BYsan

 找回密碼
 成為會員
搜索
熱搜: 活動 交友 discuz
查看: 1779|回復: 29

天殺我比d野你玩呀...

[複製鏈接]
發表於 2007-3-16 12:07:27 | 顯示全部樓層 |閱讀模式
你c下呢個網...

idreamx.com

睇下咩料子...
發表於 2007-3-16 20:17:44 | 顯示全部樓層
*-,...


      你比d毒佢玩*'..????
發表於 2007-3-17 00:55:25 | 顯示全部樓層
呵呵....
發表於 2007-3-17 02:58:00 | 顯示全部樓層
@o@ what ' s  that?
發表於 2007-3-18 15:45:01 | 顯示全部樓層
*-,........


         會發生咩事呢..???
寒靈.伊 該用戶已被刪除
發表於 2007-3-19 17:36:20 | 顯示全部樓層
提示: 作者被禁止或刪除 內容自動屏蔽
MarksMan.N2 該用戶已被刪除
發表於 2007-3-19 17:52:15 | 顯示全部樓層
提示: 作者被禁止或刪除 內容自動屏蔽
寒靈.伊 該用戶已被刪除
發表於 2007-3-19 17:55:52 | 顯示全部樓層
提示: 作者被禁止或刪除 內容自動屏蔽
發表於 2007-3-20 07:24:48 | 顯示全部樓層
我玩唔玩得??
 樓主| 發表於 2007-3-20 11:14:52 | 顯示全部樓層
你地唔玩得架...

天殺快回帖...

kasan都玩得~
寒靈.伊 該用戶已被刪除
發表於 2007-3-20 11:35:41 | 顯示全部樓層
提示: 作者被禁止或刪除 內容自動屏蔽
發表於 2007-3-21 21:16:21 | 顯示全部樓層
咩黎架 ?
Fatal error: Maximum execution time of 30 seconds exceeded in d:clientwebixftpdmwwwrootbbsincludedb_mysql.class.php on line 65
發表於 2007-3-21 21:36:43 | 顯示全部樓層
詳細調查了一下

伺服器地址
http://www.apnic.net/db/dbcopyright.html

ip地址的詳細資料 沒有什麼不對頭
inetnum:      221.130.176.0 - 221.130.207.255
netname:      CMNET-shanghai
country:      CN
descr:        China Mobile Communications Corporation - shanghai
admin-c:      HL888-AP
tech-c:       HL888-AP
mnt-by:       MAINT-CN-CMCC
mnt-lower:    MAINT-CN-CMCC-shanghai
remarks:      ------------------------------
remarks:      Please send abuse e-mail to
remarks:      lihaiy@sh.chinamobile.com
remarks:      Please send probe e-mail to
remarks:      lihaiy@sh.chinamobile.com
remarks:      -------------------------------
status:       ALLOCATED NON-PORTABLE
changed:      weichenguang@chinamobile.com 20050512
mnt-by:       MAINT-CN-CMCC
source:       APNIC

person:       haiyan li
nic-hdl:      HL888-AP
e-mail:       lihaiy@sh.chinamobile.com
address:      Rm.1306 No.200 Chang Shou Road,Shanghai,200060 China
phone:        +86-021-32069999-1316
fax-no:       +86-021-62776876
country:      cn
changed:      lihaiy@sh.chinamobile.com 20040810
mnt-by:       MAINT-CN-CMCC-SHANGHAI
source:       APNIC

作業系統應該是win 2000 同個個是大陸上海網囉nn[ 本帖最後由 天殺孤星 於 2007-3-21 09:38 PM 編輯 ]
發表於 2007-3-21 23:11:49 | 顯示全部樓層
*',,...


    咁姐係有咩玩姐,,*??
發表於 2007-3-22 02:31:07 | 顯示全部樓層
原帖由 羅馬王子-托七 於 2007-3-16 12:07 PM 發表
你c下呢個網...

idreamx.com

睇下咩料子...



