Recon
$ nmap -p- --min-rate=1000 -Pn 192.168.172.40 -v
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-08-16 06:11 CDT
Initiating Parallel DNS resolution of 1 host. at 06:11
Completed Parallel DNS resolution of 1 host. at 06:11, 0.02s elapsed
Initiating Connect Scan at 06:11
Scanning 192.168.172.40 [65535 ports]
Discovered open port 53/tcp on 192.168.172.40
Discovered open port 3389/tcp on 192.168.172.40
Discovered open port 139/tcp on 192.168.172.40
Discovered open port 135/tcp on 192.168.172.40
Discovered open port 445/tcp on 192.168.172.40
Discovered open port 49153/tcp on 192.168.172.40
Discovered open port 49155/tcp on 192.168.172.40
Discovered open port 49157/tcp on 192.168.172.40
Discovered open port 5357/tcp on 192.168.172.40
Discovered open port 49154/tcp on 192.168.172.40
Discovered open port 49156/tcp on 192.168.172.40
Discovered open port 49152/tcp on 192.168.172.40
Discovered open port 49158/tcp on 192.168.172.40
Completed Connect Scan at 06:12, 43.20s elapsed (65535 total ports)
Nmap scan report for 192.168.172.40
Host is up (0.043s latency).
Not shown: 65522 closed tcp ports (conn-refused)
PORT STATE SERVICE
53/tcp open domain
135/tcp open msrpc
139/tcp open netbios-ssn
445/tcp open microsoft-ds
3389/tcp open ms-wbt-server
5357/tcp open wsdapi
49152/tcp open unknown
49153/tcp open unknown
49154/tcp open unknown
49155/tcp open unknown
49156/tcp open unknown
49157/tcp open unknown
49158/tcp open unknown
Read data files from: /usr/bin/../share/nmap
Nmap done: 1 IP address (1 host up) scanned in 43.28 secondsLast updated