pen-test
[Top] [All Lists]

Re: Port Scanning Issues

To: crumdub12@gmail.com
Subject: Re: Port Scanning Issues
From: Jason Chambers <jchambers@ucla.edu>
Date: Wed, 25 Jul 2007 02:06:25 -0700
Cc: pen-test@securityfocus.com
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
In-reply-to: <20070625215958.25364.qmail@securityfocus.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Organization: UCLA
References: <20070625215958.25364.qmail@securityfocus.com>
Resent-date: Wed, 25 Jul 2007 03:00:29 -0600 (MDT)
Resent-from: pen-test-return-1078484689@securityfocus.com
Resent-message-id: <20070725090029.D4E4F23CB79@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
User-agent: Thunderbird 1.5.0.12 (Macintosh/20070509)
crumdub12@gmail.com wrote:
A Chairde,

   Havin, some issues with scanning stacks on my system.

1. Using Superscan4 , I scan stack UDP-TCP 1-65534 , Sometimes I get no ports open , another time I get 49159 UDP Ports open, only get port report, no attempt made to open any ports ... , when get open ports , I always get 49159 UDP Ports ...... , use the scanner at 250msecs , takes around 16 hours to finish.

Check out Unicornscan. And while your at it look at Scanrand too. Unicornscan attempts to get around the issue with UDP scanning by pre-defining certain UDP payloads to send for each known service which can produce more accurate results. It will help with 20 or so of the ports.

It's detailed in the first Q&A:

http://www.unicornscan.org/text/unicornscan_faq.txt

Regards,

--Jason



------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>