{"id":276,"date":"2022-10-03T13:45:09","date_gmt":"2022-10-03T05:45:09","guid":{"rendered":"https:\/\/www.yuyiares.com\/?p=276"},"modified":"2022-10-03T14:02:57","modified_gmt":"2022-10-03T06:02:57","slug":"ceh-v11-moudle-4-enumeration","status":"publish","type":"post","link":"https:\/\/www.yuyiares.com\/?p=276","title":{"rendered":"CEH v11  Moudle 4 &#8211; Enumeration"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"276\" class=\"elementor elementor-276\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-0977fe9 elementor-section-boxed elementor-section-height-default elementor-section-height-default wpr-particle-no wpr-jarallax-no wpr-parallax-no wpr-sticky-section-no wpr-column-slider-no wpr-equal-height-no\" data-id=\"0977fe9\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-a0b5c4a\" data-id=\"a0b5c4a\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-4ec0f2b elementor-widget elementor-widget-heading\" data-id=\"4ec0f2b\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x00 \u5e38\u7528\u7684port<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-3e6004c elementor-widget elementor-widget-text-editor\" data-id=\"3e6004c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul class=\"part\" data-startline=\"5\" data-endline=\"8\"><li class=\"\" data-startline=\"5\" data-endline=\"5\" data-position=\"62\" data-size=\"0\"><span data-position=\"62\" data-size=\"31\">UDP 137 (NETBIOS Name SErvice)<\/span><\/li><li class=\"\" data-startline=\"6\" data-endline=\"6\" data-position=\"96\" data-size=\"0\"><span data-position=\"96\" data-size=\"52\">TCP 139 (NEtBIOS Session Service)(SNB over NetBIOS)<\/span><\/li><li class=\"\" data-startline=\"7\" data-endline=\"7\" data-position=\"151\" data-size=\"0\"><strong data-position=\"151\" data-size=\"0\"><span data-position=\"153\" data-size=\"7\">UDP 161<\/span><\/strong><span data-position=\"162\" data-size=\"43\"> (Simple Network Management Protocol, SNMP)<\/span><\/li><li class=\"\" data-startline=\"8\" data-endline=\"8\" data-position=\"208\" data-size=\"0\"><strong data-position=\"208\" data-size=\"0\"><span data-position=\"210\" data-size=\"11\">TCP\/UDP 162<\/span><\/strong><span data-position=\"223\" data-size=\"10\"> SNMP Trap<\/span><\/li><li class=\"\" data-startline=\"10\" data-endline=\"10\" data-position=\"240\" data-size=\"0\"><span data-position=\"240\" data-size=\"16\">TCP\/UDP 53 (DNS)<\/span><\/li><li class=\"\" data-startline=\"11\" data-endline=\"11\" data-position=\"259\" data-size=\"0\"><span data-position=\"259\" data-size=\"27\">TCP\/UDP 135(Microsoft RPC )<\/span><\/li><li class=\"\" data-startline=\"12\" data-endline=\"12\" data-position=\"289\" data-size=\"0\"><span data-position=\"289\" data-size=\"18\">TCP\/UDP 389 (LDAP)<\/span><\/li><li class=\"\" data-startline=\"13\" data-endline=\"13\" data-position=\"311\" data-size=\"0\"><span data-position=\"311\" data-size=\"14\">TCP 2049 (NFS)<\/span><\/li><li class=\"\" data-startline=\"14\" data-endline=\"14\" data-position=\"329\" data-size=\"0\"><span data-position=\"329\" data-size=\"13\">TCP 25 (SMTP)<\/span><\/li><li class=\"\" data-startline=\"15\" data-endline=\"15\" data-position=\"346\" data-size=\"0\"><span data-position=\"346\" data-size=\"27\">(TCP\/UDP 445) SMB over TCP<\/span><\/li><li class=\"\" data-startline=\"16\" data-endline=\"16\" data-position=\"378\" data-size=\"0\"><span data-position=\"378\" data-size=\"21\">SNMP Ttap TCP\/UDP 162<\/span><\/li><li class=\"\" data-startline=\"17\" data-endline=\"17\" data-position=\"402\" data-size=\"0\"><span data-position=\"402\" data-size=\"42\">ISAKMP\/Internet Key Exchange (IKE) UDP 500<\/span><\/li><li class=\"\" data-startline=\"18\" data-endline=\"19\" data-position=\"448\" data-size=\"0\"><span data-position=\"448\" data-size=\"10\">SSH TCP 22<\/span><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-5b5f098 elementor-widget elementor-widget-heading\" data-id=\"5b5f098\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x01 Enumeration Concepts (\u679a\u8209)<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-96d9ad7 elementor-widget elementor-widget-text-editor\" data-id=\"96d9ad7\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul class=\"part\" data-startline=\"21\" data-endline=\"28\"><li class=\"\" data-startline=\"21\" data-endline=\"21\" data-position=\"496\" data-size=\"0\"><span data-position=\"496\" data-size=\"30\">Get user names using email IDs<\/span><\/li><li class=\"\" data-startline=\"22\" data-endline=\"22\" data-position=\"529\" data-size=\"0\"><span data-position=\"529\" data-size=\"39\">Get information using default passwords<\/span><\/li><li class=\"\" data-startline=\"23\" data-endline=\"23\" data-position=\"571\" data-size=\"0\"><span data-position=\"571\" data-size=\"25\">Get user names using SNMP<\/span><\/li><li class=\"\" data-startline=\"24\" data-endline=\"24\" data-position=\"599\" data-size=\"0\"><span data-position=\"599\" data-size=\"14\">Brute force AD<\/span><\/li><li class=\"\" data-startline=\"25\" data-endline=\"25\" data-position=\"616\" data-size=\"0\"><span data-position=\"616\" data-size=\"28\">Get user groups from Windows<\/span><\/li><li class=\"\" data-startline=\"26\" data-endline=\"26\" data-position=\"647\" data-size=\"0\"><span data-position=\"647\" data-size=\"40\">Get information using DNS zone transfers<\/span><\/li><li class=\"\" data-startline=\"27\" data-endline=\"28\" data-position=\"690\" data-size=\"0\"><span data-position=\"690\" data-size=\"23\">NetBios, LDAP, NTP, DNS<\/span><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-2e9f6a8 elementor-widget elementor-widget-heading\" data-id=\"2e9f6a8\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x02 SNMP Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-81c661c elementor-widget elementor-widget-text-editor\" data-id=\"81c661c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul><li class=\"\" data-startline=\"30\" data-endline=\"30\" data-position=\"742\" data-size=\"0\"><span data-position=\"742\" data-size=\"6\">nmap \u6307\u4ee4:\u00a0 <\/span><code data-position=\"749\" data-size=\"35\">nmap -sU -p 161 &lt;Target IP Address&gt;<\/code><\/li><li class=\"\" data-startline=\"31\" data-endline=\"32\" data-position=\"788\" data-size=\"0\"><span data-position=\"788\" data-size=\"31\">auxiliary\/scanner\/snmp\/snmp_enum <br \/><\/span><ul><li class=\"\" data-startline=\"32\" data-endline=\"32\" data-position=\"828\" data-size=\"0\">\u6307\u4ee4: <code data-position=\"829\" data-size=\"30\">snmp-check &lt;Target IP Address&gt;<\/code><\/li><\/ul><\/li><li class=\"\" data-startline=\"33\" data-endline=\"33\" data-position=\"863\" data-size=\"0\"><code data-position=\"864\" data-size=\"10\">snmp-check<\/code><\/li><li class=\"\" data-startline=\"34\" data-endline=\"38\" data-position=\"878\" data-size=\"0\"><span data-position=\"878\" data-size=\"3\">GUI<\/span><ul><li class=\"\" data-startline=\"34\" data-endline=\"38\" data-position=\"878\" data-size=\"0\"><span data-position=\"878\" data-size=\"19\">Engineer\u2019s Toolset<\/span><\/li><li class=\"\" data-startline=\"34\" data-endline=\"38\" data-position=\"878\" data-size=\"0\"><span data-position=\"878\" data-size=\"12\">SNMPScanner<\/span><\/li><li class=\"\" data-startline=\"34\" data-endline=\"38\" data-position=\"878\" data-size=\"0\"><span data-position=\"878\" data-size=\"10\">OpUtils 5<\/span><\/li><li class=\"\" data-startline=\"34\" data-endline=\"38\" data-position=\"878\" data-size=\"0\"><span data-position=\"878\" data-size=\"7\">SNScan<\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"39\" data-endline=\"45\" data-position=\"957\" data-size=\"0\"><span data-position=\"957\" data-size=\"33\">Management Information Base (MIB)<\/span><ul><li class=\"\" data-startline=\"40\" data-endline=\"45\" data-position=\"995\" data-size=\"0\"><span data-position=\"995\" data-size=\"97\">MIB \u662f\u4e00\u500b\u865b\u64ec\u6578\u64da\u5eab\uff0c\u5176\u4e2d\u5305\u542b SNMP \u7ba1\u7406\u7684\u6240\u6709\u7db2\u7d61\u5c0d\u8c61\u7684\u6b63\u5f0f\u63cf\u8ff0\u3002MIB elements are recognized using object identifiers (OIDs)<\/span><ul><li class=\"\" data-startline=\"41\" data-endline=\"41\" data-position=\"1099\" data-size=\"0\"><span data-position=\"1099\" data-size=\"8\">DHCP.MIB<\/span><\/li><li class=\"\" data-startline=\"42\" data-endline=\"42\" data-position=\"1114\" data-size=\"0\"><span data-position=\"1114\" data-size=\"21\">HOSTMIB.MIB:\u76e3\u63a7\u548c\u7ba1\u7406\u4e3b\u6a5f\u8cc7\u6e90<\/span><\/li><li class=\"\" data-startline=\"43\" data-endline=\"43\" data-position=\"1142\" data-size=\"0\"><span data-position=\"1142\" data-size=\"27\">LNMIB2.MIB\uff1a\u5305\u542b\u5de5\u4f5c\u7ad9\u548c\u670d\u52d9\u5668\u670d\u52d9\u7684\u5c0d\u50cf\u985e\u578b<\/span><\/li><li class=\"\" data-startline=\"44\" data-endline=\"44\" data-position=\"1176\" data-size=\"0\"><span data-position=\"1176\" data-size=\"42\">MIB_II.MIB\uff1a\u4f7f\u7528\u7c21\u55ae\u7684\u67b6\u69cb\u548c\u7cfb\u7d71\u7ba1\u7406\u57fa\u65bc TCP\/IP \u7684 Internet<\/span><\/li><li class=\"\" data-startline=\"45\" data-endline=\"45\" data-position=\"1226\" data-size=\"0\"><span data-position=\"1226\" data-size=\"40\">WINS.MIB\uff1a\u7528\u65bc Windows Internet \u540d\u7a31\u670d\u52d9 (WINS)<\/span><\/li><\/ul><\/li><\/ul><\/li><li class=\"\" data-startline=\"46\" data-endline=\"52\" data-position=\"1269\" data-size=\"0\"><span data-position=\"1269\" data-size=\"4\">\u5176\u4ed6\u5de5\u5177<\/span><ul><li class=\"\" data-startline=\"47\" data-endline=\"47\" data-position=\"1278\" data-size=\"0\"><span data-position=\"1278\" data-size=\"9\">snmpcheck<\/span><\/li><li class=\"\" data-startline=\"48\" data-endline=\"48\" data-position=\"1292\" data-size=\"0\"><span data-position=\"1292\" data-size=\"27\">softperfect network Scanner<\/span><\/li><li class=\"\" data-startline=\"49\" data-endline=\"49\" data-position=\"1324\" data-size=\"0\"><span data-position=\"1324\" data-size=\"27\">Network Performance Monitor<\/span><\/li><li class=\"\" data-startline=\"50\" data-endline=\"50\" data-position=\"1356\" data-size=\"0\"><span data-position=\"1356\" data-size=\"7\">OpUtils<\/span><\/li><li class=\"\" data-startline=\"51\" data-endline=\"51\" data-position=\"1368\" data-size=\"0\"><span data-position=\"1368\" data-size=\"20\">PRTG Network Monitor<\/span><\/li><li class=\"\" data-startline=\"52\" data-endline=\"52\" data-position=\"1393\" data-size=\"0\"><span data-position=\"1393\" data-size=\"18\">Enginner\u2019s Toolset<\/span><\/li><\/ul><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-10c2430 elementor-widget elementor-widget-heading\" data-id=\"10c2430\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x03 Windows System Basics<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-4595a8c elementor-widget elementor-widget-text-editor\" data-id=\"4595a8c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul class=\"part\" data-startline=\"54\" data-endline=\"72\"><li class=\"\" data-startline=\"54\" data-endline=\"54\" data-position=\"1445\" data-size=\"0\"><span data-position=\"1445\" data-size=\"63\">Security Context &#8211; \u7528\u6236\u7684\u8eab\u5206\u8207\u8a8d\u8b49\u8cc7\u8a0a<\/span><\/li><li class=\"\" data-startline=\"55\" data-endline=\"55\" data-position=\"1511\" data-size=\"0\"><span data-position=\"1511\" data-size=\"72\">Security Identifier (SID) &#8211; \u8b58\u5225\u4f7f\u7528\u8005\u3001\u7fa4\u7d44\u548c\u5e33\u6236<\/span><\/li><li class=\"\" data-startline=\"56\" data-endline=\"56\" data-position=\"1586\" data-size=\"0\"><span data-position=\"1586\" data-size=\"93\">Resource Identifier (RID) &#8211; \u6a19\u793aSID\u5e33\u6236\u7684\u6b0a\u9650<br \/><\/span><\/li><li class=\"\" data-startline=\"57\" data-endline=\"62\" data-position=\"1682\" data-size=\"0\"><span data-position=\"1682\" data-size=\"11\">USER NUMBER<\/span><ul><li class=\"\" data-startline=\"58\" data-endline=\"58\" data-position=\"1698\" data-size=\"0\"><span data-position=\"1698\" data-size=\"13\">SID \u6700\u5f8c\u9762\u70ba\u4f7f\u7528\u8005\u865f\u78bc<\/span><\/li><li class=\"\" data-startline=\"59\" data-endline=\"59\" data-position=\"1717\" data-size=\"0\"><span data-position=\"1717\" data-size=\"57\">Example SID: S-1-5-21-3874928736-367528774-1298337465**-500**<\/span><\/li><li