暗无天日

=============>DarkSun的个人博客

使用nmap进行网络发现

nmap是一款网络发现工具,它可以扫描网络主机的开放端口并推测出主机操作系统,提供服务等信息。

摘自 https://linuxtechlab.com/beginners-reference-guide-nmap-command/

扫描主机

扫描单个主机

nmap最简单的用法莫过于直接用它来扫描某个主机了

nmap 14.120.7.52
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-12 19:54 HKT
Nmap scan report for 14.120.7.52
Host is up (0.00014s latency).
Not shown: 998 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
6667/tcp open  irc

Nmap done: 1 IP address (1 host up) scanned in 0.28 seconds

当然,nmap也支持主机名扫描

nmap www.baidu.com
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:21 HKT
Nmap scan report for www.baidu.com (14.215.177.39)
Host is up (0.0092s latency).
Other addresses for www.baidu.com (not scanned): 14.215.177.38
Not shown: 998 filtered ports
PORT    STATE SERVICE
80/tcp  open  http
443/tcp open  https

Nmap done: 1 IP address (1 host up) scanned in 4.60 seconds

扫描多个主机

你也可以让nmap一次性扫描多个台主机

nmap 14.120.7.52 14.120.3.84
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-12 19:56 HKT
Nmap scan report for 14.120.7.52
Host is up (0.00013s latency).
Not shown: 998 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
6667/tcp open  irc

Nmap scan report for 14.120.3.84
Host is up (0.061s latency).
All 1000 scanned ports on 14.120.3.84 are closed

Nmap done: 2 IP addresses (2 hosts up) scanned in 2.38 seconds

扫描一个范围的主机

可以用 - 来指定一个主机范围

nmap 14.120.7.52-70
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-12 19:58 HKT
Nmap scan report for 14.120.7.52
Host is up (0.00019s latency).
Not shown: 998 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
6667/tcp open  irc

Nmap scan report for 14.120.7.55
Host is up (0.035s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap done: 19 IP addresses (2 hosts up) scanned in 17.47 seconds

扫描一个子网

我们还能直接指定一个子网

nmap 14.120.7.0/24
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-12 20:00 HKT
Nmap scan report for 14.120.7.52
Host is up (0.00014s latency).
Not shown: 998 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
6667/tcp open  irc

Nmap scan report for 14.120.7.55
Host is up (0.027s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap scan report for 14.120.7.72
Host is up (0.016s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap scan report for 14.120.7.108
Host is up (0.0083s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap scan report for 14.120.7.145
Host is up (0.016s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap scan report for 14.120.7.167
Host is up (0.0099s latency).
Not shown: 997 closed ports
PORT      STATE    SERVICE
445/tcp   filtered microsoft-ds
4444/tcp  filtered krb524
55555/tcp open     unknown

Nmap scan report for 14.120.7.168
Host is up (0.014s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap scan report for 14.120.7.175
Host is up (0.0089s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap scan report for 14.120.7.193
Host is up (0.012s latency).
All 1000 scanned ports on 14.120.7.193 are closed

Nmap scan report for 14.120.7.198
Host is up (0.011s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap scan report for 14.120.7.208
Host is up (0.015s latency).
Not shown: 990 closed ports
PORT      STATE    SERVICE
80/tcp    open     http
135/tcp   open     msrpc
139/tcp   open     netbios-ssn
445/tcp   filtered microsoft-ds
4444/tcp  filtered krb524
49152/tcp open     unknown
49153/tcp open     unknown
49155/tcp open     unknown
49156/tcp open     unknown
49159/tcp open     unknown

Nmap scan report for 14.120.7.209
Host is up (0.044s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap scan report for 14.120.7.239
Host is up (0.054s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap scan report for 14.120.7.244
Host is up (0.022s latency).
Not shown: 998 closed ports
PORT     STATE    SERVICE
445/tcp  filtered microsoft-ds
4444/tcp filtered krb524

Nmap done: 256 IP addresses (14 hosts up) scanned in 43.24 seconds

从文件中读取要扫描的IP地址

file=$(mktemp)
echo "14.120.16.124" > ${file}
echo "14.120.25.246" >> ${file}
nmap -iL ${file}
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:20 HKT
Nmap scan report for 14.120.25.246
Host is up (0.00021s latency).
Not shown: 997 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
1080/tcp open  socks
6667/tcp open  irc

Nmap done: 2 IP addresses (1 host up) scanned in 1.45 seconds

扫描端口

通过 -p 参数可以指定扫描主机的哪些端口

扫描单个端口

nmap -p 22 14.120.25.246
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:23 HKT
Nmap scan report for 14.120.25.246
Host is up (0.00011s latency).

