\.IG=\"d6d38d02fcb84090ac879a86de9"); Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
    Device type: general purpose
    Running (JUST GUESSING) : FreeBSD 6.X (85%)
    Aggressive OS guesses: FreeBSD 6.2-RELEASE (85%)
    No exact OS matches for host (test conditions non-ideal).
    Uptime: 46.975 days (since Sun Jun 21 01:29:35 2009)
    TCP Sequence Prediction: Difficulty=264 (Good luck!)
    IP ID Sequence Generation: Randomized
    Service Info: OS: Windows
    Read data files from: /usr/share/nmap
    OS and Service detection performed. Please report any incorrect results at http://nmap.org/submit/ [nmap.org] .
    Nmap done: 1 IP address (1 host up) scanned in 135.065 seconds
    Raw packets sent: 3519 (159.972KB) | Rcvd: 23 (1256B)

    No sería la primera vez que Microsoft usa FreeBSD [forosdelweb.com], pero la verdad es que no me queda nada claro. No sé qué pinta por ahí IIS.

    --
    abogado en Errenteria [ekinabokatuak.com]
    Puntos de inicio:    1  punto
    Modificador extra 'Interesante'   0  

    Total marcador:   1  
  • Re:¿Seguro?

    (Puntos:2)
    por Hard_007 (9921) el Jueves, 06 Agosto de 2009, 23:12h (#1164406)
    ( Última bitácora: Viernes, 07 Agosto de 2009, 01:33h )

    No sería la primera vez que Microsoft usa FreeBSD, pero la verdad es que no me queda nada claro. No sé qué pinta por ahí IIS.

    Ups, te me adelantaste. Bueno, estoy viene a confirmar lo que he dicho en el post de abajo: Ese FreeBSD es incorrecto (te lo indica como sugerencia sólo), porque Akamai únicamente usa Linux en su sistema de caché. El IIS es la prueba de que la página se sirve realmente desde un Windows.
    --
    Pesa las opiniones. No las cuentes. -- Séneca
    [ Padre ]