QQ登录

只需要一步,快速开始

 注册地址  找回密码
查看: 2643|回复: 0
打印 上一主题 下一主题

对中国先锋网络科技基于SNMP的信息刺探

[复制链接]
字体大小: 正常 放大
韩冰        

823

主题

3

听众

4048

积分

我的地盘我做主

该用户从未签到

发帖功臣 元老勋章

跳转到指定楼层
1#
发表于 2004-10-5 08:56 |只看该作者 |倒序浏览
|招呼Ta 关注Ta

作者: Net2k 来自:流星轨迹

9 P3 r( D; |( S% [

对中国先锋网络科技基于SNMP的信息刺探

9 d k8 B9 G& v" D1 W ]8 F3 C 3 i. c6 E% l5 j4 Z5 b 0 |" h2 w2 u. t, S1 H Z" E% P

得到系统正在运行的程序信息:- t) d9 \4 L6 F4 p S( q ------------------------------------------------------------( s4 G, i+ k/ N2 L& V7 m Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1 7 [5 p% ]; W! {Value = String System Idle Process

6 u0 ~: T* r4 a

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.87 I) A) J" J9 ?" d$ h4 Y& u' G8 O8 b Value = String System

. r" e& F6 H( {: C6 T2 ~# ^

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1726 N2 p1 x2 s- c% Z2 N Value = String smss.exe

; O1 J' V, X0 ?+ r" p7 P

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.196 ! a n( T9 n# B0 d. d6 _Value = String winlogon.exe

1 w' r4 y+ C: g7 \* W

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.200 E n( }6 Y1 c: M' wValue = String csrss.exe

; G/ J) ^3 t4 n

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.248 + r, i5 E( n+ Q, b6 u' }/ lValue = String services.exe

& ^8 W+ e5 M7 `1 ^ V9 x( z: n

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.260' T! `! X5 \( O& P$ s Value = String lsass.exe

3 U% i& `( M1 i# {: @% g

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.296 # W) j) q. C. @3 d8 N7 EValue = String wuauclt.exe

0 f0 K R5 P) Q6 C7 j9 I; h

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.4566 s1 @7 A1 m! ^3 w4 `4 u0 K. ? Value = String svchost.exe

: a6 M. L% E2 a8 t4 K# q, i

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.496. ^7 o. p2 u; I! D Value = String spoolsv.exe

9 m8 Z+ }; c" h+ y

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.524+ E6 o& c. c' N$ [ Value = String msdtc.exe

" d7 z2 t, j3 A' {& a5 J, K

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.656 _5 i7 f/ f( G, m' uValue = String DefWatch.exe

7 V d; a( B5 C. b% Q5 e

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.6769 r: b( W. v5 E) n Value = String tcpsvcs.exe

% J T7 o) a3 q+ C( X

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.692 ) L( t9 H& u2 B* u& fValue = String svchost.exe

' Y% b6 j. v6 I+ N2 c

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.720$ G0 H+ K- e- \$ r$ I Value = String llssrv.exe

% F( ?# G( G5 n# T4 r5 o c& t4 |

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.764 7 y0 k% I6 o+ c6 L8 z0 D! gValue = String Rtvscan.exe

' e0 h8 I+ y$ M5 `, h6 y

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.8723 J& i) O% t! K9 x Value = String hlds.exe

# Y- F1 m( C; h; i- U- }

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.924! W, _) v4 n; U/ n0 w Value = String nvsvc32.exe

, j9 p3 K; w! E u) b

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.9925 X1 Q, k8 B1 J z; j Value = String Explorer.EXE

9 U/ a5 f( [0 Y% A

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1000 u# U7 ~* Y# K/ ]$ l$ @7 S Value = String regsvc.exe

& k# a) l- T# X/ }) i

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.10324 m T! ]5 q3 F Value = String MSTask.exe

0 `' L$ t) I) O

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1072 " E/ ]6 w% H0 Y7 M7 O& J, yValue = String snmp.exe

y5 J* g! f' ]

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1092 1 E, T' E5 O- t% L3 q8 [Value = String ServUDaemon.exe

. D% \9 o: u8 W& p( s4 m/ T( E) O

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.11049 x9 D* D& w+ P8 p& r Value = String SMAgent.exe

% e2 y0 h: q8 F \$ t

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.11400 h: h m- g7 X. T) n) ? Value = String WinMgmt.exe

0 C/ ~- h6 c: I8 ]; R/ M" ~* J" w

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1164 & I. a9 o# K1 ^5 z! iValue = String wins.exe

" l6 P+ m* b$ v1 \1 H

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.11769 p5 a% R3 J- U0 R" j6 { Value = String svchost.exe

8 a7 |. k# e$ }1 h' r) R

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1196 # k4 ~+ ?+ b8 G3 i* vValue = String xconfserver_t.e

4 H$ n0 V0 H6 L! }8 B: a8 n/ g! ]' \

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1228; Q. u, d6 r X8 R9 o8 ^ K Value = String Dfssvc.exe

* m2 w+ J- s n! ^; ~

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1248; r. @. N4 M& F9 o1 ? Value = String inetinfo.exe

- y6 h) w* l7 }3 L

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1348 * Q; o5 ]: o9 ~1 DValue = String dns.exe

4 d3 J w% ? _! Y r1 z$ |

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.15683 l M4 x9 x! P Value = String vptray.exe

5 f0 e v& ~0 \8 L+ ?% |

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1580+ A1 C3 h4 U: x Value = String internat.exe

% q. U9 ~2 Z3 F

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1844* \, v1 W6 t2 Z( _1 }/ t+ _ Value = String dllhost.exe

2 M/ Z5 t4 N( a) v- f! u& J0 t6 t

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1952 l* u4 ]9 y: X9 y2 |Value = String dllhost.exe

0 r5 W+ k1 U% r$ s$ ]6 ?

