Passiv OS Detection

http://lcamtuf.coredump.cx/p0f.shtml

Very effektivt.

130.225.56.8:35381 – Solaris 9 (NAT!)
-> 212.242.77.76:80 (distance 11, link: GPRS, T1, FreeS/WAN)
80.221.95.239:3698 – Windows XP Pro SP1, 2000 SP3
-> 212.242.77.76:135 (distance 17, link: ethernet/modem)
80.221.95.239:3698 – Windows XP Pro SP1, 2000 SP3
-> 212.242.77.76:135 (distance 17, link: ethernet/modem)
80.221.95.239:3698 – Windows XP Pro SP1, 2000 SP3
-> 212.242.77.76:135 (distance 17, link: ethernet/modem)
80.55.217.110:3060 – Windows 2000 SP2+, XP SP1 (seldom 98 4.10.2222)
-> 212.242.77.76:135 (distance 16, link: ethernet/modem)
80.55.217.110:3060 – Windows 2000 SP2+, XP SP1 (seldom 98 4.10.2222)
-> 212.242.77.76:135 (distance 16, link: ethernet/modem)
80.55.217.110:3060 – Windows 2000 SP2+, XP SP1 (seldom 98 4.10.2222)
-> 212.242.77.76:135 (distance 16, link: ethernet/modem)
62.107.32.199:33122 – Linux 2.5 (sometimes 2.4) (4) (up: 21 hrs)
-> 212.242.77.76:80 (distance 12, link: ethernet/modem)
212.10.4.116:49584 – FreeBSD 4.7-5.1 (or MacOS X 10.2-10.3) (1) (up: 11186 hrs)
-> 212.242.77.76:80 (distance 14, link: ethernet/modem)
212.241.83.5:1493 – Windows XP SP1, 2000 SP4 (3)
-> 212.242.77.76:1433 (distance 17, link: ethernet/modem)
212.241.83.5:1493 – Windows XP SP1, 2000 SP4 (3)
-> 212.242.77.76:1433 (distance 17, link: ethernet/modem)
212.241.83.5:1493 – Windows XP SP1, 2000 SP4 (3)
-> 212.242.77.76:1433 (distance 17, link: ethernet/modem)

Dette indlæg blev udgivet i Knowledge Base, Networking, Old Base. Bogmærk permalinket.

Skriv et svar