CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
Survey
spacer
Was 2007 a good year?

Yes it was a wonderful year
Yes, but there is always room for improvement
Status quo
It was a challenge
Other (leave comment)



Results
Polls

Votes: 941
Comments: 25
block bottom
spacer spacer

udp port scanner
Goto page Previous  1, 2
 
Post new topic   Reply to topic       All -> FavForums -> General Site [del.icio.us!] [digg it!] [reddit!]
View previous topic :: View next topic  
Author Message
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Sat Jun 01, 2002 6:59 am    Post subject:
Reply with quote

Sure enough.. I quickly broke out the real code from the integrated udp scanner, and its doing great. For some reason, the way I implemented the integration is not flying. I have to think of an alternative for the tcp scanner, which then will immediately apply to the UDP. So now I know why it works for some, and not for others. That's ok, I'll have them both worked out in a couple days.


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Sat Jun 01, 2002 7:02 am    Post subject:
Reply with quote

You know what.. here is the standalone udp scanner (not site integrated):

CastleCops Link/modules/UDP_Scanner/paul.php

Try it out, let me know what you get.


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
udp port scanner

Guest
IP: 212.68.*.*






PostPosted: Sat Jun 01, 2002 8:59 am    Post subject:
Reply with quote

Thanks Paul,
I 'll try later but don't spoil you week end on this problem
Even an expert like you needs and deserve some relaxing time
Regards Smile

Back to top
!claire

General
General
Premium Member

Joined: Apr 21, 2002
Posts: 8380

Premium

PostPosted: Sat Jun 01, 2002 9:43 am    Post subject: udp scanner
Reply with quote

oops,
I made a mistake again the "guest" was me
Sorry, Sad

Back to top
View users profile Send private message
Antiserious

Corporal
Corporal


Joined: May 14, 2002
Posts: 50
Location: USA

PostPosted: Tue Jun 04, 2002 5:48 am    Post subject: ... port scanner ...
Reply with quote

... I have never been able to run a port scan from the site ... I'm in Pa, doesn't matter signed in or not, day or night ... I get this every time :

Your authorization was not supplied, or network is currently congested.

... but I just got a scan to run by using the standalone link Z-X posted ... seems like it's gonna take a long time ... will let you know ...

Back to top
View users profile Send private message
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Tue Jun 04, 2002 5:59 am    Post subject:
Reply with quote

Ok.. I've reworked the UDP code for all the UDP scan options. Can you try them from lowest to highest and let me know?


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
Antiserious

Corporal
Corporal


Joined: May 14, 2002
Posts: 50
Location: USA

PostPosted: Tue Jun 04, 2002 6:15 am    Post subject:
Reply with quote

... maybe tomorrow - right now, I'm caught up in some bizarre loop ... seems TWO scans are chasing themselves around my firewall ... tried to stop one, or both - no luck ... closed browser, no luck ... they're about 180 ports apart ... it's like a dot race, actually ... Wink ...

... that was less than fun ... musta been my fault, maybe I double-dipped ...
Rolling Eyes ...

Back to top
View users profile Send private message
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Tue Jun 04, 2002 6:22 am    Post subject:
Reply with quote

Sigh... this thing will be conquered yet! Ok.. I reworked the same new code into the trojan tcp scanner, as well as a plain port range tcp scanner.. I'm seeing the same problems.

Hrumph. Well, at least I think I'm closer.


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
Antiserious

Corporal
Corporal


Joined: May 14, 2002
Posts: 50
Location: USA

PostPosted: Tue Jun 04, 2002 6:22 am    Post subject: ... NOTE TO SELF : ...
Reply with quote

... don't run these tests late at night, when your STUPID quotient goes up sky-high ! ...

... ummm, Proxo blocks the referrer ... Embarassed ...

... something's running again - either the new site test, or the dot race revisited ...

... I hear my pillow calling my name ... here, dummy ... here, dummy ...

... Shocked ...

Back to top
View users profile Send private message
Antiserious

Corporal
Corporal


Joined: May 14, 2002
Posts: 50
Location: USA

PostPosted: Tue Jun 04, 2002 2:31 pm    Post subject:
Reply with quote

... this morning, with Proxo bypassed, the 10 port scan hit my firewall 139 times ... from 55555 to 55564, then from 130 - 136, then 140 ... these 8 ports repeated 5 times, but 140 dropped on the last scan ... seems like more than 10 to me ...

... I did that netBEUI tweak to close port 139, I think it was ... maybe that's why there's a gap there (??) ... anyway, there ya go ... sure glad I didn't hit the 100 port scan button - we'd be here all day ...

... Rolling Eyes ...

... PS ... and hitting the stop button on my browser did not stop the test - neither did closing the browser entirely ... FYI ...

Back to top
View users profile Send private message
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Tue Jun 04, 2002 3:05 pm    Post subject:
Reply with quote

The scanner sends out the packets quickly, so by the time you stop the scan, there are many packets on the way still to your system.

Hm... I'll get it right yet.


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
anrai

Guest
IP: 12.227.*.*






PostPosted: Wed Jun 05, 2002 2:31 pm    Post subject: Similar problems
Reply with quote

I had similar problems running scans as referred to in this string. I traced my problems to ZAP3, after disabling cookie control and ad blocking in ZAP3 the tests appear to be running ok.

Back to top
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Wed Jun 05, 2002 2:40 pm    Post subject:
Reply with quote

Good.. just to confirm, I don't run any ads on the site, nor are there any third party cookies.. its all first party (CCSP). I require that a CCSP referer url be passed to the scans because it enforces the "authorization" agreement.


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
Display posts from previous:   
Post new topic   Reply to topic       All -> FavForums -> General Site All times are GMT
Goto page Previous  1, 2
Page 2 of 2

 
Quick Reply:
Username: 

Quote the last message
Attach signature (signatures can be changed in profile)
 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You can download files in this forum


Powered by phpBB © 2001 phpBB Group
spacer spacer