nmap arabic network scanning
Post on 14-Jan-2016
191 views
DESCRIPTION
Nmap Arabic Network Scanning.pdfTRANSCRIPT
-
~ ~
gninnacS krowteN cibarA pamN :
..
-
~ ~
-
~ ~
Nmap Arabic
abdallah kurdi Copyright
: ..
kurdi.blogspot.com-http://abd/
http://www.Arhack.net
:
A. BSD University of California, Berkeley CentOS is property of CentOS Ltd. B. Software in the Public Interest, Inc are Debian C. Fedora is a registered trademark of Red Hat, Inc D. FreeBSD is a registered trademark of The FreeBSD Foundation E. Gentoo is a registered trademark of The Gentoo Foundation F. Linux is the registered trademark of Linus Torvalds G. Mac OS X is a registered trademark of Apple, Inc. H. Windows is a registered trademark of Microsoft Corporation I. Nmap is a registered trademark of Insecure.Com LLC
J. Red Hat is a registered trademark of Red Hat, Inc. K. Ubuntu is a registered trademark of Canonical Ltd. L. UNIX is a registered trademark of The Open Group
. .
" " /
-
~ ~
-
~ ~
.............................................................................................................................................................
......................................................................pamN:
......................................................... :
......................................................................... :
......................................................... :
.................................................: ...
..................................................... :
...............................................................: ........
...................................................: .........
............................................................. .......... :
..................................... :
........................................................pamneZ:
.......................(...............................ESN ) pamN:
..........................(...............................ffidN) :
........................................................................: ....................................................................................................)pamN(:
...............................................................................................)pamN( :
............................................................................................................()RDIC :
.......................................................................(.........)PI/PCT :
-
~ ~
-
~ ~
............................................................................................................... ....
................................................................................................................................................. ...
.........................................................................................................)pamN(: :
............................................................................................................................................................ ....
...............................................................................................................................................PX/ )pamN(
........................................................................................................................................ )pamN(
............................................................................................................................................
....................................................................................................................................... ()pamN
................................................................................................................................. X SO caM )pamN(
................................................................................................... :
.............................................................................................................................................
.................................................................................................................................................................. ......
............................................................................................................................................................ .........
..............................................................................................................................................................PI
..................................................................................................................................................................
......................................................................................................................................................................
........................................................................................................... ................................................
............................................................................................................................... .....................
..........................................................................................................................................................
.............................................................................................................................................................
...................................................................................................................................( ...................6vPI )
.............................................................................. ............................ :
..........................................................................................................................................................
.................................................................................................................................................................. )gniP(
....................................................................................................................................................... )gniP(
......................................................................................................................................NYS PCT gniP ( )
.........................................................................................................................................KCA PCT )gniP(
................................................................................................................................................ PDU )gniP(
...................................................................................................................................................................gniP TINI PTCS
..................................................................................................................................................................gniP ohcE PMCI
....................................................................................................................................................... )PMCI( )gniP(
..................................................................................................................... gniP ksaM sserddA PMCI
.......................................................................................................... gniP gniP locotorP PI
............................................................................................................................................................................ gniP PRA
.............................................................. ............................................................................................. etuor ecarT
............................................................................................................................................................... )SND(
....................................... ................................................................................................................. )SND(
-
~ ~
.....................................................................................................................................................)SND(
................................................................................................................................................ / )SND(
......................................................................................................................................................)TSOH(/
.....: .....................................................................................
................................................................................................................................ /
...................................................(....................................................................................)NYS PCT
.....................................................................................................................................................)PCT(
................................................................................................................................................................ )PDU(
.................................................................................(.....................................................................)LLUN PCT
..........................................( ...............................................................................................................)NIF PCT
...............................(............................................................................................................................)samX
.............................................................................................................................................)PCT(
.............................................................................................................................................. ()KCA PCT
..................................................................................................................................... locotorP PI( )
.......................................................................................................................................................( )tenrehtE
....................................................................................................................................................................... PI
................................................................................: /
.........................................................................................................................../
................................................. ....................................................................................................
.............................. ....................................................................................................................... /
...........................................................................................................................................................
........................................................................ ......................................................................................
...................................................... ............................................................................................................
.......................................................................................................................................................
...........................................................................................................................................
.............................................: ......................................
.....................................................................................................................................................
............................................................................................................................................................
.........................................................................................................................................................( )PI/PCT
........................................................................... .......................................................................
......................................................................... .................................................................................
................................................................................................................................
.....................................................................................................................................................( CPR )
.........................................................................................................:
................................................. ................................................................................................
.............................................................................................................................................
.................................................................. ...........................................................................................
..........................................................................................................................................
-
~ ~
.............................................................................................................................................
.............................................................................................................................................
...........................................................................................................................................
.....................................................( ........................................................................................................)TTR
.............................................................................................................................................................( )TTR
..............................................................................................................................................
................................................................(..........................................................................................LTT )
.................................................................. .......................................................................................
....................................................................... .......................................................................
.............................................................................................................................................
................................................................................. ..........................................................................
..................................................................................... ....................................................................
.....................................................................................................................................
.............................................................................: ..........
................................................................................................. ...........................
................................................................................................................................................... ...........
................................................................................................................................. )UTM(
.............................................................................................................. .............................................
..................................................................................................................( ............................)eibmoZ eldI
......................................................................................................................................................
.............................................................................................................................................................
.............................................................................................................................................
........................................................................................................................................................... )CAM(
.............................................................................................................................................................
................................................................................... ...................... :
................................................................................................................................................ ...
................................................................................................................................................. .........
..................................................................................................................................................... )LMX(
.........................................................................................................................( .................)elbaperG
........................................................................................................................... ..............
..................................................................................................................................................
.......................................................................................................................................................( .......)t331
-
~ ~
................................................................... :
...............................................................................................................
....................................... .............................................................................................................
.................................................................................................................................................... )pamN(
................................................. ...................................................................................................................
....................................................... ...............................................................................................................
..............................................................................................................................
........................................................................................................................................................
....................................................... ...........................................................................................................
............................................................................................................................................
......................................................................................................................................................
-
~ ~
............................................................................. ( pamneZ: )
....................................................................................................................... (pamneZ)
..............................................................................................................................................( )pamneZ
.......................................................................................................................................... )pamneZ(
..........................................( ....................................................................................................)pamneZ
...................................................................................................................................................................
............................................................................. ..........................................................................
........................................... ........................................................................................................
...................................... ................................................................................................................
................................................................................. .......................................................................
........................................ ..........................................................................................................
.................................. ...................................................................................................
.......................................................................... ...................................................................
....................................... .................................................................................................
..............................................................................)ESN( . (pamN) :
..................................................................................................................................... )pamN(
................................................... ............................................................................................. )tpircS(
........................... ................................................................................................................ )tpircS(
........................................................................................................................................................ )tpircS(
........................................................... ......................................................................... )tpircS(
............................. ................................................................................................................ )tpircS(
....................................................................................................................................................... )tpircS(
.......................................................................................................................................... )tpircS(
........................................................................................................... ffidN:
.................................................................................................................................................. )ffidN(
...................................... ............................................................................................. )ffidN(
..................................................................................................................................... )ffidN(
....................................................................................................................................... )LMX(
.....: .............................................................................................
.................................................... ........................................................................................
-
~ ~
...................................................................................................................................................
.............................................................................................................................................
........................................................................................................................................................
................................ ...............................................................................................................
.............................................................................................................................................................. krahseriW
............................................................................................................................................ gro.erucesnI.emnacS
...................... ................................................................................................................)pamN(
.................................................................................................................................... )pamN(
.................................... ...................................................................................................
....................................................................................................................................... )RDIC(
......................................( ..........................................................................)PI/PCT
-
~ ~
( pamN)
)AIRYS.RCEH( : ^__^
-
~ ~
-
~ ~
UNG )pamN(
lmth.lpg/tfelypoc/gro.ung.www
( PI / PCT )
" " )pamN( .
