Skip to main content

Intermediate Nmap

root@ip-10-10-155-187:~/intermediatenmap# nmap -sT -f -p- --min-rate 1000 10.10.194.99

Starting Nmap 7.60 ( https://nmap.org ) at 2023-09-04 03:22 BST
Nmap scan report for ip-10-10-194-99.eu-west-1.compute.internal (10.10.194.99)
Host is up (0.00023s latency).
Not shown: 65532 closed ports
PORT STATE SERVICE
22/tcp open ssh
2222/tcp open EtherNetIP-1
31337/tcp open Elite
MAC Address: 02:1C:F9:36:EE:E1 (Unknown)
root@ip-10-10-155-187:~/intermediatenmap# nmap -sTCV -f -p 22,2222,31337 --min-rate 1000 10.10.194.99

Starting Nmap 7.60 ( https://nmap.org ) at 2023-09-04 03:23 BST
Nmap scan report for ip-10-10-194-99.eu-west-1.compute.internal (10.10.194.99)
Host is up (0.00018s latency).

PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 8.2p1 Ubuntu 4ubuntu0.4 (Ubuntu Linux; protocol 2.0)
2222/tcp open ssh OpenSSH 8.2p1 Ubuntu 4ubuntu0.4 (Ubuntu Linux; protocol 2.0)
31337/tcp open Elite?
| fingerprint-strings:
| DNSStatusRequest, DNSVersionBindReq, FourOhFourRequest, GenericLines, GetRequest, HTTPOptions, Help, Kerberos, LANDesk-RC, LDAPBindReq, LDAPSearchReq, LPDString, NCP, NULL, NotesRPC, RPCCheck, RTSPRequest, SIPOptions, SMBProgNeg, SSLSessionReq, TLSSessionReq, TerminalServer, X11Probe:
| In case I forget - user:pass
|_ ubuntu:Dafdas!!/str0ng

连接 31337 端口可以获取到一个账号, 然后利用此账号进行登陆即可,

20240703134426