yalewhd 写道 "今天早上看到开复的“创新工场”(http://www.innovation-works.com/)上线,习惯性的尝试用nmap扫描一下主机。突然发现所有端口大开。发现很蹊跷,然后赶紧想重新扫描重定向至文件,第二次扫描,发现主机已经端口全关.....
Starting Nmap 4.11 ( http://www.insecure.org/nmap/ ) at 2009-09-07 12:05 CST
Warning: OS detection will be MUCH less reliable because we did not find at least 1$
All 1680 scanned ports on 222.35.142.85 are filtered
Too many fingerprints match this host to give specific OS details
Nmap finished: 1 IP address (1 host up) scanned in 52.681 seconds截至到现在,网站还没有恢复。"
下面是部分扫描结果: ...
9100/tcp open jetdirect
9152/tcp open ms-sql2000
9876/tcp open sd
9991/tcp open issa
9992/tcp open issc
10082/tcp open amandaidx
10083/tcp open amidxtape
11371/tcp open pksd
12000/tcp open cce4x
12345/tcp open NetBus
12346/tcp open NetBus
13705/tcp open VeritasNetbackup
13708/tcp open VeritasNetbackup
13709/tcp open VeritasNetbackup
13710/tcp open VeritasNetbackup
13711/tcp open VeritasNetbackup
13716/tcp open VeritasNetbackup
13717/tcp open VeritasNetbackup
13718/tcp open VeritasNetbackup
13721/tcp open VeritasNetbackup
13722/tcp open VeritasNetbackup
13782/tcp open VeritasNetbackup
15126/tcp open swgps
16444/tcp open overnet
17007/tcp open isode-dua
17300/tcp open kuang2
18185/tcp open opsec_omi
20005/tcp open btx
22273/tcp open wnn6
22289/tcp open wnn6_Cn
26208/tcp open wnn6_DS
27000/tcp open flexlm0
27002/tcp open flexlm2
27004/tcp open flexlm4
27005/tcp open flexlm5
27006/tcp open flexlm6
27007/tcp open flexlm7
27009/tcp open flexlm9
27374/tcp open subseven
27665/tcp open Trinoo_Master
31337/tcp open Elite
31416/tcp open boinc-client
32771/tcp open sometimes-rpc5
32772/tcp open sometimes-rpc7
32777/tcp open sometimes-rpc17
32780/tcp open sometimes-rpc23
32787/tcp open sometimes-rpc27
38292/tcp open landesk-cba
44443/tcp open coldfusion-auth
50002/tcp open iiimsf
54320/tcp open bo2k
61440/tcp open netprowler-manager2
65301/tcp open pcanywhere
Too many fingerprints match this host to give specific OS details
Nmap finished: 1 IP address (1 host up) scanned in 400.823 seconds