Click hereChildren:, Grades ,
Espionage,
Juvenile ,literature,
Children's 9-12 - Crafts , Hobbies,
Juvenile ,Nonfiction,
Crafts & Hobbies ,- General,
Juvenile Nonfiction, / Crafts & Hobbies,
Animals,
Hobbies, quizzes & games ,(Children's/YA),
Interactive & activity books & packs,
People & places, (Children's/YA),
Animals - General,
Novelty & Activity Books,

dance ,class,ambala,anilkumar,webs,searchstops,www,2011,2012,best dance site 2011,best dancesite2012,bestdancesite2013,danceing,bboying,bgirling,kendriya,vidyalaya,ghandhi,ji,kutta,kamina,salaindian,languages,sirf tum,sirf mai,amitabh,bacchan,Anil Kumar bturkiya,2011 fashion,2010 fashion,accesories,Accessibility,accessories,Adidas AG,Al,alex perry,Alexander McQueen,Alford,American European Latin Americandesigners,AnnaSui,apparel,architecture,
Area,Planning,andRenewal,Art,attitudes,Auctions,Australia,autumn,Awards,Babies,backstage,bad,Badinter,banarsi,BarcelonaFaWeek,Bardot,Bardotfashion,BarneysNewYork,BathingSuits,Beauty,beautyadvice,beautydirectory,beautyexpert,beautymagazine,beautytips,bench,benchflash,bestdenim,bestfashionmagazine,Bestjeansaround,bikini,Bill,blackdress,blank,Blog,blogging,BlogsandBlogging(Internet),blouse,body,boutique,bowie,Brazil,bridal,BruceCameron,Bundchen,CalvinKlein,Canadianfashionmagazine,candycouture,CareersandProfessions,casual,catwalk,catwalkrunway,CelebFashions,CelebGossip,Celebrities,Celebrity,Celebrity Fashion,Celebrity Fashions,Celebrity Gossip,Celebrity Hairstyles,Celebrity Photos,celebrity profiiles,
celebritytrends,CHANEL,channel,Charles,chic,ChildrenandYouth,childrens,China,Chloe,Chow,Christian,Christian Dior,Cindy CrawfordClark,clothes.,clothing,cnet,collections,collette dinnigan,combats,competitions,Coney Island (NYC),confessions,contact topman,cosmetics,Cosmetics and Toiletries,Council of Fashion Designers of America,couture,crafted,creative,creativecommunity,creativenetwork,creativeprofessional,creative professionals,Credits,crops,Cunningham,Customs,Cutrone,dance,david,Deaths (Obituaries),Decorations and HonorsDella Femina,denim,design,designer,designer accessories,designer bags,designer clothes,designer clothing,designer collections,designer fashion,designer handbags,designer profiles,designer shoes,designers,designers collections,Diana,diesel,Dior,dirty smart,discount mens clothes,Divorce,
DKNY,Dolce &Gabbana,DonnaKaran,DoutzenKroes,dress,Dresses,drunknmunky,DVDs,edgy,eh,electronics,Elisabeth,Elle,Entertainment News,Etiquette and Manners,express post delivery,fabric,fabulous,facial,fall,Families and Family Life,fashion,Fashion Accessories,Fashion and Apparel,Fashion articles,fashion beauty catwalk photography,Fashion Blog,Fashion Blogger,Fashion Central,fashion clothes,fashion design,fashion designer,fashion designers,Fashion information,fashion magazine,fashion merchandising,fashion mode beauty,fashion models,fashion news,Fashion Pakistan,fashion photo galleries,fashion pictures,fashionreview,fashion shows,fashion television,
fashion television, the channel,fashion tips,fashion trends,fashion trends 2008,fashion tv,fashion tv france,fashion tv hot,fashion tv online,fashion tv satellite,fashion videos,Fashion Week,fashionweeks,fashionistas,fashionmagazine.com,fashions,fashiontelevision,fashiontv,fashionz,Fenchurch,Fendi,Ferguson,Fine Jewelry.,firetrap,footwear,Fragrance,free stuff,FT,FT online,ftv,ftvfashion,furnitureg-star,g-starraw,gadgetblog,gadgetnews,Gaga,gallery,Gap,garments,Gaultier,Gerald,Giles,Giorgio Armani,girls clothes,Gisele,Givenchy,Gore,
Gossip,Gowanus Canal (NYC),Greenfield,Grief (Emotions),Gucci,Guess,H&M,hair,
hairstyle,Hamburg (Germany),Hats and Caps,haute couture,health,Helena Christensen,Helmut Lang,henleys,Henry,high fashion,high street,high street clothing,highstreet,hip,Hollywood Fashion,Hollywood gossip,Hollywood Rumors,Hollywood Stars,home,hoodies,horoscopes,Hot,hot stuff,HQ,Iman,Imber,indian,industry,iphone,
