QQ登录

只需要一步,快速开始

 注册地址  找回密码
查看: 2637|回复: 0
打印 上一主题 下一主题

对中国先锋网络科技基于SNMP的信息刺探

[复制链接]
字体大小: 正常 放大
韩冰        

823

主题

3

听众

4048

积分

我的地盘我做主

该用户从未签到

发帖功臣 元老勋章

跳转到指定楼层
1#
发表于 2004-10-5 08:56 |只看该作者 |倒序浏览
|招呼Ta 关注Ta

作者: Net2k 来自:流星轨迹

4 l- }& }3 _/ `) x% |

对中国先锋网络科技基于SNMP的信息刺探

1 K0 s2 V2 N0 n $ D8 ^3 ` M( L! z ' z4 d- {/ H- S. q9 H8 u) k% w, @

得到系统正在运行的程序信息: 1 |. c. _" [) A/ m------------------------------------------------------------ 7 N1 ]8 N8 m" f5 BVariable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1 ! `' \ @1 |' l5 E' O$ [& uValue = String System Idle Process

8 m' m( k2 d; y0 y4 I: C

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.8$ d: R1 m0 j3 S Value = String System

; W0 O8 n0 R" x

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.172- U% H; s/ a" L: G7 A, y2 W- ] Value = String smss.exe

7 _3 t# ?; c* p+ h" u

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.196- g* i3 |, P6 s7 g1 i. k& T Value = String winlogon.exe

3 ]$ ^. U1 C# p l$ n

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.200 4 h0 a _' t% ?Value = String csrss.exe

+ y! }/ r5 Z0 K4 n- d: I

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.248' [' {* {: v7 {9 S$ F0 M Value = String services.exe

% p' U% ~# g% g( }0 u* B: h

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.260- P# U2 ?5 j4 G Value = String lsass.exe

7 j. k' o! P2 F. k% \9 x

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.296 ( T2 c& h$ H9 f2 X0 BValue = String wuauclt.exe

7 ]. J2 C% n# n) q$ h- }# z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.456 ! P- p: e# ]5 M& X! H6 @% pValue = String svchost.exe

- ]% p- n2 R3 |" J, r' R. s: _, S, ]

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.496 4 s# c" ~8 E+ v! _$ C4 J' e6 D9 aValue = String spoolsv.exe

# v$ z- i, r6 C5 X* c: Z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.524" h0 Z5 b4 B+ D9 X+ W Value = String msdtc.exe

1 H* D0 b. O. M+ M0 o# v" N

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.656 9 Q- \ C, w6 x7 T* d+ @& pValue = String DefWatch.exe

/ O+ y$ ]; o# V6 _7 A

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.6763 A% S' v4 ^% K7 } Value = String tcpsvcs.exe

+ p" w1 I9 {$ \ c2 T

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.692 + U% ^5 _& g0 V! D6 qValue = String svchost.exe

3 ]5 R+ v5 A, o8 j& I

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.720 ; a/ K9 s3 G$ }# Z+ S$ w) x: hValue = String llssrv.exe

1 E+ {- N0 q4 |2 C6 `6 @. n

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.764 * B1 o1 E+ @; t' m/ iValue = String Rtvscan.exe

7 V! F2 l" G9 W0 H

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.872$ X- C' [9 A" h( k7 l; E, Q- ~; P Value = String hlds.exe

3 L4 `% ~0 \! K; H f0 j; F9 a

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.9245 M6 z) r' O" l# M% S0 T _* d- f Value = String nvsvc32.exe

9 N: X& Q6 }0 c$ F. [" d

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.992' z+ p! D, _) \# v- \ Value = String Explorer.EXE

5 n( T% R# @4 K4 a+ _& ?

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1000 6 n/ E) a0 c* ~" \- O8 EValue = String regsvc.exe

# Q: ~$ A" Y6 Q6 f( N

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.10323 B$ Q; a, C) | Value = String MSTask.exe

5 k: q8 g l5 |' Q

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1072* V8 t' s1 N5 b! u2 L Value = String snmp.exe

4 ^' v; R2 i8 |; J1 T/ p/ w2 o

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1092' e1 D. `$ \8 g9 W+ O0 m; o* F Value = String ServUDaemon.exe

+ i% O- V; N: [( @# f" p; g' s/ V

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1104 % l) y4 u. K" k2 ZValue = String SMAgent.exe

5 ]" S$ U: X( W: ` d7 C. K

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.11407 Y0 w z/ O2 J9 P( _ Value = String WinMgmt.exe

' q6 ~7 A) ?. b0 b3 }1 t% g2 z

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1164 - x, _/ [9 K$ z# S1 M# L- NValue = String wins.exe

3 x3 m3 z& s* W3 p+ Y

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1176( A) |& k. s. K! h8 m Value = String svchost.exe

, Z& { k; t& G' _+ _/ f" _+ D

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1196 7 D' n0 ^5 g0 W, r+ I. x; ~- I; KValue = String xconfserver_t.e

+ k% d9 w5 k" Y- w0 M5 X8 n

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.12280 y. @/ L% z# {& u2 s5 }/ f Value = String Dfssvc.exe

$ J# h T2 [% [1 f" r! T

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1248& N/ j0 `& {: {- q Value = String inetinfo.exe

7 n( a' t% s# a6 |& J# }

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.13483 R" p, O/ O+ w1 O8 j Value = String dns.exe

, Y0 T" S% W. H$ Y

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1568# E* K; v+ Y( V) o Value = String vptray.exe

8 ]" ~) m8 d4 ~% p( Y; [7 |4 |" r

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.15809 D8 L; q: U. t8 m1 S+ ] Value = String internat.exe

