Monday, October 27, 2008

port scanning technique

Port Scanning: Port scanning is the process of connecting to TCP and UDP ports on a target system to determined what services are running or in a LISTENING state. Identifying listening ports is critical to determine the type of operating system and applications in use. Active services that are listening may allow an unauthorized user to gain access to systems that are misconfigured or running a version of software known to have security vulnerabilities.

Different Port Scanning Types

CP Connect Scan – This type of scan connects to the target port and completes a full three way handshake (SYN, SYN / ACK, and ACK). It’s easily detected by the target system

TCP SYN Scan – This technique is called half one scanning because a full TCP connection is not made. Instead a SYN packet is sent to the target port. If a (SYN / ACK) is received from the target port, we can deduce that it is in the LISTENING state. If an (RST / ACK) is received, it usually means that the port is not in the LISTENING state. An (RST / ACK) will be sent by the systems performing port scans so that a full connection is never established. This technique has the advantage of being stealthier than a Full TCP Connect is, and may not be logged by the target systems.

TCP FIN Scan – This technique send a FIN packet to the target port. The target system should send back an RST for all closed ports. This technique usually only works on a UNIX based (TCP / IP) stack.

TCP Xmas Tree Scan – This technique send a FIN, URG, and PUSH packet to the target port. Based on RFC 793, the target system should send back an RST for all closed ports.

TCP Null Scan – This technique turns off all flags. Based on RFC 793, the target system should send back an RST for all closed Ports.

TCP ACK Scan
– This technique is used to map out firewall rulesets. It can help determine if the firewall is a simple packet filter allowing only established connections (Connections with an ACK bit site) or a stateful firewall that is performing advance packet filtering.

TCP Window Scan – This technique may detect open as well as filtered nonfiltered ports on some systems (AIX and FreeBSD) due to an anomaly in the way the TCP window size is reported.

TCP RPC Scan – This technique is specific for UNIX systems and is used to detect and identify Report Procedure (RPC) ports and their associated program and version numbers.

UDP Scan – This technique sends a UDP packet to the target port. If the target port responds with an “ICMP port unreachable” message, the port is closed. Conversely, if we don’t receive an “ICMP port unreachable” message, we can deduce the port is open. Since UDP is known as a connectionless protocol, the accuracy of this technique is highly depend on many factors related to the utilization’s of network and system resources. In addition UDP scanning is a very slow process if you are trying to scan a device that employs heavy packet filtering. If you plan on doing UDP scans over the Internet be ready for unreliable results.

Active Stack Fingerprinting: Stack fingerprinting is an extremely powerful technology that allows you to quickly ascertains each host operation system with a high degree of probability. Essentially, there are many nuances that very between one venders Internet protocol (IP) stack implementation and another’s. Vendors often interpret specific RFC guidance differently when writing there TCP / IP stack. Thus by probing for these differences, we can begin to make an educated guess about the operating system in use. For maximum reliability, stack fingerprinting generally requires at least one listen port.

Passive Stack Fingerprinting: Passive stack fingerprinting is similar in concept to active stack fingerprinting. Instead of sending packets to the target system, however, an attacker passively monitors the network traffic to determine the operating system in use. Thus, by monitoring network traffic between various systems, we can determine the operating systems on a network

Passive Signatures: Various signatures can be used to identify an operating system. Below are several associated with a TCP / IP session.

some terms used in port scanning

FIN Probe – A Find packet is sent to an open port. As mentioned RFC 793 states that the correct behavior is not to respond. However many stack implements (Such As Windows NT) will respond with as FIN/ACK.

Bogus Flag Probe – An undefined TCP flag is set in the TCP Header of a SYN packet. Some operating systems such as (Linux) will respond with the flag set in there respond packet.

Initial Sequence Number (ISN) Sampling – The basics premise is to find a pattern in the initial sequence chose by the TCP implementation when responding to a connection request.

Don’t Fragment Bit Monitoring – Some operation systems will set the “Don’t Fragment Bit” to enhance performance. This bit can be monitored to determine what types of operation systems exhibit this behavior.

TCP Initial Window Size – Initial window size on returned packets is tracked. For some stack implementations, this size is unique and can be greatly added tot he accuracy of the fingering mechanism.

ACK Value – Internet Protocols (IP) stacks differ in the sequence value used for the ACK field, so some implementations will send back the sequences number you sent, and others will send back a sequence number +1.

ICMP Error Message Quenching – Operating system may follow RFC 1812 and limit rate at which error messages are sent. By sending UDP packets to some random high numbered ports, you can count the number of unreachable messages received within a given amount of time.

ICMP Message Quoting – Operating systems differ in the amount of information that is quoted when ICMP errors are encountered. By examining the quoted message, you might be able to make some assumptions on the target operating system.

Type Of Service (TOS) – For “ICMP port unreachable” messages, the TOS is examined. Most stack implementations use 0,but this can vary.

Fragmentation Handling – Different stacks handle overlapping fragments differently. Some stacks will overwrite the old data with new data and vice versa.

TCP Options – By sending a packet with multiple options set, such as no operation, maximum segment size, window scale factor and timestamps, it is possible to make some assumptions about the target system.

Tuesday, August 5, 2008

write a cd more than 700 mb


Start Nero

From the action-bar select File and select Preferences.



In the Preferences window, select Expert Features(1) and check the Enable overburn disc-at-once(2).



Choose a Maximum CD Length(3) and click OK(4) (*82:59:59 is the maximum value I suggest,

For a more accurate test you can use a nero tool called nero speed test to see how much a specific CD is capable of being over burned . get it here

From the action-bar select File and select Write CD.



A window will appear when you have exceeded expected length, click OK to start the overburn copy.

Remember to set disk to burn Disc at Once, you cannot overburn in Track at Once Mode.

how to remove extra os from boot menu

If you have more then one operating system installed or wish
to remove an operating system from the boot menu, you can use the following information.

1.Click on Start, Control Panel, System, Advanced.
2.Under Startup and Recovery, click Settings.
3.Under Default Operating System, choose one of the following:

"Microsoft Windows XP Professional /fastdetect"
-or-
"Microsoft Windows XP Home /fasdetect"
-or-
"Microsoft Windows 2000 Professional /fastdetect"

4.Take the checkmark out of the box for "Time to display a list of Operating Systems".
5.Click Apply and Ok, and reboot the system.

*If you wish to edit the boot.ini file manually, click on the button "EDIT"

stream audio


How Download MP3s from any Streaming Audio/Video Page

Part1

1- Download “CoCSoft Stream Down” here:

http:// www. ddl2.com/download-CoCsoft-StreamDown-v6.0-full-version-with-crack-serial-keygen-268919. html

remove spaces

2- Go to any other Streaming Audio/Video Page (like MTV or VH1) search
for your Artist or Band, and play your song, a pop up will appear, with a
windows player preview, then, right clic on this player, and click on “properties”

3- Will appear a options,stay in “File” tag, go down to “Location” Select all the link address and copy


4- Go to “CoCSoft Stream Down” program, and click on “ADD” icon, and paste the link address, that u copied on the page, choose your directory to download, and clic in Ok


5- Now, You are downloading the .ASF File


6-use any converter to convert asf file to mp3

how long have been your xp is running


How Long Has Your System Been Running?

Here's how you verify system uptime:

Click Start | Run and type cmd to open a command prompt.
At the prompt, type systeminfo

Scroll down the list of information to the line that says System Up Time.

This will tell you in days, hours, minutes and seconds how long the system has been up.

Note that this command only works in XP Pro, not in XP Home. You can, however, type net statistics workstation at the prompt in Home. The first line will tell you the day and time that the system came online.

boot xp faster


First of all, this tweak only apply to those who only have one HDD on their primary IDE channel (nothing else on device 0 or 1) and a CD-ROM and/or DVD-ROM on the secondary IDE channel. Each time you boot Windows XP, there's an updated file called NTOSBOOT-*.pf who appears in your prefetch directory (%SystemRoot%Prefetch) and there's no need to erease any other files as the new prefetch option in XP really improves loading time of installed programs. We only want WindowsXP to boot faster and not decrease its performance.

1. Open notepad.exe, type "del c:windowsprefetch tosboot-*.* /q" (without the quotes) & save as "ntosboot.bat" in c:
2. From the Start menu, select "Run..." & type "gpedit.msc".
3. Double click "Windows Settings" under "Computer Configuration" and double click again on "Shutdown" in the right window.
4. In the new window, click "add", "Browse", locate your "ntosboot.bat" file & click "Open".
5. Click "OK", "Apply" & "OK" once again to exit.
6. From the Start menu, select "Run..." & type "devmgmt.msc".
7. Double click on "IDE ATA/ATAPI controllers"
8. Right click on "Primary IDE Channel" and select "Properties".
9. Select the "Advanced Settings" tab then on the device 0 or 1 that doesn't have 'device type' greyed out select 'none' instead of 'autodetect' & click "OK".
10. Right click on "Secondary IDE channel", select "Properties" and repeat step 9.
11. Reboot your computer.

WindowsXP should now boot REALLY faster.

Thursday, December 27, 2007

remove autorun.inf virus without any antivirus

so i will tell u how to remove autorun.inf virus which is cause of opening
of your drives in seprate window when u click on the drive name in my computer



There is a trojan/virus (either the Win32/Pacex virus or the Win32/PSW.Agent.NDP trojan) that uses those two files. Here is how you can get rid of them:

1) Open up Task Manager (Ctrl-Alt-Del)
2) If wscript.exe is running, end it.
3) If explorer.exe is running, end it.
4) Open up “File | New Task (Run)” in the Task manager
5) Run cmd
6) Run the following command on all your drives by replacing c:\ with other drives in turn (note: if you have autorun.inf files that you think you need to backup, do so now):e.g->del d:\autorun.* /f/a/s/q and other drive names

del c:\autorun.* /f /a /s /q
be extra careful with this command it can delete your all data one by one from your hdd if execute wrongly so place your mouse on x position of cmd prompt windows and if it starts deleting your files close it

7) Go to your Windows\System32 directory by typing cd c:\windows\system32
8) Type dir /a avp*.*
9) If you see any files names avp0.dll or avpo.exe or avp0.exe, use the following commands to delete each of them:

attrib -r -s -h avpo.exe
del avpo.exe

10) Use the Task Manager’s Run command to fire up regedit
11) Navigate to HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Run (as usual, take a backup of your registry before touching it!)
12) If there are any entries for avpo.exe, delete them.
13) Do a complete search of your registry for ntde1ect.com and delete any entries you find.
14) Restart your computer.