httpRecon quick eval, fake banners detector

No explicit questions like "how do I hack xxx.com" please!
Post Reply
User avatar
DNR
Digital Mercenary
Digital Mercenary
Posts: 6114
Joined: 24 Feb 2006, 17:00
18
Location: Michigan USA
Contact:

httpRecon quick eval, fake banners detector

Post by DNR »

HttpRecon 4.3

Nice tool, it helps to fingerprint webservers. Better yet, it detects fake banners

Example:
HTTP/1.1 200 OK
Date: Tue, 04 Mar 2008 18:56:50 GMT
Server: Microsoft-IIS/5.0
Last-Modified: Thu, 21 Feb 2008 06:18:37 GMT
ETag: "16b0950-584-1377a940"
Accept-Ranges: bytes
Content-Length: 1412
Keep-Alive: timeout=15, max=99
Connection: Keep-Alive
Content-Type: text/html
This was the typical banner returned from a webserver I know.
I know its not a IIS 5.0 server, but it say it is.

HttpRecon checks the OS and matches it to a database, here are the results on the same site:

httprecon 4.3 Report
Target: www.xxxxx.net:80 (8 test cases)
Auditor: Intruder
Scan: 3/4/2008 - 1:57:27 PM
Export: 3/4/2008 - 2:01:30 PM

Summary
An advanced web server fingerprinting for the host www.xxxxxx.net and port tcp/80 was done with 8 test cases at 3/4/2008 1:57:27 PM.

This analysis was able to determine the target httpd service as Apache 2.2.4 with 93 fingerprint hits in the database.
http://www.computec.ch/projekte/httprecon/

End of file.

DNR
:wink:
-
He gives wisdom to the wise and knowledge to the discerning. He reveals deep and hidden things; he knows what lies in Darkness, and Light dwells with him.

User avatar
bad_brain
Site Owner
Site Owner
Posts: 11636
Joined: 06 Apr 2005, 16:00
19
Location: In your eye floaters.
Contact:

Post by bad_brain »

it was added to the suck-o downloads in january... :-99
but sweet you verified it works... :D

Post Reply