Detecção de Sistema Operacional com NMAP
Publicado por Willdson Almeida em 29/10/2018
[ Hits: 20.112 ]
Starting Nmap 7.40 ( ) at 2018-10-15 19:04 -04 Nmap scan report for <alvo> Host is up (0.00054s latency). Not shown: 982 filtered ports PORT STATE SERVICE 53/tcp open domain 88/tcp open kerberos-sec 135/tcp open msrpc 139/tcp open netbios-ssn 389/tcp open ldap 445/tcp open microsoft-ds 464/tcp open kpasswd5 593/tcp open http-rpc-epmap 636/tcp open ldapssl 3268/tcp open globalcatLDAP 3269/tcp open globalcatLDAPssl 3389/tcp open ms-wbt-server 49154/tcp open unknown 49155/tcp open unknown 49157/tcp open unknown 49158/tcp open unknown 49159/tcp open unknown 49163/tcp open unknown Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port Device type: general purpose Running: Microsoft Windows 2012 ### DESTACAR OS CPE: cpe:/o:microsoft:windows_server_2012:r2 ### DESTACAR OS details: Microsoft Windows Server 2012 or Windows Server 2012 R2 ### DESTACAR OS detection performed. Please report any incorrect results at . Nmap done: 1 IP address (1 host up) scanned in 26.79 secondsNeste caso o sistema operacional possuía uma assinatura conhecida e pôde ser detectado.
Starting Nmap 7.40 ( ) at 2018-10-15 19:10 -04 Nmap scan report for Host is up (0.00050s latency). Not shown: 994 closed ports PORT STATE SERVICE 22/tcp open ssh 25/tcp filtered smtp 80/tcp open http 111/tcp open rpcbind 1433/tcp filtered ms-sql-s 1434/tcp filtered ms-sql-m Device type: general purpose Running: Linux 2.6.X ### DESTACAR OS CPE: cpe:/o:linux:linux_kernel:2.6 ### DESTACAR OS details: Linux 2.6.26 - 2.6.35 ### DESTACAR Network Distance: 3 hopsO parâmetro "-v" pode ser utilizado para uma visão mais detalhada:
Starting Nmap 7.40 ( ) at 2018-10-15 19:19 -04 Initiating Ping Scan at 19:19 Scanning <alvo> [4 ports] Completed Ping Scan at 19:19, 0.22s elapsed (1 total hosts) Initiating Parallel DNS resolution of 1 host. at 19:19 Completed Parallel DNS resolution of 1 host. at 19:19, 0.00s elapsed Initiating SYN Stealth Scan at 19:19 Scanning <alvo> [1000 ports] Discovered open port 80/tcp on <alvo> Discovered open port 22/tcp on <alvo> Discovered open port 111/tcp on <alvo> Increasing send delay for <alvo> from 0 to 5 due to 50 out of 165 dropped probes since last increase. Increasing send delay for <alvo> from 5 to 10 due to 28 out of 92 dropped probes since last increase. Increasing send delay for <alvo> from 10 to 20 due to 11 out of 30 dropped probes since last increase. Increasing send delay for <alvo> from 20 to 40 due to 11 out of 25 dropped probes since last increase. Increasing send delay for <alvo> from 40 to 80 due to 11 out of 30 dropped probes since last increase. SYN Stealth Scan Timing: About 48.10% done; ETC: 19:20 (0:00:33 remaining) Completed SYN Stealth Scan at 19:20, 92.21s elapsed (1000 total ports) Initiating OS detection (try #1) against <alvo> Nmap scan report for <alvo> Host is up (0.0052s latency). Not shown: 994 closed ports PORT STATE SERVICE 22/tcp open ssh 25/tcp filtered smtp 80/tcp open http 111/tcp open rpcbind 1433/tcp filtered ms-sql-s 1434/tcp filtered ms-sql-m Device type: general purpose Running: Linux 2.6.X ### DESTACAR OS CPE: cpe:/o:linux:linux_kernel:2.6 ### DESTACAR OS details: Linux 2.6.26 - 2.6.35 ### DESTACAR Uptime guess: 62.079 days (since Tue Aug 14 17:27:21 2018) ### DESTACAR Network Distance: 3 hops ### DESTACAR TCP Sequence Prediction: Difficulty=256 (Good luck!) IP ID Sequence Generation: All zeros Read data files from: /usr/bin/../share/nmap OS detection performed. Please report any incorrect results at . Nmap done: 1 IP address (1 host up) scanned in 95.41 seconds Raw packets sent: 1451 (65.238KB) | Rcvd: 3569 (238.626KB)No exemplo acima outros parâmetros foram mostrados, incluindo uptime.
