Kinda looks as if not. yes, the port is open, but it looks like some sort of software on the box catching the nessus scan (IDS?).
Matt Carlson (314) 362-0870 4353 Clayton Avenue Mailstop : 90-68-145 Saint Louis, MO 63110 http://issecurity.carenet.org >>> "Jesper S. Jensen" <[EMAIL PROTECTED]> 1/18/2005 6:51:29 AM >>> Plugin 15520 - checks for w32.spybot.fcd worm. I have a identd server running that always answers the same, no matter what you ask it. The plugin sees this as the worm and Nessus complains about it. Plugin 11884 finds that I have a WinSyslog running (on my Debian Box!). It's just the standard syslogd service "syslogd 1.4.1". Plugin 11154 finds An unknown server is running on this port. If you know what it is, please send this banner to the Nessus team: 00: 45 52 52 4f 52 3a 20 59 6f 75 72 20 68 6f 73 74 ERROR: Your host 10: 20 69 73 20 74 72 79 69 6e 67 20 74 6f 20 28 72 is trying to (r 20: 65 29 63 6f 6e 6e 65 63 74 20 74 6f 6f 20 66 61 e)connect too fa 30: 73 74 20 2d 2d 20 74 68 72 6f 74 74 6c 65 64 0d st -- throttled. 40: 0a . It's "ircd u2.10.10.pl18.(release)" a IRC server. I hope the above info is usefull, and can help in Nessus getting a bit more accurate. Keep up the good work, Nessus rules. :-) _______________________________________________ Nessus mailing list [email protected] http://mail.nessus.org/mailman/listinfo/nessus _______________________________________________ Nessus mailing list [email protected] http://mail.nessus.org/mailman/listinfo/nessus
