|
-
March 15th, 2008, 09:05 AM
#1
nmap from the internet
howdy kids
so im doing a network assessment for a client and i just happened to notice something. I was ping sweeping (-sP) a /20 netrange from an outside host i normally work on, and I noticed that i got huge fluctuations in the hosts that responded... so I turned the throttling down to -T2 to see what the change would be, and I still got huge fluctuation of up/down hosts.
I tried from a few other hosts I have access to, and they all experienced the same symptom. Anywhere from 30-200 hosts would come back as up... except for one a friend of mine has. I repeatedly get the same amount of live hosts from that box. I switched to a port sweep, and it's the same symptom with all the boxes except for that one... huge fluctuations of up/down hosts on each scan. I confirmed with the client that list I gathered from the exceptional box is very accurate.
what confuses me is the large amount of fluctuation I received... the first thing I would consider are the iptables on each machine i scanned from, however that doesn't explain the changes I'd see in scans ten minutes apart.
any ideas why one host would be totally reliable and the rest would fluctuate?
Similar Threads
-
By thehorse13 in forum IDS & Scanner Discussions
Replies: 4
Last Post: April 25th, 2006, 04:43 PM
-
By Nokia in forum Tips and Tricks
Replies: 0
Last Post: June 12th, 2004, 05:36 PM
-
By gore in forum Newbie Security Questions
Replies: 11
Last Post: December 29th, 2003, 08:01 AM
-
By hot_ice in forum Cosmos
Replies: 5
Last Post: May 2nd, 2002, 04:30 AM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|