class=\"\" data-startline=\"60\" data-endline=\"60\" data-position=\"1783\" data-size=\"0\"><span data-position=\"1783\" data-size=\"34\">Administrator Account &#8211; SID of 500<\/span><\/li><li class=\"\" data-startline=\"61\" data-endline=\"61\" data-position=\"1823\" data-size=\"0\"><span data-position=\"1823\" data-size=\"43\">Regular Accounts &#8211; start with a SID of 1000<\/span><\/li><li class=\"\" data-startline=\"62\" data-endline=\"62\" data-position=\"1871\" data-size=\"0\"><span data-position=\"1871\" data-size=\"75\">Linux Systems used user IDs (UID) and group IDs (GID). Found in \/etc\/passwd<\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"63\" data-endline=\"65\" data-position=\"1950\" data-size=\"0\"><span data-position=\"1950\" data-size=\"12\">SAM Database<\/span><ul><li class=\"\" data-startline=\"64\" data-endline=\"64\" data-position=\"1970\" data-size=\"0\"><span data-position=\"1970\" data-size=\"60\">file where all local passwords are stored (encrypted) (\u6240\u6709\u5bc6\u78bc)<\/span><\/li><li class=\"\" data-startline=\"65\" data-endline=\"65\" data-position=\"2037\" data-size=\"0\"><span data-position=\"2037\" data-size=\"36\">Stored in C:\\Windows\\System32\\Config<\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"66\" data-endline=\"69\" data-position=\"2076\" data-size=\"0\"><span data-position=\"2076\" data-size=\"53\">Linux Enumeration Commands in PowerShell or CmdPrompt<\/span><ul><li class=\"\" data-startline=\"67\" data-endline=\"67\" data-position=\"2136\" data-size=\"0\"><span data-position=\"2136\" data-size=\"38\">finger &#8211; \u4f7f\u7528\u8005\u548c\u96fb\u8166\u7684\u8cc7\u8a0a <\/span><\/li><li class=\"\" data-startline=\"67\" data-endline=\"67\" data-position=\"2136\" data-size=\"0\"><span data-position=\"2181\" data-size=\"54\">rpcclient &#8211; info on RPC in the environment<\/span><\/li><li class=\"\" data-startline=\"69\" data-endline=\"69\" data-position=\"2242\" data-size=\"0\"><span data-position=\"2242\" data-size=\"58\">showmount &#8211; \u986f\u793a\u6240\u6709\u7684shared directories<br \/><\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"70\" data-endline=\"71\" data-position=\"2303\" data-size=\"0\"><span data-position=\"2303\" data-size=\"34\">Look for share resources (NetBIOS)<\/span><ul><li class=\"\" data-startline=\"71\" data-endline=\"71\" data-position=\"2342\" data-size=\"0\"><span data-position=\"2342\" data-size=\"18\"><strong>net view \\sysName<\/strong> <br \/><\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"72\" data-endline=\"72\" data-position=\"2368\" data-size=\"0\"><span data-position=\"2368\" data-size=\"20\">Windows SysInternals<\/span><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-3fa6a94 elementor-widget elementor-widget-heading\" data-id=\"3fa6a94\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x04 NetBIOS Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-c037467 elementor-widget elementor-widget-text-editor\" data-id=\"c037467\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul><li class=\"\" data-startline=\"74\" data-endline=\"74\" data-position=\"2422\" data-size=\"0\">\u6307\u4ee4 :<code data-position=\"2423\" data-size=\"16\">nmap -O &lt;target&gt;<\/code><\/li><li class=\"\" data-startline=\"75\" data-endline=\"75\" data-position=\"2444\" data-size=\"0\"><span data-position=\"2444\" data-size=\"32\">UDP port 137 or TCP port 138\/139<\/span><\/li><li class=\"\" data-startline=\"76\" data-endline=\"90\" data-position=\"2480\" data-size=\"0\"><span data-position=\"2480\" data-size=\"94\">nbtstat displays protocol statistics and current TCP\/IP connections using NetBIOS over TCP\/IP.<\/span><ul><li class=\"\" data-startline=\"77\" data-endline=\"77\" data-position=\"2581\" data-size=\"0\"><span data-position=\"2581\" data-size=\"27\">nbtstat gives your own info<\/span><\/li><li class=\"\" data-startline=\"78\" data-endline=\"80\" data-position=\"2615\" data-size=\"0\">\u6307\u4ee4 :<code data-position=\"2616\" data-size=\"10\">nbtstat -a<\/code><ul><li class=\"\" data-startline=\"79\" data-endline=\"79\" data-position=\"2637\" data-size=\"0\"><span data-position=\"2637\" data-size=\"51\">list the remote machine\u2019s name table given its name<\/span><\/li><li class=\"\" data-startline=\"80\" data-endline=\"80\" data-position=\"2697\" data-size=\"0\"><span data-position=\"2697\" data-size=\"24\">(\u4ecb\u9762\u5361\u72c0\u614b) \u5217\u51fa\u6307\u5b9a\u5176\u540d\u7a31\u7684\u9060\u7aef\u96fb\u8166\u540d\u7a31\u8868\u683c<\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"81\" data-endline=\"83\" data-position=\"2728\" data-size=\"0\">\u6307\u4ee4 : <code data-position=\"2729\" data-size=\"10\">nbtstat -A<\/code><ul><li class=\"\" data-startline=\"82\" data-endline=\"82\" data-position=\"2751\" data-size=\"0\"><span data-position=\"2751\" data-size=\"57\">list the remote machine\u2019s name table given its IP address<\/span><\/li><li class=\"\" data-startline=\"83\" data-endline=\"83\" data-position=\"2818\" data-size=\"0\"><span data-position=\"2818\" data-size=\"29\">(\u4ecb\u9762\u5361\u72c0\u614b) \u5217\u51fa\u6307\u5b9a\u5176 IP \u4f4d\u5740\u7684\u9060\u7aef\u96fb\u8166\u540d\u7a31\u8868\u683c\u3002<\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"84\" data-endline=\"86\" data-position=\"2854\" data-size=\"0\">\u6307\u4ee4 :<code data-position=\"2855\" data-size=\"10\">nbtstat -n<\/code><ul><li class=\"\" data-startline=\"85\" data-endline=\"85\" data-position=\"2878\" data-size=\"0\"><span data-position=\"2878\" data-size=\"17\">gives local table<\/span><\/li><li class=\"\" data-startline=\"86\" data-endline=\"86\" data-position=\"2906\" data-size=\"0\"><span data-position=\"2906\" data-size=\"20\">(\u540d\u7a31) \u5217\u51fa\u672c\u6a5f NetBIOS \u540d\u7a31<\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"87\" data-endline=\"89\" data-position=\"2933\" data-size=\"0\">\u6307\u4ee4 :<code data-position=\"2934\" data-size=\"10\">nbtstat -c<\/code><ul><li class=\"\" data-startline=\"88\" data-endline=\"88\" data-position=\"2957\" data-size=\"0\"><span