Bob:1.0.1
下载链接
https://download.vulnhub.com/bob/Bob_v1.0.1.ova
将靶机ova文件导入vmware中,更改网卡配置为桥接直接使用。
1.信息收集
根据已知靶机mac地址查询ip。
确定目标IP
Nmap -sP 192.168.43.0/24
端口扫描
Nmap 192.168.43.169 -A -p- -oN namp.A
C:\Users\ASUS>Nmap 192.168.43.169 -A -p- -oN nmap.A
Starting Nmap 7.70 ( https://nmap.org ) at 2020-09-26 10:25 ?D1ú±ê×?ê±??
Nmap scan report for Milburg-High (192.168.43.169)
Host is up (0.00069s latency).
Not shown: 65532 closed ports
PORT STATE SERVICE VERSION
21/tcp open ftp ProFTPD 1.3.5b
80/tcp open http Apache httpd 2.4.25 ((Debian))
| http-robots.txt: 4 disallowed entries
| /login.php /dev_shell.php /lat_memo.html
|_/passwords.html
|_http-server-header: Apache/2.4.25 (Debian)
|_http-title: Site doesn't have a title (text/html).
25468/tcp open ssh OpenSSH 7.4p1 Debian 10+deb9u2 (protocol 2.0)
| ssh-hostkey:
| 2048 84:f2:f8:e5:ed:3e:14:f3:93:d4:1e:4c:41:3b:a2:a9 (RSA)
| 256 5b:98:c7:4f:84:6e:fd:56:6a:35:16:83:aa:9c:ea:f8 (ECDSA)
|_ 256 39:16:56:fb:4e:0f:50:85:40:d3:53:22:41:4