Recon
$ nmap -p- --min-rate=1000 -Pn -v 192.168.241.165
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-08-29 05:32 CDT
Initiating Parallel DNS resolution of 1 host. at 05:32
Completed Parallel DNS resolution of 1 host. at 05:32, 0.02s elapsed
Initiating Connect Scan at 05:32
Scanning 192.168.241.165 [65535 ports]
Discovered open port 53/tcp on 192.168.241.165
Discovered open port 445/tcp on 192.168.241.165
Discovered open port 3389/tcp on 192.168.241.165
Discovered open port 139/tcp on 192.168.241.165
Discovered open port 135/tcp on 192.168.241.165
Discovered open port 8080/tcp on 192.168.241.165
Connect Scan Timing: About 15.97% done; ETC: 05:35 (0:02:43 remaining)
Discovered open port 636/tcp on 192.168.241.165
Discovered open port 49666/tcp on 192.168.241.165
Discovered open port 49673/tcp on 192.168.241.165
Connect Scan Timing: About 31.50% done; ETC: 05:35 (0:02:13 remaining)
Discovered open port 9389/tcp on 192.168.241.165
Discovered open port 88/tcp on 192.168.241.165
Connect Scan Timing: About 46.78% done; ETC: 05:35 (0:01:44 remaining)
Discovered open port 49667/tcp on 192.168.241.165
Discovered open port 593/tcp on 192.168.241.165
Connect Scan Timing: About 62.33% done; ETC: 05:35 (0:01:13 remaining)
Discovered open port 3269/tcp on 192.168.241.165
Discovered open port 464/tcp on 192.168.241.165
Discovered open port 5985/tcp on 192.168.241.165
Connect Scan Timing: About 77.58% done; ETC: 05:35 (0:00:44 remaining)
Discovered open port 49677/tcp on 192.168.241.165
Discovered open port 49674/tcp on 192.168.241.165
Discovered open port 49703/tcp on 192.168.241.165
Discovered open port 389/tcp on 192.168.241.165
Discovered open port 49757/tcp on 192.168.241.165
Discovered open port 3268/tcp on 192.168.241.165
Completed Connect Scan at 05:35, 190.35s elapsed (65535 total ports)
Nmap scan report for 192.168.241.165
Host is up (0.045s latency).
Not shown: 65513 filtered tcp ports (no-response)
PORT STATE SERVICE
53/tcp open domain
88/tcp open kerberos-sec
135/tcp open msrpc
139/tcp open netbios-ssn
389/tcp open ldap
445/tcp open microsoft-ds
464/tcp open kpasswd5
593/tcp open http-rpc-epmap
636/tcp open ldapssl
3268/tcp open globalcatLDAP
3269/tcp open globalcatLDAPssl
3389/tcp open ms-wbt-server
5985/tcp open wsman
8080/tcp open http-proxy
9389/tcp open adws
49666/tcp open unknown
49667/tcp open unknown
49673/tcp open unknown
49674/tcp open unknown
49677/tcp open unknown
49703/tcp open unknown
49757/tcp open unknown
Read data files from: /usr/bin/../share/nmap
Nmap done: 1 IP address (1 host up) scanned in 190.43 seconds
Last updated