data-position=\"2957\" data-size=\"23\">gives cache information<\/span><\/li><li class=\"\" data-startline=\"89\" data-endline=\"89\" data-position=\"2990\" data-size=\"0\"><span data-position=\"2990\" data-size=\"32\">(\u5feb\u53d6) \u5217\u51fa NBT \u5feb\u53d6\u7684\u9060\u7aef\u96fb\u8166\u540d\u7a31\u548c\u5b83\u5011\u7684 IP \u4f4d\u5740\u3002<\/span><\/li><\/ul><\/li><\/ul><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-979a689 elementor-widget elementor-widget-heading\" data-id=\"979a689\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x05 Linux System Basics<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a08219c elementor-widget elementor-widget-text-editor\" data-id=\"a08219c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul class=\"part\" data-startline=\"92\" data-endline=\"102\"><li class=\"\" data-startline=\"92\" data-endline=\"95\" data-position=\"3063\" data-size=\"0\"><span data-position=\"3063\" data-size=\"10\">Enum4linux<\/span><ul><li class=\"\" data-startline=\"93\" data-endline=\"93\" data-position=\"3082\" data-size=\"0\"><span data-position=\"3082\" data-size=\"63\">tool for enumerating information from Windows and Samba systems<\/span><\/li><li class=\"\" data-startline=\"94\" data-endline=\"95\" data-position=\"3153\" data-size=\"0\">\u6307\u4ee4 :<code data-position=\"3154\" data-size=\"42\">enum4linux -u CEH -p Pa55w0rd -U 10.0.2.23<\/code><ul><li class=\"\" data-startline=\"95\" data-endline=\"95\" data-position=\"3210\" data-size=\"0\"><code data-position=\"3211\" data-size=\"2\">-u<\/code><span data-position=\"3214\" data-size=\"11\"> Username, <\/span><code data-position=\"3226\" data-size=\"2\">-p<\/code><span data-position=\"3229\" data-size=\"11\"> Password, <\/span><code data-position=\"3241\" data-size=\"2\">-U<\/code><span data-position=\"3244\" data-size=\"18\"> users information<\/span><\/li><\/ul><\/li><\/ul><\/li><li class=\"\" data-startline=\"96\" data-endline=\"97\" data-position=\"3265\" data-size=\"0\"><span data-position=\"3265\" data-size=\"6\">finger<\/span><ul><li class=\"\" data-startline=\"97\" data-endline=\"97\" data-position=\"3278\" data-size=\"0\"><span data-position=\"3278\" data-size=\"43\">who is currently logged in, when and where.<\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"98\" data-endline=\"102\" data-position=\"3324\" data-size=\"0\"><span data-position=\"3324\" data-size=\"1\">w<\/span><ul><li class=\"\" data-startline=\"99\" data-endline=\"102\" data-position=\"3333\" data-size=\"0\">\u986f\u793a\u8ab0\u767b\u9304<\/li><li class=\"\" data-startline=\"99\" data-endline=\"102\" data-position=\"3333\" data-size=\"0\">\u986f\u793a\u4ed6\u5011\u6b63\u5728\u505a\u9ebc\u3002<\/li><\/ul><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f7cce24 elementor-widget elementor-widget-heading\" data-id=\"f7cce24\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x06 NTP Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-3119d4f elementor-widget elementor-widget-text-editor\" data-id=\"3119d4f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul class=\"part\" data-startline=\"104\" data-endline=\"113\"><li class=\"\" data-startline=\"104\" data-endline=\"104\" data-position=\"3410\" data-size=\"0\"><span data-position=\"3410\" data-size=\"40\">Runs on TCP ports 389 and 636 (over SSL)<\/span><\/li><li class=\"\" data-startline=\"105\" data-endline=\"105\" data-position=\"3453\" data-size=\"0\"><span data-position=\"3453\" data-size=\"7\">nmap\u6307\u4ee4 : <\/span><code data-position=\"3461\" data-size=\"36\">sudo nmap -sT -O &lt;target IP address&gt;<\/code><\/li><li class=\"\" data-startline=\"106\" data-endline=\"113\" data-position=\"3501\" data-size=\"0\"><span data-position=\"3501\" data-size=\"27\">Tools for Enumeration LDAP:<\/span><ul><li class=\"\" data-startline=\"107\" data-endline=\"107\" data-position=\"3535\" data-size=\"0\"><span data-position=\"3535\" data-size=\"8\">Softerra<\/span><\/li><li class=\"\" data-startline=\"108\" data-endline=\"108\" data-position=\"3550\" data-size=\"0\"><span data-position=\"3550\" data-size=\"8\">JXplorer<\/span><\/li><li class=\"\" data-startline=\"109\" data-endline=\"109\" data-position=\"3565\" data-size=\"0\"><span data-position=\"3565\" data-size=\"3\">Lex<\/span><\/li><li class=\"\" data-startline=\"110\" data-endline=\"110\" data-position=\"3575\" data-size=\"0\"><span data-position=\"3575\" data-size=\"15\">LDAP Admin Tool<\/span><\/li><li class=\"\" data-startline=\"111\" data-endline=\"111\" data-position=\"3597\" data-size=\"0\"><span data-position=\"3597\" data-size=\"25\">Active Directory Explorer<\/span><\/li><li class=\"\" data-startline=\"112\" data-endline=\"113\" data-position=\"3629\" data-size=\"0\"><span data-position=\"3629\" data-size=\"27\">Softerra LDAP Administrator<\/span><\/li><\/ul><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-9976b72 elementor-widget elementor-widget-heading\" data-id=\"9976b72\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x07 NTP Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-399709a elementor-widget elementor-widget-text-editor\" data-id=\"399709a\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul><li class=\"\" data-startline=\"115\" data-endline=\"115\" data-position=\"3684\" data-size=\"0\"><span data-position=\"3684\" data-size=\"15\">Runs on UDP 123<\/span><\/li><li class=\"\" data-startline=\"116\" data-endline=\"116\" data-position=\"3702\" data-size=\"0\">\u6307\u4ee4 : <code data-position=\"3703\" data-size=\"53\">nmap -sU -pU:123 -Pn -n --script=ntp-monlist &lt;target&gt;<\/code><\/li><li class=\"\" data-startline=\"117\" data-endline=\"119\" data-position=\"3760\" data-size=\"0\"><span data-position=\"3760\" data-size=\"32\">\u99ed\u5ba2\u900f\u904eNTP\u53d6\u5f97list of connected hosts<\/span><ul><li class=\"\" data-startline=\"118\" data-endline=\"118\" data-position=\"3797\" data-size=\"0\"><span data-position=\"3797\" data-size=\"27\">client IP(\u542bsystem name \u3001OS)<\/span><\/li><li class=\"\" data-startline=\"119\" data-endline=\"119\" data-position=\"3829\" data-size=\"0\"><span data-position=\"3829\" data-size=\"31\">\u5982\u679c