. )pamN( : /
( )
X SO caM swodniW
( ) ( ESN) pamN
( ) )pamN( ffidN
( ) pamneZ
.
.
: pamN . pamN
-
~ ~
-
~ ~
pamN pamN pamN
.pamn/gro.stsilces.www-ved
. pamN
./ / gro.pamn.www )pamN(
PI/PCT
() ( pamN)
.............. /timbus/gro.pamn.www
pamN
. pamN
. gro.erucesni pamN
.lmth.gnisitrevda/gro.erucesni.www
( pamN) :
( pamN) lmth.hcraes/gro.erucesni.www
-
~ ~
:C\gro.erucesni.emnacs pamn> )pamN(
$ gro.erucesni.emnacs pamn / / SO X )pamN(
#gro.erucesni.emnacs pamn tooR/ X SO / /
$gro.erucesni.emnacs pamn odus / / SO X
# pamn-gro.erucesni.emnacs 2T
:
: )2t( )2T(
001
-
~ ~
)pamN(:
-
~ ~
. X SO swodniW tfosorciM )pamN(
. pamN pamN
X SO
.
SO caM
)pamn(
:
swodniW pamN
pamN
( ) pamN
X SO caM pamN
-
~ ~
swodniW pamN
...
.gro.pamn.www pamN
...
pamN(). ( ) . pamN
swodniW
-
~ ~
( pacPniW)
)pacPniW(
-
~ ~
( pacPniW) (pacPniW)
(pacPniW) ( pamN)
pacPniW
-
~ ~
)Nmap (
/ / ./
Nmap
(Nmap)
C:\Users\ABD>nmap scanme.insecure.org
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for scanme.insecure.org (74.207.244.221(
Host is up (0.24s latency.(
rDNS record for 74.207.244.221: scanme.nmap.org
Not shown: 963 closed ports, 34 filtered ports
PORT STATE SERVICE
/tcp open ssh
/tcp open http
/tcp open nping-echo
Nmap done: 1 IP address (1 host up) scanned in 8.16 seconds
-
~ ~
pamN
. )pamN(
(. ) ()pamN
.....
....
....
: pamN
pamN llatsni teg-tpa #
pamN llatsni muy #
# pamN egremE
V- pamN #
gro.pamn//:ptth ( 52.6 noisrev pamN
-
~ ~
..... pamN
gro.pamn.www 52.6pamN
pamN
. pamN
...
lmth.daolnwod/gro.pamn.www
pamN
: pamN
zgt.52.6-pamn/tsid/gro.pamn//:ptth tegw $
--3102-40- 64:01 9-- pamn/tsid/gro.pamn//:ptth-zgt.52.6 84.431.31.46 ...gro.pamn gnivloseR
.detcennoc ...08:|84.431.31.46|gro.pamn ot gnitcennoC
KO 002 ...esnopser gnitiawa ,tnes tseuqer PTTH
[rat-x/noitacilppa[ )M4.9( 6432099 :htgneL
'zgt.52.6-pamn` :ot gnivaS
s5.7 ni s/M. ,,%]================================
-
~ ~
....
Nmap .)( cd nmap -6.25/ . configure && make/.
...
.
$ cd nmap-6.25/ $ ./configure && make checking build system type... x86_64-unknown-linux-gnu checking host system type... x86_64-unknown-linux-gnu checking for gcc... gcc checking for C compiler default output file name... a.out checking whether the C compiler works... yes ...
:
$ sudo make install
Password: ********
/usr/bin/install -c -d /usr/local/bin /usr/local/share/man/man1
/usr/local/share/nmap
/usr/bin/install -c -c -m 755 nmap
/usr/local/bin/nmap /usr/bin/strip -x /usr/local/bin/nmap
/usr/bin/install -c -c -m 644 docs/nmap.1 /usr/local/share/man/man1/
/usr/bin/install -c -c -m 644 docs/nmap.xsl /usr/local/share/nmap/
NMAP SUCCESSFULLY INSTALLED
$
-
~ ~
...
)Nmap (
/
Nmap
$ nmap local host
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 CDT
Warning: Hostname localhost resolves to 2 IPs. Using 127.0.0.1.
Interesting ports on e6400 (127.0.0.1):
Not shown: 993 closed ports
PORT STATE SERVICE
22/tcp open ssh
25/tcp open smtp
111/tcp open rpcbind
139/tcp open netbios-ssn
445/tcp open microsoft-ds
631/tcp open ipp
2049/tcp open nfs
Nmap done: 1 IP address (1 host up) scanned in 0.20 seconds
-
~ ~
X SO caM pamN
..
gro.pamn.www X SO caM )pamN(
..
. pamN . pamN
X SO caM )pamN( : 00.5 .
-
~ ~
..
. . pamN (. )
-
~ ~
..
. pamN
X SO caM pamN
-
~ ~
...
X SO caM tsoh lacol pamn pamN
lanimreT lanimreT
X SO caM pamN
. pamN
-
~ ~
-
~ ~
. : pamN
. pamN
.. .
oduS . pamN
:
.
.
.
-
~ ~
( pamN ) PI ( pamN )
XXX .. PI
... )xxx( pamN :
. .
ECIVRES
ETATS
RTOP
pct/08 nepo ptth
... )PI/PCT( \
1.01.861.291 pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.01.861.291 rof troper nacs pamN
.)ycnetal s920.0( pu si tsoH
strop deretlif 999 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sdnoces 01.32 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
-
~ ~
(. ) PI . ()pamN
2XXX 1XXX ( pamN) :
. pamN
101.01.861.291 001.01.861.291 1.01.861.291 pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.01.861.291 rof troper nacs pamN
.)ycnetal s150.0( pu si tsoH
strop deretlif 999 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
001.01.861.291 rof troper nacs pamN
.)ycnetal s350.0( pu si tsoH
strop deretlif 999 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sdnoces 04.63 ni dennacs )pu stsoh 2( sesserdda PI 3 :enod pamN
>DBA\sresU\:C
pamN : ^_^ . 101,001,1.1.861.291
-
~ ~
PI
. PI
pamN) ( :
PI
. 001,1.01.861.291 1.01.861.291 PI pamN PI *001.1.861.291 pamN / .
PI * 001.1.861.291 *001.1.861.291
001-1.01.861.291 pamN>DBA\sresU\:C TDC 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS :1.01.861.291 no strop gnitseretnI strop deretlif 799 :nwohs toN ECIVRES ETATS TROP atad-ptf desolc pct/02 ptf desolc pct/12 ptth nepo pct/08 :001.01.861.291 no strop gnitseretnI strop desolc 599 :nwohs toN ECIVRES ETATS TROP hss nepo pct/22 dnibcpr nepo pct/111 nss-soibten nepo pct/931 sd-tfosorcim nepo pct/544 sdnoces 48.52 ni dennacs )pu stsoh 2( sesserdda PI 001 :enod pamN
0.552 )*( :
-
~ ~
:
)/( ( RDIC) pamN
RDIC( pamN) / :
)/( RIDC
) ( . ( )/ RDIC 1.01.861.291 pamN
42/1.01.861.291 pamN>DBA\sresU\:C TDC 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS :1.01.861.291 no strop gnitseretnI strop deretlif 699 :nwohs toN ECIVRES ETATS TROP atad-ptf desolc pct/02 ptf desolc pct/12 tenlet desolc pct/32 ptth nepo pct/08 :001.01.861.291 no strop gnitseretnI strop desolc 599 :nwohs toN ECIVRES ETATS TROP hss nepo pct/22 dnibcpr nepo pct/111 nss-soibten nepo pct/931 sd-tfosorcim nepo pct/544 sfn nepo pct/9402 dnoces 87.8 ni dennacs )pu stsoh 2( sesserdda PI 652 :enod pamN
-
~ ~
( ) PI
. pamN
txt.tsil . txt.tsil
txt.tsil
.txt.tsil pamN - Li
: ^_^ Li pamN
txt.txt.tsil\potkseD\DBA\sresU\:C Li- pamn>DBA\sresU\:C
emiT dradnatS cificaP 42:02 03-21-2102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
nacS htlaetS NYS gniogrednu 2 ,)pu 2( detelpmoc stsoh 1 ;despale 91:00:0 :statS
)gniniamer 10:00:0( 42:02 :CTE ;enod %09.48 tuobA :gnimiT nacS htlaetS NYS
1.01.861.291 rof troper nacs pamN
.)ycnetal s820.0( pu si tsoH
strop deretlif 999 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
001.01.861.291 rof troper nacs pamN
.)ycnetal s720.0( pu si tsoH
strop deretlif 999 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sdnoces 59.91 ni dennacs )pu stsoh 2( sesserdda PI 3 :enod pamN
1.01.861.291 001.01.861.291 101.01.861.291
101.01.861.291 001.01.861.291 1.01.861.291
-
~ ~
)pamN( . ( ( ) )Ri ... .
