1
0
mirror of https://github.com/nmap/nmap.git synced 2025-12-09 22:21:29 +00:00
Commit Graph

153 Commits

Author SHA1 Message Date
sven
1444e02a86 apply Matt Selsky's patch for ssh version detection signatures to properly detect daemons only supporting protocol version 2 2008-10-01 21:05:03 +00:00
sven
0b0bdc14b4 adjust zero one tech printserver matchline to match more models 2008-09-21 13:33:15 +00:00
sven
2688e3413c add matchline for 3-port zero one tech printserver http config 2008-09-21 09:31:23 +00:00
sven
5e4d342ce7 change classification of nginx from http-proxy to http 2008-09-09 11:46:34 +00:00
fyodor
a5de49445c improve an openssh hpv match line - patch by Matt Selsky 2008-09-03 01:18:07 +00:00
fyodor
5f89113ea3 trivial typo fix 2008-08-29 08:17:39 +00:00
fyodor
d2aa222e25 Applied some version detection signature updates from Marco Balduzzi 2008-08-29 07:45:38 +00:00
fyodor
a028bf83b4 add Cyrus Murder mupdate signatures and service listing from Matt Selsky 2008-08-26 18:45:24 +00:00
fyodor
9cbd4d40ba slight updates to some MailEnable smtpd sigs 2008-07-25 21:56:50 +00:00
fyodor
b3fc32e7a4 signatures for Cyrus synchronization server and newer Cyrus IMAP versions from Matt Selsky 2008-06-29 02:45:38 +00:00
fyodor
6e14332cdc o Added a UDP SNMPv3 probe to version detection, along with 9 vendor
match lines. [Tom Sellers]
2008-06-28 21:40:44 +00:00
doug
60774c2313 nmapsubmit-svfp-060108.mbx Last major batch of misc FPs 2008-06-28 20:23:26 +00:00
doug
16b23a12e1 Fixed slip-up in Tom's probe that was my fault 2008-06-28 02:04:20 +00:00
doug
9219fb7389 nmapsubmit-svfp-060108.mbx lots of misc services 2008-06-26 04:23:24 +00:00
doug
e52e117d13 nmapsubmit-svfp-060108.mbx lots of misc services 2008-06-25 23:50:54 +00:00
fyodor
bf2205ecb0 add sslport 4443 as SecurityGateway apparently uses that (per Marco Balduzzi) 2008-06-25 09:07:39 +00:00
doug
289448ea3a Replaced http-mgmt with http 2008-06-25 07:02:29 +00:00
doug
c975aa2dbe nmapsubmit-svfp-060108.mbx HTTP submissions 2008-06-25 02:57:11 +00:00
fyodor
5274601022 added service detection match lines for ALT-N SecurityGateway and Criston Precision Agent from Marco Balduzzi 2008-06-24 18:12:47 +00:00
doug
3bc22411eb Moved SIPOptions back down below GetRequest
PRO:
  * GetRequest is applied before SIPOptions to unknown ports
CON:
  * GetRequest will be applied to 5060 before SIPOptions
2008-06-21 01:58:44 +00:00
doug
5150b51145 nmapsubmit-svfp-060108.mbx
* privoxy match line
  * major SIPOptions probe reorganisation -- see nmap-dev
2008-06-20 05:21:09 +00:00
doug
c9440050e8 nmapsubmit-svfp-060108.mbx SSH and telnet fingerprints 2008-06-20 01:20:31 +00:00
doug
ee8afa1b12 nmapsubmit-svfp-060108.mbx FTP fingerprints 2008-06-19 03:30:38 +00:00
doug
fb85d6b1c7 Mail protocols for nmapsubmit-svfp-060108.mbx
pop3, smtp, and imap
2008-06-19 01:11:12 +00:00
doug
b9ae121838 Processing corrections from: nmapsubmit-svcorr-060108.mbx 2008-06-18 22:54:05 +00:00
doug
da3f573795 Several match lines and probes from Tom Sellers that were sent to nmap-dev. 2008-06-18 21:18:27 +00:00
bmenrigh
7af6810d91 Added the BMC, CA-mq, and Goverlan service match lines from Tom Sellers. 2008-06-12 00:34:51 +00:00
doug
7833ac574d CUPS match line out of order fix from Sven Klemm 2008-06-03 21:20:19 +00:00
kris
f28d91edd1 Adding a matchline for the Metasploit Framework msfd daemon. I've tested it
on the following versions (the last one is from SVN):

55554/tcp open  metasploit Metasploit Framework msfd 3.0-beta-dev
55554/tcp open  metasploit Metasploit Framework msfd 3.0
55554/tcp open  metasploit Metasploit Framework msfd 3.1-release
55554/tcp open  metasploit Metasploit Framework msfd 3.2-release
2008-05-26 17:49:16 +00:00
kris
ee876ada98 o Replaced kibuvDetection.nse with version detection match lines which
work better than the script. [Kris, Brandon]
2008-05-25 23:30:21 +00:00
fyodor
e06491f9f7 adjusted ISC Bind named signatures to match scanme.nmap.org, which is currently running 9.3.4 2008-05-22 08:34:07 +00:00
bmenrigh
8939e86580 Added \r\n to Apache service match to try to cut down on this (very
common) warning:

Warning: Servicescan failed to fill info_template (subjectlen: 3793). 
Too long? Match string was line 3320: v/Apache httpd/$1/$2
2008-05-21 21:04:04 +00:00
doug
976ebc0414 Anchored the hunchentoot server line on a CRLF boundary thanks
to suggestion from Fyodor.
2008-05-06 22:36:32 +00:00
doug
72453fc4ed New match line for hunchentoot lisp httpd 2008-05-06 05:07:15 +00:00
bmenrigh
19f44f6648 This service patch-cycle has taken quite a bit longer because feedback
for remaining services on campus has been exceptionally poor.

* Added LANDesk Management Suite Targeted Multicast Service

* Changed Microsoft-HTTPAPI (SSDP/UPnP) match to be more generic to 
  better match the errors it returns

* Added OpenVMS 8.3 Alpha telnetd

* Changed vmware-auth matches to slightly generalize them so they catch 
  more auth settings

* Changed Snap Appliance webadmin to catch cases where a non-401
  response is given

* Changed a generic Apache match to use non-greedy .* to fix
  capturing too much (more work/testing needed to fully fix)

We still have a few hundred services to go on my todo list; I'm still
working on them...
2008-05-05 20:01:06 +00:00
kris
16bc72d65f After having read the proper documentation and talking with Fyodor, I realize
I had messed up some SSL services in r7233.  This is reverting the changes
which involved service names in the form of "ssl/*".
2008-04-29 20:56:57 +00:00
fyodor
2e3558fe3f Recognize Helix (aka real media) server on solaris. patch from Matt Selsky 2008-04-29 20:20:22 +00:00
kris
f72667fe44 Syncing the service names between nmap-service-probes and nmap-services
$ svn diff | grep '^+[^+#]' | wc -l
101

nmap-service-probes

backupexecra    => backupexec-remote
bitdefender-ctl => bitdefender-ctrl
bittorent       => bittorrent
chat-ctl        => chat-ctrl
dantzretrospect => retrospect
directconenct   => directconnect
fw1-topo        => fw1-topology
icecreamd       => icecream
issrealsecure   => iss-realsecure
landesk         => landesk-rc
memcached       => memcache
msactivesync    => activesync
oracle-dbsnmp   => dbsnmp
policyd         => policy
pppd            => ppp
rpc             => rpcbind
spamd           => spamassassin
ssl/imap        => imaps
ssl/pop3        => pop3s
ssl/sophos      => sophos/ssl
ssl/vmware-auth => vmware-auth/ssl
telnet-ssl      => telnets
xmailctl        => xmail-ctrl

