QQ登录

只需要一步,快速开始

 注册地址  找回密码
查看: 2619|回复: 0
打印 上一主题 下一主题

对中国先锋网络科技基于SNMP的信息刺探

[复制链接]
字体大小: 正常 放大
韩冰        

823

主题

3

听众

4048

积分

我的地盘我做主

该用户从未签到

发帖功臣 元老勋章

跳转到指定楼层
1#
发表于 2004-10-5 08:56 |只看该作者 |倒序浏览
|招呼Ta 关注Ta

作者: Net2k 来自:流星轨迹

1 o, `: I/ z5 c0 o% a) z

对中国先锋网络科技基于SNMP的信息刺探

' ?( j5 r& \5 S4 ?8 Z( ^ & p9 d3 n' b+ d2 i% P ! @ r- \ q1 ~; X

得到系统正在运行的程序信息: * v* Z8 P. j. D------------------------------------------------------------ . f2 i! S } `9 F: uVariable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1- b3 N1 r$ p7 [- \ Value = String System Idle Process

) m( E' m, q; L, b/ Z/ k: a

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.8/ N' H6 O T* u3 A Value = String System

- _+ F/ \3 O& p2 d# U, U5 Q1 u

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.172+ D3 |& P4 \2 G" W2 [# Z Value = String smss.exe

1 {. R$ z# H0 @) G( l

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1969 h# p- ?) [/ F Value = String winlogon.exe

k8 w2 y0 T [

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.200 . g) ]5 X* c2 u% V3 ^6 IValue = String csrss.exe

: O/ K t# q0 G6 d; z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.248 - `" H: t+ v3 ~: H" o+ D' RValue = String services.exe

* r8 |3 e( \% O

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2607 G4 M* w Q8 |' C7 E Value = String lsass.exe

0 e* |# c& H$ r) `3 I7 X% i

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.296 ' ^. Q2 d- @: w& i6 D. h: Z. w+ d; s& P) kValue = String wuauclt.exe

$ ?) S. }" S3 r- W7 D A

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.456 3 e# i- V5 Y; b* s' q' n& \" I: TValue = String svchost.exe

/ v2 |0 P" l4 `& y! f( b8 Y

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.496( P8 H' J6 r. n8 F" n3 ~ Value = String spoolsv.exe

$ w; [0 }6 w h6 M3 a0 u+ ^" g2 Z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.524 + G$ k* V8 J/ q9 Y1 hValue = String msdtc.exe

& z# ?9 l" y2 ?( P( z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.656 5 _/ F" J/ ~3 x( L" oValue = String DefWatch.exe

0 U8 h4 L! Y% z- M' r- T' E# I# I

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.676 . L9 U" [( z2 J8 z, A; \: zValue = String tcpsvcs.exe

+ `' i* `+ c9 Q0 l, L

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.692 + L2 X) C: F. p' ~Value = String svchost.exe

/ r3 R- `6 G% I2 `. Z! b2 Z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.720 0 |5 ?9 `1 j0 I6 U& c! lValue = String llssrv.exe

7 F$ ^# E) f) a

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.764( V+ t" B4 o5 |' }$ s Value = String Rtvscan.exe

& F; d- g' @4 I1 {( U/ p8 g

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.872 5 U. L& A0 p/ E8 e( e5 ?& ?Value = String hlds.exe

4 {. Y# h( Q% ]6 q; u* f) B4 z6 s9 i8 U

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.924 3 H( H* I5 F8 `, k+ W8 eValue = String nvsvc32.exe

, P& g3 \9 T3 a# {- j2 r, I

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.992 , n y0 S9 Z r5 {/ jValue = String Explorer.EXE

8 p/ i' K, | t- a" ?2 D9 v; f

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1000 ; [+ ?( k8 d6 ^Value = String regsvc.exe

6 \; A# a/ S7 Q: b! ]6 f9 `$ a

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1032 ! t9 J' ?2 A/ ?8 iValue = String MSTask.exe

$ x4 p$ Q5 w+ w3 k W9 Z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1072( w. b& f" ^2 N% Z9 r7 Q Value = String snmp.exe

0 M+ X) E2 {" p! \2 K- W2 A

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.10928 ^, E- U0 o" f7 Z8 z; j Value = String ServUDaemon.exe

! t* m5 @2 i" B

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1104 ' K. a$ `4 q0 S+ `5 e O& C8 m' cValue = String SMAgent.exe

1 u6 U6 f5 f5 I7 D! e7 M o

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1140" z: T' q# ?& j+ S! f Value = String WinMgmt.exe

$ M" \6 Z+ \3 i) v1 ? `$ b

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.11649 o7 T& }0 Y# z Value = String wins.exe

; t8 K& X6 h8 {* G6 u8 I# g8 w4 x) y' `

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1176 + j/ K5 _) E( }, D4 x; x4 d; jValue = String svchost.exe

% @, `9 o( Q4 h3 i

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1196 ) S, k3 u. J2 |" P4 LValue = String xconfserver_t.e

1 F% [5 b( }+ ^0 u7 e! [) r2 r

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.12289 d5 t$ q' A) G3 E Value = String Dfssvc.exe

1 B! j) t5 }4 t6 d' {; b8 D2 c

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1248( x& T& U4 F9 P2 ?/ }4 A' x Value = String inetinfo.exe

! ] ]& H5 K4 n

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1348) Y* A- l( }9 {6 t V# Y- L @ Value = String dns.exe

6 v) d: F$ y" h7 x3 F

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1568$ j% k/ J6 E& \" O- q5 _+ {+ a Value = String vptray.exe

9 L! `- j0 E0 S# O' N

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.15804 M: V3 A! F/ a) L" N' N Value = String internat.exe

