Security Basics mailing list archives

Re: Port 80 open without WebServer


From: Javier Larrea Jaspe <javier.larrea () es tiscali com>
Date: Thu, 01 Jul 2004 18:24:19 +0200

Hi!

If yoy have an http web server listening in this port, the server will respond as follows:

# telnet your_server_ip 80
Trying xxxxxx...
Connected to xxxxxxx.
Escape character is '^]'.
HEAD / HTTP/1.0

HTTP/1.0 302 Found
Server: xxxx  <-- the server type/version
Location: xxxxx
Content-Length: 0
Date: Thu, 01 Jul 2004 16:36:26 GMT

Connection closed by foreign host.
--
Javier Larrea




Paulo wrote:

Hi,

I runned the Nessus on a Redhat/Conectiva 9 and i
received the alert:

Security Note: Port: www-http (80/tcp).

I don't runnig http server (apache) and in netstat
-anp don't show port 80. I run also chkrootkit and it
detect nothing. I run clamav and it detect nothing
too.

Anyone can help me?

Thanks




                
__________________________________
Do you Yahoo!?
New and Improved Yahoo! Mail - Send 10MB messages!
http://promotions.yahoo.com/new_mail
---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off any course! All of our class sizes are guaranteed to be 10 students or less to facilitate one-on-one interaction with one of our expert instructors. Attend a course taught by an expert instructor with years of in-the-field pen testing experience in our state of the art hacking lab. Master the skills of an Ethical Hacker to better assess the security of your organization. Visit us at: http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------




Attachment: signature.asc
Description: OpenPGP digital signature


Current thread: