mailing list archives
RE: fast nmap scan of XP boxes?
From: "Chris Chandler" <chandlerchrisc () adelphia net>
Date: Sat, 13 Aug 2005 05:37:00 -0400
Usually when I am doing multiple systems, add the switch -max_rtt_timeout
100 and it speeds things up rather nicely. For super fast, you can use 50
From: Michael Weber [mailto:mweber () alliednational com]
Sent: Friday, August 12, 2005 1:58 PM
To: pen-test () securityfocus com
Subject: fast nmap scan of XP boxes?
I am using nmap to create a list of targets that I will then use other
tools to test. My problem is how can I do a fast scan of a large (class
B) network of systems running XP, most with firewalling turned on? Will
nmap -sP still find the systems if ping does not?
What I am trying now is a tcp connect scan to the M$ ports. It seems
to find all the systems, but it takes a VERY long time.