QQ登录

只需要一步,快速开始

 注册地址  找回密码
查看: 2638|回复: 0
打印 上一主题 下一主题

对中国先锋网络科技基于SNMP的信息刺探

[复制链接]
字体大小: 正常 放大
韩冰        

823

主题

3

听众

4048

积分

我的地盘我做主

该用户从未签到

发帖功臣 元老勋章

跳转到指定楼层
1#
发表于 2004-10-5 08:56 |只看该作者 |倒序浏览
|招呼Ta 关注Ta

作者: Net2k 来自:流星轨迹

% d* X# w, Z+ M6 l

对中国先锋网络科技基于SNMP的信息刺探

) W4 `2 S5 M H7 z' m) i 4 H' O/ C5 }7 w2 ?/ x8 V - `5 @6 c' ~8 @, q* I

得到系统正在运行的程序信息:* @9 L+ ]; W% G1 j ------------------------------------------------------------ 4 [2 @% u. ?% t7 i jVariable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1 % v$ H9 O3 y0 i2 m5 {9 R9 y) J7 kValue = String System Idle Process

5 W8 a r* n: G

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.8 # p% ^( M" f* R( F7 t) HValue = String System

- s4 i: P6 \; R

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.172 " n8 x( F* n: ^% K4 S' tValue = String smss.exe

5 M0 U: I$ c0 ?& a% Z2 B- |/ C6 T

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.196* s9 T. p- Z8 \/ `2 ^$ g Value = String winlogon.exe

: x( c6 H. K' `2 _7 T+ f

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.200: \8 D, e% h! L1 o5 t" c! j Value = String csrss.exe

; q8 Z& b$ p' A3 S9 \& b" N

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2489 M% T/ K. ~- n# d Value = String services.exe

( m: M2 K- P2 M% [, w M; K6 e7 H

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.260 , X$ u+ D- T; w0 |7 J! n: KValue = String lsass.exe

4 e( ^- Z9 M' v7 I( A. u" F, P

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.296 0 H, @* G" `6 x; DValue = String wuauclt.exe

* w9 F! b4 u o- d8 U1 q

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.456/ Q- @; k+ y9 ` C. s- B6 ?: I8 j7 @8 j Value = String svchost.exe

9 b3 m% V3 K9 A$ v" z9 b0 i

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.496 3 z9 e. ]2 F$ z5 V2 lValue = String spoolsv.exe

& y% M+ M0 [* s) \

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.524& d9 X6 ?9 f) k: C) k- K Value = String msdtc.exe

3 E5 H, A' W) |

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.656 , W- A s0 M/ z% r. P7 {Value = String DefWatch.exe

) M& i) F! A8 s& M, Q3 `

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.676: ?8 `1 r; X# ^ T* N+ ~2 g Value = String tcpsvcs.exe

* w# H9 J2 m r I9 @/ m: @

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.692( E% p4 |. z( M9 B Value = String svchost.exe

7 V7 u; n3 k5 L j0 _

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.720 A+ t$ G9 v+ D8 mValue = String llssrv.exe

5 e3 ]. `& S4 Q# w- B) a5 p1 A

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.764 2 x4 z6 W R2 O! W2 _Value = String Rtvscan.exe

+ w( t4 l. a0 _0 r

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.872) F8 i; L0 H# r7 i Value = String hlds.exe

( ^, Q B. M" f8 i

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.924 : ]+ m1 u- R0 U) Y1 Q D+ l- XValue = String nvsvc32.exe

' \) d0 s6 z b& [" n0 _

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.992 # ?! s3 s4 [2 \8 q: B" qValue = String Explorer.EXE

0 i$ p$ U! r( ?% t& I8 ?& s

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1000% n* y0 _ B8 U1 L: u Value = String regsvc.exe

6 F: E0 ]% s$ C& t% z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1032, z, \. f+ K! h Value = String MSTask.exe

8 f4 g/ G8 |5 n. J4 i+ D" W

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1072: }5 b. m9 l& m4 d$ v Value = String snmp.exe

( r$ G. z9 g9 Z) m1 b9 X# \

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1092 g+ {1 w2 w# W$ k y+ {" r( sValue = String ServUDaemon.exe

0 K" b1 T4 }* G2 Z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1104 % h' N8 z' B9 e5 s' k+ c, k0 `Value = String SMAgent.exe

; s* e) W% _: v2 O0 \3 t

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1140 + O3 o5 f& j6 X& G' M! OValue = String WinMgmt.exe

1 \& d& F; I3 f# u9 E8 Q/ \

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.11644 B: X C- P' ^ Value = String wins.exe

( k; J- l* v% e d

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1176 : ?. g% V# ^1 Z1 a* j; zValue = String svchost.exe

0 b2 ]& i: X, @1 `% c

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.11965 j H7 {0 D, E) V7 F Value = String xconfserver_t.e

0 a, g E% U! D5 c

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1228 % j; \9 v. u, [4 Q1 HValue = String Dfssvc.exe

B7 l- g. Q1 C

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1248 2 n# T" s! p& q" W' |! A* eValue = String inetinfo.exe

. h0 A1 y' g1 F& `

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1348! w: m7 H5 Y; V* P Value = String dns.exe

6 g- G- H0 F: l8 `5 J7 o

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.15683 [- _1 V5 J5 i Value = String vptray.exe

( Y$ A* o( o7 s* D/ j5 ?

