pen-test
[Top] [All Lists]

Re: Discovering Live Hosts

To: pen-test@securityfocus.com
Subject: Re: Discovering Live Hosts
From: "Nikhil Wagholikar" <visitnikhil@gmail.com>
Date: Wed, 8 Aug 2007 10:45:05 +0530
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
Dkim-signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=CI3aVOA2Tvk69/oId+V2vzU5fhTxbA9uHvlIQHYMgllP3Edz7MoJxu1jybAchLMWb85iOp6QBDGvcb7QtaiH9N++m7/Dqvonq9TPH47MoWhTs4PXuaAnH3WWlMMuC7o6GP/2oWgDet9LIBYKNIAtz7vwxXQ8Q+pKyy+ZCE9bB3g=
Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=AtTPb5Ad0TeGjARJsszra2H/bbI48bQN6BGRpfYMkCj9xp10uarj4B4lTVyUgVtgM/OSluj/MWMHf9UX63SGUgxnw24VzdTl54nD6Tc0KuZIk/TqoQmNJjlMlsz1MCmkZ3g9X81ZOCijVuOKk3ea/oia/VLe8BSLzT9HDoUsOZY=
In-reply-to: <7d04ec560708072010o61fcab80ie32912f812e68794@mail.gmail.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
References: <266316f70708070829w24a05fecqacb4a27a8e40062@mail.gmail.com> <7d04ec560708072010o61fcab80ie32912f812e68794@mail.gmail.com>
Resent-date: Tue, 7 Aug 2007 23:14:41 -0600 (MDT)
Resent-from: pen-test-return-1078484771@securityfocus.com
Resent-message-id: <20070808051441.81349239584@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Hello Rajat,

Thanks for your suggestion. However as I said earlier that "if suppose SMTP is
configured on port 26 instead of traditional port 25, then it would
add a twist to this situation". Hence your suggested method would
still leave some hosts down. Can you kindly further granularize your
suggestion?
Thanks once again.

--
Nikhil Wagholikar
Information Security Analyst

On 8/8/07, rajat swarup <rajats@gmail.com> wrote:
> On 8/7/07, Nikhil Wagholikar <visitnikhil@gmail.com> wrote:
> >
> >
> > Can anyone kindly guide me, as to how to find live IP Addresses from a
> > given Pool of IP Addresses (Range of IP Addresses) with as less false
> > positive results as possible and as quickly as possible? Is there any
> > tool out (no matter shareware or freeware), which focuses on finding
> > live IP Addresses from Pool of IP Addresses?
> >
> Hi Nikhil,
> I would choose some 40-50 odd most commonly used ports and perform a
> SYN Stealth scan only on those ports -sS -P0 (e.g.,
> 21,22,23,25,53,80,443,3389,9000 etc).
> I'd also do a ping scan.
> Now there are 4 possibiities:
> 1. A host responds to ping
> 2. A host responds with open port
> 3. A host responds with a closed port
> 4. A host resolved DNS name
> In each of the four cases you come to know the host is alive.
>
> HTH,
> Rajat.
> --
> Rajat Swarup
>
> http://rajatswarup.blogspot.com/
>

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>