I ran nmap just for the hell of it. One surprising thing is the sheer amount of ports apparently open. My first instinct was that these aren't even real services running but some kind of decoy. Thoughts?

Also, the webpage says there is no firewall in front of the box, but something appears to catching the scan (due to all the timing corrections done by nmap.) ...or am I way off about that?

----

Host 202.88.234.250 appears to be up ... good.
Interesting ports on 202.88.234.250:
(The 1559 ports scanned but not shown below are in state: closed)
PORT STATE SERVICE VERSION
7/tcp open echo?
9/tcp open discard?
13/tcp open daytime
18/tcp filtered msp
19/tcp filtered chargen
22/tcp open ssh?
25/tcp open smtp?
27/tcp filtered nsw-fe
33/tcp filtered dsp
37/tcp open time
80/tcp open http?
111/tcp open rpcbind?
135/tcp filtered msrpc
137/tcp filtered netbios-ns
138/tcp filtered netbios-dgm
139/tcp filtered netbios-ssn
162/tcp filtered snmptrap
175/tcp filtered vmnet
176/tcp filtered genrad-mux
184/tcp filtered ocserver
197/tcp filtered dls
198/tcp filtered dls-mon
206/tcp filtered at-zis
227/tcp filtered unknown
246/tcp filtered dsp3270
262/tcp filtered arcisdms
265/tcp filtered maybeFW1
305/tcp filtered unknown
314/tcp filtered opalis-robot
359/tcp filtered tenebris_nts
380/tcp filtered is99s
385/tcp filtered ibm-app
392/tcp filtered synotics-broker
396/tcp filtered netware-ip
437/tcp filtered comscm
445/tcp filtered microsoft-ds
477/tcp filtered ss7ns
488/tcp filtered gss-http
494/tcp filtered pov-ray
504/tcp filtered citadel
511/tcp filtered passgo
520/tcp filtered efs
553/tcp filtered pirp
566/tcp filtered streettalk
581/tcp filtered bdp
609/tcp filtered npmp-trap
626/tcp filtered unknown
653/tcp filtered unknown
654/tcp filtered unknown
660/tcp filtered mac-srvr-admin
697/tcp filtered unknown
704/tcp filtered elcsd
731/tcp filtered netviewdm3
735/tcp filtered unknown
740/tcp filtered netcp
743/tcp filtered unknown
756/tcp filtered unknown
789/tcp filtered unknown
806/tcp filtered unknown
822/tcp filtered unknown
847/tcp filtered unknown
856/tcp filtered unknown
879/tcp filtered unknown
905/tcp filtered unknown
935/tcp filtered unknown
941/tcp filtered unknown
976/tcp filtered unknown
977/tcp filtered unknown
990/tcp filtered ftps
1003/tcp filtered unknown
1027/tcp filtered IIS
1040/tcp filtered netsaint
1080/tcp filtered socks
1214/tcp filtered fasttrack
1351/tcp filtered equationbuilder
1363/tcp filtered ndm-requester
1371/tcp filtered fc-cli
1405/tcp filtered ibm-res
1422/tcp filtered autodesk-lm
1430/tcp filtered tpdu
1435/tcp filtered ibm-cics
1457/tcp filtered valisys-lm
1464/tcp filtered msl_lmd
1496/tcp filtered liberty-lm
1542/tcp filtered gridgen-elmd
1544/tcp filtered aspeclmd
1651/tcp filtered shiva_confsrvr
1720/tcp filtered H.323/Q.931
2011/tcp filtered raid-cc
2105/tcp filtered eklogin
3128/tcp filtered squid-http
3264/tcp filtered ccmail
4480/tcp filtered proxy-plus
5301/tcp filtered hacl-gs
5432/tcp open postgres?
5801/tcp filtered vnc-http-1
6007/tcp filtered X11:7
6588/tcp filtered analogx
8081/tcp filtered blackice-icecap
13706/tcp filtered VeritasNetbackup
32770/tcp filtered sometimes-rpc3
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at http://www.insecure.org/cgi-bin/servicefp-submit.cgi :
SF-Port5432-TCP:V=3.70%D=3/8%Time=422E6E97%P=powerpc-apple-darwin7.5.0%r(S
SF:MBProgNeg,85,"E\0\0\0\x84SFATAL\0C0A000\0Munsupported\x20frontend\x20pr
SFtocol\x2065363\.19778:\x20server\x20supports\x201\.0\x20to\x203\.0\0Fp
SFstmaster\.c\0L1293\0RProcessStartupPacket\0\0");
No exact OS matches for host (If you know what OS is running on it, see http://www.insecure.org/cgi-bin/nmap-submit.cgi).
TCP/IP fingerprint:
SInfo(V=3.70%P=powerpc-apple-darwin7.5.0%D=3/8%Time=422E6F3D%O=7%C=1)
T1(Resp=Y%DF=Y%W=0%ACK=S++%Flags=AR%Ops=)
T2(Resp=N)
T3(Resp=Y%DF=Y%W=0%ACK=O%Flags=AR%Ops=)
T4(Resp=Y%DF=Y%W=0%ACK=O%Flags=R%Ops=)
T5(Resp=Y%DF=Y%W=0%ACK=S++%Flags=AR%Ops=)
T6(Resp=Y%DF=Y%W=0%ACK=O%Flags=R%Ops=)
T7(Resp=Y%DF=Y%W=0%ACK=S++%Flags=AR%Ops=)
PU(Resp=Y%DF=N%TOS=0%IPLEN=164%RIPTL=148%RID=E%RIPCK=E%UCK=E%ULEN=134%DAT=E)



Nmap run completed -- 1 IP address (1 host up) scanned in 3961.847 seconds