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1580 $ ?: V f% h- E. E6 c4 \5 k9 Y5 ?Value = String internat.exe

N* C: W/ \. j5 S% \' c( |

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1844( K# g k$ o, n Value = String dllhost.exe

}& p; L% j* u" l

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1952 % A$ K' u" ~% I9 ?Value = String dllhost.exe

5 g! L$ n4 ]) ?1 v" p

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2060! V6 E) ~/ u4 Q" |1 J7 V' Z& U6 \+ H; J Value = String mdm.exe

4 O( T! e3 ]; L8 |1 `( f8 ~$ Y: A

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2144 # K o' m& A _% _3 lValue = String conime.exe

" B2 O" j" }/ L* M; f8 ~

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2216 " \( D' ]3 a4 O+ t& f, Y. KValue = String hlds.exe

; Q1 l, C5 E9 ~3 R8 c Q

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2336 ' ?) @ V3 u; D5 n# ^Value = String hlds.exe

2 s( E& V3 E$ R5 Q d

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2348# u1 h" K. `. P1 [- U Value = String svchost.exe

2 M- G) _5 n, A- H5 w) G

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2424 1 ~: y, i& Y6 d7 V2 x, M6 G0 gValue = String hlds.exe

$ J% q* L7 ~* p: M3 n: ~

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2460! U- o2 r& X3 m9 O$ z9 N; u! c Value = String hlds.exe

% [% p( r. c) Y1 Z- o! s3 t

End of MIB subtree. # \7 F: W6 q0 C------------------------------------------------------------

7 `5 [( D" K. p5 O

得到系统信息:3 J P8 I+ Z2 D ------------------------------------------------------------' I% T) \+ E7 _" s7 C. p% _8 ?% h Variable = system.sysDescr.05 K+ f- u# |* R' d' {# h8 Q+ L! F Value = String Hardware: x86 Family 15 Model 2 Stepping 9 AT/AT COMPATIBLE - ; U+ Q1 v4 u' E6 ]Software: Windows 2000 Version 5.0 (Build 2195 Multiprocessor Free)

0 Z/ _0 ?. J( y' L6 D9 S

Variable = system.sysObjectID.0 ! C6 i: P4 L4 e0 i: J/ K. nValue = ObjectID 1.3.6.1.4.1.311.1.1.3.1.2

( L- f, s, t# u) F7 ?4 O7 ^- P% T

Variable = system.sysUpTime.0 3 r" l, T. r/ P% ?, u# v9 ~& m+ YValue = TimeTicks 24725698

& l( Z1 u# [' Z* X% Z& W. ^" w

Variable = system.sysContact.0- l7 L- L# p6 S7 n) r4 V+ h- t Value = String

% ]8 o! r; s# p$ ^+ y. \5 R& S

Variable = system.sysName.0 8 s- P0 [9 u8 i4 C- `' r8 |$ RValue = String XIAOTOU

' s' z% I) s: Y1 x3 U8 Q

Variable = system.sysLocation.0 0 G; f* N- g3 J. W7 x7 x! Z% g$ dValue = String

# X7 W* a) q! x; y" ~

Variable = system.sysServices.05 Y8 v/ ~. p& f" `% m1 @ Value = Integer32 76

o6 W1 |/ |& X0 ]

End of MIB subtree.4 ~! C' w- W# k) U ` ------------------------------------------------------------

; W3 ~% Z- U; j9 w \

------------------------------------------------------------ $ e" ?8 e l. s; r$ B关于snmputil的语法: / ^' v9 P- T1 R" ^' n------------------------------------------------------------ 5 b& u6 {8 G$ w6 A: G) v7 vget,就理解成获取一个信息。

6 [3 p0 `% g+ M

getnext,就理解成获取下一个信息。

& u) w6 d; t# D; p C

walk,就理解成获取一堆信息(嗯,应该说所有数据库子树/子目录的信息)

& N* N% p' l! X

agent,具体某台机器拉。

/ B$ F0 r/ \, i2 h9 p

community,嗯就是那个“community strings”“查询密码”拉。

$ n3 t; S0 z. ?' b2 V3 L

oid,这个要多说一下,这个呢,就是物件识别代码(Object Identifier)。' S& \0 a4 z- c" h1 B ............................................................

4 }8 H" k/ Y* m1 o Q) k& G1 `

例: ! L, c$ R1 Y- Z( `2 Ssnmputil.exe walk 对方IP public .1.3.6.1.2.1.25.4.2.1.2 //**进程列表 X( _. Q3 Q x snmputil.exe walk 对方IP public .1.3.6.1.4.77.1.2.25.1.1 //**用户列表! C* w( L0 s. N ]5 t( c snmputil.exe get 对方IP public .1.3.6.1.4.77.1.4.1.0 //**域名! a; B! h# }1 F# \3 z' L0 h$ o( Y4 O8 O% } snmputil.exe walk 对方IP public .1.3.6.1.2.1.25.6.3.1.2 //**安装的软件 2 N" q5 Y" g6 l( y! c8 _3 fsnmputil.exe walk 对方IP public .1.3.6.1.2.1.1 //**系统信息

zan
转播转播0 分享淘帖0 分享分享0 收藏收藏0 支持支持0 反对反对0 微信微信
您需要登录后才可以回帖 登录 | 注册地址

qq
收缩
  • 电话咨询

  • 04714969085
fastpost

关于我们| 联系我们| 诚征英才| 对外合作| 产品服务| QQ

手机版|Archiver| |繁體中文 手机客户端  

蒙公网安备 15010502000194号

Powered by Discuz! X2.5   © 2001-2013 数学建模网-数学中国 ( 蒙ICP备14002410号-3 蒙BBS备-0002号 )     论坛法律顾问:王兆丰

GMT+8, 2026-6-11 03:07 , Processed in 1.245273 second(s), 52 queries .

回顶部