NTP \u670d\u52d9\u5668\u4f4d\u65bc\u975e\u8ecd\u4e8b\u5340 (DMZ)\u9084\u53ef\u4ee5\u62ff\u5230\u5167\u90e8IP<\/span><\/li><\/ul><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-797c4d9 elementor-widget elementor-widget-heading\" data-id=\"797c4d9\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x08 SMTP Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-79e6502 elementor-widget elementor-widget-text-editor\" data-id=\"79e6502\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul><li class=\"\" data-startline=\"122\" data-endline=\"125\" data-position=\"3918\" data-size=\"0\"><ul><li class=\"\" data-startline=\"123\" data-endline=\"123\" data-position=\"3930\" data-size=\"0\"><span data-position=\"3930\" data-size=\"33\">SMTP: TCP 25 &#8211;&gt; [outbound email]<\/span><\/li><li class=\"\" data-startline=\"124\" data-endline=\"124\" data-position=\"3970\" data-size=\"0\"><span data-position=\"3970\" data-size=\"49\">IMAP: TCP 143 \/ 993(over SSL) &#8211;&gt; [inbound email]<\/span><\/li><li class=\"\" data-startline=\"125\" data-endline=\"125\" data-position=\"4026\" data-size=\"0\"><span data-position=\"4026\" data-size=\"49\">POP3: TCP 110 \/ 995(over SSL) &#8211;&gt; [inbound email]<\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"126\" data-endline=\"126\" data-position=\"4078\" data-size=\"0\">\u6307\u4ee4: <code data-position=\"4079\" data-size=\"44\">nmap -p25 --script smtp-commands &lt;target IP&gt;<\/code><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-bb200f5 elementor-widget elementor-widget-heading\" data-id=\"bb200f5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x09 NFS Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-397d814 elementor-widget elementor-widget-text-editor\" data-id=\"397d814\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul><li><span data-position=\"4152\" data-size=\"35\">\u900f\u904e Rpcinfo -p &lt;target IP&gt; \u5217\u8209\u51fa\u4f86<\/span><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f2da489 elementor-widget elementor-widget-heading\" data-id=\"f2da489\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x10 SMTP Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-48ae718 elementor-widget elementor-widget-text-editor\" data-id=\"48ae718\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul class=\"part\" data-startline=\"131\" data-endline=\"139\"><li class=\"\" data-startline=\"131\" data-endline=\"131\" data-position=\"4217\" data-size=\"0\"><span data-position=\"4217\" data-size=\"53\">\u90f5\u4ef6\u7cfb\u7d71\u901a\u5e38\u4f7f\u7528\u5e36\u6709 POP3 \u548c IMAP \u7684 SMTP\u5b83\u5728 TCP PORT 25\u6216 587 \u4e0a\u904b\u884c\u3002<\/span><\/li><li class=\"\" data-startline=\"132\" data-endline=\"135\" data-position=\"4274\" data-size=\"0\"><span data-position=\"4274\" data-size=\"16\">SMTP \u63d0\u4f9b\u4ee5\u4e0b\u4e09\u500b\u5167\u7f6e\u547d\u4ee4\u3002<\/span><ul><li class=\"\" data-startline=\"133\" data-endline=\"133\" data-position=\"4297\" data-size=\"0\"><span data-position=\"4297\" data-size=\"25\">VRFY-Validates users\u9a57\u8b49\u4f7f\u7528\u8005<\/span><\/li><li class=\"\" data-startline=\"134\" data-endline=\"134\" data-position=\"4329\" data-size=\"0\"><span data-position=\"4329\" data-size=\"17\">EXPN-\u67e5\u8a62\u5225\u540d\u5c0d\u61c9\u7684email<\/span><\/li><li class=\"\" data-startline=\"135\" data-endline=\"135\" data-position=\"4353\" data-size=\"0\"><span data-position=\"4353\" data-size=\"16\">RCPT TO-\u5b9a\u7fa9\u6d88\u606f\u7684\u63a5\u6536\u8005<\/span><\/li><\/ul><\/li><li class=\"\" data-startline=\"136\" data-endline=\"139\" data-position=\"4372\" data-size=\"0\"><span data-position=\"4372\" data-size=\"2\">\u5de5\u5177<\/span><ul><li class=\"\" data-startline=\"137\" data-endline=\"137\" data-position=\"4379\" data-size=\"0\"><span data-position=\"4379\" data-size=\"16\">NetScanTools Pro<\/span><\/li><li class=\"\" data-startline=\"138\" data-endline=\"139\" data-position=\"4400\" data-size=\"0\"><span data-position=\"4400\" data-size=\"14\">smtp-user-enum<\/span><ul><li data-startline=\"138\" data-endline=\"139\" data-position=\"4400\" data-size=\"0\"><span data-position=\"5060\" data-size=\"58\">\u7528\u6236\u540d\u731c\u6e2c\u5de5\u5177\u4e3b\u8981\u7528\u65bc\u91dd\u5c0d\u9ed8\u8a8d\u7684 Solaris SMTP \u670d\u52d9\u3002\u53ef\u4ee5\u4f7f\u7528 EXPN\u3001VRFY \u6216 RCPT TO\u3002<\/span><\/li><\/ul><\/li><\/ul><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-4855c29 elementor-widget elementor-widget-heading\" data-id=\"4855c29\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x11 DNS Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-607dc96 elementor-widget elementor-widget-text-editor\" data-id=\"607dc96\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul><li><span data-position=\"4442\" data-size=\"31\">\u5de5\u5177<\/span><ul><li><span data-position=\"4442\" data-size=\"31\">dig <\/span><\/li><li><span data-position=\"4442\" data-size=\"31\">nslookup <\/span><\/li><li><span data-position=\"4442\" data-size=\"31\">DNSRecon<\/span><\/li><\/ul><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-df8bbbd elementor-widget elementor-widget-heading\" data-id=\"df8bbbd\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x12 VoIP Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-5dcda88 elementor-widget elementor-widget-text-editor\" data-id=\"5dcda88\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul class=\"part\" data-startline=\"144\" data-endline=\"146\"><li class=\"\" data-startline=\"144\" data-endline=\"144\" data-position=\"4502\" data-size=\"0\"><span data-position=\"4502\" data-size=\"79\">VOIP\u4f7f\u7528Session Initiation Protocol(SIP)\u4f86\u555f\u7528\u5f71\u97f3\u50b3\u8f38<\/span><\/li><li class=\"\" data-startline=\"144\" data-endline=\"144\" data-position=\"4502\" data-size=\"0\"><span data-position=\"4502\" data-size=\"79\">SIP\u901a\u5e38\u4f7f\u7528UDP\/TCP2000 2001 5050 5061<\/span><\/li><li class=\"\" data-startline=\"145\" data-endline=\"146\" data-position=\"4584\" data-size=\"0\"><span