NMap Flashcards

(25 cards)

1
Q

Flag

A

Description

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

-sn

A

Host discovery scan (ping sweep)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

-sL

A

List scan, show IPs and hostnames only

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

-PS <port></port>

A

TCP SYN ping on specific ports

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

-PA <port></port>

A

TCP ACK ping

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

-PU <port></port>

A

UDP ping

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

-sY

A

SCTP INIT ping

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

-Pn

A

Treat all hosts as up (skip discovery)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

-sS

A

TCP SYN (half-open) scan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

-sT

A

TCP connect (full handshake) scan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

-sN

A

Null scan (no flags set)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

-sF

A

FIN scan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

-sX

A

Xmas scan (FIN+PSH+URG flags)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

-sU

A

UDP scan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

-sI

A

Idle (zombie) scan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

-p

A

Specify port(s) or port range

17
Q

-f / –mtu

A

Fragment packets to bypass IDS/IPS

18
Q

–scan-delay <time></time>

A

Delay between probes for stealth

19
Q

-T<0–5>

A

Timing template (0=paranoid, 5=insane/fast)

20
Q

-sV

A

Detect service versions

21
Q

-A

A

Aggressive scan (OS, version, script, traceroute)

22
Q

-O

23
Q

-oN

A

Normal output file

24
Q

-oX

25
-oG
Grepable output