Solved

How to scan rdp  ''only'' open port 3333?

Posted on 2016-10-22
5
192 Views
Last Modified: 2016-11-07
Nmap:How to scan rdp only open port 3333? I use this syntax but I receive port 3333 open for mysql , for rdp and for other hosts. My question is: how to scan 100% RDP ,to show only RDP open ports:3333 or 3392 etc..?

Syntax:

nmap -sT -sV -T4 -oN save.txt -p T:3333 --open CIDR/IP

Open in new window

Results (are more res. but i posted only the last 2 ):

Nmap scan report for mail.imas-inc.com (x.xx.xx.xx) 
Host is up (0.015s latency). 
PORT     STATE SERVICE VERSION 3333/tcp open  mysql   MySQL
5.1.53-community-log
--------------------------------------------------------------------------------------------------
Nmap scan report for static-xxxxxx (x.xx.xx.xx)
Host is up (0.015s latency). 
PORT     STATE SERVICE        VERSION 
3333/tcp open  ssl/dec-notes?
the last one have rdp 3333 open port.

Open in new window


The last one is for RDP:3333, the first result is for Mysql and i want to show me only rdp nothing else
thanks
0
Comment
Question by:john lambert
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
5 Comments
 
LVL 70

Accepted Solution

by:
Qlemo earned 500 total points
ID: 41855891
AFAIK nmap does not supply a RDP service probe. With RDP 6 and network authentication active it would prove difficult to do so anyway. A probe has to initiate the connection as far as necessary to detect RDP.
Without a specific probe all you can do is exclude what do you not want to get, e.g by filtering the "grepable" output accordingly.
1
 

Author Comment

by:john lambert
ID: 41855946
first of all i wanna know if the syntax is correct:

nmap -n -sS -p T:3390 -T4 --open 5x.x.x.x/xx 

Open in new window

0
 
LVL 29

Expert Comment

by:masnrock
ID: 41855967
I can understand why you'd want to do that, but nmap isn't capable of doing what you're asking. You might be lucky enough to find a script that may help, but I doubt it.
1
 
LVL 8

Expert Comment

by:Senior IT System Engineer
ID: 41856541
by default RDP is on port 3389, so did you change it to custom port number ?
1
 

Author Closing Comment

by:john lambert
ID: 41877654
thanks.....
0

Featured Post

What Is Transaction Monitoring and who needs it?

Synthetic Transaction Monitoring that you need for the day to day, which ensures your business website keeps running optimally, and that there is no downtime to impact your customer experience.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The Nano Server Image Builder helps you create a custom Nano Server image and bootable USB media with the aid of a graphical interface. Based on the inputs you provide, it generates images for deployment and creates reusable PowerShell scripts that …
Recently we ran in to an issue while running some SQL jobs where we were trying to process the cubes.  We got an error saying failure stating 'NT SERVICE\SQLSERVERAGENT does not have access to Analysis Services. So this is a way to automate that wit…
There's a multitude of different network monitoring solutions out there, and you're probably wondering what makes NetCrunch so special. It's completely agentless, but does let you create an agent, if you desire. It offers powerful scalability …
In this brief tutorial Pawel from AdRem Software explains how you can quickly find out which services are running on your network, or what are the IP addresses of servers responsible for each service. Software used is freeware NetCrunch Tools (https…

696 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question