Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Unknown ports |
|---|---|
| Date: | Mon, 13 Jun 2005 21:18:54 -0400 |
On most of my scans, Nessus has identified what it labels "unknown" ports. I have resolved what service is listening on these "unknown" service ports by pulling the results of the command netstat -anp off Windows 2003 servers. Once I have this output I then goodgle the *.exe file that netstat says is listening. My question is, does anyone have a more elegant way to run these ports down?
Sometimes you can learn about a service by connecting to the port and entering various commands, which is essentially what the find_service* plugins do. But otherwise, your approach is probably the most effective, I'm afraid.
Once I get the results, I figure that I'd like to save the results for the next scan...can/should I add these to nessus port mapping file?
A better solution would be to help us modify the find_service* plugins so that the more significant services can be recognized by Nessus directly. The only problem is that rather than working with file names we'll need traffic dumps. If Michel Arboi, the author of these plugins, doesn't respond in a day or two, drop me a note and I'll work with you on it. George -- theall@tenablesecurity.com _______________________________________________ Nessus mailing list Nessus@list.nessus.org http://mail.nessus.org/mailman/listinfo/nessus
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: reports, Nicolas Pouvesle |
|---|---|
| Next by Date: | Re: Unknown service banner submissions, George A. Theall |
| Previous by Thread: | Re: Unknown ports, Javier Fernandez-Sanguino |
| Next by Thread: | nmap brings CheckPoint Firewall-1 down, Marc Ruef |
| Indexes: | [Date] [Thread] [Top] [All Lists] |