Home page logo
/

nmap-dev logo Nmap Development mailing list archives

sometimes Nmap says ports open when actually ports is closed or filtered, when several nmap processes run at the same time,
From: "liuruihong" <liuruihong () baidu com>
Date: Tue, 20 Nov 2007 12:08:47 +0800

Nmap -V

Nmap version 4.20 ( http://insecure.org )

1.         The script

/home/liuruihong/port/portscan :
#!/bin/sh

temp=`date|awk '{print $1}'`

while read LINE

do

  nmap  $LINE >> result-$temp

done 

2.      I use crontab to run the script:

10 8 * * * cd /home/liuruihong/port;./portscan < /home/liuruihong/port/ip1

10 8 * * * cd /home/liuruihong/port;./portscan < /home/liuruihong/port/ip2

10 8 * * * cd /home/liuruihong/port;./portscan < /home/liuruihong/port/ip3

10 8 * * * cd /home/liuruihong/port;./portscan < /home/liuruihong/port/ip4

3.      ip1,ip2,ip3,ip4

every ip file have 7 ip//numbit,

eg:

202.108.249.128/26

61.135.146.192/26

202.108.250.192/26

61.135.145.192/26

202.108.11.0/24

61.135.154.192/26

220.181.27.0/26

 4 sometimes Nmap says ports open  when actually ports is closed or
filtered,

Eg: most of 202.108.23.90`s ports are closed

Starting nmap 3.70 ( http://www.insecure.org/nmap/ ) at 2007-11-19 08:12 CST

    Interesting ports on xd-23-90-a8.bta.net.cn (202.108.23.90):

PORT      STATE    SERVICE

1/tcp     open     tcpmux

2/tcp     open     compressnet

3/tcp     open     compressnet

4/tcp     open     unknown

5/tcp     open     rje

6/tcp     open     unknown

7/tcp     open     echo

8/tcp     open     unknown

9/tcp     open     discard

10/tcp    open     unknown

11/tcp    open     systat

12/tcp    open     unknown

13/tcp    open     daytime

14/tcp    open     unknown

15/tcp    open     netstat

16/tcp    open     unknown

17/tcp    open     qotd

18/tcp    open     msp

19/tcp    open     chargen

20/tcp    open     ftp-data

21/tcp    open     ftp

22/tcp    filtered ssh

23/tcp    filtered telnet

24/tcp    open     priv-mail

25/tcp    open     smtp

26/tcp    open     unknown

27/tcp    open     nsw-fe

28/tcp    open     unknown

29/tcp    open     msg-icp

30/tcp    open     unknown

31/tcp    open     msg-auth

32/tcp    open     unknown

33/tcp    open     dsp

34/tcp    open     unknown

35/tcp    open     priv-print

36/tcp    open     unknown

..

..

..

...

..

..

    


_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


  By Date           By Thread  

Current thread:
  • sometimes Nmap says ports open when actually ports is closed or filtered, when several nmap processes run at the same time, liuruihong (Nov 20)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]