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2060$ Q1 M- {, @# M$ ?, m6 b9 L6 p1 ?: o Value = String mdm.exe

- e6 a' t* ~; t

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2144 + j# G$ P5 L8 C2 o7 \$ GValue = String conime.exe

8 H5 e# z2 n C

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2216 4 ^- V; V, [1 \, y% s; OValue = String hlds.exe

" r# U3 d9 t# F6 e

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2336 5 W' T0 `1 |& K5 @Value = String hlds.exe

7 R6 z$ Y/ M4 Q3 Q9 E

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2348 ; Y1 l g( D- [- A) k/ D R& hValue = String svchost.exe

( n! K. C; H' J% l: ~! s

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2424 " `1 F# ~/ h) \7 g& pValue = String hlds.exe

/ x' J9 Z; B5 B; x7 Q. ?( }

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2460 / Q: R, {0 D2 _0 d. k1 ?Value = String hlds.exe

& t4 h$ L2 O( A

End of MIB subtree. & n" @, `: F5 v. v: x) P+ s/ b------------------------------------------------------------

' o. |. Z: z6 x* r9 T; T# h

得到系统信息: ) U9 j5 O" w* _7 l0 J------------------------------------------------------------. Y( T. y$ N$ S3 W. |! W Variable = system.sysDescr.0% W/ w. G/ C5 J Value = String Hardware: x86 Family 15 Model 2 Stepping 9 AT/AT COMPATIBLE - * _+ V0 F0 q, i! U$ W: RSoftware: Windows 2000 Version 5.0 (Build 2195 Multiprocessor Free)

1 M: i- t0 h. j; |+ R

Variable = system.sysObjectID.0) k2 I! B. d0 K% d t Value = ObjectID 1.3.6.1.4.1.311.1.1.3.1.2

. w- p4 i8 K7 O. V

Variable = system.sysUpTime.00 C& @/ d) `# k Value = TimeTicks 24725698

) ?- v# w/ i% H. {7 |

Variable = system.sysContact.0 + g4 j* K& G$ v+ hValue = String

" W' M' q8 z$ d5 n# V8 m

Variable = system.sysName.0. t* \. }2 K9 w Value = String XIAOTOU

6 Z2 a$ @4 `0 ^; g( ]: v4 X. s" g

Variable = system.sysLocation.0 4 V6 \- X; g3 S' nValue = String

! B9 k* t2 S' a1 @

Variable = system.sysServices.0 # u; q3 j: n; CValue = Integer32 76

Z; n& ?9 u& o( x: F( H1 k

End of MIB subtree. ( }; U- F0 X1 H/ w/ ^0 x------------------------------------------------------------

- R" K- S0 m% g1 f) R

------------------------------------------------------------/ s6 m3 ]9 Z/ H3 p; f 关于snmputil的语法: 1 W$ R% R5 K( t3 }------------------------------------------------------------, V* b! j5 U5 u. e' b get,就理解成获取一个信息。

& o( ]5 U: Q3 W2 b: W9 `

getnext,就理解成获取下一个信息。

+ p: \. w1 G0 M. c/ O/ \

walk,就理解成获取一堆信息(嗯,应该说所有数据库子树/子目录的信息)

( [8 l' e- R! U* x K9 A

agent,具体某台机器拉。

( F, \! k/ t' ^8 B

community,嗯就是那个“community strings”“查询密码”拉。

# P+ L2 O R s/ ^

oid,这个要多说一下,这个呢,就是物件识别代码(Object Identifier)。 ; L1 u. a+ S! W) q............................................................

( l# X% x4 i' o0 x, v1 V) m( [) K5 u

例:5 x0 S* N1 L( w) B1 W snmputil.exe walk 对方IP public .1.3.6.1.2.1.25.4.2.1.2 //**进程列表* `5 V* e6 U6 e1 ^1 A- L+ K# d! L snmputil.exe walk 对方IP public .1.3.6.1.4.77.1.2.25.1.1 //**用户列表0 b, w1 R" C" I" Z% E8 E5 \! b snmputil.exe get 对方IP public .1.3.6.1.4.77.1.4.1.0 //**域名8 i+ \0 r2 ^8 Z7 s; D snmputil.exe walk 对方IP public .1.3.6.1.2.1.25.6.3.1.2 //**安装的软件7 o; q# V9 u; z# ~# _ snmputil.exe walk 对方IP public .1.3.6.1.2.1.1 //**系统信息

zan
转播转播0 分享淘帖0 分享分享0 收藏收藏0 支持支持0 反对反对0 微信微信
您需要登录后才可以回帖 登录 | 注册地址

qq
收缩
  • 电话咨询

  • 04714969085
fastpost

关于我们| 联系我们| 诚征英才| 对外合作| 产品服务| QQ

手机版|Archiver| |繁體中文 手机客户端  

蒙公网安备 15010502000194号

Powered by Discuz! X2.5   © 2001-2013 数学建模网-数学中国 ( 蒙ICP备14002410号-3 蒙BBS备-0002号 )     论坛法律顾问:王兆丰

GMT+8, 2026-6-12 22:23 , Processed in 0.340392 second(s), 52 queries .

回顶部