XXX Ri pamN :
PI
. PI pamN )1Ri-(
. ( )
.
1 Ri- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
sdnoces 96.8 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
. :
-
~ ~
)edulcxe--(
XXX edulcxe-- 42/XXX pamN :
PI
^_^
000.01.1.861.291 . )PI( ()edulcxe-- .
/ )RDIC(/ RDIC
.
001.01.861.291 edulcxe-- 42/0.01.861.291>DBA\sresU\:C TDC 64:01 9-40-3102 ) gro.pamn//:ptth ( 52.6 pamN gnitratS :1.01.861.291 no strop gnitseretnI strop deretlif 699 :nwohs toN ECIVRES ETATS TROP atad-ptf desolc pct/02 ptf desolc pct/12 tenlet desolc pct/32 ptth nepo pct/08 ...
001.01.861.291 edulcxe-- 42/0.01.861.291 pamN>DBA\sresU\:C
emiT dradnatS cificaP 92:41 13-21-2102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
-
~ ~
txt .
)elif( )edulcxe--( )elifedulcxe--(
txt.tsil elifedulcxe--
^_^ . txt.tsil
101.01.861.291 001.01.861.291 1.01.861.291
1.01.861.291
001.01.861.291
101.01.861.291
txt.tsil elifedulcxe-- 42/0.01.861.291 pamn>DBA\sresU\:C
emiT dradnatS cificaP 24:41 13-21-2102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
:001.01.861.291 no strop gnitseretnI strop desolc 599 :nwohs toN ECIVRES ETATS TROP hss nepo pct/22 dnibcpr nepo pct/111 nss-soibten nepo pct/931 sd-tfosorcim nepo pct/544 sfn nepo pct/9402 dnoces 01.33 ni dennacs )pu tsoh 1( sesserdda PI 352 :enod pamN
-
~ ~
) -A) ( Nmap ( .
: Nmap -A XXX
Nmap .
)-A (
C:\Users\ABD>nmap -A 10.10.1.51
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 CDT
Interesting ports on 10.10.1.51:
Not shown: 999 closed ports
PORT STATE SERVICE VERSION
80/tcp open http Linksys WAP54G wireless-G router http config
|_ html-title: 401 Unauthorized
| http-auth: HTTP Service requires authentication
|_ Auth type: Basic, realm = Linksys WAP54G
MAC Address: 00:12:17:AA:66:28 (Cisco-Linksys)
Device type: general purpose
Running: Linux 2.4.X
OS details: Linux 2.4.18 - 2.4.35 (likely embedded)
Network Distance: 1 hop
Service Info: Device: WAP
OS and Service detection performed. Please report any incorrect results
at http://nmap.org/submit/ . Nmap done: 1 IP address (1 host up) scanned in 9.61 seconds
-
~ ~
IPv6
(-6) ) IPv6 (
: (Nmap) -6 xxx
IPv6
IPv6 . Nmap
IPv6 IPv6 CIDR (/).
C:\Users\ABD>nmap -6 fe70::29aa:9db8:4154:d80e Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Central Daylight Time Interesting ports on fe80::29aa:9db9:4164:d80e: Not shown: 993 closed ports PORT STATE SERVICE 135/tcp open msrpc 445/tcp open microsoft-ds 5357/tcp open unknown 49152/tcp open unknown 49153/tcp open unknown 49154/tcp open unknown 49155/tcp open unknown Nmap done: 1 IP address (1 host up) scanned in 227.32 seconds
: IPv6 IPv6
-
~ ~
:
-
~ ~
" ". PMCI pamN
. pamN
pamN PMCI
(. PMCI )
.
.
:
gniP tnoD NP- nacS ylnO gniP a mrofreP Ps- gniP NYS PCT SP- gniP KCA PCT AP- gniP PDU UP- gniP TINI PTCS YP- gniP ohcE PMCI EP- gniP pmatsemiT PMCI PP- gniP ksaM sserddA PMCI MP- gniP locotorP PI OP- gniP PRA RP-
etuorecarT etuorecart--
noituloseR SND esreveR ecroF R- noituloseR SND esreveR elbasiD n-
pukooL SND evitanretlA snd-metsys--
)s(revreS SND yficepS yllaunaM srevres-snd-- tsiL tsoH a etaerC Ls-
-
~ ~
gniP tnoD
..
. gnip ( pamN )
)NP-( gniP pamN
XXX pamN :
)NP-( )gniP( pamN
)pamN(
gniP )NP-(
XXX NP pamN:
)NP-(
pamN -NP
11.5.01.01 pamn>DBA\sresU\:C TDC 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS ,seborp gnip ruo gnikcolb tub ,pu yllaer si ti fI .nwod smees tsoH :etoN NP- yrt sdnoces 61.3 ni dennacs )pu stsoh 0( sserdda PI 1 :enod pamN
11.5.01.01 NP- pamn>DBA\sresU\:C
emiT dradnatS cificaP 71:71 13-21-2102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
11.5.01.01 rof troper nacs pamN
.)ycnetal s420.0( pu si tsoH
strop deretlif 999 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sdnoces 65.44 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
-
~ ~
nacS ylnO gniP
. gnip (- Ps )
Ps- pamN :
gnip
.