Issey,jackets,Japan,Jean Paul,Jean Paul Gaultier,jeans,Jeff,Jerry,Jil,Jil Sander,Joanna,John Galliano,Jovovich,jumpers,just,kameez,Karl Lagerfeld,kate moss,kate moss collection,Kaus,Kawakubo,Kelly,kidsclothes,knits,knitwear,Kramer,kurta,L'Oreal,LA,labels,Lacroix,ladies fashion,ladies fashion clothes,ladies fashions,Lady,latest catwalk pictures,latest fashion,latest mens clothing,lbd,Life and style,lifestyle,Lincoln Center for the Performing Arts,lingerie,little black dress,Live Streaming,London,London (England),look,
Lott,Louis Vuitton,Love (Emotion),Luca Luca,luxury,MAC,
Madrid Fashion Week,magazine,magazines,make-up,makeover,makeup,
makeupartists,makeuptips,MalSirrah,Manhattan(NYC),Marilyn,Marriages,MartinMargiela,Men and Boys,men women's fashion,Men's Clothing,Men's Shoes,Menkes,mens,mens clothes,mens clothing,mens denim,mens fashion,mens fashion gifts,mens gift ideas,mensjackets,mens jeans,mens shoes,mens shorts,mens socks,mens suits,mens underwear,menswear,Merchandising,Message Boards,Michael,Mickey,Milan,Minter,
miso,miss sixty,Miyake,Mobile Content,moda,mode,modeling,Models,Models (Professional),
monster,movies,nails,net-a-porter,net-a-porter.com,netaporter,new fashion trends,New York,
New York Fashion,new zealand fashion,news,Next,Next Directory,Next Electrics,Next Flowers,next.co.uk,NikasNikeInc,numberonefashionmagazine,nz,oasis,oasisstores,oasis-stores,oasis.co.uk,oasis.com,oasis.net,ofofficial,Oliver,onlie fashion,online shopping,online store,Oprah,Pakistan,Pakistan Fashion,Pakistan Fashion shows,Pakistan shows,Pakistani,Pakistani Designers,Pakistani Fashion,Pakistani FashionDesigners,Pakistani Models,Paparazzi,Paris,party,partydress,partydresses,PhotoGalleries,photographers,photography,Photos,picture,pictures,Pixie,Pixie dress,Pixie Lott,podcast,Prada,pret-a-porter,Prince of Wales,Princess of Wales,Pucci,Race,ready towear,ready-to-wear,Rei,Republic,republic shop,Reviews,romance,Rosa Cha,rtw,Runway,runway shows,Saint Laurent,
salon,Sander,Sao Paolo,Sarah,sari,sass & bide,savvy,Scandal,Separations andAnnulments,
sex,
sexy,
shalwar,
shirts,
shoes,
Shop,
Shop online,
shopaholic,
Shopping,
Shopping and Retail,
short,
shorts,
shows,
Showtimes,
Simone,
size 10,
size 12,
size 14,
size 6,
size 8,
Skin,
skincare,
skirt,
skirts,
sleek,
Sneakers,
Soccer,
social network,
Sotheby''s,
soul cal,
soul cal deluxe,
soundtrack,
Spanish Latino fashion,
speechless,
sping,
sportswear,
spring,
spring 2010 fashion,
spring collection,
spring fashion,
spring summer collection,
spring summer fashion,
ss10 fashion,
star styles,
stores,
street fashion,
street style,
style,
stylemail,
subscription,
summer,
Suntan,
super model,
Superfund,
supermodels,
Suzy,
sweats,
swimwear,
Synopsis,
t-shirts,
Tank Tops,
tech blog,
technews,technology,teenclothes,teenfashion,teenstyle,teenvoguetelegraphfashiontextiles,threads,Tipper,Tokyo,TomFord,top,topmanaccount,topmancard,topmandelivery,topmangiftcard,topmanhelp,topmannews,topmanpressoffice,topmanrecruitment,topmanreturns,topmansale,topmanstores,topmanstudent,discount,topmantermsandconditions,tops,topshop,topshop.com,TorontoTrailers,trend,Trends,trendy,trousers,uk,undergarments,United States Politics and Government,Upper East Side (NYC),User Ratings,Victoria's Secret,Video,Viktor Rolf,vila,Vogue,Warehouse,Warehouse Clothes,Warehouse fashion,Waste Materials and Disposal,watch fashion tv,watch fashion tv online,Watches,Winfrey,winter,woman fashion,woman's fashion,Women and Girls,women fashion,women´s clothes,women´s clothing,women´s fashion,Women's Clothing,
women's fashion,Women's Handbags,Women's Shoes,womens,womens accessories,womens clothes,womens clothing,womens fashion,womens fashion clothing,womenswear,