data-position=\"4584\" data-size=\"116\">\u53ef\u900f\u904e\u9019\u4e9b\u8cc7\u8a0a\u4f86\u53d6\u5f97VOIP\u7684getway\u6216\u662fserver\u3001IP-PEX\u7b49\u7b49\u8cc7\u8a0a\uff0c\u9032\u800c\u57f7\u884cDOS\u3001session hijacking\u3001Caller ID Spoofing\u3001 eavesdropping(\u7aca\u807d) \u7b49<\/span><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-b151f69 elementor-widget elementor-widget-heading\" data-id=\"b151f69\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x13 IPV6 Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-ffe83fc elementor-widget elementor-widget-text-editor\" data-id=\"ffe83fc\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul class=\"part\" data-startline=\"148\" data-endline=\"150\"><li class=\"\" data-startline=\"148\" data-endline=\"148\" data-position=\"4729\" data-size=\"0\"><span data-position=\"4729\" data-size=\"4\">Enyx<\/span><\/li><li class=\"\" data-startline=\"149\" data-endline=\"150\" data-position=\"4736\" data-size=\"0\"><span data-position=\"4736\" data-size=\"11\">IPv6 Hackit<\/span><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-cd4fbe7 elementor-widget elementor-widget-heading\" data-id=\"cd4fbe7\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">0x14 BGP Enumeration<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-e7b0eaf elementor-widget elementor-widget-text-editor\" data-id=\"e7b0eaf\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ul class=\"part\" data-startline=\"152\" data-endline=\"156\"><li class=\"\" data-startline=\"152\" data-endline=\"152\" data-position=\"4770\" data-size=\"0\"><span data-position=\"4770\" data-size=\"7\">TCP 175<\/span><\/li><li class=\"\" data-startline=\"153\" data-endline=\"153\" data-position=\"4780\" data-size=\"0\"><span data-position=\"4780\" data-size=\"96\">The Border Gateway Protocol \u908a\u754c\u7db2\u95dc\u5354\u8b70 (BGP) \u662f\u4e00\u7a2e\u8def\u7531\u5354\u8b70\uff0c\u7528\u65bc\u5728 Internet \u4e0a\u7684\u4e0d\u540c\u81ea\u6cbb\u7cfb\u7d71 (AS) (\u81ea\u6cbb\u7cfb\u7d71) \u4e4b\u9593\u4ea4\u63db\u8def\u7531\u548c\u53ef\u9054\u6027\u4fe1\u606f\u3002<\/span><\/li><li class=\"\" data-startline=\"154\" data-endline=\"154\" data-position=\"4879\" data-size=\"0\"><span data-position=\"4879\" data-size=\"41\">\u7531\u65bc\u8a72\u5354\u8b70\u7528\u65bc\u5c07\u4e00\u500b AS \u9023\u63a5\u5230\u5176\u4ed6 AS\uff0c\u56e0\u6b64\u4e5f\u7a31\u70ba\u5916\u90e8 BGP\uff08eBGP\uff09\u3002<\/span><\/li><li class=\"\" data-startline=\"155\" data-endline=\"156\" data-position=\"4923\" data-size=\"0\"><span data-position=\"4923\" data-size=\"93\">BGP \u5728port 179 \u4e0a\u5275\u5efa\u5176 TCP \u6703\u8a71\u3002\u653b\u64ca\u6216\u662fBGP\u8a2d\u5b9a\u932f\u8aa4\u90fd\u6703\u5c0e\u81f4\u7db2\u8def\u7671\u7613\uff0c\u4f8b\u5982\u7576\u5e74\u7684FaceBook\u8a2d\u5b9a\u932f\u8aa4\u7671\u7613\u4e866\u5c0f\u6642\uff0c\u9084\u6709\u5c0d\u5cb8\u7684\u9577\u57ce\u4e5f\u662f\u900f\u904e\u9019\u500b\u4f86\u5be9\u67e5\u54ea\u4e9b\u7db2\u7ad9\u9023\u4e0d\u4e0a<\/span><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>0x00 \u5e38\u7528\u7684port UDP 137 (NETBIOS Name SErvice) TCP 139 (NEtBIOS Session Service)(SNB over NetBIOS) UDP 161 (Simple Network Management Protocol, SNMP) TCP\/UDP 162 SNMP Trap TCP\/UDP 53 (DNS) TCP\/UDP 135(Microsoft RPC ) TCP\/UDP 389 (LDAP) TCP 2049 (NFS) TCP 25 (SMTP) (TCP\/UDP 445) SMB over TCP SNMP Ttap TCP\/UDP 162 ISAKMP\/Internet Key Exchange (IKE) UDP 500 SSH TCP 22 0x01 Enumeration Concepts (\u679a\u8209) Get user names using email IDs Get information using default passwords Get user names using SNMP Brute force AD Get user groups from Windows Get information using DNS zone transfers NetBios, LDAP, NTP, DNS 0x02 SNMP Enumeration nmap \u6307\u4ee4:\u00a0 nmap -sU -p 161 &lt;Target IP Address&gt; auxiliary\/scanner\/snmp\/snmp_enum \u6307\u4ee4: snmp-check &lt;Target IP Address&gt; snmp-check GUI Engineer\u2019s Toolset SNMPScanner OpUtils 5 SNScan Management Information Base (MIB) MIB \u662f\u4e00\u500b\u865b\u64ec\u6578\u64da\u5eab\uff0c\u5176\u4e2d\u5305\u542b SNMP \u7ba1\u7406\u7684\u6240\u6709\u7db2\u7d61\u5c0d\u8c61\u7684\u6b63\u5f0f\u63cf\u8ff0\u3002MIB elements are recognized using object identifiers (OIDs) DHCP.MIB HOSTMIB.MIB:\u76e3\u63a7\u548c\u7ba1\u7406\u4e3b\u6a5f\u8cc7\u6e90 LNMIB2.MIB\uff1a\u5305\u542b\u5de5\u4f5c\u7ad9\u548c\u670d\u52d9\u5668\u670d\u52d9\u7684\u5c0d\u50cf\u985e\u578b MIB_II.MIB\uff1a\u4f7f\u7528\u7c21\u55ae\u7684\u67b6\u69cb\u548c\u7cfb\u7d71\u7ba1\u7406\u57fa\u65bc TCP\/IP \u7684 Internet WINS.MIB\uff1a\u7528\u65bc Windows Internet \u540d\u7a31\u670d\u52d9 (WINS) \u5176\u4ed6\u5de5\u5177 snmpcheck softperfect network Scanner Network Performance Monitor OpUtils PRTG Network Monitor Enginner\u2019s Toolset 0x03 Windows System Basics Security Context &#8211; \u7528\u6236\u7684\u8eab\u5206\u8207\u8a8d\u8b49\u8cc7\u8a0a Security Identifier (SID) &#8211; \u8b58\u5225\u4f7f\u7528\u8005\u3001\u7fa4\u7d44\u548c\u5e33\u6236 Resource Identifier (RID) &#8211; \u6a19\u793aSID\u5e33\u6236\u7684\u6b0a\u9650 USER NUMBER SID \u6700\u5f8c\u9762\u70ba\u4f7f\u7528\u8005\u865f\u78bc Example SID: S-1-5-21-3874928736-367528774-1298337465**-500** Administrator Account &#8211; SID of 500 Regular Accounts &#8211; start with a SID of 1000 Linux Systems used user IDs (UID) and group IDs (GID). Found in \/etc\/passwd SAM Database file where all local passwords are stored (encrypted) (\u6240\u6709\u5bc6\u78bc) Stored in C:WindowsSystem32Config Linux Enumeration Commands in PowerShell or CmdPrompt finger &#8211; \u4f7f\u7528\u8005\u548c\u96fb\u8166\u7684\u8cc7\u8a0a rpcclient &#8211; info on RPC in the environment showmount &#8211; \u986f\u793a\u6240\u6709\u7684shared directories Look for share resources (NetBIOS) net view sysName Windows SysInternals 0x04 NetBIOS Enumeration \u6307\u4ee4 :nma&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[5],"tags":[],"class_list":["post-276","post","type-post","status-publish","format-standard","hentry","category-research-study"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>CEH v11 Moudle 4 - Enumeration - Ares Vlog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.yuyiares.com\/?p=276\" \/>\n<meta property=\"og:locale\" content=\"zh_TW\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"CEH v11 Moudle 4 - Enumeration - Ares Vlog\" \/>\n<meta property=\"og:description\" content=\"0x00 \u5e38\u7528\u7684port UDP 137 (NETBIOS Name SErvice) TCP 139 (NEtBIOS Session Service)(SNB over NetBIOS) UDP 161 (Simple Network Management Protocol, SNMP) TCP\/UDP 162 SNMP Trap TCP\/UDP 53 (DNS) TCP\/UDP 135(Microsoft RPC ) TCP\/UDP 389 (LDAP) TCP 2049 (NFS) TCP 25 (SMTP) (TCP\/UDP 445) SMB over TCP SNMP Ttap TCP\/UDP 162 ISAKMP\/Internet Key Exchange (IKE) UDP 500 SSH TCP 22 0x01 Enumeration Concepts (\u679a\u8209) Get user names using email IDs Get information using default passwords Get user names using SNMP Brute force AD Get user groups from Windows Get information using DNS zone transfers NetBios, LDAP, NTP, DNS 0x02 SNMP Enumeration nmap \u6307\u4ee4:\u00a0 nmap -sU -p 161 &lt;Target IP Address&gt; auxiliary\/scanner\/snmp\/snmp_enum \u6307\u4ee4: snmp-check &lt;Target IP Address&gt; snmp-check GUI Engineer\u2019s Toolset SNMPScanner OpUtils 5 SNScan Management Information Base (MIB) MIB \u662f\u4e00\u500b\u865b\u64ec\u6578\u64da\u5eab\uff0c\u5176\u4e2d\u5305\u542b SNMP \u7ba1\u7406\u7684\u6240\u6709\u7db2\u7d61\u5c0d\u8c61\u7684\u6b63\u5f0f\u63cf\u8ff0\u3002MIB elements are recognized using object identifiers (OIDs) DHCP.MIB HOSTMIB.MIB:\u76e3\u63a7\u548c\u7ba1\u7406\u4e3b\u6a5f\u8cc7\u6e90 LNMIB2.MIB\uff1a\u5305\u542b\u5de5\u4f5c\u7ad9\u548c\u670d\u52d9\u5668\u670d\u52d9\u7684\u5c0d\u50cf\u985e\u578b MIB_II.MIB\uff1a\u4f7f\u7528\u7c21\u55ae\u7684\u67b6\u69cb\u548c\u7cfb\u7d71\u7ba1\u7406\u57fa\u65bc TCP\/IP \u7684 Internet WINS.MIB\uff1a\u7528\u65bc Windows Internet \u540d\u7a31\u670d\u52d9 (WINS) \u5176\u4ed6\u5de5\u5177 snmpcheck softperfect network Scanner Network Performance Monitor OpUtils PRTG Network Monitor Enginner\u2019s Toolset 0x03 Windows System Basics Security Context &#8211; \u7528\u6236\u7684\u8eab\u5206\u8207\u8a8d\u8b49\u8cc7\u8a0a Security Identifier (SID) &#8211; \u8b58\u5225\u4f7f\u7528\u8005\u3001\u7fa4\u7d44\u548c\u5e33\u6236 Resource Identifier (RID) &#8211; \u6a19\u793aSID\u5e33\u6236\u7684\u6b0a\u9650 USER NUMBER SID \u6700\u5f8c\u9762\u70ba\u4f7f\u7528\u8005\u865f\u78bc Example SID: S-1-5-21-3874928736-367528774-1298337465**-500** Administrator Account &#8211; SID of 500 Regular Accounts &#8211; start with a SID of 1000 Linux Systems used user IDs (UID) and group IDs (GID). Found in \/etc\/passwd SAM Database file where all local passwords are stored (encrypted) (\u6240\u6709\u5bc6\u78bc) Stored in C:WindowsSystem32Config Linux Enumeration Commands in PowerShell or CmdPrompt finger &#8211; \u4f7f\u7528\u8005\u548c\u96fb\u8166\u7684\u8cc7\u8a0a rpcclient &#8211; info on RPC in the environment showmount &#8211; \u986f\u793a\u6240\u6709\u7684shared directories Look for share resources (NetBIOS) net view sysName Windows SysInternals 0x04 NetBIOS Enumeration \u6307\u4ee4 :nma...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.yuyiares.com\/?p=276\" \/>\n<meta property=\"og:site_name\" content=\"Ares Vlog\" \/>\n<meta property=\"article:published_time\" content=\"2022-10-03T05:45:09+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-10-03T06:02:57+00:00\" \/>\n<meta name=\"author\" content=\"admin\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u4f5c\u8005:\" \/>\n\t<meta name=\"twitter:data1\" content=\"admin\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u9810\u4f30\u95b1\u8b80\u6642\u9593\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 \u5206\u9418\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/?p=276#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/?p=276\"},\"author\":{\"name\":\"admin\",\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/#\\\/schema\\\/person\\\/3d4db07eab24e08cc9eea662ef3053ac\"},\"headline\":\"CEH v11 Moudle 4 &#8211; Enumeration\",\"datePublished\":\"2022-10-03T05:45:09+00:00\",\"dateModified\":\"2022-10-03T06:02:57+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/?p=276\"},\"wordCount\":503,\"commentCount\":0,\"articleSection\":[\"Research &amp; Study\"],\"inLanguage\":\"zh-TW\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.yuyiares.com\\\/?p=276#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/?p=276\",\"url\":\"https:\\\/\\\/www.yuyiares.com\\\/?p=276\",\"name\":\"CEH v11 Moudle 4 - Enumeration - Ares Vlog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/#website\"},\"datePublished\":\"2022-10-03T05:45:09+00:00\",\"dateModified\":\"2022-10-03T06:02:57+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/#\\\/schema\\\/person\\\/3d4db07eab24e08cc9eea662ef3053ac\"},\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/?p=276#breadcrumb\"},\"inLanguage\":\"zh-TW\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.yuyiares.com\\\/?p=276\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/?p=276#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.yuyiares.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"CEH v11 Moudle 4 &#8211; Enumeration\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/#website\",\"url\":\"https:\\\/\\\/www.yuyiares.com\\\/\",\"name\":\"Ares Vlog\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.yuyiares.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"zh-TW\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.yuyiares.com\\\/#\\\/schema\\\/person\\\/3d4db07eab24e08cc9eea662ef3053ac\",\"name\":\"admin\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-TW\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/7a48eb75ce0e81d088764746bc78b3a75ae3f2fbe40d6f69bbc7cfd2fa004a03?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/7a48eb75ce0e81d088764746bc78b3a75ae3f2fbe40d6f69bbc7cfd2fa004a03?