|
|||||||
| Pentesting Specific topics related to legal penetration testing |
![]() |
|
|
LinkBack | Thread Tools | Display Modes |
|
|||||||
|
My private IP address scheme is in 192.168.1.x subnet, Here is my network diagram
Quote:
Quote:
Quote:
Quote:
Quote:
Telneting this machine gives the banner Quote:
Quote:
I am trying to investigate the machine on my own but have got no ideas how to proceed further What could this machine be any wild guesses? and one more thing you people should also try probing this machine and make sure not to confuse your own router with it :-) |
|
||||
|
Quote:
__________________
- The future begins tomorrow! |
|
|||
|
Quote:
|
|
||||
|
Quote:
Quote:
:PBut seriously, nothing. I don't agree with streaks (Port scanning is not a crime - though the Nmap scripting engine is beginning to borderline it IMO), but beyond that, nothing more will you do. Honestly (and not being rude despite my normal disposition): If you have to ask, you are not skilled enough to do it anyway, so even if we were that sort of forum, I wouldn't help you.
__________________
Never underestimate the power of human stupidity - it is like a force of nature, capable of destroying even the most well laid plans. |
|
|||
|
Quote:
Just a head up for the OP, it may or may not be a crime but it may also be against your ISP's TOS. You could have just broken those terms and given your ISP full rights to ban you. Crime or not there was no reason whatsoever to run a port scan on that IP in order to show that it is an unusual situation.
__________________
The only real problems in life are the problems that are common to all humans. Last edited by hhmatt81; 11-05-2009 at 07:16 AM. Reason: punctuation |
|
||||
|
Quote:
I am not, however, familiar with a single country where the act of port scanning is enough to get you into trouble (by law). I do recall those kids getting "caught" by the FBI or NSA or whoever for hard-and-fast scanning, but I don't recall that being an actual law. Is there a particular country or line item I have missed?
__________________
Never underestimate the power of human stupidity - it is like a force of nature, capable of destroying even the most well laid plans. |
|
|||
|
Not that I am aware of, although I am no expert on the subject. Hopefully someone else would be able to provide more information.
__________________
The only real problems in life are the problems that are common to all humans. |
|
|||
|
Quote:
It was not that I didn't knew of what would one do but I just wanted to know what other people think about it. So if someone REALLY wants to dig deeper then there are ample guides on the internet and are much better than asking someone! The normal sequence can be nothing other than getting even more info on the target (supposing there was one!) by means of knowing more about their gateway and then maybe getting to know the vulnerabilities (by active or passive scanning and maybe social engineering hint:call isp to ask about it) and finally exploiting them or trying to bruteforce your way to the machine. But all this stuff needs a dedicated person and someone who has plenty of time at his disposal (which surely excludes me out ). Thankyou everyone for their replies! Last edited by generaluser; 11-05-2009 at 10:47 AM. |
|
||||
|
I don't believe I ever mentioned that port scanning was a crime, but it can be against the TOS/AUP of your ISP. Many of them have conducting recon clearly defined in their terms as being forbidden activity.
__________________
A 3rd Party Security Audit is the IT equivalent of a Colonoscopy, it's long, intrusive, and when it's done you'll have seen a lot of things you really didn't want to see, and you'd definitely remember that you had it done. I ♣ baby harp seals. |
![]() |
| Bookmarks |
| Thread Tools | |
| Display Modes | |
|
|