27.06.2013 Views

6th European Conference - Academic Conferences

6th European Conference - Academic Conferences

6th European Conference - Academic Conferences

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Muhammad Naveed<br />

2006 Tcp Open Mysql<br />

3306 Tcp Open Mysql<br />

3389 Tcp Open Microsoft-rdp<br />

Port Protocol State Service<br />

8402 Tcp Open http<br />

8443 Tcp Open http<br />

53 Udp Open Domain<br />

161 Udp Closed Snmp<br />

162 Udp Closed Snmptrap<br />

Table 17: Aggressive OS scan results (Most probable)<br />

OS Name and Version Type Vendor OS Family OS Generation Accuracy of<br />

result<br />

Microsoft Windows Server<br />

2003 SP2<br />

General Purpose Microsoft Windows 2003 96%<br />

Table 18: Aggressive OS scan results (Other)<br />

Type Vendor OS Family OS Generation Accuracy of result<br />

General Purpose Microsoft Windows XP 95%<br />

General Purpose Microsoft Windows 2000 89%<br />

The second webserver scanned also revealed the worst condition of security. Ssh server working at<br />

port 26 was found to be open for Internet, which should not be open. DNS, mysql and other ports<br />

detailed in table 20 were found open which also should not be open. A lot of ports are in Open|filtered<br />

state, and the ports might be open or firewalled. So, the web server is potentially insecure and one<br />

can easily see it form the results of port scan. Aggressive OS scan reveals that Linux 2.4.28 – Linux<br />

2.4.35 is installed on their server with 97% accuracy. Other OS guesses for webserver also shows<br />

that the webserver is installed with Linux. The old Linux version can be a potential security threat. The<br />

Linux version should not be so much old because that might not provide the required security. Scan<br />

results for the institution are shown in Table 19 to Table 22.<br />

Table 19: Scan details<br />

Scanned Web Server Hidden (because of Possible Objections)<br />

Scan Launching Time 2010-08-14 00:48 PKST<br />

Scan Type Slow Comprehensive Scan<br />

Scan Time 1132.40 seconds<br />

Raw packets sent 2550 (92.637KB)<br />

Raw packets received 4548 (237.954KB)<br />

Table 20: Port scan results<br />

Port Protocol State Service<br />

26 Tcp Open Ssh<br />

53 Tcp Open Domain<br />

80 Tcp Open http<br />

111 Tcp Open Rpcbind<br />

1720 Tcp Filtered H.323/Q.931<br />

3306 Tcp Open Mysql<br />

5060 Tcp Filtered Sip<br />

8009 Tcp Open<br />

32768 Tcp Open Rpcbind<br />

53 Udp Open Domain<br />

111 Udp Open Rpcbind<br />

135 Udp Open | filtered<br />

5003 Udp Open | filtered<br />

5060 Udp Open | filtered<br />

18676 Udp Open | filtered<br />

18818 Udp Open | filtered<br />

20279 Udp Open | filtered<br />

21454 Udp Open | filtered<br />

23176 Udp Open | filtered<br />

195

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!