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/7a48eb75ce0e81d088764746bc78b3a75ae3f2fbe40d6f69bbc7cfd2fa004a03?s=96&d=mm&r=g\",\"caption\":\"admin\"},\"sameAs\":[\"https:\\\/\\\/www.yuyiares.com\"],\"url\":\"https:\\\/\\\/www.yuyiares.com\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"CEH v11 Moudle 4 - Enumeration - Ares Vlog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.yuyiares.com\/?p=276","og_locale":"zh_TW","og_type":"article","og_title":"CEH v11 Moudle 4 - Enumeration - Ares Vlog","og_description":"0x00 \u5e38\u7528\u7684port UDP 137 (NETBIOS Name SErvice) TCP 139 (NEtBIOS Session Service)(SNB over NetBIOS) UDP 161 (Simple Network Management Protocol, SNMP) TCP\/UDP 162 SNMP Trap TCP\/UDP 53 (DNS) TCP\/UDP 135(Microsoft RPC ) TCP\/UDP 389 (LDAP) TCP 2049 (NFS) TCP 25 (SMTP) (TCP\/UDP 445) SMB over TCP SNMP Ttap TCP\/UDP 162 ISAKMP\/Internet Key Exchange (IKE) UDP 500 SSH TCP 22 0x01 Enumeration Concepts (\u679a\u8209) Get user names using email IDs Get information using default passwords Get user names using SNMP Brute force AD Get user groups from Windows Get information using DNS zone transfers NetBios, LDAP, NTP, DNS 0x02 SNMP Enumeration nmap \u6307\u4ee4:\u00a0 nmap -sU -p 161 &lt;Target IP Address&gt; auxiliary\/scanner\/snmp\/snmp_enum \u6307\u4ee4: snmp-check &lt;Target IP Address&gt; snmp-check GUI Engineer\u2019s Toolset SNMPScanner OpUtils 5 SNScan Management Information Base (MIB) MIB \u662f\u4e00\u500b\u865b\u64ec\u6578\u64da\u5eab\uff0c\u5176\u4e2d\u5305\u542b SNMP \u7ba1\u7406\u7684\u6240\u6709\u7db2\u7d61\u5c0d\u8c61\u7684\u6b63\u5f0f\u63cf\u8ff0\u3002MIB elements are recognized using object identifiers (OIDs) DHCP.MIB HOSTMIB.MIB:\u76e3\u63a7\u548c\u7ba1\u7406\u4e3b\u6a5f\u8cc7\u6e90 LNMIB2.MIB\uff1a\u5305\u542b\u5de5\u4f5c\u7ad9\u548c\u670d\u52d9\u5668\u670d\u52d9\u7684\u5c0d\u50cf\u985e\u578b MIB_II.MIB\uff1a\u4f7f\u7528\u7c21\u55ae\u7684\u67b6\u69cb\u548c\u7cfb\u7d71\u7ba1\u7406\u57fa\u65bc TCP\/IP \u7684 Internet WINS.MIB\uff1a\u7528\u65bc Windows Internet \u540d\u7a31\u670d\u52d9 (WINS) \u5176\u4ed6\u5de5\u5177 snmpcheck softperfect network Scanner Network Performance Monitor OpUtils PRTG Network Monitor Enginner\u2019s Toolset 0x03 Windows System Basics Security Context &#8211; \u7528\u6236\u7684\u8eab\u5206\u8207\u8a8d\u8b49\u8cc7\u8a0a Security Identifier (SID) &#8211; \u8b58\u5225\u4f7f\u7528\u8005\u3001\u7fa4\u7d44\u548c\u5e33\u6236 Resource Identifier (RID) &#8211; \u6a19\u793aSID\u5e33\u6236\u7684\u6b0a\u9650 USER NUMBER SID \u6700\u5f8c\u9762\u70ba\u4f7f\u7528\u8005\u865f\u78bc Example SID: S-1-5-21-3874928736-367528774-1298337465**-500** Administrator Account &#8211; SID of 500 Regular Accounts &#8211; start with a SID of 1000 Linux Systems used user IDs (UID) and group IDs (GID). Found in \/etc\/passwd SAM Database file where all local passwords are stored (encrypted) (\u6240\u6709\u5bc6\u78bc) Stored in C:WindowsSystem32Config Linux Enumeration Commands in PowerShell or CmdPrompt finger &#8211; \u4f7f\u7528\u8005\u548c\u96fb\u8166\u7684\u8cc7\u8a0a rpcclient &#8211; info on RPC in the environment showmount &#8211; \u986f\u793a\u6240\u6709\u7684shared directories Look for share resources (NetBIOS) net view sysName Windows SysInternals 0x04 NetBIOS Enumeration \u6307\u4ee4 :nma...","og_url":"https:\/\/www.yuyiares.com\/?p=276","og_site_name":"Ares Vlog","article_published_time":"2022-10-03T05:45:09+00:00","article_modified_time":"2022-10-03T06:02:57+00:00","author":"admin","twitter_card":"summary_large_image","twitter_misc":{"\u4f5c\u8005:":"admin","\u9810\u4f30\u95b1\u8b80\u6642\u9593":"4 \u5206\u9418"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.yuyiares.com\/?p=276#article","isPartOf":{"@id":"https:\/\/www.yuyiares.com\/?p=276"},"author":{"name":"admin","@id":"https:\/\/www.yuyiares.com\/#\/schema\/person\/3d4db07eab24e08cc9eea662ef3053ac"},"headline":"CEH v11 Moudle 4 &#8211; Enumeration","datePublished":"2022-10-03T05:45:09+00:00","dateModified":"2022-10-03T06:02:57+00:00","mainEntityOfPage":{"@id":"https:\/\/www.yuyiares.com\/?p=276"},"wordCount":503,"commentCount":0,"articleSection":["Research &amp; Study"],"inLanguage":"zh-TW","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.yuyiares.com\/?p=276#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.yuyiares.com\/?p=276","url":"https:\/\/www.yuyiares.com\/?p=276","name":"CEH v11 Moudle 4 - Enumeration - Ares Vlog","isPartOf":{"@id":"https:\/\/www.yuyiares.com\/#website"},"datePublished":"2022-10-03T05:45:09+00:00","dateModified":"2022-10-03T06:02:57+00:00","author":{"@id":"https:\/\/www.yuyiares.com\/#\/schema\/person\/3d4db07eab24e08cc9eea662ef3053ac"},"breadcrumb":{"@id":"https:\/\/www.yuyiares.com\/?p=276#breadcrumb"},"inLanguage":"zh-TW","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.yuyiares.com\/?p=276"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.yuyiares.com\/?p=276#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.yuyiares.com\/"},{"@type":"ListItem","position":2,"name":"CEH v11 Moudle 4 &#8211; Enumeration"}]},{"@type":"WebSite","@id":"https:\/\/www.yuyiares.com\/#website","url":"https:\/\/www.yuyiares.com\/","name":"Ares Vlog","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.yuyiares.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"zh-TW"},{"@type":"Person","@id":"https:\/\/www.yuyiares.com\/#\/schema\/person\/3d4db07eab24e08cc9eea662ef3053ac","name":"admin","image":{"@type":"ImageObject","inLanguage":"zh-TW","@id":"https:\/\/secure.gravatar.com\/avatar\/7a48eb75ce0e81d088764746bc78b3a75ae3f2fbe40d6f69bbc7cfd2fa004a03?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/7a48eb75ce0e81d088764746bc78b3a75ae3f2fbe40d6f69bbc7cfd2fa004a03?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/7a48eb75ce0e81d088764746bc78b3a75ae3f2fbe40d6f69bbc7cfd2fa004a03?s=96&d=mm&r=g","caption":"admin"},"sameAs":["https:\/\/www.yuyiares.com"],"url":"https:\/\/www.yuyiares.com\/?author=1"}]}},"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=\/wp\/v2\/posts\/276","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=276"}],"version-history":[{"count":3,"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=\/wp\/v2\/posts\/276\/revisions"}],"predecessor-version":[{"id":279,"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=\/wp\/v2\/posts\/276\/revisions\/279"}],"wp:attachment":[{"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=276"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=276"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.yuyiares.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=276"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}