Error » Hardware Error!! » Networking Error ! » Using OS Identification with Nmap

Networking Error ! Networking Errors and Queries

Post New Thread Reply
  Using OS Identification with Nmap
LinkBack Thread Tools Display Modes
Old 30-Dec-2006, 11:06 PM   #1 (permalink)
Administrator
 
Anilrgowda's Avatar

Posts: 18,712
Join Date: Jan 2006
Rep Power: 10 Anilrgowda is on a distinguished road

IM:
Default Using OS Identification with Nmap

[root@srv-1 usr-1]# nmap -O --min_rtt_timeout=6000 10.50.100.1-80
Starting nmap 3.70 ( http://www.insecure.org/nmap/ ) at 2006-05-05 12:49 PDT
Interesting ports on 10.50.100.1:
(The 1656 ports scanned but not shown below are in state: closed)
PORT STATE SERVICE
22/tcp open ssh
111/tcp open rpcbind
6000/tcp open X11
32771/tcp open sometimes-rpc5
Device type: general purpose
Running: Linux 2.4.X|2.5.X|2.6.X
OS details: Linux 2.5.25 - 2.6.3 or Gentoo 1.2 Linux 2.4.19 rc1-rc7)
Uptime 2.752 days (since Tue May 2 18:48:21 2006)
Interesting ports on 10.50.100.4:
(The 1625 ports scanned but not shown below are in state: closed)
PORT STATE SERVICE
12/tcp filtered unknown
45/tcp filtered mpm
53/tcp filtered domain
63/tcp filtered via-ftp
78/tcp filtered vettcp
80/tcp filtered http
113/tcp filtered auth
135/tcp open msrpc
139/tcp open netbios-ssn
209/tcp filtered tam
262/tcp filtered arcisdms
554/tcp filtered rtsp
575/tcp filtered vemmi
702/tcp filtered unknown
729/tcp filtered netviewdm1
779/tcp filtered unknown
817/tcp filtered unknown
823/tcp filtered unknown
909/tcp filtered unknown
947/tcp filtered unknown
1080/tcp filtered socks
1155/tcp filtered nfa
1241/tcp filtered nessus
1387/tcp filtered cadsi-lm
1404/tcp filtered igi-lm
1481/tcp filtered airs
1544/tcp filtered aspeclmd
1723/tcp filtered pptp
5190/tcp filtered aol
5300/tcp filtered hacl-hb
5800/tcp open vnc-http
5900/tcp open vnc
6009/tcp filtered X11:9
6502/tcp filtered netop-rc
18181/tcp filtered opsec_cvp
MAC Address: 00:A0:CC:3F:9B:A1 (Lite-on Communications)
Device type: general purpose
Running: Microsoft Windows 2003/.NET|NT/2K/XP
OS details: Microsoft Windows Server 2003 or XP SP2
Interesting ports on 10.50.100.8:
(The 1654 ports scanned but not shown below are in state: closed)
PORT STATE SERVICE
21/tcp open ftp
80/tcp open http
280/tcp open http-mgmt
515/tcp open printer
631/tcp open ipp
9100/tcp open jetdirect
MAC Address: 00:01:E6:28:03:E0 (Hewlett-Packard Company)
Device type: printer|print server
Running: HP embedded
OS details: HP LaserJet printer/print server
Interesting ports on 10.50.100.9:
(The 1656 ports scanned but not shown below are in state: closed)
PORT STATE SERVICE
23/tcp open telnet
79/tcp open finger
2005/tcp open deslogin
6005/tcp open X11:5
MAC Address: 00:50:0F:02:54:CC (Cisco Systems)
Device type: router
Running: Cisco IOS 11.X|12.X



The -O signifies OS fingerprinting. The --min_rtt_timeout=6000
we find is useful if the initial hosts are quick to respond, but other
hosts are slower. This is in milliseconds, so this will wait 6 seconds
per host. Nmap will normally throttle the timeout automatically based
on initial scans by default, so if you don't set this, hosts could be
missed. The downside is that it will take longer to scan your network.
If your hosts and network are consistent, you may be able to get by
without the min_rtt_timeout option. The 10.50.100.1-80
at the end scans hosts 10.50.100.1 to 10.50.100.80(!). Note that in
this scan we found a GNU/Linux box, a Microsoft Windows box, an HP
JetDirect print server, and a Cisco router. In addition to the OS
detection, this also provides us with a security scan of open ports, as
well as a list of IP addresses and their associated MAC addresses.
For more information on OS detection with Nmap
OS details: Cisco IOS 11.3 - 12.0(11), Cisco IOS v11.14(CA)/12.0.2aT1/v12.0.3T
Anilrgowda is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit!
Reply With Quote
   


   
Post New Thread Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


All times are GMT -8. The time now is 11:33 AM.

Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0

DMCA Policy

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227