Showing posts with label Nmap. Show all posts
Showing posts with label Nmap. Show all posts
Thursday, June 5, 2008
NMAP Tutorial
OS: Windows Alright NMAP is a popular scanner used for figuring out information about servers like what operating system they may be running on what ports are open. It offers a loggin system that allows a user to log all the results for their scanning session so they can pass it on to others For this tutorial I am going to just scan a single website and explain a common 'error' message some users may recieve. The website for this Tutorial i will be using is... www.meow.com some random site Now lets get started first off get nmap from our downloads section Got it okay scanned it okay fucked it okay now place these files in your system32 folder or a folder you store your CLI(command line interface) programs in. Open CMDand type nmap and you will get the following syntax and options... lun0s@~E:\cmds>nmap Nmap 4.20 ( http://insecure.org ) Usage: nmap [Scan Type(s)] [Options] {target specification} TARGET SPECIFICATION: Can pass hostnames, IP addresses, networks, etc. Ex: scanme.nmap.org, microsoft.com/24, 192.168.0.1; 10.0.0-255.1-254 -iL : Input from list of hosts/networks -iR : Choose random targets --exclude : Exclude hosts/networks --excludefile : Exclude list from file HOST DISCOVERY: -sL: List Scan - simply list targets to scan -sP: Ping Scan - go no further than determining if host is online -P0: Treat all hosts as online -- skip host discovery -PS/PA/PU [portlist]: TCP SYN/ACK or UDP discovery to given ports -PE/PP/PM: ICMP echo, timestamp, and netmask request discovery probes -n/-R: Never do DNS resolution/Always resolve [default: sometimes] --dns-servers : Specify custom DNS servers --system-dns: Use OS's DNS resolver SCAN TECHNIQUES: -sS/sT/sA/sW/sM: TCP SYN/Connect()/ACK/Window/Maimon scans -sU: UDP Scan -sN/sF/sX: TCP Null, FIN, and Xmas scans --scanflags : Customize TCP scan flags -sI : Idlescan -sO: IP protocol scan -b : FTP bounce scan PORT SPECIFICATION AND SCAN ORDER: -p : Only scan specified ports Ex: -p22; -p1-65535; -p U:53,111,137,T:21-25,80,139,8080 -F: Fast - Scan only the ports listed in the nmap-services file) -r: Scan ports consecutively - don't randomize SERVICE/VERSION DETECTION: -sV: Probe open ports to determine service/version info --version-intensity : Set from 0 (light) to 9 (try all probes) --version-light: Limit to most likely probes (intensity 2) --version-all: Try every single probe (intensity 9) --version-trace: Show detailed version scan activity (for debugging) OS DETECTION: -O: Enable OS detection (try 2nd generation w/fallback to 1st) -O2: Only use the new OS detection system (no fallback) -O1: Only use the old (1st generation) OS detection system --osscan-limit: Limit OS detection to promising targets --osscan-guess: Guess OS more aggressively TIMING AND PERFORMANCE: Options which take
Wednesday, May 21, 2008
Professor Messers Nmap Secrets Training Course
I used to wade through pages of security log files and reports in the hopes of keeping my network safe and my systems secure. But even after all of my analysis, I still wasn't completely sure that my systems were really protected. I was testing my systems with well-known security tools that checked for vulnerabilities, and I was spending a large part of my day reading through log files that told me a lot of details about what happened AFTER the security breaches had already occurred. I was missing important reconnaissance that would have shown me exactly what the bad guys were seeing.I knew Nmap could help, but I wasn't sure if I was taking advantage of everything it had to offer. Although it was simple to run the default Nmap scan, I wasn't completely certain what the output really meant and the hundreds of additional scan methods and options were almost overwhelming. I found many web sites that gave me pieces of what I needed, but detailed instructions and tutorials didn't seem to be available anywhere.To get a complete picture of Nmap's operation, I broke down every Nmap scan and every option to gain an understanding of exactly what was happening over the network. Through my research, I've made thousands of Nmap scans and sifted through millions of network packets. I've created documentation that will help you understand exactly how Nmap interacts with the devices across the network. This Professor Messer "Nmap Secrets" training course is the result of this extensive research.Download LinkCODECODEhttp://rapidshare.com/files/34280438/G-pmnst.r00http://rapidshare.com/files/34284833/G-pmnst.r01http://rapidshare.com/files/34330777/G-pmnst.r02http://rapidshare.com/files/34333205/G-pmnst.r03http://rapidshare.com/files/34335334/G-pmnst.r04http://rapidshare.com/files/34337541/G-pmnst.r05http://rapidshare.com/files/34339593/G-pmnst.r06http://rapidshare.com/files/34341587/G-pmnst.r07http://rapidshare.com/files/34343495/G-pmnst.r08http://rapidshare.com/files/34345248/G-pmnst.r09http://rapidshare.com/files/34347088/G-pmnst.r10http://rapidshare.com/files/34348797/G-pmnst.r11http://rapidshare.com/files/34350646/G-pmnst.r12http://rapidshare.com/files/34352248/G-pmnst.r13http://rapidshare.com/files/34353885/G-pmnst.r14http://rapidshare.com/files/34355939/G-pmnst.r15http://rapidshare.com/files/34357579/G-pmnst.r16http://rapidshare.com/files/34359092/G-pmnst.r17http://rapidshare.com/files/34359143/G-pmnst.r18http://rapidshare.com/files/34360789/G-pmnst.rarhttp://rapidshare.com/files/34360790/G-pmnst.sfv
Subscribe to:
Posts (Atom)