. 1.01.861.291 252
XXX Ps pamN:
)( )( gnip
42/1.01.861.291 Ps- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.01.861.291 rof troper nacs pamN
.)ycnetal s520.0( pu si tsoH
2.01.861.291 rof troper nacs pamN
.)ycnetal s950.0( pu si tsoH
3.01.861.291 rof troper nacs pamN
.)ycnetal s620.0( pu si tsoH
4.01.861.291 rof troper nacs pamN
.)ycnetal s420.0( pu si tsoH
5.01.861.291 rof troper nacs pamN
.)ycnetal s430.0( pu si tsoH
sdnoces 52.51 ni dennacs )pu stsoh 81( sesserdda PI 652 :enod pamN
>DBA\sresU\:C
42/001.1.861.291 Ps- pamn>DBA\sresU\:C
miT dradnatS cificaP 80:81 13-21-2102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.1.861.291 rof troper nacs pamN
.)ycnetal s83000.0( pu si tsoH
)syskniL-ocsiC( 56:C1:23:11:CD:95 :sserddA CAM
001.1.861.291 rof troper nacs pamN
.pu si tsoH
sdnoces 04.14 ni dennacs )pu stsoh 2( sesserdda PI 652 :enod pamN
>DBA\sresU\:C
-
~ ~
gniP NYS PCT
.gnip NYS PCT (- SP )
XXX ,3trop,2trop,1trop SP pamN :
)SP-( PCT NYS )gnip(
. NYS (PCT NYS) (gnip) PMCI . PMCI
)PCT NYS(
)gniP( : .... NYS PCT
gro.erucesni.emnacs SP pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)122.442.702.47( gro.erucesni.emnacs rof troper nacs pamN
.)ycnetal s42.0( pu si tsoH
gro.pamn.emnacs :122.442.702.47 rof drocer SNDr
strop deretlif 43 ,strop desolc 369 :nwohs toN
ECIVRES ETATS TROP
hss nepo pct/22
ptth nepo pct/08
ohce-gnipn nepo pct/9299
sdnoces 41.81 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
: 08 )SP-(
.. ^_^ 12,32,52,08 SP-
-
~ ~
gniP KCA PCT
. (KCA PCT) AP-(( ))gnip
452.1.861.291 4trop,3trop,2trop,1trop AP pamN :
KCA PCT )gniP(
PCT NYS . KCA PCT ( )AP-()pamN
( KCA PCT) )gniP( . PCT
. PMCI
1.1.861.291 AP- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.1.861.291 rof troper nacs pamN
.)ycnetal s6400.0( pu si tsoH
strop desolc 799 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sptth nepo pct/344
nwonknu nepo pct/25194
)syskniL-ocsiC( 09:C1:99:11:CF:89 :sserddA CAM
sdnoces 32.71 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
:
( SP- )
.. ^_^ 12,32,52,08 SP-
-
~ ~
gniP PDU
)UP-( )gniP PDU( :
XXX UP pamN :
)gniP/PDU(
PDU PDU
.
.PCT
852.281.86.96 UP- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)142.481.36.66( moc.xeevres.c01ardauq.302xob.142 rof troper nacs pamN
.)ycnetal s72.0( pu si tsoH
strop deretlif 43 ,strop desolc 559 :nwohs toN
ECIVRES ETATS TROP
ptf nepo pct/12
noissimbus nepo pct/785
spami nepo pct/399
s3pop nepo pct/599
eprn nepo pct/6665
sdnoces 42.76 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
52104(( )PDU ) : ... 544,52,08,22UP pamn
-
~ ~
gniP TINI PTCS
)gniP TINI PTCS( )pamN( )YP-(
3trop,2trop,1trop YP pamn :
)gniP TINI PTCS(
(. PTCS )
. PTCS
452.1.861.291 YP- pamn>DBA\sresU\:Cxxs TDC 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS :)452.1.861.291( emoh no strop gnitseretnI strop desolc 899 :nwohs toN ECIVRES ETATS TROP ptth nepo pct/08 sptth nepo pct/344 )eriW2( 98:A5:F5:C3:52:00 :sserddA CAM sdnoces 97.0 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
: . YP-
. 52,02,544,08,22YP- pamn
-
~ ~
gniP ohcE PMCI
) ( . gniP ohcE PMCI EP
XXX EP pamN :
)EP-(
. )gniP ohcE( PMCI (-EP )
. PMCI
. PMCI
1.1.861.291 EP- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.1.861.291 rof troper nacs pamN
.)ycnetal s6500.0( pu si tsoH
strop desolc 799 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sptth nepo pct/344
nwonknu nepo pct/25194
)syskniL-ocsiC( 09:C1:88:11:DS:87 :sserddA CAM
sdnoces 72.71 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
)gniP( )EP-( : .
-
~ ~
gniP pmatsemiT PMCI
)PP-( )gniP pmatsemiT PMCI(
XXX PP pamn :
gniP pmatsemiT PMCI :
PMCI
PMCI
-PP .
.
452.1.861.291 PP- pamn>DBA\sresU\:C TDC 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS :)452.1.861.291( emoh no strop gnitseretnI strop desolc 899 :nwohs toN ECIVRES ETATS TROP ptth nepo pct/08 sptth nepo pct/344 )eriW2( 98:A5:F5:C3:52:00 :sserddA CAM sdnoces 38.1 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
-
~ ~
ICMP Address Mask Ping
ICMP Address Mask Ping (-PM)
: nmap PM XXX
PM
) PP-( ICMP ICMP .
(ICMP) .
C:\Users\ABD>nmap -PM 192.168.1.1
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for 192.168.1.1
Host is up (0.0059s latency).
Not shown: 997 closed ports
PORT STATE SERVICE
80/tcp open http
443/tcp open https
49152/tcp open unknown
MAC Address: 88:FC:11:88:1C:90 (Cisco-Linksys)
Nmap done: 1 IP address (1 host up) scanned in 17.23 seconds
C:\Users\ABD>
-
~ ~
gniP locotorP PI
)OP-( )gniP locotorP PI(
3locotorP,2locotorP,1locotorP OP pamn :
( gniP PI )
)PMGI( )PMCI(
)2,PMGI( )1,PMCI( )PMGI,PMCI OP pamn(
1.1.861.291 OP- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.1.861.291 rof troper nacs pamN
.)ycnetal s1600.0( pu si tsoH
strop desolc 799 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sptth nepo pct/344
nwonknu nepo pct/25194
)syskniL-ocsiC( 04:C1:29:12:CF:89 :sserddA CAM
sdnoces 91.71 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
: locotorp/stnemngissa/gro.anai.www-srebmun
-
~ ~
gniP PRA
)RP-() ( )gniP PRA(
XXX RP pamn :
)RP-(
( RP- )
. )gniP(
(. ) PRA NAL
1.1.861.291 RP- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.1.861.291 rof troper nacs pamN
.)ycnetal s510.0( pu si tsoH
strop desolc 799 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sptth nepo pct/344
nwonknu nepo pct/25194
)syskniL-ocsiC( 95:C1:66:33:CF:11 :sserddA CAM
sdnoces 32.71 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
. PRA :
-
~ ~
Traceroute
(Traceroute)
(--traceroute) .
: nmap traceroute XXX
(traceroute) )tracepath (
(nmap) .
C:\Users\ABD>nmap --traceroute scanme.insecure.org
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for scanme.insecure.org (74.207.244.221)
Host is up (0.10s latency).
rDNS record for 74.207.244.221: scanme.nmap.org
Not shown: 963 closed ports, 34 filtered ports
PORT STATE SERVICE
22/tcp open ssh
80/tcp open http
9929/tcp open nping-echo
TRACEROUTE (using port 80/tcp)
HOP RTT ADDRESS
1 6.00 ms 192.115.1.1
2 34.00 ms 192.115.10.3
3 34.00 ms scanme.nmap.org (74.207.244.221)
Nmap done: 1 IP address (1 host up) scanned in 29.36 seconds
C:\Users\ABD>
-
~ ~
noituloseR SND esreveR ecroF
)PI( )pamN( )SNDr( )SND( )R-( )PI(
XXX R pamn :
)SND(
)PI( )R-(
SND
^_^ ( )pamN
25.431.31.46 R- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)25.431.31.46( gro.pamn.emnacs rof troper nacs pamN
.)ycnetal s970.0( pu si tsoH
strop deretlif 499 :nwohs toN
ECIVRES ETATS TROP
hss nepo pct/22
niamod nepo pct/35
rehpog desolc pct/07
ptth nepo pct/08
tnedi desolc pct/311
etilE desolc pct/73313
sdnoces 83.61 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
)PAMN( :
-
~ ~
Disable Reverse DNS Resolution
(DNS) (-n)
(DNS)
DNS Nmap .
) n -( .
DNS .
C:\Users\ABD>nmap -n 64.13.134.52
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for 64.13.134.52
Host is up (0.069s latency).
Not shown: 994 filtered ports
PORT STATE SERVICE
22/tcp open ssh
53/tcp open domain
70/tcp closed gopher
80/tcp open http
113/tcp closed ident
31337/tcp closed Elite
Nmap done: 1 IP address (1 host up) scanned in 27.14 seconds
C:\Users\ABD>
-
~ ~
Alternative DNS Lookup Method
(DNS) ) --system-dns) (nmap (
) DNS( (nmap) .
