Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Nessus-Users
[Top] [All Lists]

Re: Unknown ports

Subject: Re: Unknown ports
Date: Mon, 13 Jun 2005 21:18:54 -0400
On most of my scans, Nessus has identified what it labels
"unknown" ports. I have resolved what service is listening
on these "unknown" service ports by pulling the results of
the command netstat -anp off Windows 2003 servers. Once I
have this output I then goodgle the *.exe file that
netstat says is listening. 

My question is, does anyone have a more elegant way to run
these ports down? 

Sometimes you can learn about a service by connecting to the
port and entering various commands, which is essentially
what the find_service* plugins do. But otherwise, your
approach is probably the most effective, I'm afraid.

Once I get the results, I figure that I'd like to save the
results for the next scan...can/should I add these to
nessus port mapping file? 

A better solution would be to help us modify the
find_service* plugins so that the more significant services
can be recognized by Nessus directly. The only problem is
that rather than working with file names we'll need traffic
dumps. If Michel Arboi, the author of these plugins, doesn't
respond in a day or two, drop me a note and I'll work with
you on it.

George

--
theall@tenablesecurity.com
_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus

<Prev in Thread] Current Thread [Next in Thread>