FTP

May 12, 2024

# Nmap 7.94 scan initiated Mon May 13 22:03:13 2024 as: nmap -sC -sV -oN nmap -vv 10.129.132.129
Increasing send delay for 10.129.132.129 from 0 to 5 due to 40 out of 133 dropped probes since last increase.
Increasing send delay for 10.129.132.129 from 5 to 10 due to 11 out of 17 dropped probes since last increase.
Increasing send delay for 10.129.132.129 from 40 to 80 due to 11 out of 33 dropped probes since last increase.
Nmap scan report for 10.129.132.129
Host is up, received conn-refused (1.3s latency).
Scanned at 2024-05-13 22:03:16 PST for 705s
Not shown: 994 closed tcp ports (conn-refused)
PORT     STATE SERVICE     REASON  VERSION
21/tcp   open  ftp         syn-ack
| fingerprint-strings: 
|   GenericLines: 
|     220 InFreight FTP v1.1
|     Invalid command: try being more creative
|_    Invalid command: try being more creative
| ftp-anon: Anonymous FTP login allowed (FTP code 230)
|_-rw-r--r--   1 ftpuser  ftpuser        39 Nov  8  2021 flag.txt
22/tcp   open  ssh         syn-ack OpenSSH 8.2p1 Ubuntu 4ubuntu0.2 (Ubuntu Linux; protocol 2.0)
| ssh-hostkey: 
|   256 7b:30:37:67:50:b9:ad:91:c0:8f:f7:02:78:3b:7c:02 (ECDSA)
| ecdsa-sha2-nistp256 AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBNAdY+PFLa0XBlXCp3lL+mrrQKkU6bxWjDVEsljltzBYtugbDuER3AyIq1igFdgQPn+uKh5RtNQvPvX1Al8pA0Y=
|   256 88:9e:0e:07:fe:ca:d0:5c:60:ab:cf:10:99:cd:6c:a7 (ED25519)
|_ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIGKKM5saOYH/Fq3lWY1P4fchdWaH60Ib5/VQk6A00nAP
111/tcp  open  rpcbind     syn-ack 2-4 (RPC #100000)
| rpcinfo: 
|   program version    port/proto  service
|   100000  2,3,4        111/tcp   rpcbind
|   100000  2,3,4        111/udp   rpcbind
|   100000  3,4          111/tcp6  rpcbind
|   100000  3,4          111/udp6  rpcbind
|   100003  3           2049/udp   nfs
|   100003  3           2049/udp6  nfs
|   100003  3,4         2049/tcp   nfs
|   100003  3,4         2049/tcp6  nfs
|   100005  1,2,3      45312/udp   mountd
|   100005  1,2,3      55119/tcp6  mountd
|   100005  1,2,3      57591/tcp   mountd
|   100005  1,2,3      58110/udp6  mountd
|   100021  1,3,4      34467/udp   nlockmgr
|   100021  1,3,4      34987/tcp6  nlockmgr
|   100021  1,3,4      39675/tcp   nlockmgr
|   100021  1,3,4      47724/udp6  nlockmgr
|   100227  3           2049/tcp   nfs_acl
|   100227  3           2049/tcp6  nfs_acl
|   100227  3           2049/udp   nfs_acl
|_  100227  3           2049/udp6  nfs_acl
139/tcp  open  netbios-ssn syn-ack Samba smbd 4.6.2
445/tcp  open  netbios-ssn syn-ack Samba smbd 4.6.2
2049/tcp open  nfs         syn-ack 3-4 (RPC #100003)
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port21-TCP:V=7.94%I=7%D=5/13%Time=66422005%P=x86_64-pc-linux-gnu%r(Gene
SF:ricLines,74,"220\x20InFreight\x20FTP\x20v1\.1\r\n500\x20Invalid\x20comm
SF:and:\x20try\x20being\x20more\x20creative\r\n500\x20Invalid\x20command:\
SF:x20try\x20being\x20more\x20creative\r\n");
Service Info: OS: Linux; CPE: cpe:/o:linux:linux_kernel

Host script results:
| p2p-conficker: 
|   Checking for Conficker.C or higher...
|   Check 1 (port 33480/tcp): CLEAN (Couldn't connect)
|   Check 2 (port 15542/tcp): CLEAN (Couldn't connect)
|   Check 3 (port 62196/udp): CLEAN (Timeout)
|   Check 4 (port 48630/udp): CLEAN (Failed to receive data)
|_  0/4 checks are positive: Host is CLEAN or ports are blocked
|_clock-skew: 5s
| smb2-time: 
|   date: 2024-05-13T14:13:52
|_  start_date: N/A
| nbstat: NetBIOS name: DEVSMB, NetBIOS user: <unknown>, NetBIOS MAC: <unknown> (unknown)
| Names:
|   DEVSMB<00>           Flags: <unique><active>
|   DEVSMB<03>           Flags: <unique><active>
|   DEVSMB<20>           Flags: <unique><active>
|   DEVOPS<00>           Flags: <group><active>
|   DEVOPS<1e>           Flags: <group><active>
| Statistics:
|   00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
|   00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
|_  00:00:00:00:00:00:00:00:00:00:00:00:00:00
| smb2-security-mode: 
|   3:1:1: 
|_    Message signing enabled but not required

Read data files from: /usr/bin/../share/nmap
Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
# Nmap done at Mon May 13 22:15:01 2024 -- 1 IP address (1 host up) scanned in 707.18 seconds

Last updated