PORT   STATE SERVICE
22/tcp open  ssh

Nmap done: 1 IP address (1 host up) scanned in 0.16 seconds

也可以扫描一个范围的端口

nmap -p 22-1024 14.120.25.246
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:24 HKT
Nmap scan report for 14.120.25.246
Host is up (0.00015s latency).
Not shown: 1002 closed ports
PORT   STATE SERVICE
22/tcp open  ssh

Nmap done: 1 IP address (1 host up) scanned in 0.20 seconds

扫描范围时,也可以省略端口下限和上限

set -x && exec 2>&1
nmap -p -2000 14.120.25.246
nmap -p 2000- 14.120.25.246
nmap -p - 14.120.25.246
+ nmap -p -2000 14.120.25.246
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:27 HKT
Nmap scan report for 14.120.25.246
Host is up (0.00014s latency).
Not shown: 1998 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
1080/tcp open  socks

Nmap done: 1 IP address (1 host up) scanned in 0.14 seconds
+ nmap -p 2000- 14.120.25.246
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:27 HKT
Nmap scan report for 14.120.25.246
Host is up (0.00015s latency).
Not shown: 63534 closed ports
PORT      STATE SERVICE
6667/tcp  open  irc
34642/tcp open  unknown

Nmap done: 1 IP address (1 host up) scanned in 2.56 seconds
+ nmap -p - 14.120.25.246
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:27 HKT
Nmap scan report for 14.120.25.246
Host is up (0.00014s latency).
Not shown: 65531 closed ports
PORT      STATE SERVICE
22/tcp    open  ssh
1080/tcp  open  socks
6667/tcp  open  irc
34642/tcp open  unknown

Nmap done: 1 IP address (1 host up) scanned in 2.66 seconds

执行快速扫描

-F 参数执行快速扫描,所谓快速扫描会扫描最常用的100个端口

nmap -F localhost
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:32 HKT
Nmap scan report for localhost (127.0.0.1)
Host is up (0.00014s latency).
rDNS record for 127.0.0.1: T520.localdomain
Not shown: 99 closed ports
PORT   STATE SERVICE
22/tcp open  ssh

Nmap done: 1 IP address (1 host up) scanned in 0.04 seconds

设置扫描协议

通过 -sT-sU 参数可以指定扫描TCP端口或是UDP端口.

扫描TCP端口:

nmap -sT localhost
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:38 HKT
Nmap scan report for localhost (127.0.0.1)
Host is up (0.00020s latency).
rDNS record for 127.0.0.1: T520.localdomain
Not shown: 997 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
1080/tcp open  socks
6667/tcp open  irc

Nmap done: 1 IP address (1 host up) scanned in 0.07 seconds

扫描UDP端口:

sudo nmap -sU localhost
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:43 HKT
Nmap scan report for localhost (127.0.0.1)
Host is up (0.000023s latency).
rDNS record for 127.0.0.1: T520.localdomain
Not shown: 999 closed ports
PORT   STATE         SERVICE
68/udp open|filtered dhcpc

