Remote Exploit Forums

Go Back   Remote Exploit Forums > Specialist Topics > Pentesting


Pentesting Specific topics related to legal penetration testing

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 10-22-2009, 01:48 AM
Junior Member
 
Join Date: Nov 2008
Posts: 23
Angry

posted in the wrong place !

moved to pen testing

I have a works provided connection via IMS ( uk business ISP) and i have been running open VAS against an number of our external IP addresses.

i know that some IP addresses host services that are publicly available, but when i scan for them they don't appear in the report. Also a scan with nessus wont find them from my connection.A targeted connection or nmap scan finds them.

if i connect physically to the network on the external connection 1 hop from the firewall and do the scan the service is found, or target the plug ins and ports from openvas from my connection it's found as well.

The unidentified service varies on the numbers of IP address im scanning, so it looks like something is hitting a threshold and dropping the packets

Contacted the isp and explained the issue, and they have confirmed that there is no packet filters,ids/ips etc on my connection.But to me it looks like it is something they are doing.

i have sent them packet captures from my machine and a capture from the switch the firewall is on which shows i send but its not received.BT have also captured the trafick from my ip and again the scans not showing ive even tried to scan another device connected to a home connection and check the route to ensure it says within their network!

we are paying a premium for the connection to be able to do unfiltered scans. any ideas on how i can prove where that packets are being stopped ?

Last edited by archangel.amael; 10-22-2009 at 11:37 AM. Reason: Double Post
Reply With Quote
  #2 (permalink)  
Old 10-22-2009, 11:40 AM
archangel.amael's Avatar
Moderator
 
Join Date: Nov 2007
Location: behind the wire
Posts: 3,471
Default

Edit your posts using the Edit button located at the bottom right hand side of said post.
Re-read the rules that you agreed to when you signed up.
__________________
The very existence of flame-throwers proves that some time, somewhere, someone said to themselves, You know, I want to set those people over there on fire, but I'm just not close enough to get the job done.
George Carlin
Reply With Quote
  #3 (permalink)  
Old 10-22-2009, 12:12 PM
Junior Member
 
Join Date: Nov 2008
Posts: 23
Default

I did try to delete the post in the other section but couldn’t find a way to do it. I thought I had deleted the text and just left the moved text.

Apologies for this
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 03:53 PM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.3.2