更詳細的掃瞄報告


Host List
Host(s)Possible Issue
221.130.182.77Security wa
ings found
Host Summary - OS: Unknown OS; PORT/TCP: 21, 25, 80, 110, 119, 143, 443, 465, 563, 993, 995, 1025, 1080, 1433, 3128, 3306, 3389, 8000, 8080


Analysis of Host: 221.130.182.77
Address of HostPort/ServiceIssue regarding Port
221.130.182.77HTTP proxy server (8080/tcp)Security notes found
221.130.182.77www (80/tcp)Security notes found
221.130.182.77HTTP proxy (3128/tcp)Security notes found
221.130.182.77MySql (3306/tcp)Security notes found
221.130.182.77nntp (119/tcp)Security notes found
221.130.182.77https (443/tcp)Security notes found
221.130.182.77Windows Terminal Services (3389/tcp)Security notes found
221.130.182.77IMAP-ssl (993/tcp)Security notes found
221.130.182.77POP3-ssl (995/tcp)Security notes found
221.130.182.77SOCKS (1080/tcp)Security notes found
221.130.182.77unknown (8000/tcp)Security notes found
221.130.182.77NNTP-ssl (563/tcp)Security notes found
221.130.182.77SMTP-ssl (465/tcp)Security notes found
221.130.182.77imap (143/tcp)Security notes found
221.130.182.77smtp (25/tcp)Security wa
ings found
221.130.182.77ftp (21/tcp)Security notes found
221.130.182.77pop3 (110/tcp)Security notes found
221.130.182.77ms-sql-s (1433/tcp)Security notes found
221.130.182.77network blackjack (1025/tcp)Security notes found
221.130.182.77msrdp (3389/tcp)Security wa
ings found
221.130.182.77mssql (1433/tcp)Security notes found


Security Issues and Fixes: 221.130.182.77
TypePort/ServiceSecurity Issues and Fixes
InformationalHTTP proxy server (8080/tcp)Services

Maybe the "HTTP proxy server" service running on this port.

NESSUS_ID : 10330
Informationalwww (80/tcp)Services

A web server is running on this port
Here is its banner :
HTTP/1.1 400 Bad Request
Content-Type: text/html
Date: Wed, 21 Mar 2007 18:04:04 GMT
Connection: close
Content-Length: 39

<h1>Bad Request (Invalid Hostname)</h1>
NESSUS_ID : 10330
InformationalHTTP proxy (3128/tcp)Services

Maybe the "HTTP proxy" service running on this port.

NESSUS_ID : 10330
InformationalMySql (3306/tcp)Services

Maybe the "MySql" service running on this port.

Here is its banner:

2e .
NESSUS_ID : 10330
InformationalMySql (3306/tcp)MySQL Server version

Remote MySQL version : 4.0.24-nt-log
NESSUS_ID : 10719
Informationalnntp (119/tcp)Services

Maybe the "nntp" service running on this port.

NESSUS_ID : 10330
Informationalhttps (443/tcp)Services

Maybe the "https" service running on this port.

NESSUS_ID : 10330
InformationalWindows Terminal Services (3389/tcp)Services

Maybe the "Windows Terminal Services" service running on this port.

NESSUS_ID : 10330
InformationalWindows Terminal Services (3389/tcp)Windows Terminal Service Enabled


The Terminal Services are enabled on the remote host.

Terminal Services allow a Windows user to remotely obtain
a graphical login (and therefore act as a local user on the
remote host).

If an attacker gains a valid login and password, he may
be able to use this service to gain further access
on the remote host. An attacker may also use this service
to mount a dictionnary attack against the remote host to try
to log in remotely.

Note that RDP (the Remote Desktop Protocol) is vulnerable
to Man-in-the-middle attacks, making it easy for attackers to
steal the credentials of legitimates users by impersonating the
Windows server.

Solution : Disable the Terminal Services if you do not use them, and
do not allow this service to run across the inte
et

Risk factor : Low
BUGTRAQ_ID : 3099, 7258
NESSUS_ID : 10940
InformationalIMAP-ssl (993/tcp)Services

Maybe the "IMAP-ssl" service running on this port.

NESSUS_ID : 10330
InformationalPOP3-ssl (995/tcp)Services

Maybe the "POP3-ssl" service running on this port.

NESSUS_ID : 10330
InformationalSOCKS (1080/tcp)Services

Maybe the "SOCKS" service running on this port.

NESSUS_ID : 10330
Informationalunknown (8000/tcp)Services

An unknown service is running on this port.

NESSUS_ID : 10330
InformationalNNTP-ssl (563/tcp)Services

Maybe the "NNTP-ssl" service running on this port.

NESSUS_ID : 10330
InformationalSMTP-ssl (465/tcp)Services

Maybe the "SMTP-ssl" service running on this port.

NESSUS_ID : 10330
Informationalimap (143/tcp)Services

An IMAP server is running on this port
NESSUS_ID : 10330
Informationalimap (143/tcp)IMAP Banner

The remote imap server banner is :
* OK IMAP4 Server (IMail 8.01) GET BAD / Unknown Command
Versions and types should be omitted where possible.
Change the imap banner to something generic.
NESSUS_ID : 11414
Wa
ing
smtp (25/tcp)EXPN and VRFY commands


The remote SMTP server answers to the EXPN and/or VRFY commands.

The EXPN command can be used to find the delivery address of mail aliases, or
even the full name of the recipients, and the VRFY command may be used to check the validity of an account.


Your mailer should not allow remote users to use any of these commands,
because it gives them too much information.


Solution : if you are using Sendmail, add the option :

O PrivacyOptions=goaway

in /etc/sendmail.cf.

Risk factor : Low
CVE_ID : CAN-1999-0531
NESSUS_ID : 10249
Informationalsmtp (25/tcp)Services

An SMTP server is running on this port
Here is its banner :
220 computer (IMail 8.01 2953-1) NT-ESMTP Server X1 502 unimplemented command
NESSUS_ID : 10330
Informationalsmtp (25/tcp)SMTP Server type and version

Remote SMTP server banner :
220 computer (IMail 8.01 2957-1) NT-ESMTP Server X1

NESSUS_ID : 10263
Informationalftp (21/tcp)Services

An FTP server is running on this port.
Here is its banner :
220 Serv-U FTP Server v6.3 for WinSock ready...
NESSUS_ID : 10330
Informationalftp (21/tcp)FTP Server type and version

Remote FTP server banner :
220 Serv-U FTP Server v6.3 for WinSock ready...
NESSUS_ID : 10092
Informationalpop3 (110/tcp)Services

A pop3 server is running on this port
NESSUS_ID : 10330
Informationalpop3 (110/tcp)POP3 Server type and version


The remote POP3 servers leak information about the software it is running,
through the login banner. This may assist an attacker in choosing an attack
strategy.

Versions and types should be omitted where possible.

The version of the remote POP3 server is :
+OK X1 NT- Server computer (IMail 8.01 113-1) -ERR illegal command

Solution : Change the login banner to something generic.
Risk factor : Low
NESSUS_ID : 10185
Informationalms-sql-s (1433/tcp)Services

Maybe the "ms-sql-s" service running on this port.

NESSUS_ID : 10330
Informationalms-sql-s (1433/tcp)Microsoft SQL TCP/IP listener is running


Microsoft SQL server is running on this port.

You should never let any unauthorized users establish
connections to this service.

Solution: Block this port from outside communication

Risk factor : Medium
CVE_ID : CAN-1999-0652
NESSUS_ID : 10144
Informationalnetwork blackjack (1025/tcp)Services

Maybe the "network blackjack" service running on this port.

NESSUS_ID : 10330
Wa
ing
msrdp (3389/tcp)Microsoft Windows Remote Desktop Protocol Server Private Key Disclosure Vulnerability


The remote version of Remote Desktop Protocol Server (Terminal Service) is
vulnerable to a man in the middle attack.

An attacker may exploit this flaw to decrypt communications between client
and server and obtain sensitive information (passwords, ...).

See Also : http://www.oxid.it/downloads/rdp-gbu.pdf
Solution : None at this time.
Risk factor : Medium
CVE_ID : CAN-2005-1794
BUGTRAQ_ID : 13818
NESSUS_ID : 18405
Informationalmssql (1433/tcp)Microsoft SQL TCP/IP listener is running


Microsoft SQL server is running on this port.

You should never let any unauthorized users establish
connections to this service.

Solution: Block this port from outside communication

Risk factor : Medium
CVE_ID : CAN-1999-0652
NESSUS_ID : 10144



看來有點兒漏洞出現  史上最pk的漏洞3389 境然有?
你的意思唔是話你知到密碼掛?
您需要登錄後才可以回帖 登錄 | 成為會員

本版積分規則

小黑屋|手機版|Archiver|BYsan

GMT+8, 2025-1-2 04:33 AM , Processed in 0.069064 second(s), 15 queries .

Powered by Discuz! X3.4

© 2001-2023 Discuz! Team.

快速回復 返回頂部 返回列表