Nmap done: 1 IP address (1 host up) scanned in 2.47 seconds

Ping设备

判断设备是否在线,可以使用 sP 参数来ping该设备

nmap -sP 14.120.25.0/24
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:35 HKT
Nmap scan report for 14.120.25.1
Host is up (0.016s latency).
Nmap scan report for 14.120.25.3
Host is up (0.080s latency).
Nmap scan report for 14.120.25.4
Host is up (0.012s latency).
Nmap scan report for 14.120.25.5
Host is up (0.077s latency).
Nmap scan report for 14.120.25.7
Host is up (0.19s latency).
Nmap scan report for 14.120.25.23
Host is up (0.017s latency).
Nmap scan report for 14.120.25.36
Host is up (0.12s latency).
Nmap scan report for 14.120.25.37
Host is up (0.042s latency).
Nmap scan report for 14.120.25.41
Host is up (0.070s latency).
Nmap scan report for 14.120.25.42
Host is up (0.11s latency).
Nmap scan report for 14.120.25.44
Host is up (0.048s latency).
Nmap scan report for 14.120.25.47
Host is up (0.045s latency).
Nmap scan report for 14.120.25.57
Host is up (0.037s latency).
Nmap scan report for 14.120.25.59
Host is up (0.036s latency).
Nmap scan report for 14.120.25.66
Host is up (0.074s latency).
Nmap scan report for 14.120.25.81
Host is up (0.13s latency).
Nmap scan report for 14.120.25.87
Host is up (0.098s latency).
Nmap scan report for 14.120.25.103
Host is up (0.051s latency).
Nmap scan report for 14.120.25.107
Host is up (0.055s latency).
Nmap scan report for 14.120.25.109
Host is up (0.063s latency).
Nmap scan report for 14.120.25.114
Host is up (0.070s latency).
Nmap scan report for 14.120.25.131
Host is up (0.14s latency).
Nmap scan report for 14.120.25.132
Host is up (0.0084s latency).
Nmap scan report for 14.120.25.138
Host is up (0.045s latency).
Nmap scan report for 14.120.25.144
Host is up (0.11s latency).
Nmap scan report for 14.120.25.148
Host is up (0.029s latency).
Nmap scan report for 14.120.25.150
Host is up (0.10s latency).
Nmap scan report for 14.120.25.163
Host is up (0.14s latency).
Nmap scan report for 14.120.25.164
Host is up (0.11s latency).
Nmap scan report for 14.120.25.168
Host is up (0.17s latency).
Nmap scan report for 14.120.25.173
Host is up (0.038s latency).
Nmap scan report for 14.120.25.174
Host is up (0.018s latency).
Nmap scan report for 14.120.25.178
Host is up (0.015s latency).
Nmap scan report for 14.120.25.197
Host is up (0.12s latency).
Nmap scan report for 14.120.25.200
Host is up (0.31s latency).
Nmap scan report for 14.120.25.216
Host is up (0.072s latency).
Nmap scan report for 14.120.25.218
Host is up (0.030s latency).
Nmap scan report for 14.120.25.227
Host is up (0.078s latency).
Nmap scan report for 14.120.25.229
Host is up (0.11s latency).
Nmap scan report for 14.120.25.233
Host is up (0.39s latency).
Nmap scan report for 14.120.25.237
Host is up (0.15s latency).
Nmap scan report for 14.120.25.239
Host is up (0.23s latency).
Nmap scan report for 14.120.25.244
Host is up (0.30s latency).
Nmap scan report for 14.120.25.245
Host is up (0.14s latency).
Nmap scan report for 14.120.25.246
Host is up (0.000080s latency).
Nmap scan report for 14.120.25.252
Host is up (0.15s latency).
Nmap done: 256 IP addresses (46 hosts up) scanned in 11.69 seconds

扫描操作系统

通过 -O 参数可以让nmap尝试猜测主机的操作系统

sudo nmap -O 14.120.25.246
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:46 HKT
Nmap scan report for 14.120.25.246
Host is up (0.000056s latency).
Not shown: 998 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
6667/tcp open  irc
Device type: general purpose
Running: Linux 3.X|4.X
OS CPE: cpe:/o:linux:linux_kernel:3 cpe:/o:linux:linux_kernel:4
OS details: Linux 3.8 - 4.14
Network Distance: 0 hops

OS detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 1.98 seconds

扫描主机提供的服务

通过 -A 参数可以扫描主机操作系统和所启用的服务

nmap -A 14.120.25.246
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:48 HKT
Nmap scan report for 14.120.25.246
Host is up (0.000059s latency).
Not shown: 998 closed ports
PORT     STATE SERVICE VERSION
22/tcp   open  ssh     OpenSSH 7.8 (protocol 2.0)
| ssh-hostkey: 
|   2048 20:d7:1b:de:66:e6:cc:df:25:f2:ff:40:f4:83:5a:dd (RSA)
|   256 7d:b3:9d:3d:06:f3:e1:99:7f:a5:23:79:d0:0f:ab:6a (ECDSA)
|_  256 5e:a8:4e:38:02:83:a1:d2:f2:5e:f4:67:8f:5b:43:01 (ED25519)
6667/tcp open  irc     BitlBee IRCd
Device type: general purpose
Running: Linux 3.X|4.X
OS CPE: cpe:/o:linux:linux_kernel:3 cpe:/o:linux:linux_kernel:4
OS details: Linux 3.8 - 4.14
Network Distance: 0 hops
Service Info: Host: :14.120.25.246

OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 9.41 seconds

输出结果到文件中

可以通过 -o 选项来将扫描结果存入文件中,nmap允许将结果以多种格式的方式存储,最常见的有普通模式和XML模式

将结果以普通格式存入文件中:

set -x && exec 2>&1
nmap -oN /tmp/output.txt localhost
cat /tmp/output.txt
+ nmap -oN /tmp/output.txt localhost
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:58 HKT
Nmap scan report for localhost (127.0.0.1)
Host is up (0.00021s latency).
rDNS record for 127.0.0.1: T520.localdomain
Not shown: 998 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
6667/tcp open  irc

Nmap done: 1 IP address (1 host up) scanned in 0.07 seconds
+ cat /tmp/output.txt
# Nmap 7.70 scan initiated Thu Sep 13 17:58:41 2018 as: nmap -oN /tmp/output.txt localhost
Nmap scan report for localhost (127.0.0.1)
Host is up (0.00021s latency).
rDNS record for 127.0.0.1: T520.localdomain
Not shown: 998 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
6667/tcp open  irc

# Nmap done at Thu Sep 13 17:58:41 2018 -- 1 IP address (1 host up) scanned in 0.07 seconds

将结果以XML格式存入文件中:

set -x && exec 2>&1
nmap -oX /tmp/output.xml localhost
cat /tmp/output.xml
+ nmap -oX /tmp/output.xml localhost
Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-13 17:59 HKT
Nmap scan report for localhost (127.0.0.1)
Host is up (0.00013s latency).
rDNS record for 127.0.0.1: T520.localdomain
Not shown: 998 closed ports
PORT     STATE SERVICE
22/tcp   open  ssh
6667/tcp open  irc

