¡Esta es una revisión vieja del documento!
tar -tf nmap_vuln_hosts_kp.tar.gz nmap_vuln_hosts_kp.gnmap nmap_vuln_hosts_kp.nmap nmap_vuln_hosts_kp.xml resultado.txt tar -zxvf nmap_vuln_hosts_kp.tar.gz nmap_vuln_hosts_kp.gnmap nmap_vuln_hosts_kp.nmap nmap_vuln_hosts_kp.xml resultado.txt
Servicios y puertos que utilizan todos los hosts
cat resultado.txt | grep -vE 'unknown|filtered|Discovered' | grep -E 'closed|open' | sort | uniq | column -t 10000/tcp closed snet-sensor-mgmt 1025/tcp closed NFS-or-IIS 1042/tcp closed afrog 1048/tcp closed neod2 1057/tcp closed startron 1060/tcp closed polestar 1069/tcp closed cognex-insight 1070/tcp closed gmrupdateserv 113/tcp closed ident 1247/tcp closed visionpyramid 1433/tcp open ms-sql-s Microsoft SQL Server 2000 8.00.311; RTMa 143/tcp closed imap 19283/tcp closed keysrvr 1972/tcp closed intersys-cache 1984/tcp closed bigbrother 1999/tcp closed tcp-id-port 199/tcp closed smux 2049/tcp closed nfs 2121/tcp closed ccproxy-ftp 22/tcp closed ssh 22/tcp open ssh Cisco SSH 1.25 (protocol 1.99) 23/tcp closed telnet 23/tcp open telnet Cisco router telnetd 256/tcp closed fw1-secureremote 25/tcp open tcpwrapped 25/tcp open tcpwrapped 25/tcp open tcpwrapped 2638/tcp closed sybase 3003/tcp closed cgms 3306/tcp closed mysql 3389/tcp closed ms-wbt-server 3551/tcp closed apcupsd 3800/tcp closed pwgpsi 3851/tcp closed spectraport 4003/tcp closed pxc-splr-ft 4126/tcp closed ddrepl 443/tcp open ssl/https? 443/tcp open ssl/http nginx 1.18.0 443/tcp closed https 443/tcp open ssl/http Apache httpd 2.4.25 ((RedStar4.0) OpenSSL/1.0.1e-fips) 443/tcp open ssl/http nginx 1.18.0 443/tcp open ssl/http Apache httpd 2.4.25 ((RedStar4.0) OpenSSL/1.0.1e-fips) 443/tcp open ssl/https? 49154/tcp open msrpc Microsoft Windows RPC 5054/tcp closed rlm-admin 53/tcp closed domain 554/tcp closed rtsp 5560/tcp closed isqlplus 587/tcp closed submission 5900/tcp closed vnc 5987/tcp closed wbem-rmi 6005/tcp closed X11:5 6059/tcp closed X11:59 617/tcp closed sco-dtmgr 6789/tcp closed ibm-db2-admin 7443/tcp closed oracleas-https 7938/tcp closed lgtomapper 8086/tcp closed d-s-n 8088/tcp closed radan-http 80/tcp open http Microsoft IIS httpd 7.5 80/tcp open http nginx 1.18.0 80/tcp open http nginx 1.18.0 80/tcp open http Apache httpd 2.4.25 ((RedStar4.0) OpenSSL/1.0.1e-fips) 80/tcp open http Apache httpd 2.4.25 ((RedStar4.0) OpenSSL/1.0.1e-fips PHP/5.6.2) 80/tcp open http nginx 1.18.0 80/tcp open http Apache httpd 2.4.25 ((RedStar4.0) OpenSSL/1.0.1e-fips) 80/tcp open http Apache httpd 2.4.25 ((RedStar4.0) OpenSSL/1.0.1e-fips PHP/5.6.2) 80/tcp open http Apache httpd 2.4.25 ((RedStar4.0) OpenSSL/1.0.1e-fips PHP/5.6.2) 80/tcp open http nginx 1.18.0 8192/tcp closed sophos 8402/tcp closed abarsd 8873/tcp closed dxspider 8888/tcp closed sun-answerbook 8888/tcp open sun-answerbook? 9666/tcp closed zoomcp 993/tcp closed imaps 995/tcp closed pop3s 995/tcp open pop3s? 995/tcp open pop3s? 999/tcp closed garcon Not shown: 977 closed ports Not shown: 985 closed ports Not shown: 992 closed ports
Puertos
cat resultado.txt | grep -vE 'unknown|filtered|Discovered' | grep -E 'closed|open' | sort | uniq | column -t | grep -Eo '^[0-9]+[^\/$]' | sort -n | uniq 22 23 25 53 80 113 143 199 256 443 554 587 617 993 995 999 1025 1042 1048 1057 1060 1069 1070 1247 1433 1972 1984 1999 2049 2121 2638 3003 3306 3389 3551 3800 3851 4003 4126 5054 5560 5900 5987 6005 6059 6789 7443 7938 8086 8088 8192 8402 8873 8888 9666 10000 19283 49154
O
cat resultado.txt | grep -vE 'unknown|filtered|Discovered' | grep -E 'closed|open' | sort | uniq | column -t | grep -Eo '^[0-9]+[^\/$]' | sort -n | uniq | sed -z 's/\n/,/g' 22,23,25,53,80,113,143,199,256,443,554,587,617,993,995,999,1025,1042,1048,1057,1060,1069,1070,1247,1433,1972,1984,1999,2049,2121,2638,3003,3306,3389,3551,3800,3851,4003,4126,5054,5560,5900,5987,6005,6059,6789,7443,7938,8086,8088,8192,8402,8873,8888,9666,10000,19283,49154,