Penetration Testing mailing list archives

Re: [PEN-TEST] Closing Port 139


From: Marc Maiffret <marc () eeye com>
Date: Thu, 12 Oct 2000 13:00:55 +0100

If your closing 139 then do not forget 135, 137 and 138 (some are tcp and
udp maybe even all i forget though)

Signed,
Marc Maiffret
Chief Hacking Officer
eCompany / eEye
T.949.349.9062
F.949.349.9538
http://eEye.com

| ----- Original Message -----
| From: "Kasey Speakman" <kspeakman () DSENGINEERING COM>
| To: <PEN-TEST () SECURITYFOCUS COM>
| Sent: Thursday, October 12, 2000 2:54 PM
| Subject: Closing Port 139
|
|
| > How do I close this port?  The situation is that we are using
| an NT Server
| > machine with MS Proxy Server.  There are no shares on this
| computer.  The
| > computer has 2 nics.  One goes to the LAN, and the other goes to our
| router.
| > I have the internet nic unbound from the WINS on both the server and the
| > workstation services, but the other card is bound to the WINS on both
| > services.  Auditing tools still show that the port is open,
| even though it
| > won't give anyone any connections, but I don't want any attention being
| > drawn to it by that port being open at all.  Help will be appreciated!
| >
| > Thanks,
| >
| > Kasey
| >
|


Current thread: