Get the App
SLTechnology News&Howtos  ›  Network Security  › 

Detailed explanation and usage of nmap parameters

Shulou Source: shulou.com Published: 2022-06-01 06:53:33 10月01日 Update

NMap, also known as Network Mapper, is a network scanning and sniffing toolkit for Linux.

nmap is a powerful scanner often used in network security *** testing. The power of the function is self-evident. Here are a few of its scanning commands. The details still had to be learned by everyone, because it was too powerful.

1)Get the system type and open port of the remote host nmap-sS-P0-sV-O here

< target >

It can be a single IP, or hostname, or domain name, or subnet-sS TCP SYN scan (also known as semi-open, or stealth scan)-P0 allows you to turn off ICMP pings. - sV Open system version detection-O Try to identify remote OS Other options: -A Open OS Fingerprint and version detection simultaneously-v Detailed output scan. nmap-sS-P0-A-v

< target >

2)List hosts with a specified port open nmap-sT-p 80-oG-192.168.1. * | grep open 3) Find all online hosts in the web nmap-sP 192.168.0. * Alternatively, you can use the following command: nmap-sP 192.168.0.0/24 Specify subnet 4) Ping IP addresses in specified range nmap-sP 192.168.1.100 - 2545) Find unoccupied IPnmap-T4-sP www.example.com && egrep "00:00:00:00:00 ″/proc/net/arp6) Scan the local area network for Conficker worm nmap-PN-T4-p139, 445-n-v-script = smb-check-vulns-script-args safe = 1192.168.0.1 - 2547) Scan the network for malicious access points (rogue APs). nmap-A-p1 - 85,113,443, 8080 - 8100-T4-min-hostgroup 50-max-rtt-timeout 2000-initial-rtt-timeout 300-max-retries 3-host-timeout 2 0 m-max-scan-delay 1000-oA wapscan www.example.com) Scan host ports using decoy scan method sudo nmap-sS www.example.com-D www.example.com) List reverse DNS records for a subnet nmap-R-sL www.example.com 192.168.2.0/24grep '('10) Shows how many Linux and Win devices are on the network?|| sudo nmap -F -O 192.168.0.1-255 | grep "Running: " > /tmp/os; echo"$(cat /tmp/os | grep Linux | wc -l) Linuxdevice(s)"; echo "$(cat /tmp/os | grep Windows | wc -l) Window(s) device"

Tags: Host network system port open powerful operating system command version subnet detection method security it goes without saying function also known as address domain name Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno Linux NVidia Apple MariaDB Microsoft