needl help plz! lvl7 on Ubuntu

Map it

TheFrenchmen [Marco514]
9 years ago | edited 9 years ago

0

hi guys i will try not put any info i have already but yeah im stuck ! so i read most of the thread about it ! so i first open nmap and read the man for some info looking for service management or something like this, by the way im new on linux too so i try to make it with the terminal learning too! so yeah found a list with this

Not shown: 995 filtered ports
PORT STATE SERVICE
22/tcp open ssh
80/tcp open http
443/tcp open https
8080/tcp open http-proxy
9050/tcp closed tor-socks
[/spoiler]

but i not sure what to do next ! im even not sure im going in the right direction ! if yes at east i can keep going there !

i dont know how check the 995 other port.. i try a UDP scan..said it send packet to 1000 port but still no clue for the answer way!
i dont know how search more far with these 5 port or how i can connect to them or try !?! can u teach me something to make me learn it ! where should i look??

Thank to all!

EDIT :

ok i try <!-
to play with the data i got now..cause i think it should be the good info ..so i use ftp ping nmap http-browser even with telnet…i dont know much about these..everyday i leearn many thing but i think hard and i really apreciated some hints or help ! or tell me what to learn to be sure to understand in the same time u know!

by the way…sorry my english i speak french!

EDIT again :
[spoiler]
i found this now…with another ip…the ip in the email didnt seem to have info i want so i ping the website and got another IP..so i scan it then i found couple thing…a HTML page display in zenmap..in code then it said :
1 service unrecognized despite returning data…but im not sure what to do now .. i read the html code found nothing and not sure of what im doing anymore… -!> tell me if im in the good direction at least so i keep diggin in this way ! if not i try something else! Thank again

9replies
5voices
237views
1image
tl0tr
9 years ago

0

www.hackthis.co.uk and hackthis.co.uk are both different and have different IP address.

Reply has been removed
TheFrenchmen [Marco514]
9 years ago | edited 9 years ago

0

i seem to found 2 port that i wonder if they are what i looking for ! there is a service error but im in trouble to understand all i see on my screen and understand it ! so how can i know more about those port..i mean i scan with zenmap , got a result but i dont know what i should do next[/spoiler]

there the scan result i got to figure iit out where i am now in my research…
[spoiler]
Starting Nmap 6.40 ( http://nmap.org ) at 2015-03-10 10:28 EDT
Nmap scan report for ip-184-168-221-39.ip.secureserver.net (184.168.221.39)
Host is up (0.088s latency).
Not shown: 986 closed ports
PORT STATE SERVICE
21/tcp filtered ftp
25/tcp filtered smtp
80/tcp open http
111/tcp open rpcbind
135/tcp filtered msrpc
139/tcp filtered netbios-ssn
179/tcp filtered bgp
445/tcp filtered microsoft-ds
646/tcp filtered ldp
711/tcp filtered cisco-tdp
1248/tcp open hermes
1720/tcp filtered H.323/Q.931
4444/tcp filtered krb524
8083/tcp open us-srv

in another windows of zenmap (Hosts Viewer/Services)i can see 20 port…10 filtrered and 10 open port !

fearghal [f34rgh4l]
9 years ago

0

Wrong target maybe?


0

u mean wrong IP…cause i got 2 ip…the one i ping from the website and the one in the email found from last lvl Basic 6 snd listen some people i go on that second IP now but any IP i dont know what to do! that make me read a lot about nmap,zenmap,telnet,ftp…but still far from the answer!

Matt [Matt6634]
9 years ago

0

1 service unrecognized despite returning data….

But…why are you still looking around ? Sounds obvious to me :p
Try maybe to read what is wrote beside maybe :p


0

could it be what im looking for ???>>

443/tcp open ssl/http Apache httpd 2.2.22 ((Debian))
|http-favicon: Unknown favicon MD5: 5780D50A339F0DD64FD776DD05ECAB7D
|
http-methods: No Allow or Public header in OPTIONS response (status code 200)
| http-robots.txt: 6 disallowed entries
| /contact.php /inbox/ /levels/
|/levels/extras/userpass.txt /users/ /ctf/8/php/*
|
http-title: HackThis!! - The Hackers Playground
| ssl-cert: Subject: commonName=www.hackthis.co.uk
| Issuer: commonName=RapidSSL SHA256 CA - G3/organizationName=GeoTrust Inc.

why still looking ? cause i didnt find what i want !!! read what?


0

Do you know what you are looking for?


0

a suspicious service !


0

hi…me again! so yeah here what i got …to me its should be a good start! i finnaly find something clear about a service trouble…so let me know if im right and on the good way or i have to look somewhere else! Thank in advance…

Starting Nmap 6.40 ( http://nmap.org ) at 2015-03-10 17:13 EDT
Nmap scan report for www.hackthis.co.uk (85.159.213.101)
Host is up (0.17s latency).
Not shown: 96 filtered ports
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 6.0p1 Debian 4+deb7u2 (protocol 2.0)
80/tcp open http Apache httpd 2.2.22 ((Debian))
443/tcp open ssl/http Apache httpd 2.2.22 ((Debian))
8080/tcp open ssl/http-proxy?
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at http://www.insecure.org/cgi-bin/servicefp-submit.cgi :
SF-Port8080-TCP:V=6.40%T=SSL%I=7%D=3/10%Time=54FF5E9B%P=x86_64-pc-linux-gn
SF:u%r(GetRequest,AC,“HTTP/1.1\x20200\x20OK\r\nSet-Cookie:\x20dtCookie=2\
SF:$3F6B5DD095D29CD65E1714BFBD8F7F11|undefined|1|nodejsApplication|1;p
SF:ath=/;\r\nDate:\x20Tue,\x2010\x20Mar\x202015\x2021:14:03\x20GMT\r\nConn
SF:ection:\x20close\r\n\r\n”)%r(HTTPOptions,AC,“HTTP/1.1\x20200\x20OK\r\n
SF:Set-Cookie:\x20dtCookie=3\$DF62F6D99D3395DEACBA083DF07D0273|undefined\
SF:|1|nodejsApplication|1;path=/;\r\nDate:\x20Tue,\x2010\x20Mar\x202015\
SF:x2021:14:03\x20GMT\r\nConnection:\x20close\r\n\r\n”)%r(FourOhFourReques
SF:t,AC,“HTTP/1.1\x20200\x20OK\r\nSet-Cookie:\x20dtCookie=2\$2886A43D6CD9
SF:713F54E6204E297D7131|undefined|1|nodejsApplication|1;path=/;\r\nDat
SF:e:\x20Tue,\x2010\x20Mar\x202015\x2021:14:09\x20GMT\r\nConnection:\x20cl
SF:ose\r\n\r\n”);
Service Info: OS: Linux; CPE: cpe:/o:linux:linux_kernel

Service detection performed. Please report any incorrect results at http://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 71.26 seconds

Discussion thread has been locked. You can no longer add new posts.
1 of 10

This site only uses cookies that are essential for the functionality of this website. Cookies are not used for tracking or marketing purposes.

By using our site, you acknowledge that you have read and understand our Privacy Policy, and Terms of Service.

Dismiss