women’s fashion magazine,World Cup (Soccer),www.oasis-stores.com,Yves,Yves Saint Laurent,prom clothing,going out clothes,clothes shopping,buy clothes,buy dress,Irish Fashion Ireland,beauty news,Indian Ethnic fashion,Indian Fashion,India Fashion,Fashion India,Ethnic fashion,Indian Garments,Indian Clothings,Indian Wedding garments,Wedding collections,Ethnic garment designs,Indian models,Indian actresses,Indian Actors,Bollywood actresses,Bollywood stars,Bollywood Gossip,Online garment store,b2C garment portalLove and Romance,Romantic lifestyles,Honeymoon resources,honeymoon planner,marriage, andhoneymoon,pregnancy,parenting and kids,bollywood,wedding,wedding dresses,
sexual,problems,indian,women,modellin,gagencies,Salwarkameez,GaghraCholi,Lachhas,sharara,Garment,Mumbai,Bombay,India,Model,Actress,Love,Parenting,Astrology,Asian,Designers.,toronto, fashion,canadian ,fashion ,designers,toronto ,designers,canada, fashion,,toronto ,fashion ,week,toronto,vintage,Definition,Synonyms,craze,fad ,Yantra: Dharmic Traditions, Sanskrit, Chakra, Vritti, Shatkona, Star of David, Hindu Symbols: Lingam, Aum, Kamandalu, Hindu Iconography, Yantra, Nandi, Tilaka, Kalasha, Trishula, Padma, Sri Yantra, Om ParvatSwastika, Shri Yantra, Karma,Hindu Symbols: Lingam, Aum, Kamandalu, Hindu Iconography, Yantra, Nandi, Tilaka, Kalasha, Trishula, Padma, Sri Yantra, Om Parvat ,Symbol (Hinduismus): Om, Swastika, Linga, Mandala, Mudra, Bindi, Yantra, Tilaka, Abhayamudra, (German Edition),Monument Indien: Taj Mahal, Yantra Mandir, Rock Garden, Porte de L'inde, Mausolée D'itimâd-Ud-Daulâ, Bibi Ka Maqbara, Sanskar Kendra, Raj Ghat (French Edition),Rajasthan: Désert Du Thar, Ârâvalli, Shekhawati, Bishnoï, Musique Rajasthanie, Yantra Mandir, Attentats de Jaipur, Rajput (French Edition) ,Matrix success. Yantra, Mandala, psychogram, mentogrammy in

Tuesday, February 15, 2011

Port Scanner 7






Sendmail is certainly the buggiest daemon on earth; it has the highest number of known exploits amongst all the daemons. So this probably should get us through. Let us telnet to Port 25 and find out whether an exploitable version of Sendmail is running.




C:\windows> telnet xxx.bol.net.in 25



220 xxx.bol.net.in ESMTP Sendmail 8.9.1 (1.1.20.3/27Jun00-0346PM) Thu, 29 Jun 2000 14:18:12 0530 (IST)



When you telnet to Port 25, then the first thing that you come across would be a something like the above welcome daemon banner. A daemon banner is a Hacker’s best friend. It reveals important information about the host, which proves to be invaluable in breaking into it. It basically tells you which daemon or service is running on that port and also the version of that particular service. Like for example, in this case, the Sendmail daemon banner tells us that ESMTP Sendmail 8.9.1 is running and it also gives us other information about the host at which this service is running.



Anyway, getting back to the topic, this banner reveals a big vulnerability existing in the host computer. It tells us that xxx.bol.net.in is running an old, vulnerable version of Sendmail. The latest version is Sendmail 8.9.4 (correct me if I am wrong.), so this particular version of Sendmail wouldn’t be without any bugs.



So then what you do is visit PacketStorm or search at your favorite Hacking stuff related search engine for a C program which demonstrates how to exploit version 8.9.4 of Sendmail. Now, all this might sound a bit too simple, well it certainly isn’t, read on for more info.



Now, there are a couple of things that you need to keep in mind while getting this done. Say, you have found out that the victim runs Sendmail 8.9.4, now you cannot simply break in by running any exploit for this version. By that what, I mean to say is that, an exploit, which is coded to be executed on a Linux platform, will not work if you try to compile and run it on a Windows platform. So basically before you execute the ‘kewl’ exploit program that you downloaded, you should find out which platform it is meant for and if you are not running that platform, then you will need to get your gray cells working.











Jai Shree Raam

Port Scaning Part 6



you could get into some serious trouble. [Well actually not much, only say your account might be disabled. However, it could be worse.]




Ok, you are in, now let us get the FTP client to tell us which commands are available by typing the help command.



ftp> help

Commands may be abbreviated. Commands are:



! delete literal prompt

? debug ls put

append dir mdelete pwd

ascii disconnect mdir quit

bell get mget quote

binary glob mkdir recv

bye hash mls remotehelp

cd help mput rename

close lcd open rmdir



Uhmmm.,.., none of the above commands seem to be or sound to be of use to us. So the ‘help’ command did not reveal any useful commands. However, you see the above list of commands are commands which are offered by the FTP client and almost more often than not, the FTP daemon offers a wider array of commands. To get a complete list of commands offered by the FTP daemon, use the ‘remote help’ command:



Ftp> remote help

214-The following commands are recognized (* =>'s unimplemented).

USER PORT STOR MSAM* RNTO NLST MKD CDUP

PASS PASV APPE MRSQ* ABOR SITE XMKD XCUP

ACCT TYPE MLFL* MRCP* DELE SYST RMD STOU

SMNT* STRU MAIL* ALLO CWD STAT XRMD SIZE

REIN* MODE MSND* REST XCWD HELP PWD MDTM

QUIT RETR MSOM* RNFR LIST NOOP XPWD

214 End of help



Note: To get a single line description of each command, type help followed by a space and the command of which you want a description.



One thing to remember here is that to execute any command from the remote FTP commands list you need to make use of the ‘literal’ keyword. What I mean by that is that all remote FTP commands have to be preceded by the word ‘literal’. For example, say you want to execute the remote FTP command: ‘stat’, then you would type:



ftp> literal stat



***************

HACKING TRUTH: According to FTP help, the literal command is described as:

ftp> help literal

literal send arbitrary ftp command

***************



Anyway, amongst the remote FTP commands, the commands of interest to us are-: ‘stat’ and ‘syst’. Let us see what they return when executed-:



ftp>literal stat

211- ftp2.xxx.bol.net.in FTP server status:

Version 5.60

Connected to 203.xx.251.198 (203.xx.251.198)

Logged in anonymously

TYPE: ASCII, FORM: Nonprint; STRUcture: File; transfer MODE: Stream

211- No data connection

211 End of status



Note: The IP address is of xxx.bol.net.in and not your machine.



ftp> literal syst

215 UNIX Type: L8 Version: BSD-198911



Voila, we get the Operating System name running on ftp2.xxx.bol.net.in. At last some useful information.



Finger and HTTP both failed, what do we do now? Let us turn to the den of the Buggiest daemon on Earth i.e. Sendmail: Port 25, the SMTP port.








Jai Shree Raam

Port Scaning Part 5



We are immediately greeted by the FTP daemon banner, which tells us that this is the FTP server where, people using MTNL’s (My ISP) Internet Services, can upload their site. Now, normally FTP daemon banners are more informative than this one. They usually do give away the name of the Operating System running and also the FTP daemon running. Well, actually it is the login prompts of the daemon banner which gives us the Operating System running on it. Normally, a typical daemon banner would have the following Login prompt:




220 xxx2.bol.net.in FTP server (Digital UNIX Version 5.60) ready.

User (bol.net.in :( none)):



Notice the System name in the brackets on the first line. However, normally almost all FTP daemons are better configured (that is the case in the example target system: xxx.bol.net.in) and their login prompt is somewhat like the below:



220 ftp2.xxx.bol.net.in FTP server ready.

User (mail2.bol.net.in :( none)):



See, no Operating System name. However, with the help of some kewl commands, such systems too can be reveal the OS running on them. However, before we go on, there is one thing that you have to be clear about. Now, we had FTP’ed to xxx.bol.net.in, so you normally expect to connect to Port 21 of xxx.bol.net.in, however that is not true. (Atleast in this case.) If you look at the daemon banner again, then you would notice that the last line says:



220 ftp2.xxx.bol.net.in FTP server ready.



Now how did that happen? Well, is Port 21 not open on xxx.bol.net.in ? Well, no and yes. What actually happens is that, Port 21 of xxx.bol.net.in is open and a daemon there is listening for connections. As soon as a connection is established, it transfers the control or connected the visitor to ftp2.xxx.bol.net.in, which is on the same network as xxx.bol.net.in. Now this, ftp.xxx.bol.net.in system is solely a FTP machine. It has no other services running. So whatever information, we gather from such a FTP port is not of xxx.bol.net.in but of ftp2.bol.net.in. Get it?



Anyway, when you get the login prompt, then login anonymously with the anonymous as the Username and a false email address as the password.



220 ftp2.xxx.bol.net.in FTP server ready.

User (ftp2.xxx.bol.net.in:(none)): anonymous

331 Guest login ok, send your complete e-mail address as password.

Password: xxx@linux.net

230 User anonymous logged in. Access restrictions apply.



Even if you have an account at the FTP server into which you plan to break in, it is always better not to use that pair of Username and Password. Logging in anonymously has many advantages. Say if you did cause some harm to the target system and if you use your (Nonanonymous) Username and Password pair, then if you were not able to edit the server logs



Jai Shree Raam

Port Scaning Part 4




I get the NOT FOUND error message; this probably means that this system does not support CGI-Scripts. If the CGI-Bin directory had been blocked from public access, then we would probably have gotten the Forbidden Error Message.




However, finding out that our target system does have the CGI-Bin directory cannot be said to be disappointing as the known CGI exploits are almost primitive and finding out new exploits should be kept out of this manual.



OK, so Port 80 and Port 79 are ruled out, they neither have any vulnerability nor do they give any information about the target system. [Well actually the HTTP port does give us some valuable information, but we will come to that later.]



Anyway, so let us try Port 21 or the FTP port. Now, there are two ways of connecting to Port 21 of a host, the first one is to telnet to Port 21 and other one is to use the MS-DOS FTP client. You could choose any of the two for this section, however, I kind of like the command line FTP client, although many people say it is lame. Anyway, so I launch up a FTP connection to xxx.bol.net.in.



C:\windows>ftp xxx.bol.net.in



Connected to xxx.bol.net.in.

220-

220-#*************************************************************

220-# Welcome to MTNL's ftp site

220-#*************************************************************

220-#

220-# You can upload your own homepages at this site!!!

220-#

220-# Just login with your username and upload the HTML pages.

220-# (You can use your favourite HTML editor as well)

220-#

220-# World will see it at http://web2.mtnl.net.in/~yourusername/

220-#

220-# So get going......UNLEASH YOUR CREATIVITY !!!!

220-#

220-#*************************************************************

220-

220 ftp2.xxx.bol.net.in FTP server ready.








Jai Shree Raam

Vertual port scaning Part 3

Some ISP's are quite aware of Hacking Activities and are one step ahead. They may be running some excellent software, which will keep hackers away. Ether Peek is an excellent example of sniffing software, which can easily trace users who are port scanning. Nuke Nabber a Windows freeware claims to be able to block Port Scans. I have not tested it so I can't say for sure. Then there is another fun program known as


Port Dumper, which can fake daemon (services) like Telnet, Finger etc. There is also some software, which will show a weird list of open ports. What I mean by that is, if you port scan a host running such software, then it will keep showing random open ports, and you port Scanning Software will go crazy.



Anyway, so once you get a list of open ports, start analyzing the weak points or the services which might help us to get more information about the target system which would prove invaluable to the breaking in process. Try to exploit the commands or the options available on each open port to either find a vulnerability, which could be exploited, or some kind of information on the target system. That is pretty much the only kind of things that we would be looking for. Now, let me explain how I try to find out such things with the list of open ports (of my ISP) and services running on them.



Note: Before proceeding, refer to the table of open ports which we got earlier(of host xxx.bol.net.in) in the manual and yes, I am starting from Port 79 as if I start from Port 21, then the manual will become very very short.



It has Port 79 open or in other words, has finger running, however, almost all Finger daemon are configured to not return much information about Users, however, let us try some common Finger exploits which can sometimes very very rarely get you root.



finger root

finger system

finger



These exploits are very very old and do not work almost 99 times out of 100. So the Finger port is ruled out.



Now let us move on, in the list of open ports, the HTTP port or Port 80 is also open, this means that this target system probably maintains a web site. So let me launch my favorite browser (Internet Explorer, if you are interested.) and see what they have on their site. Well, actually we are not even remotely interested in what they have on their site, but what we are interested in is to see, whether they have the CGI-BIN directory open to public or not, an dif yes if any of the common CGI exploits, which get you root, work or not.



