Friday, May 26, 2023

CEH: Identifying Services & Scanning Ports | Gathering Network And Host Information | NMAP


CEH scanning methodology is the important step i.e. scanning for open ports over a network. Port is the technique used to scan for open ports. This methodology performed for the observation of the open and close ports running on the targeted machine. Port scanning gathered a valuable information about  the host and the weakness of the system more than ping sweep.

Network Mapping (NMAP)

Basically NMAP stands for Network Mapping. A free open source tool used for scanning ports, service detection, operating system detection and IP address detection of the targeted machine. Moreover, it performs a quick and efficient scanning a large number of machines in a single session to gathered information about ports and system connected to the network. It can be used over UNIX, LINUX and Windows.

There are some terminologies which we should understand directly whenever we heard like Open ports, Filtered ports and Unfiltered ports.

Open Ports means the target machine accepts incoming request on that port cause these ports are used to accept packets due to the configuration of TCP and UDP.

Filtered ports means the ports are usually opened but due to firewall or network filtering the nmap doesn't detect the open ports.

Unfiltered means the nmap is unable to determine whether the port is open or filtered  while the port is accessible.

Types Of NMAP Scan


Scan Type Description
Null Scan This scan is performed by both an ethical hackers and black hat hackers. This scan is used to identify the TCP port whether it is open or closed. Moreover, it only works over UNIX  based systems.
TCP connect The attacker makes a full TCP connection to the target system. There's an opportunity to connect the specifically port which you want to connect with. SYN/ACK signal observed for open ports while RST/ACK signal observed for closed ports.
ACK scan Discovering the state of firewall with the help ACK scan whether it is stateful or stateless. This scan is typically used for the detection of filtered ports if ports are filtered. Moreover, it only works over the UNIX based systems.
Windows scan This type of scan is similar to the ACK scan but there is ability to detect an open ports as well filtered ports.
SYN stealth scan This malicious attack is mostly performed by attacker to detect the communication ports without making full connection to the network.
This is also known as half-open scanning. 

 

All NMAP Commands 


Commands Scan Performed
-sT TCP connect scan
-sS SYN scan
-sF FIN scan
-sX XMAS tree scan
-sN Null scan
-sP Ping scan
-sU UDP scan
-sO Protocol scan
-sA ACK scan
-sW Window scan
-sR RPC scan
-sL List/DNS scan
-sI Idle scan
-Po Don't ping
-PT TCP ping
-PS SYN ping
-PI ICMP ping
-PB ICMP and TCP ping
-PB ICMP timestamp
-PM ICMP netmask
-oN Normal output
-oX XML output
-oG Greppable output
-oA All output
-T Paranoid Serial scan; 300 sec between scans
-T Sneaky Serial scan; 15 sec between scans
-T Polite Serial scan; .4 sec between scans
-T Normal Parallel scan
-T Aggressive Parallel scan, 300 sec timeout, and 1.25 sec/probe
-T Insane Parallel scan, 75 sec timeout, and .3 sec/probe

 

How to Scan

You can perform nmap scanning over the windows command prompt followed by the syntax below. For example, If you wanna scan the host with the IP address 192.168.2.1 using a TCP connect scan type, enter this command:

nmap 192.168.2.1 –sT

nmap -sT 192.168.2.1

Related posts


  1. Blackhat Hacker Tools
  2. Android Hack Tools Github
  3. Hack Tool Apk
  4. Pentest Tools Tcp Port Scanner
  5. Hacker Tools For Ios
  6. Hack Tools Download
  7. Pentest Tools
  8. Hacking Tools For Beginners
  9. New Hack Tools
  10. Pentest Tools
  11. Best Hacking Tools 2020
  12. Pentest Tools Framework
  13. Hack Tools For Ubuntu
  14. Hacker Tools Apk Download
  15. Hack App
  16. Hack Apps
  17. Hack Rom Tools
  18. Usb Pentest Tools
  19. Hack Tools Online
  20. Hack Tools Download
  21. Pentest Tools Github
  22. Hack Tools Pc
  23. Best Hacking Tools 2020
  24. How To Make Hacking Tools
  25. Pentest Box Tools Download
  26. Hacker Tools Online
  27. Tools For Hacker
  28. Pentest Tools Kali Linux
  29. Hacker Tools For Ios
  30. World No 1 Hacker Software
  31. What Is Hacking Tools
  32. What Are Hacking Tools
  33. Hacking Tools For Games
  34. Pentest Tools Github
  35. Pentest Tools Website Vulnerability
  36. Best Pentesting Tools 2018
  37. What Is Hacking Tools
  38. Hack Tools For Pc
  39. Top Pentest Tools
  40. Growth Hacker Tools
  41. Hacking Tools And Software
  42. Pentest Reporting Tools
  43. What Are Hacking Tools
  44. Pentest Tools Url Fuzzer
  45. Hacking Tools Name
  46. Hacker Tools
  47. Pentest Tools Linux
  48. Hacking Apps
  49. Hacking Tools Windows 10
  50. Ethical Hacker Tools
  51. Physical Pentest Tools
  52. Hacker Security Tools
  53. Hacker Hardware Tools
  54. Hacking Tools Usb
  55. Hacker Tools For Ios
  56. Hack Tool Apk
  57. Hacking Tools Usb
  58. Hacking Tools Name
  59. Hacker Tools 2020
  60. Pentest Recon Tools
  61. Pentest Reporting Tools
  62. Hack Tools Github
  63. Pentest Tools Website Vulnerability
  64. Hacking Tools Free Download
  65. Pentest Tools Apk
  66. Pentest Tools Online
  67. Hacking Tools Name
  68. Hacking Tools Software
  69. New Hack Tools
  70. Hacking Tools Hardware
  71. Hacking Tools For Games
  72. Hacking Tools For Kali Linux
  73. Nsa Hacker Tools
  74. Hacking Tools Download
  75. Pentest Tools For Ubuntu
  76. Hacking Tools Pc
  77. Free Pentest Tools For Windows
  78. Pentest Tools Port Scanner
  79. Hacker Tools Software
  80. Hacker Tools Apk Download
  81. Termux Hacking Tools 2019
  82. Black Hat Hacker Tools
  83. Hacking Tools Name
  84. Hacking Tools And Software
  85. Free Pentest Tools For Windows
  86. Pentest Recon Tools
  87. Hacker Security Tools

No comments:

Post a Comment