: nmap system-dns
Nmap DNS
.
DNS Nmap .
C:\Users\ABD>nmap --system-dns 33.19.184.315
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for 241.box203.quadra10c.serveex.com (33.19.145.315)
Host is up (0.24s latency).
Not shown: 955 closed ports, 34 filtered ports
PORT STATE SERVICE
21/tcp open ftp
53/tcp open domain
80/tcp open http
110/tcp open pop3
143/tcp open imap
443/tcp open https
465/tcp open smtps
587/tcp open submission
993/tcp open imaps
995/tcp open pop3s
5666/tcp open nrpe
Nmap done: 1 IP address (1 host up) scanned in 80.15 seconds
C:\Users\ABD>
-
~ ~
)s(revreS SND yficepS yllaunaM
. SND )srevres-snd--( SND( )
)3revres,2revres,1revres( srevres-snd--pamn :
SND
. SND pamN
. pamN )servres-snd--(
SND
.SND
gro.erucesni.emnacs 022.022.76.802,222.222.76.802 srevres-snd-- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)122.442.702.47( gro.erucesni.emnacs rof troper nacs pamN
.)ycnetal s52.0( pu si tsoH
gro.pamn.emnacs :122.442.702.47 rof drocer SNDr
strop deretlif 43 ,strop desolc 369 :nwohs toN
ECIVRES ETATS TROP
hss nepo pct/22
ptth nepo pct/08
ohce-gnipn nepo pct/9299
sdnoces 97.21 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
.6vPI :
-
~ ~
Create a Host List
) SL -( (IP) DNS
: nmap sL XXX
Nmap
DNS . IP DNS .
DNS IP ..
C: \Users\ABD>nmap -sL 10.10.1.1/24 Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 CDT Host 10.10.1.0 not scanned Host router.nmapcookbook.com (10.10.1.1) not scanned Host server.nmapcookbook.com (10.10.1.2) not scanned Host 10.10.1.3 not scanned Host 10.10.1.4 not scanned Host mylaptop.nmapcookbook.com (10.10.1.5) not scanned Host 10.10.1.6 not scanned Host 10.10.1.7 not scanned Host 10.10.1.8 not scanned Host mydesktop.nmapcookbook.com (10.10.1.9) not scanned Host mydesktop2.nmapcookbook.com (10.10.1.10) not scanned Host 10.10.1.11 not scanned Host 10.10.1.12 not scanned Host 10.10.1.13 not scanned Host 10.10.1.14 not scanned Host 10.10.1.15 not scanned Host 10.10.1.16 not scanned Host 10.10.1.17 not scanned ...
-
~ ~
-
~ ~
:
-
~ ~
. )PAMN(
. PCT ( pamN)
( PDU) PCT
. )pamN(
.
:
nacS NYS PCT Ss-
nacS tcennoC PCT Ts-
nacS PDU Us-
nacS LLUN PCT Ns-
nacS NIF PCT Fs-
nacS samX Xs-
nacS KCA PCT As-
nacS PCT motsuC sgalfnacs--
nacS locotorP PI Os-
stekcaP tenrehtE waR dneS hte-dnes--
tekcaP PI dneS pi-dnes--
/ : .
-
~ ~
NYS PCT
)Ss-( )NYS PCT(
XXX Ss pamn :
)NYS PCT(
. ... () /
)PCT( )NYS PCT(
)NYS(
.
.
1.1.861.291 Ss- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.1.861.291 rof troper nacs pamN
.)ycnetal s0500.0( pu si tsoH
strop desolc 799 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sptth nepo pct/344
nwonknu nepo pct/25194
)syskniL-ocsiC( 52:D1:99:22:CF:89 :sserddA CAM
sdnoces 34.71 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
:
)NYS PCT(
-
~ ~
nacS tcennoC PCT
PCT
)Ts-( )PCT(
XXX Ts pamn :
)6VPI( .
PCT
(.)
1.1.861.291 Ts- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.1.861.291 rof troper nacs pamN
.)ycnetal s0.1( pu si tsoH
strop desolc 799 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sptth nepo pct/344
nwonknu nepo pct/25194
)syskniL-ocsiC( 09:C1:99:11:CF:89 :sserddA CAM
sdnoces 46.042 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
. :
)Ss-(
-
~ ~
UDP Scan
UDP
(-sU) (UDP) ( )
: nmap sU XXX
UDP
UDP.
TCP ) DNS DHCP SNMP (UDP.
TCP UDP / /.
C:\Users\ABD>nmap -sU 10.10.1.41 Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 CDT Interesting ports on 10.10.1.41: Not shown: 984 closed ports PORT STATE SERVICE 7/udp open echo 9/udp open|filtered discard 13/udp open daytime 19/udp open chargen 37/udp open time 69/udp open|filtered tftp 111/udp open|filtered rpcbind 137/udp open|filtered netbios-ns 138/udp open|filtered netbios-dgm 177/udp open|filtered xdmcp 514/udp open|filtered syslog 518/udp open|filtered ntalk 1028/udp open|filtered ms-lsa 1030/udp open|filtered iad1 2049/udp open|filtered nfs MAC Address: 00:60:B0:59:B6:14 (Hewlett-packard CO.) Nmap done: 1 IP address (1 host up) scanned in 1.91 seconds
-
~ ~
nacS LLUN PCT
)LLUN PCT(
)LLUN PCT( )Ns-(
XXX Ns pamn :
.0 PCT . pamN LLUN PCT
. LLUN
)37 sgalfnacs--(
84.1.01.01 Ns- pamn>DBA\sresU\:C 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
TDC
:84.1.01.01 no strop gnitseretnI
strop desolc 499 :nwohs toN
ECIVRES ETATS TROP
ptf deretlif|nepo pct/12
hss deretlif|nepo pct/22
ptms deretlif|nepo pct/52
ptth deretlif|nepo pct/08
dnibcpr deretlif|nepo pct/111
sfn deretlif|nepo pct/9402
)erawMV( 4F:83:5D:92:C0:00 :sserddA CAM
sdnoces 45.1 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
:
-
~ ~
nacS NIF PCT
)NIF PCT(
)Fs-( )NIF PCT(
XXX Fs pamn :
. )KCA PCT( )PAMN( )Fs-(
.
)37 sgalfnacs--(
1.1.861.291 Fs- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.1.841.291 rof troper nacs pamN
.)ycnetal s610.0( pu si tsoH
strop desolc 799 :nwohs toN
ECIVRES ETATS TROP
ptth deretlif|nepo pct/08
sptth deretlif|nepo pct/344
nwonknu deretlif|nepo pct/25194
)syskniL-ocsiC( 09:C3:963:11:CF:89 :sserddA CAM
sdnoces 34.81 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
. :
-
~ ~
nacS samX
)samX(
)Xs-( ^_^ )samX(
XXX Xs pamn :
HSP NIF GRU )PAMN(
) 37 sgalfnacS--(
1.1.861.291 Xs- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.1.321.291 rof troper nacs pamN
.)ycnetal s9700.0( pu si tsoH
strop desolc 799 :nwohs toN
ECIVRES ETATS TROP
ptth deretlif|nepo pct/08
sptth deretlif|nepo pct/344
nwonknu deretlif|nepo pct/25194
)syskniL-ocsiC( 02:D1:93:11:AF:39 :sserddA CAM
sdnoces 74.81 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
:
-
~ ~
Custom TCP Scan
(TCP)
(--scanflags) (TCP)
: nmap --scanflags XXX
(--scanflags) TCP
(--scanflags FIN ACK)
(TCP)
SYN
ACK
PSH
URG
RST
FIN
Usage Flag
Synchronize SYN Acknowledgment ACK Push PSH Urgent URG
Reset RST Finished FIN
C:\Users\ABD>nmap --scanflags SYN 22.23.184.241
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for 241.box203.quadra10c.serveex.com (22.23.184.241)
Host is up (0.20s latency).
Not shown: 988 filtered ports
PORT STATE SERVICE
143/tcp open imap
161/tcp closed snmp
443/tcp open https
465/tcp open smtps
993/tcp open imaps
995/tcp open pop3s
Nmap done: 1 IP address (1 host up) scanned in 26.03 seconds
C:\Users\ABD>
-
~ ~
nacS KCA PCT
)KCA PCT( )As-(
)XXX As pamn( :
)KCA PCT(
)As-(
)TSR( )pamN( )KCA PCT(
.
. )TSR(
08
07.1.01.01 As- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
07.1.01.01 rof troper nacs pamN
.)ycnetal s550.0( pu si tsoH
strop deretlif 999 :nwohs toN
ECIVRES ETATS TROP
ptth deretlifnu pct/08
sdnoces 75.52 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
/ )As-( :
-
~ ~
nacS locotorP PI
)Os-( )nacS locotorP PI(
)XXX Os pamn( :
)locotorP PI(
. )PI( )locotorP PI(
)PCT PDU,PMCI(
14.1.01.01 Os- pamn>DBA\sresU\:C3
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
14.1.01.01 rof troper nacs pamN
.)ycnetal s620.0( pu si tsoH
slocotorp deretlif|nepo 552 :nwohs toN
ECIVRES ETATS LOCOTORP
pct nepo 6
pmci nepo 1
pdu nepo 71
sdnoces 48.22 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
ANAI PI : locotorp/stnemngissa/gro.anai.www-rebmun
-
~ ~
Send Raw Ethernet Packet
(--send-eth) (nmap)
: (nmap send-eth)
Nmap IP .
IP.
(77) (--send-ip)
C:\Users\ABD>nmap --send-eth 11.63.11.211
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for 241.box203.quadra10c.serveex.com (44.61.181.211)
Host is up (0.33s latency).
Not shown: 988 filtered ports
PORT STATE SERVICE
20/tcp closed ftp-data
80/tcp open http
110/tcp open pop3
143/tcp open imap
161/tcp closed snmp
465/tcp open smtps
Nmap done: 1 IP address (1 host up) scanned in 29.16 seconds
C:\Users\ABD>
-
~ ~
Send IP Packets
(IP)
(--send-ip) (nmap) (ip)
: (nmap send-ip)
(IP)
) IP) (nmap (
(76) (--send-eth)
C:\Users\ABD>nmap --send-ip 10.10.1.51
Starting Nmap 5.00 ( http://nmap.org ) at 2013-04-9 10:46 CDT
Interesting ports on 10.10.1.51:
Not shown: 997 closed ports
PORT STATE SERVICE
80/tcp open http
443/tcp open https
49152/tcp open unknown
Nmap done: 1 IP address (1 host up) scanned in 0.19 seconds
-
~ ~
-
~ ~
:
snoitpO gninnacS troP
-
~ ~
. pamN .)53556 PDU PCT 53556( 070131 PI / PCT .
. .
. 070131 PI/PCT + 63556 )PCT(
. )PAMN( 63556 )PDU(
. 0001 0001
. 0001 )PAMN(
.... .
.......
F-
}trop{p-
}trop{p-
}strop PCT{:T ,}strop PDU{:U p-
"*" p-
}rebmun{strop-pot--
r-
ANAI PI / PCT :
.trop/stnemngissa/gro.anai.www-srebmun
-
~ ~
Perform a Fast Scan
(-F) 100
: (nmap F XXX)
(NMAP) 1000 .
(-F) 100 .
C:\Users\ABD>nmap -F 72.29.72.224
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for quela.dizinc.com (72.29.72.224)
Host is up (0.18s latency).
Not shown: 88 filtered ports
PORT STATE SERVICE
443/tcp open https
465/tcp open smtps
587/tcp open submission
993/tcp open imaps
995/tcp open pop3s
3306/tcp open mysql
Nmap done: 1 IP address (1 host up) scanned in 5.48 seconds
C:\Users\ABD>
-
~ ~
Scan Specific Ports
(-p)
: (nmap p {port} {XXX} )
.
: (nmap -p 80,20,25,445,-200 {XXX} )
(-F) 200
C:\Users\ABD>nmap -p 80 33.29.88.252
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for quela.dizinc.com (36.99.88.114)
Host is up (0.025s latency).
PORT STATE SERVICE
80/tcp open http
Nmap done: 1 IP address (1 host up) scanned in 0.29 seconds
C:\Users\ABD>
C:\Users\ABD>nmap -p 80,25,445,20-200 72.29.72.224
Starting Nmap 6.25 ( http://nmap.org ) at 2013-01-26 07:03 Pacific Standard Time
Nmap scan report for quela.dizinc.com (72.29.72.224)
Host is up (0.13s latency).
Not shown: 175 filtered ports
PORT STATE SERVICE
20/tcp closed ftp-data
21/tcp open ftp
26/tcp open rsftp
53/tcp open domain
80/tcp open http
110/tcp open pop3
143/tcp open imap
Nmap done: 1 IP address (1 host up) scanned in 10.56 seconds
C:\Users\ABD>
-
~ ~
emaN yb stroP nacS
. )F-(
) XXXX ptth,pami p pamn( :
. )F-( )ptth,pami(
.
.... .sptth,ptth )*(
) XXX "*ptth" p pamn( ....
472.7.82.88 ptth,pami p- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)333.22.44.88( moc.cnizid.aleuq rof troper nacs pamN
.)ycnetal s050.0( pu si tsoH
ECIVRES ETATS TROP
ptth nepo pct/08
pami nepo pct/341
ptth deretlif pct/8008
sdnoces 86.1 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
-
~ ~
locotorP yb stroP nacS
PDU Us )T,U(
. PCT Ts
. )p-(
)XXXX 52:T,35:U p Ts Us pamn( :
99.88.55.33 52:T,35:U p- Us- Ts- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)99.66.55.77( moc.xeevres.c01ardauq.302xob.142 rof troper nacs pamN
.)ycnetal s420.0( pu si tsoH
ECIVRES ETATS TROP
ptms deretlif pct/52
niamod deretlif|nepo pdu/35
sdnoces 89.0 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
)PCT( )pamn(:
)Us-( )PDU(
-
~ ~
Scan All Ports
(-p"*") 65,535 IP
: (nmap p"*" XXX )
C:\Users\ABD>nmap -p"*" 66.35.256.25
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for 241.box203.quadra10c.serveex.com (98.4.45.6.)
Host is up (0.38s latency).
Not shown: 3404 filtered ports
PORT STATE SERVICE
20/tcp closed ftp-data
21/tcp open ftp
22/tcp closed ssh
26/tcp closed rsftp
80/tcp open http
110/tcp open pop3
143/tcp open imap
161/tcp closed snmp
443/tcp open https
465/tcp open smtps
623/tcp closed oob-ws-http
993/tcp open imaps
995/tcp open pop3s
2082/tcp open infowave
Nmap done: 1 IP address (1 host up) scanned in 103.55 seconds
C:\Users\ABD>
-
~ ~
stroP poT nacS
)strop-pot--(
) XXX 01 strop-pot pamn( :
)F-( 0001 )pamn(
. 001
.)01( )strop-pot--(
. )0001( )01(
. )005( )XXX 005 strop-pot--(
. )0005( )XXX 0005 strop-pot--(
55.651.52.51. 01 strop-pot-- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)352.33.563.22( moc.xeevres.c01ardauq.302xob.142 rof troper nacs pamN
.)ycnetal s31.0( pu si tsoH
ECIVRES ETATS TROP
ptf nepo pct/12
hss desolc pct/22
tenlet deretlif pct/32
ptms deretlif pct/52
ptth nepo pct/08
3pop nepo pct/011
nss-soibten deretlif pct/931
sptth nepo pct/344
sd-tfosorcim deretlif pct/544
revres-tbw-sm deretlif pct/9833
sdnoces 64.2 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
:
...................
-
~ ~
nacS troP laitneuqeS a mrofreP
)r-(
) XXX r pamn( :
) pamn(
.
. )pamn( )r-(
142.481.36.66 r- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)142.481.36.66( moc.xeevres.c01ardauq.302xob.142 rof troper nacs pamN
.)ycnetal s61.0( pu si tsoH
strop deretlif 889 :nwohs toN
ECIVRES ETATS TROP
atad-ptf desolc pct/02
ptf nepo pct/12
hss desolc pct/22
ptfsr desolc pct/62
ptth nepo pct/08
3pop nepo pct/011
pami nepo pct/341
pmns desolc pct/161
sptth nepo pct/344
sptms nepo pct/564
spami nepo pct/399
s3pop nepo pct/599
sdnoces 58.44 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
)r-( :
. )v-(
-
~ ~
-
~ ~
:
-
~ ~
. ) ( pamN
.
.PI / PCT
PI / PCT. . pamN
. pamN
:
O-
sseug-nacsso--
Vs-
CPR ecart-noisrev--
Rs-
-
~ ~
)o-(
) XXX O pamn( :
. )pamn(
. )pamn(
.
pamn>DBA\sresU\:C
64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
emiT thgilyaD lartneC
...
)erawMV( 4F:83:5D:92:C0:00 :sserddA CAM
esoprup lareneg :epyt eciveD
X.6.2 xuniL :gninnuR
82.6.2 - 9.6.2 xuniL :sliated SO
poh 1 :ecnatsiD krowteN
...
)O-( )v-( :
-
~ ~
TCP/IP
(nmap) .
(nmap) www.nmap.org/submit
.
.
... No exact OS matches for host (If you know what OS is running on it, see
http://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=5.00%D=12/16%OT=3001%CT=1%CU=32781%PV=Y%DS=1%G=Y%M=00204A%TM=4B29
OS:4048%P=i686-pc-windows-windows)SEQ(CI=I%II=I%TS=U)OPS(O1=M400%O2=%O3=%O4
OS:=%O5=%O6=)OPS(O1=M400%O2=M400%O3=%O4=%O5=%O6=)OPS(O1=%O2=M400%O3=M400%O4
OS:=%O5=%O6=)OPS(O1=%O2=%O3=M400%O4=%O5=%O6=)OPS(O1=M400%O2=%O3=M400%O4=%O5
OS:=%O6=)WIN(W1=7FF%W2=0%W3=0%W4=0%W5=0%W6=0)WIN(W1=7FF%W2=7FF%W3=0%W4=0%W5
OS:=0%W6=0)WIN(W1=0%W2=7FF%W3=7FF%W4=0%W5=0%W6=0)WIN(W1=0%W2=0%W3=7FF%W4=0%
OS:W5=0%W6=0)WIN(W1=7FF%W2=0%W3=7FF%W4=0%W5=0%W6=0)ECN(R=Y%DF=Y%T=40%W=0%O=
OS:%CC=N%Q=)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T1(R=Y%DF=Y%T=40%S=O%A=O
OS:%F=AS%RD=0%Q=)T1(R=Y%DF=Y%T=40%S=Z%A=S+%F=AR%RD=0%Q=)T2(R=Y%DF=Y%T=40%W=
OS:0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T3(R=Y%DF=Y%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=
OS:)T4(R=Y%DF=Y%T=40%W=0%S=A%A=Z%F=R%O=%RD=0%Q=)T5(R=Y%DF=Y%T=40%W=0%S=Z%A=
OS:S+%F=AR%O=%RD=0%Q=)T6(R=Y%DF=Y%T=40%W=0%S=A%A=Z%F=R%O=%RD=0%Q=)T7(R=Y%DF
-
~ ~
(nmap) .
(--Oscan-guess)
: (nmap -O --osscan-guess XXX )
(nmap) .
.
C:\Users\ABD>nmap -O --osscan-guess 66.63.184.241
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for 241.box203.quadra10c.serveex.com (66.63.184.241)
Host is up (0.44s latency).
Not shown: 988 filtered ports
PORT STATE SERVICE
143/tcp open imap
161/tcp closed snmp
443/tcp open https
465/tcp open smtps
993/tcp open imaps
995/tcp open pop3s
Device type: specialized
Running (JUST GUESSING): AVtech embedded (88%)
Aggressive OS guesses: AVtech Room Alert 26W environmental monitor (88%)
No exact OS matches for host (test conditions non-ideal).
OS detection performed. Please report any incorrect results at http://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 41.99 seconds
C:\Users\ABD>
: (--fyzzy) (--osscan-guess)
.
-
~ ~
)Vs-(
) XXX Vs pamn( :
. )Vs-(
. pamN
1.42.11.62.88 Vs- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)92.11.321.56( moc.xeevres.c01ardauq.302xob.142 rof troper nacs pamN
.)ycnetal s61.0( pu si tsoH
strop deretlif 889 :nwohs toN
NOISREV ECIVRES ETATS TROP
atad-ptf desolc pct/02
dPTF-eruP ptf nepo pct/12
hss desolc pct/22
ptfsr desolc pct/62
0.0.1/LSSnepO 32.2.2/lss_dom )xinU(( 32.2.2 dptth ehcapA ptth nepo pct/08
)4.1/detimilwb_dom spif-
08.4 dptms mixE ptms/lss nepo pct/564
)1102 desaeler( dpamI reiruoC pami/lss nepo pct/399
d3pop reiruoC 3pop/lss nepo pct/599
moc.srevresaxe.302xob :tsoH :ofnI ecivreS
>DBA\sresU\:C
. )Vs-( :
. 7019-0019
.
. ) Vs stroplla--( )stroplla--(
-
~ ~
(--version-trace) .
: (nmap version-trace XXX )
.
10.
C:\Users\ABD>nmap --version-trace 66.63.184.241
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
PORTS: Using top 1000 ports found open (TCP:1000, UDP:0, SCTP:0)
Winpcap present, dynamic linked to: WinPcap version 4.1.2 (packet.dll version 4.
1.0.2001), based on libpcap version 1.0 branch 1_0_rel0b (20091008)
--------------- Timing report ---------------
hostgroups: min 1, max 100000
rtt-timeouts: init 1000, min 100, max 10000
max-scan-delay: TCP 1000, UDP 1000, SCTP 1000
parallelism: min 0, max 0
max-retries: 10, host-timeout: 0
min-rate: 0, max-rate: 0
---------------------------------------------
Packet capture filter (device eth1): dst host 192.168.1.100 and (icmp or icmp6 o
r ((tcp or udp or sctp) and (src host 55.89.14.23)))
We got a TCP ping packet back from 56.92.38.123 port 80 (trynum = 0)
Overall sending rates: 11.14 packets / s, 423.40 bytes / s.
mass_rdns: Using DNS server 192.168.10.32
mass_rdns: Using DNS server 192.168.10.31
mass_rdns: Using DNS server 192.168.10.32
mass_rdns: Using DNS server 192.168.10.31
-
~ ~
RPC
( -sR ) .
:(nmap sR XXX )
RPC
(-sR ) (RPC) .
(RPC) (NFS) .
(Apache 2.2.23 ((Uinx)) ) 80/443 .
C:\Users\ABD>nmap -sR 66.63.184.241
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for 241.box203.quadra10c.serveex.com (66.63.184.241)
Host is up (0.24s latency).
Not shown: 988 filtered ports
PORT STATE SERVICE VERSION
20/tcp closed ftp-data
21/tcp open ftp Pure-FTPd
22/tcp closed ssh
26/tcp closed rsftp
80/tcp open http Apache httpd 2.2.23 ((Unix) mod_ssl/2.2.23 OpenSSL/1.0.0
-fips mod_bwlimited/1.4)
110/tcp open pop3 Courier pop3d
143/tcp open imap Courier Imapd (released 2011)
161/tcp closed snmp
443/tcp open http Apache httpd 2.2.23 ((Unix) mod_ssl/2.2.23 OpenSSL/1.0.0
Nmap done: 1 IP address (1 host up) scanned in 61.57 seconds
C:\Users\ABD>
-
~ ~
:
.
snoitpO gnimiT
-
~ ~
.
. )pamn(
.
.
. ( )
.
:
}5-0{T-
LLT ltt-
msilellarap-nim--
msilsllarap-xam-
puorgtsoh-nim--
puorgtsoh-xam--
TTR tuoemit-ttr-xam--
TTR tuoemit-ttr-laitini--
seirter-xam--
tuoemit-tsoh--
yaled-nacs--
yaled-nacs-xam--
etar-nim--
etar-xam--
timiletar-tsr-taefed--
-
~ ~
/ :
/ . )pamn(
.
/ .
/
)( (/)
s s003
m m5
h h1 )pamn(
. )801( )tuoemit-tsoh--( : :
:
1.1.861.291 00003 tuoemit-tsoh-- pamn
1.1.861.291 s003 tuoemit-tsoh-- pamn
1.1.861.291 m5 tuoemit-tsoh-- pamn
1.1.861.291 h1 tuoemit-tsoh-- pamn
000003=s003=m5=1h .
-
~ ~
:
. )pamn( )T-(
) XXX 4T pamn( :
(. )
. () ) ( 0-5 6
.
)pamn(
0T-
1T- /
2T-
3T-
4T-
5T-
1.01.861.291 4T- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
1.01.861.291 rof troper nacs pamN
.)ycnetal s950.0( pu si tsoH
strop deretlif 999 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sdnoces 35.8 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
-
~ ~
:
. )pamn( ) msilellarap-nim--(
) }XXX{ }001{ msilellarap-nim pamn( :
. )pamn(
. .
1.44.55.3.6 001 msilellarap-nim-- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)322.21.55.99( moc.xeevres.c01ardauq.302xob.142 rof troper nacs pamN
.)ycnetal s71.0( pu si tsoH
strop deretlif 889 :nwohs toN
ECIVRES ETATS TROP
3pop nepo pct/011
pami nepo pct/341
pmns desolc pct/161
sptth nepo pct/344
sptms nepo pct/564
spami nepo pct/399
s3pop nepo pct/599
sdnoces 30.81 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
)msilellarap-nim--( : .
-
~ ~
:
(--max-paralelism) (nmap).
: (nmap max-parallelism {1} {XXX} )
) --max-parallelism 1 ((nmap) .
.
C:\Users\ABD>nmap --max-parallelism 1 192.168.1.1
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Nmap scan report for 192.168.1.1
Host is up (0.00084s latency).
Not shown: 997 closed ports
PORT STATE SERVICE
80/tcp open http
443/tcp open https
49152/tcp open unknown
MAC Address: 99:FC:11:99:1C:80 (Cisco-Linksys)
Nmap done: 1 IP address (1 host up) scanned in 12.43 seconds
C:\Users\ABD>
-
~ ~
:
. ) puorgtsoh-nim--(
) XXX 03 puorgtsoh-nim-- pamn( :
. )pamn(
./
. )pamn( ) puorgtsoh-nim--(
42/0.1.01.01 03 puorgtsoh-nim-- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
:1.1.01.01 no strop gnitseretnI
strop desolc 899 :nwohs toN
ECIVRES ETATS TROP
ptth nepo pct/08
sptth nepo pct/344
)llawcinoS( 41:D0:21:1B:60:00 :sserddA CAM
:2.1.01.01 no strop gnitseretnI
strop desolc 899 :nwohs toN
ECIVRES ETATS TROP
tenlet nepo pct/32
ptth nepo pct/08
)lleD( 9D:DE:6A:9B:91:00 :sserddA CAM
-
~ ~
:
(--max-hostgroup ) (nmap) .
: (nmap max-hostgroup {1} {XXX} )
(--min-hostgroup) (--max-hostgroup) .
.
C:\Users\ABD>nmap --max-hostgroup 10 10.10.1.0/24
Starting Nmap 6.25 ( http://nmap.org ) at 2013-04-9 10:46 Pacific Standard Time
Interesting ports on 10.10.1.1:
Not shown: 998 closed ports
PORT STATE SERVICE
80/tcp open http
443/tcp open https
MAC Address: 00:06:B1:12:0D:14 (Sonicwall)
Interesting ports on 10.10.1.2:
Not shown: 998 closed ports
PORT STATE SERVICE
23/tcp open telnet
80/tcp open http
MAC Address: 00:19:B9:A6:ED:D9 (Dell)
...
-
~ ~
TTR
.)pamn( ( tuoemit-ttr-laitini-- )
) }XXX{ }emit{ tuoemit-ttr-laitini pamn( :
pamn TTR
(. ) )3T-(
.
.
. )TTR(
.
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)122.442.702.47( gro.erucesni.emnacs rof troper nacs pamN
.)ycnetal s42.0( pu si tsoH
gro.pamn.emnacs :122.442.702.47 rof drocer SNDr
strop deretlif 43 ,strop desolc 369 :nwohs toN
ECIVRES ETATS TROP
hss nepo pct/22
ptth nepo pct/08
ohce-gnipn nepo pct/9299
sdnoces 45.5 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
-
~ ~
)TTR(
) ( . )TTR( ) tuoemit-ttr-xam--(
) }XXX{ }emit{ tuoemit-ttr-xam pamn( :
)TTR( 004
)TTR( )tuoemit( )pamn(
. )TTR(
. )TTR(
.
. )pamn( )TTR(
. /
.
XXXX sm004 tuoemit-ttr-xam-- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)XXXXX( XXXXX rof troper nacs pamN
.)ycnetal s990.0( pu si tsoH
moc.xeevres.c01ardauq.302xob.142 :XXXXXX rof drocer SNDr
strop deretlif 699 :nwohs toN
ECIVRES ETATS TROP
ptf nepo pct/12
ptth nepo pct/08
sptth nepo pct/344
spami nepo pct/399
sdnoces 46.2 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
. :
.)sm004( )004(
.
-
~ ~
:
seirter-xam--()
.)pamn(
) }XXXX{ }rebmun{ seirter-xam pamn( :
. )pamn(
. )seirter-xam--(
.
.
. )seirter-xam--(
. )pamn(
gro.erucesni.emnacs 1 seirter-xam-- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)122.442.702.47( gro.erucesni.emnacs rof troper nacs pamN
.)ycnetal s52.0( pu si tsoH
gro.pamn.emnacs :122.442.702.47 rof drocer SNDr
strop deretlif 43 ,strop desolc 369 :nwohs toN
ECIVRES ETATS TROP
hss nepo pct/22
ptth nepo pct/08
ohce-gnipn nepo pct/9299
sdnoces 83.02 ni dennacs )pu tsoh 1( sserdda PI 1 :enod pamN
>DBA\sresU\:C
-
~ ~
:)LTT(
(. ) )LTT( )ltt--(
) }XXX{ }rebmun{ ltt pamn( :
552 )LTT(
. )LTT(
.
gro.erucesni.emnacs 552 ltt-- pamn>DBA\sresU\:C
emiT dradnatS cificaP 64:01 9-40-3102 ta ) gro.pamn//:ptth ( 52.6 pamN gnitratS
)122.442.702.47( gro.erucesni.emnacs rof troper nacs pamN
.)ycnetal s42.0( pu si tsoH
gro.pamn.emnacs :122.442.702.47 rof drocer SNDr
strop deretlif 43 ,strop desolc 369 :nwohs toN