$ L0 r! u, {, X% n9 u

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1844 ( v9 R: x2 w0 c/ xValue = String dllhost.exe

% L5 f+ q) b* X! ~# Q9 I' P

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1952- \+ S. F3 U9 B6 t: g$ d Value = String dllhost.exe

! S) @7 P' Q& Z( @

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2060 7 \& @* V! W$ E7 O1 o9 YValue = String mdm.exe

* ?1 v# `2 F# w# r G

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2144 ; D" C3 M, h, EValue = String conime.exe

* R$ j) \6 z/ m1 ^2 b. V% g% D

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2216) } Z/ g, Z4 O Value = String hlds.exe

# x a: \0 P; A6 w

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2336 6 b1 l' |1 N5 {1 O9 k; B$ X2 TValue = String hlds.exe

: e* U" r' s+ j. {' x5 W6 _$ F

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2348 9 ?# ^! V) o9 OValue = String svchost.exe

+ Z4 O+ [4 E4 i: D& j/ b4 R3 S

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2424) f+ o* F1 \, t2 x7 L* p6 S Value = String hlds.exe

- ^2 `4 U5 y3 z/ S# K- M

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2460" B9 I$ R7 ` O) ` Value = String hlds.exe

% U% Z; N7 }& M% Z8 I# w% l' G

End of MIB subtree. b+ j( B/ L; ^/ ^+ J ------------------------------------------------------------

; o" N/ S) G; u. F

得到系统信息:; q9 T. t$ u# E3 @ ------------------------------------------------------------ ; D. b. @. H2 o" l7 k xVariable = system.sysDescr.01 Z3 _; w! E) ~& U( C2 Y Value = String Hardware: x86 Family 15 Model 2 Stepping 9 AT/AT COMPATIBLE - ) f; ?" ~9 A- G: B5 WSoftware: Windows 2000 Version 5.0 (Build 2195 Multiprocessor Free)

9 t: R0 C3 w: N3 [( b% |7 i# v

Variable = system.sysObjectID.04 E: F' D7 e& \ Value = ObjectID 1.3.6.1.4.1.311.1.1.3.1.2

F0 s1 u. ~' [/ V9 z

Variable = system.sysUpTime.0, j% W) g! e6 a4 W& Q% o! z7 Z Value = TimeTicks 24725698

6 F1 A1 o. p& Q' f+ _

Variable = system.sysContact.0! R7 e, |+ ]5 F" [+ H8 k Value = String

. ?" ?3 |2 g* R4 J# J

Variable = system.sysName.0' g* q4 K: }) q! o) m+ K Value = String XIAOTOU

+ K# C9 \% R& B) N# z3 a( A& w

Variable = system.sysLocation.0 e& p1 U% I. [5 [0 x+ f Value = String

/ y- H: t- T. h* F4 l6 [

Variable = system.sysServices.01 m8 I/ w; T m7 W Value = Integer32 76

/ @4 \% o1 T3 n! o( @ K; E) u" P

End of MIB subtree. : t o7 a! R& E/ }) D------------------------------------------------------------

) x' k! P! d1 e7 O% O

------------------------------------------------------------& o* k# D' N- Z7 {/ s: o8 P$ Q 关于snmputil的语法: # M$ J, Y# u, r9 {1 `' \------------------------------------------------------------ # n5 i* t$ t3 sget,就理解成获取一个信息。

) S- O4 B: @9 W) A; ]7 W

getnext,就理解成获取下一个信息。

! F3 D$ j" N) b/ `

walk,就理解成获取一堆信息(嗯,应该说所有数据库子树/子目录的信息)

, {! _8 q$ G C

agent,具体某台机器拉。

7 A% ]2 L+ m6 _! C3 D

community,嗯就是那个“community strings”“查询密码”拉。

: H& P1 w6 Q6 E9 c) X" S

oid,这个要多说一下,这个呢,就是物件识别代码(Object Identifier)。 5 b# K' E1 O& `. G# f/ |, q' W............................................................

" J/ B! q4 {2 a* C6 x

例:* e: I- h! ?' }% I' a: V snmputil.exe walk 对方IP public .1.3.6.1.2.1.25.4.2.1.2 //**进程列表& x/ T2 |; ]% }6 Z snmputil.exe walk 对方IP public .1.3.6.1.4.77.1.2.25.1.1 //**用户列表4 q" @: B" U- q8 c) k+ m; k9 ], ] snmputil.exe get 对方IP public .1.3.6.1.4.77.1.4.1.0 //**域名 ; r2 ^4 ]/ w; m7 m( |3 B9 R& u- Csnmputil.exe walk 对方IP public .1.3.6.1.2.1.25.6.3.1.2 //**安装的软件: ?5 S1 d$ l6 {5 z7 U" q) ]8 z) \ k snmputil.exe walk 对方IP public .1.3.6.1.2.1.1 //**系统信息

zan
转播转播0 分享淘帖0 分享分享0 收藏收藏0 支持支持0 反对反对0 微信微信
您需要登录后才可以回帖 登录 | 注册地址

qq
收缩
  • 电话咨询

  • 04714969085
fastpost

关于我们| 联系我们| 诚征英才| 对外合作| 产品服务| QQ

手机版|Archiver| |繁體中文 手机客户端  

蒙公网安备 15010502000194号

Powered by Discuz! X2.5   © 2001-2013 数学建模网-数学中国 ( 蒙ICP备14002410号-3 蒙BBS备-0002号 )     论坛法律顾问:王兆丰

GMT+8, 2026-4-18 18:59 , Processed in 0.432448 second(s), 51 queries .

回顶部