nmap-services

afpovertcp            => afp
bittorent-tracker     => bittorrent-tracker
boinc-client          => boinc
cfingerd              => finger
dantz                 => retrospect
FW1-mc-fwmodule       => fw1-mc-fwmodule
Fw1-mc-gui            => fw1-mc-gui
FW1-or-bgmp           => fw1-or-bgmp
FW1-secureremote      => fw1-secureremote
gkrellmd              => gkrellm
iss-realsecure-sensor => iss-realsecure
macon-{tcp,udp}       => macon
maybeFW1              => maybe-fw1
maybeveritas          => maybe-veritas
nessusd               => nessus
NetBus                => netbus
opsec_*               => opsec-*
orasrv         [udp]  => oracle
postgres              => postgresql
PowerChute            => powerchute
PowerChutePLUS        => powerchuteplus
tor-controlport       => tor-control
tor-socksport         => tor-socks
tor-transport         => tor-trans
UPnP                  => upnp
VeritasBackupExec     => backupexec
VeritasNetbackup      => netbackup
2008-04-29 17:03:09 +00:00
kris
10899aba9b Adding a service-probes match for the Motorola WE800G bridge. I used the WR850G line directly below it as a starting point since I have both of these devices on my LAN--they are extraordinarily similar. 2008-04-14 04:25:40 +00:00
fyodor
83fe88c0f8 apply patch from Tom Sellers which modifies ms-sql-s signatures; I made minor changes 2008-04-05 23:44:30 +00:00
doug
507e720217 vsftpd 00PS->OOPS patch from Kris
and
citrix metafrme -> metaframe from James Beers
2008-03-31 22:56:33 +00:00
bmenrigh
6dc4888538 Round two of UCSD services. This bunch was our most common set and
represents a significant portion of our total returned fingerprints.

I especially liked adding the X-ray machine...

Here is the "changelog":

* Added Tolis BRU (Backup and Restore Utility)
* Added HP Digital Sender Service client
* Added Apple iChat Server file transfer proxy
* Added PBS/Maui Roll Rocks Cluster service
* Added CommVault Galaxy data backup
* Added Ad-Aware SE Enterprise
* Added Pharos Notify printing client
* Added Apple Remote Events
* Added Novell Groupwise SSL match so the SSL tunneling works
* Added Novell Groupwise HTTP services (holy crap there are a lot!)
* Changed "Compaq Diagnostis httpd" to correct spelling and removed o/Windows/
* Changed winshell to include i/**BACKDOOR**/
* Added Bruker AXS X-ray controller status (I was tempted to set d// to death-ray :-p)
2008-03-25 01:19:43 +00:00
bmenrigh
8391686eff Adding my first round of changes for UCSD services. This is really
just the tip of the iceberg so there is lots more to come as I work
through everything.

Here is the list of changes:

* Added XML softmatch (commented out for the time being)
* Added Juniper Junoscript XML interface match
* Changed "ROOT SHELL" match to include i/**BACKDOOR**/
* Added FreeBSD rshd match
* Added IQinVision IQeye3 service matches (telnetd, fingerd, httpd, 
logind rtspd)
* Added d/cluster/ as a new device type
* Added Ganglia XML Grid monitor detection
* Added Barracuda Networks Spam Firewall smtpd (default banner only)
* Added Serv-U SSL required banner (error 431)
* Changed Safenet to SafeNet in all locations
* Added SafeNet Sentinel Keys License Monitor httpd
* Changed "vsftpd or WU-FTPD" to a softmatch because much more than just 
vsftpd and WU-FTPD match it
* Added Treck Embedded ftpd
* Changed Sony PCS-G70 telnet banner to be more generic so it can match 
G50, etc
* Changed SubEthaEdit service to BEEP
* Added Apple Xgrid Controller (BEEP/ANTP protocol)
* Added dCache distribute storage node
* Changed the nessus match lines to anchor to the start of a line and 
upped their rarity to cut down on false positives
* Added two matches for Dell OpenManage (one GetRequest, one HELP)
* Added HighPoint RAID Raidman web server
* Added Ruckus Media Player (Ruckus music service client)
2008-03-20 02:22:05 +00:00
bmenrigh
dc21a22aca Dropping stray '*' on previous Tandberg MXP match line. Tom may be able
to shed more light on what he meant by it.
2008-03-19 23:50:52 +00:00
bmenrigh
5394e1eb01 Tandberg MXP Video Conference appliance telnetd. Thanks to Tom Sellers
for the patch.
2008-03-19 23:29:49 +00:00
doug
4b1398933c AXIS webcam ftpd standardisation. Thanks to Lionel Cons 2008-03-19 02:36:08 +00:00
doug
749749558e New match line for another version of VxWorks FTPd
From Lionel Cons
2008-03-17 22:08:35 +00:00
doug
4179a7d524 Sophos Message Router match lines from Brandon Enright 2008-03-08 05:40:13 +00:00
doug
1af9e3fa14 Firebird RDBMS probe from Brandon Enright 2008-03-08 05:35:30 +00:00
doug
cfcfe163d5 Beast trojan probe from Brandon Enright 2008-03-08 05:28:24 +00:00