4 l3 k( K; L/ M) T0 H+ a; [

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1844 ' D/ R9 o( E, H7 M YValue = String dllhost.exe

+ a" r: [% b0 x. f1 U6 L

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.1952) J/ r7 k2 W I3 v7 N1 L8 [: L Value = String dllhost.exe

% G' l" O* B# w/ v

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2060 % N& K2 N) q0 U0 B, @Value = String mdm.exe

6 v9 w6 f" I) _' B* h

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2144* s! \3 W. R8 q( Y( w Value = String conime.exe

5 ~3 _" k' Y4 R) z& \

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2216 4 I/ r% ^, `3 k. H; JValue = String hlds.exe

" Z7 Z! R: P% L2 y9 a& I

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2336 4 j, |& A8 M3 ]& k: _6 Q- mValue = String hlds.exe

* k, i, C8 l# k8 b

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2348 : y3 L2 B8 f r! g8 IValue = String svchost.exe

3 K: r" J P1 {1 }# H

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.24247 _$ |" p- C. n1 k Value = String hlds.exe

7 k C! {& a# D. j! l

Variable = host.hrSWRun.hrSWRunTable.hrSWRunEntry.hrSWRunName.2460 5 p, M1 T, J4 O e4 lValue = String hlds.exe

+ K; g, U! K, j* g! d

End of MIB subtree. 5 M& O$ h A$ ]. `4 i( F3 F% `# z------------------------------------------------------------

: c; r3 ~8 k; h! S6 N

得到系统信息: , F; o+ n, T7 A! L0 O------------------------------------------------------------/ n+ `1 G) o4 ^+ o ]7 x Variable = system.sysDescr.03 U7 _& C [# h) N Value = String Hardware: x86 Family 15 Model 2 Stepping 9 AT/AT COMPATIBLE - 7 z1 d/ }- |; M3 e+ d9 X9 HSoftware: Windows 2000 Version 5.0 (Build 2195 Multiprocessor Free)

2 o0 a. A. q8 [8 g' d. U4 }2 @

Variable = system.sysObjectID.06 i4 M) Z; _# g" Y; k# | Value = ObjectID 1.3.6.1.4.1.311.1.1.3.1.2

. }3 j& o* K$ t. ^. [- n; |2 G

Variable = system.sysUpTime.0 ) M J# A1 n1 I5 F% _% }Value = TimeTicks 24725698

& d8 i: U+ D7 c; K0 g! Q2 l0 n

Variable = system.sysContact.05 m" f" G" h- X0 X5 w Value = String

% c9 ~8 |/ n U, P- J* B

Variable = system.sysName.08 d" v" w. x2 r0 t/ e! y2 a2 A Value = String XIAOTOU

0 u5 A7 O2 d5 O" ] P- y" Y

Variable = system.sysLocation.0 2 A+ g6 u& i' jValue = String

1 g7 I) b; y! u9 U5 a' z) c, @

Variable = system.sysServices.0 9 L7 C+ K/ M( W( e& v- r. ?6 ^Value = Integer32 76

) K& \, G j2 V6 }+ [- J$ K$ m

End of MIB subtree.3 k6 I, q1 D: `- T: W ------------------------------------------------------------

! P3 e A5 O. h3 F I

------------------------------------------------------------ ! @/ ^! _$ D: ^( C: D' K关于snmputil的语法: ( G7 R# u5 C% Z3 x. k------------------------------------------------------------ ! r1 n/ [; b( S( sget,就理解成获取一个信息。

% ^0 u/ K* ]9 U8 U! X

getnext,就理解成获取下一个信息。

. C. \% s, l9 d) Y9 s; c3 v" i

walk,就理解成获取一堆信息(嗯,应该说所有数据库子树/子目录的信息)

( f# S& d, w) k! u: p% L

agent,具体某台机器拉。

! Y" `3 T- ?) n

community,嗯就是那个“community strings”“查询密码”拉。

, @# g, e, q3 @0 u. l. N1 A$ L

oid,这个要多说一下,这个呢,就是物件识别代码(Object Identifier)。. y2 p4 w3 \! G ............................................................

2 g; M! g4 `8 w7 h3 J

例: ' h- j) q4 Z0 W* Q( h5 gsnmputil.exe walk 对方IP public .1.3.6.1.2.1.25.4.2.1.2 //**进程列表* D" r3 C1 |, k snmputil.exe walk 对方IP public .1.3.6.1.4.77.1.2.25.1.1 //**用户列表5 e) X0 E* B* p! t9 @ snmputil.exe get 对方IP public .1.3.6.1.4.77.1.4.1.0 //**域名6 z- {6 l+ V. ]! c% j snmputil.exe walk 对方IP public .1.3.6.1.2.1.25.6.3.1.2 //**安装的软件 6 c3 t+ E" t9 t; jsnmputil.exe walk 对方IP public .1.3.6.1.2.1.1 //**系统信息

zan
转播转播0 分享淘帖0 分享分享0 收藏收藏0 支持支持0 反对反对0 微信微信
您需要登录后才可以回帖 登录 | 注册地址

qq
收缩
  • 电话咨询

  • 04714969085
fastpost

关于我们| 联系我们| 诚征英才| 对外合作| 产品服务| QQ

手机版|Archiver| |繁體中文 手机客户端  

蒙公网安备 15010502000194号

Powered by Discuz! X2.5   © 2001-2013 数学建模网-数学中国 ( 蒙ICP备14002410号-3 蒙BBS备-0002号 )     论坛法律顾问:王兆丰

GMT+8, 2026-6-11 01:45 , Processed in 0.390045 second(s), 52 queries .

回顶部