C:\nmap>nmap target -sV -sR -P0 -vv -O
Starting nmap 3.81 (
http://www.insecure.org/nmap ) at 2005-02-27 15:28 Central
Standard Time
Initiating SYN Stealth Scan against target [1663 ports] at 15:28
Discovered open port 22/tcp on target
Discovered open port 80/tcp on target
Discovered open port 25/tcp on target
Discovered open port 113/tcp on target
Discovered open port 587/tcp on target
The SYN Stealth Scan took 15.64s to scan 1663 total ports.
Initiating service scan against 5 services on target) at 15:28
The service scan took 5.22s to scan 5 services on 1 host.
For OSScan assuming port 22 is open, 1 is closed, and neither are firewalled
For OSScan assuming port 22 is open, 1 is closed, and neither are firewalled
Insufficient responses for TCP sequencing (0), OS detection may be less accurate
For OSScan assuming port 22 is open, 1 is closed, and neither are firewalled
Insufficient responses for TCP sequencing (3), OS detection may be less accurate
Host target appears to be up ... good.
Interesting ports on target:
(The 1650 ports scanned but not shown below are in state: closed)
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 3.9p1 (protocol 1.99)
25/tcp open smtp Sendmail 8.13.3/8.13.3
80/tcp open http Apache httpd 1.3.33 ((Unix))
113/tcp open ident OpenBSD identd
135/tcp filtered msrpc
136/tcp filtered profile
137/tcp filtered netbios-ns
138/tcp filtered netbios-dgm
139/tcp filtered netbios-ssn
445/tcp filtered microsoft-ds
587/tcp open smtp Sendmail 8.13.3/8.13.3
1080/tcp filtered socks
1400/tcp filtered cadkey-tablet
No exact OS matches for host (If you know what OS is running on it, see
http://w
ww.insecure.org/cgi-bin/nmap-submit.cgi).
TCP/IP fingerprint:
SInfo(V=3.81%P=i686-pc-windows-windows%D=2/27%Tm=42223B8B%O=22%C=1)
TSeq(Class=RI%gcd=1%SI=2649B3%IPID=Z%TS=U)
T1(Resp=Y%DF=Y%W=16D0%ACK=O%Flags=A%Ops=)
T1(Resp=Y%DF=Y%W=16D0%ACK=S++%Flags=AS%Ops=MNW)
T2(Resp=N)
T2(Resp=N)
T3(Resp=Y%DF=Y%W=16D0%ACK=O%Flags=A%Ops=)
T3(Resp=Y%DF=Y%W=16D0%ACK=S++%Flags=AS%Ops=MNW)
T4(Resp=Y%DF=Y%W=0%ACK=O%Flags=R%Ops=)
T4(Resp=Y%DF=Y%W=0%ACK=O%Flags=R%Ops=)
T5(Resp=Y%DF=Y%W=0%ACK=S++%Flags=AR%Ops=)
T5(Resp=Y%DF=Y%W=0%ACK=S++%Flags=AR%Ops=)
T6(Resp=Y%DF=Y%W=0%ACK=O%Flags=R%Ops=)
T6(Resp=Y%DF=Y%W=0%ACK=O%Flags=R%Ops=)
T7(Resp=Y%DF=Y%W=0%ACK=S++%Flags=AR%Ops=)
T7(Resp=Y%DF=Y%W=0%ACK=S++%Flags=AR%Ops=)
PU(Resp=Y%DF=N%TOS=20%IPLEN=164%RIPTL=148%RIPCK=E%UCK=F%ULEN=134%DAT=E)
PU(Resp=Y%DF=N%TOS=20%IPLEN=164%RIPTL=148%RIPCK=E%UCK=F%ULEN=134%DAT=E)
IPID Sequence Generation: All zeros
Nmap finished: 1 IP address (1 host up) scanned in 34.625 seconds
Raw packets sent: 1766 (71.5KB) | Rcvd: 1738 (83.6KB)
C:\nmap>