User:ClueBot IV/WPA/Inconclusive

This is a partial archive of WP:OP. {| class="wikitable sortable" ! IP address !! user !! talk !! edits !! log !! scan !! block !! Notes || : ClueBot IV 19:40, 23 October 2007 (UTC)
 * Lots of services running, but all secure. AmiDaniel (talk) 00:24, 24 October 2007 (UTC)

|| Again, lots of services running, but all secure. AmiDaniel (talk) 00:24, 24 October 2007 (UTC)


 * ClueBot IV 01:58, 25 October 2007 (UTC)

|| AmiDaniel (talk) 00:24, 24 October 2007 (UTC)


 * ClueBot IV 01:58, 25 October 2007 (UTC)

|| : ClueBot IV 19:17, 23 October 2007 (UTC)


 * AmiDaniel (talk) 00:24, 24 October 2007 (UTC)

|| Reported on WP:ANI. Dean Wormer 03:52, 22 October 2007 (UTC)
 * ClueBot IV 04:21, 22 October 2007 (UTC)


 * AmiDaniel (talk) 00:43, 24 October 2007 (UTC)

|| Reported on WP:ANI. Dean Wormer 03:46, 22 October 2007 (UTC)
 * ClueBot IV 03:53, 22 October 2007 (UTC)
 * AmiDaniel (talk) 00:43, 24 October 2007 (UTC)

|| Another test. -- Avi 21:18, 17 October 2007 (UTC)
 * ClueBot IV 21:26, 17 October 2007 (UTC)
 * No open ports - host down at time of scan. Suggest scanning again in a day or so.  -- Cobi(t 02:07, 18 October 2007 (UTC)

|| -- Avi 21:01, 17 October 2007 (UTC)
 * ClueBot IV 21:06, 17 October 2007 (UTC)
 * No open ports - host down at time of scan. Suggest scanning again in a day or so.  -- Cobi(t 02:07, 18 October 2007 (UTC)

|| Funny issues with hostname resolution. -- Avi 20:34, 15 October 2007 (UTC)
 * ClueBot IV 20:42, 15 October 2007 (UTC)
 * No open ports - host down at time of scan. Suggest scanning again in a day or so.  -- Cobi(t 02:07, 18 October 2007 (UTC)

|| Apparent sock puppet of banned American user User:Polygamistx4 using an Australian IP address. - Jehochman Talk 05:03, 15 October 2007 (UTC)
 * ClueBot IV 05:11, 15 October 2007 (UTC)
 * No open ports - host down at time of scan. Suggest scanning again in a day or so.  -- Cobi(t 02:07, 18 October 2007 (UTC)

|| Edits look like a proxy ... if you google this IP, it apparently is being used for spam, so it is probably a compromised machine of some kind. -- B 15:33, 5 October 2007 (UTC)


 * ClueBot IV 15:44, 5 October 2007 (UTC)
 * -The edits, google hits, and WHOIS (Sound of Hope Radio Network?) do seem suspicious and port 80 appears to be an open HTTP port, however, I have yet to be able to connect through it. Perhaps part of a Botnet? Mr.  Z- man  21:38, 8 October 2007 (UTC)

|| I found the following types of open proxies on User:70.89.86.6 (Special:Contributions/70.89.86.6 | Special:Blockip/70.89.86.6) which I checked when they vandalized Paris: HTTP. ClueBot 16:30, 3 October 2007 (UTC)
 * ClueBot IV 16:38, 3 October 2007 (UTC)
 * It appears that this host is now offline or is firewalling my IP address. ClueBot IV's assessment may be wrong.  -- Cobi(t 16:41, 3 October 2007 (UTC)

C:\Program Files\Nmap>nmap -P0 -A -p 8080 70.89.86.6

Starting Nmap 4.20 ( http://insecure.org ) at 2007-10-03 13:04 Eastern Daylight Time Warning: OS detection for 70.89.86.6 will be MUCH less reliable because we did not find at least 1 open and 1 closed TCP port Warning: OS detection will be MUCH less reliable because we did not find at lea st 1 open and 1 closed TCP port Interesting ports on 70-89-86-6-smc-jax-fl.hfc.comcastbusiness.net (70.89.86.6):

PORT    STATE    SERVICE    VERSION 8080/tcp filtered http-proxy Device type: switch|broadband router|printer|load balancer|general purpose|route r Running: Bay Networks embedded, Billion embedded, Canon embedded, Cisco embedded , Linux 2.4.X|2.6.X, Microsoft Windows 2003/.NET|NT/2K/XP, RiverStone embedded, Sun Solaris 8 Too many fingerprints match this host to give specific OS details

OS and Service detection performed. Please report any incorrect results at http: //insecure.org/nmap/submit/. Nmap finished: 1 IP address (1 host up) scanned in 7.387 seconds
 * If it was an open proxy it's closed/filtered now. Mr.  Z- man  17:16, 3 October 2007 (UTC)
 * It's open now (blocked). -- zzuuzz (talk) 10:15, 5 October 2007 (UTC)