Nmap done: 1 IP address (1 host up) scanned in 0.06 seconds
+ cat /tmp/output.xml
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE nmaprun>
<?xml-stylesheet href="file:///usr/bin/../share/nmap/nmap.xsl" type="text/xsl"?>
<!-- Nmap 7.70 scan initiated Thu Sep 13 17:59:17 2018 as: nmap -oX /tmp/output.xml localhost -->
<nmaprun scanner="nmap" args="nmap -oX /tmp/output.xml localhost" start="1536832757" startstr="Thu Sep 13 17:59:17 2018" version="7.70" xmloutputversion="1.04">
<scaninfo type="connect" protocol="tcp" numservices="1000" services="1,3-4,6-7,9,13,17,19-26,30,32-33,37,42-43,49,53,70,79-85,88-90,99-100,106,109-111,113,119,125,135,139,143-144,146,161,163,179,199,211-212,222,254-256,259,264,280,301,306,311,340,366,389,406-407,416-417,425,427,443-445,458,464-465,481,497,500,512-515,524,541,543-545,548,554-555,563,587,593,616-617,625,631,636,646,648,666-668,683,687,691,700,705,711,714,720,722,726,749,765,777,783,787,800-801,808,843,873,880,888,898,900-903,911-912,981,987,990,992-993,995,999-1002,1007,1009-1011,1021-1100,1102,1104-1108,1110-1114,1117,1119,1121-1124,1126,1130-1132,1137-1138,1141,1145,1147-1149,1151-1152,1154,1163-1166,1169,1174-1175,1183,1185-1187,1192,1198-1199,1201,1213,1216-1218,1233-1234,1236,1244,1247-1248,1259,1271-1272,1277,1287,1296,1300-1301,1309-1311,1322,1328,1334,1352,1417,1433-1434,1443,1455,1461,1494,1500-1501,1503,1521,1524,1533,1556,1580,1583,1594,1600,1641,1658,1666,1687-1688,1700,1717-1721,1723,1755,1761,1782-1783,1801,1805,1812,1839-1840,1862-1864,1875,1900,1914,1935,1947,1971-1972,1974,1984,1998-2010,2013,2020-2022,2030,2033-2035,2038,2040-2043,2045-2049,2065,2068,2099-2100,2103,2105-2107,2111,2119,2121,2126,2135,2144,2160-2161,2170,2179,2190-2191,2196,2200,2222,2251,2260,2288,2301,2323,2366,2381-2383,2393-2394,2399,2401,2492,2500,2522,2525,2557,2601-2602,2604-2605,2607-2608,2638,2701-2702,2710,2717-2718,2725,2800,2809,2811,2869,2875,2909-2910,2920,2967-2968,2998,3000-3001,3003,3005-3007,3011,3013,3017,3030-3031,3052,3071,3077,3128,3168,3211,3221,3260-3261,3268-3269,3283,3300-3301,3306,3322-3325,3333,3351,3367,3369-3372,3389-3390,3404,3476,3493,3517,3527,3546,3551,3580,3659,3689-3690,3703,3737,3766,3784,3800-3801,3809,3814,3826-3828,3851,3869,3871,3878,3880,3889,3905,3914,3918,3920,3945,3971,3986,3995,3998,4000-4006,4045,4111,4125-4126,4129,4224,4242,4279,4321,4343,4443-4446,4449,4550,4567,4662,4848,4899-4900,4998,5000-5004,5009,5030,5033,5050-5051,5054,5060-5061,5080,5087,5100-5102,5120,5190,5200,5214,5221-5222,5225-5226,5269,5280,5298,5357,5405,5414,5431-5432,5440,5500,5510,5544,5550,5555,5560,5566,5631,5633,5666,5678-5679,5718,5730,5800-5802,5810-5811,5815,5822,5825,5850,5859,5862,5877,5900-5904,5906-5907,5910-5911,5915,5922,5925,5950,5952,5959-5963,5987-5989,5998-6007,6009,6025,6059,6100-6101,6106,6112,6123,6129,6156,6346,6389,6502,6510,6543,6547,6565-6567,6580,6646,6666-6669,6689,6692,6699,6779,6788-6789,6792,6839,6881,6901,6969,7000-7002,7004,7007,7019,7025,7070,7100,7103,7106,7200-7201,7402,7435,7443,7496,7512,7625,7627,7676,7741,7777-7778,7800,7911,7920-7921,7937-7938,7999-8002,8007-8011,8021-8022,8031,8042,8045,8080-8090,8093,8099-8100,8180-8181,8192-8194,8200,8222,8254,8290-8292,8300,8333,8383,8400,8402,8443,8500,8600,8649,8651-8652,8654,8701,8800,8873,8888,8899,8994,9000-9003,9009-9011,9040,9050,9071,9080-9081,9090-9091,9099-9103,9110-9111,9200,9207,9220,9290,9415,9418,9485,9500,9502-9503,9535,9575,9593-9595,9618,9666,9876-9878,9898,9900,9917,9929,9943-9944,9968,9998-10004,10009-10010,10012,10024-10025,10082,10180,10215,10243,10566,10616-10617,10621,10626,10628-10629,10778,11110-11111,11967,12000,12174,12265,12345,13456,13722,13782-13783,14000,14238,14441-14442,15000,15002-15004,15660,15742,16000-16001,16012,16016,16018,16080,16113,16992-16993,17877,17988,18040,18101,18988,19101,19283,19315,19350,19780,19801,19842,20000,20005,20031,20221-20222,20828,21571,22939,23502,24444,24800,25734-25735,26214,27000,27352-27353,27355-27356,27715,28201,30000,30718,30951,31038,31337,32768-32785,33354,33899,34571-34573,35500,38292,40193,40911,41511,42510,44176,44442-44443,44501,45100,48080,49152-49161,49163,49165,49167,49175-49176,49400,49999-50003,50006,50300,50389,50500,50636,50800,51103,51493,52673,52822,52848,52869,54045,54328,55055-55056,55555,55600,56737-56738,57294,57797,58080,60020,60443,61532,61900,62078,63331,64623,64680,65000,65129,65389"/>
<verbose level="0"/>
<debugging level="0"/>
<host starttime="1536832757" endtime="1536832757"><status state="up" reason="conn-refused" reason_ttl="0"/>
<address addr="127.0.0.1" addrtype="ipv4"/>
<hostnames>
<hostname name="localhost" type="user"/>
<hostname name="T520.localdomain" type="PTR"/>
</hostnames>
<ports><extraports state="closed" count="998">
<extrareasons reason="conn-refused" count="998"/>
</extraports>
<port protocol="tcp" portid="22"><state state="open" reason="syn-ack" reason_ttl="0"/><service name="ssh" method="table" conf="3"/></port>
<port protocol="tcp" portid="6667"><state state="open" reason="syn-ack" reason_ttl="0"/><service name="irc" method="table" conf="3"/></port>
</ports>
<times srtt="133" rttvar="118" to="100000"/>
</host>
<runstats><finished time="1536832757" timestr="Thu Sep 13 17:59:17 2018" elapsed="0.06" summary="Nmap done at Thu Sep 13 17:59:17 2018; 1 IP address (1 host up) scanned in 0.06 seconds" exit="success"/><hosts up="1" down="0" total="1"/>
</runstats>
</nmaprun>