So I type in the following in the URL box of my browser:



http://xxx.bol.net.in/cgi-bin









Jai Shree Raam

vertual port scaning part 2

Anyway, let me assume that you have got hold of a good ‘impossible to detect’ Port Scanner, now scan the target system for all open ports and record the open lists:




Note: In this manual, I have taken up my ISP as an example target system. It would be foo-barred throughout as xxx.bol.net.in



In my case, I found that the following ports were open:



Port Number Service



21 FTP

23 Telnet

25 SMTP

53 DNS

79 Finger

80 HTTP

110 POP

111 Not Useful

389 Not Useful

512 rlogin



Note: Only a few Port Scanners give you both the open Ports and the services running on them. Most Port Scanners only return the list of Open Ports. This is fine too; as once you get the list of open ports then you can find out the corresponding services running on them, referring to the RFC 1700. It contains the complete list of Port Numbers and the corresponding popularly running services.



Now port scanning takes advantage the 3-stage TCP handshake to determine what ports are open on the

Remote computer. To learn more about the TCP\IP protocol read the networking manuals that I distribute on

My mailing list.



Tools like SATAN and lots of them more allow you to find out the list of open ports, the daemon or the service running at each open port and also the service's vulnerability at the click of a button. You can't call yourself a hacker if you need some Software, which first of all is not written by you to do something as lame as a port scan. Well yes I do agree that looking for open ports manually on a server would take a long time. But what I am suggesting is that you use a Port Scanning tool, which just gives you a list of open ports without the list of services and the vulnerabilities. I assure you, if you try and explore an open port of a remote server manually, you will be able to learn more about the remote system and also it will give you a taste of what hacking actually is. If you use a port scanner, which gives you all details at the click of a button to impress your friends, let me assure you none of them will be impressed, as I am sure anyone can use SATAN and other such scanners.



Another thing you need to be careful about before port scanning your ISP is that most port scanners are very easily detected and can easily be traced and you have no excuse if you are caught doing a port scan on a host., it a sure sign of Hacker Activity. There are many stealth scanners like Nmap, which claim to be untraceable. But the truth is that they are very much traceable and they are quite inaccurate as they send only a single packet to check if a port is open or not. And if the host is running the right kind of Sniffer software maybe Etherpeek then the Port scan can be easily detected and the IP of the user logged. Anyway some ISP's are really afraid of Hacking activities and even at the slightest hint of some suspicious hacking activity something like Port scanning, they can disable your account. So just be careful.

************

Evil Hacking Trick: Well try to keep an eye on TCP port 12345, and UDP port 31337 these are the default

ports for the popular trojans NetBus and BO, respectively

*************







Jai Shree Raam

Virtual Port Scaning Part 1

HACKING TRUTH: There are two types of ports. There are hardware ports, which are the slots existing behind the CPU cabinet of your system, into which you plug-in or connect your hardware to. For Example, COM1, COM2, Parallel Port etc. However, we are not interested in such ports. We are concerned with the other type of ports, which are the virtual or the software ports. Such a virtual port is basically a virtual pipe through which information goes in and out. And all open ports have a service or daemon running on it. A service or a daemon is nothing but the software running on these ports, which provide a certain service to the users who connect to it. For Example, Port 25 is always open on a server handling mails, as it is port where the Sendmail service is running by default.


**********************



So basically the first step in your quest to breaking into a system is to get as much information on it, as you can. Try to get, the list of open ports, the list of services running on the respective open ports and whole lots of other kind of information to which I will come later.



Anyway, so firstly, get a good Port Scanner, preferably stealth and then do a port scan on the target host. Now one thing that you must remember while doing a port scan is the fact that there are various so called ‘stealth’ port scanners around which claim to be undetectable, however most of them are detectable. So instead of using such’ false claims’ port scanners, I suggest you code one on your own.



But why do I need to use a stealth Port Scanner and how can I code my own Port Scanner? Well, the reason as to why you need a stealth port Scanner is that many system administrators log all port scans and records the IP and other information on such attempts; this makes you susceptible to getting caught. In my opinion the best Port Scanners around are those, which send SYN/FIN packets from a spoofed host, making logging useless. Such a port Scanner would be coded in C, but will not run in Windows. This was just an idea, now it is up to you to code it yourself.







Jai Shree Raam

.......

Related Posts Plugin for WordPress, Blogger...