Top Banner
www.vncert.gov.vn
77

1.1 Scanning

Apr 14, 2018

Download

Documents

tuanf4
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 1/77

www.vncert.gov.vn

Page 2: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 2/77

www.vncert.gov.vn

SCANNING

Module 4

Page 3: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 3/77

www.vncert.gov.vn

Content

1•

Definition of scanning

2 • Types and objectives of Scanning

 3 • Checking live systems and open ports

4• Understanding scanning techniques

5 • Different tools present to perform Scanning

6 • Understanding banner grabbing and OS fingerprinting

7 • Drawing network diagrams of vulnerable host

8 • Preparing proxies

9 • Scanning countermeasures

Page 4: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 4/77

www.vncert.gov.vn

Scanning - Definition

Page 5: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 5/77

www.vncert.gov.vn

Types of Scanning

Page 6: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 6/77

www.vncert.gov.vn

Objectives of Scanning

Page 7: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 7/77

www.vncert.gov.vn

Page 8: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 8/77

www.vncert.gov.vn

Checking for Live Systems - ICMP

Scanning

Page 9: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 9/77

www.vncert.gov.vn

 Angry IP Scanner

Page 10: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 10/77

www.vncert.gov.vn

 Angry IP Scanner: Screenshot

Page 11: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 11/77

www.vncert.gov.vn

Page 12: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 12/77

www.vncert.gov.vn

Three Way Handshake

Page 13: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 13/77

www.vncert.gov.vn

Three Way Handshake: Screenshot

Page 14: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 14/77

www.vncert.gov.vn

TCP Communication Flags

Page 15: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 15/77

www.vncert.gov.vn

Nmap

Page 16: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 16/77

www.vncert.gov.vn

Nmap: Screenshot

Page 17: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 17/77

www.vncert.gov.vn

Nmap: Scan Methods

Page 18: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 18/77

www.vncert.gov.vn

Nmap: Scan Methods

Page 19: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 19/77

www.vncert.gov.vn

NMAP Scan Options

Page 20: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 20/77

www.vncert.gov.vn

NMAP Output Format

t

Page 21: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 21/77

www.vncert.gov.vn

NMAP Timing Options

t

Page 22: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 22/77

www.vncert.gov.vn

NMAP Options

ncert go n

Page 23: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 23/77

www.vncert.gov.vn

HPING2

www vncert gov vn

Page 24: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 24/77

www.vncert.gov.vn

Hping2 Commands

www vncert gov vn

Page 25: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 25/77

www.vncert.gov.vn

SYN Stealth / Half Open Scan

www vncert gov vn

Page 26: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 26/77

www.vncert.gov.vn

Stealth Scan

www vncert gov vn

Page 27: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 27/77

www.vncert.gov.vn

 Xmas Scan

www vncert gov vn

Page 28: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 28/77

www.vncert.gov.vn

FIN Scan

www vncert gov vn

Page 29: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 29/77

www.vncert.gov.vn

NULL Scan

www vncert gov vn

Page 30: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 30/77

www.vncert.gov.vn

IDLE Scan

www vncert gov vn

Page 31: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 31/77

www.vncert.gov.vn

IDLE Scan: Basics

www.vncert.gov.vn

Page 32: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 32/77

www.vncert.gov.vn

IDLE Scan: Step 1

www.vncert.gov.vn

Page 33: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 33/77

www.vncert.gov.vn

IDLE Scan: Step 2.1 (Open Port)

www.vncert.gov.vn

Page 34: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 34/77

www.vncert.gov.vn

IDLE Scan: Step 2.2 (Closed Port)

www.vncert.gov.vn

Page 35: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 35/77

g

IDLE Scan: Step 3

www.vncert.gov.vn

Page 36: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 36/77

g

ICMP Echo Scanning/List Scan

www.vncert.gov.vn

Page 37: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 37/77

g

TCP Connect / Full Open Scan

www.vncert.gov.vn

Page 38: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 38/77

g

www.vncert.gov.vn

Page 39: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 39/77

 War Dialer Technique

www.vncert.gov.vn

Page 40: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 40/77

 Why War Dialing?

www.vncert.gov.vn

Page 41: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 41/77

 Wardialing

www.vncert.gov.vn

Page 42: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 42/77

PhoneSweep – War Dialing Tool

www.vncert.gov.vn

Page 43: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 43/77

THC Scan

www.vncert.gov.vn

Page 44: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 44/77

ToneLoc

Page 45: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 45/77

www.vncert.gov.vn

Page 46: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 46/77

 War Dialing CountermeasuresSandTrap Tool

www.vncert.gov.vn

Page 47: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 47/77

www.vncert.gov.vn

Page 48: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 48/77

OS Fingerprinting

www.vncert.gov.vn

Page 49: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 49/77

 Active Stack Fingerprinting

www.vncert.gov.vn

Page 50: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 50/77

Passive Fingerprinting

www.vncert.gov.vn

Page 51: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 51/77

 Active Banner Grabbing Using Telnet

www.vncert.gov.vn

Page 52: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 52/77

GET REQUESTS

www.vncert.gov.vn

Page 53: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 53/77

p0f – Banner Grabbing Tool

www.vncert.gov.vn

Page 54: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 54/77

p0f for Windows

www.vncert.gov.vn

Page 55: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 55/77

Httprint Banner Grabbing Tool

www.vncert.gov.vn

Page 56: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 56/77

Httprint: Screenshot

www.vncert.gov.vn

Page 57: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 57/77

Tools for Active Stack Fingerprinting

www.vncert.gov.vn

Page 58: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 58/77

Netcraft

Page 59: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 59/77

www.vncert.gov.vn

Page 60: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 60/77

Nessus

www.vncert.gov.vn

Page 61: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 61/77

Nessus: Screenshot 1

www.vncert.gov.vn

Page 62: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 62/77

Nessus: Screenshot 2

www.vncert.gov.vn

Page 63: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 63/77

GFI LANGuard

www.vncert.gov.vn

Page 64: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 64/77

GFI LANGuard Features

www.vncert.gov.vn

Page 65: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 65/77

Retina

www.vncert.gov.vn

Page 66: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 66/77

Retina: Screenshot

www.vncert.gov.vn

Page 67: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 67/77

www.vncert.gov.vn

Page 68: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 68/77

FriendlyPinger

www.vncert.gov.vn

Page 69: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 69/77

www.vncert.gov.vn

Page 70: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 70/77

Proxy Servers

www.vncert.gov.vn

Page 71: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 71/77

Use of Proxies for Attack

www.vncert.gov.vn

Page 72: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 72/77

Free Proxy Servers (1/2)

www.vncert.gov.vn

( )

Page 73: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 73/77

Free Proxy Servers (2/2)

www.vncert.gov.vn

Page 74: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 74/77

SocksChain

www.vncert.gov.vn

l h

Page 75: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 75/77

HTTP Tunneling Techniques

www.vncert.gov.vn

h d l

Page 76: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 76/77

 Why Do I Need HTTP Tunneling

www.vncert.gov.vn

Page 77: 1.1 Scanning

7/29/2019 1.1 Scanning

http://slidepdf.com/reader/full/11-scanning 77/77

Scanning Countermeasures