带有CIDR/IP范围或单IP/域输入的Scapy端口扫描仪



我有以下代码来扫描给定端口范围上的单个主机。我想对此进行修改,以便输入也接受CIDR斜杠表示法(例如,google.com/34或8.8.8.8/34((即,除了单个域名或IP地址之外(。

我该怎么做?

import logging
logging.getLogger("scapy.runtime").setLevel(logging.ERROR)
import sys
from scapy.all import *
# Define end host and TCP port range
hostInput    = input("Enter a remote host to scan: ")
host  = socket.gethostbyname(hostInput)
port_range = [21,22,23,25,53,80,110,135,137,138,139,443,1433,1434,8080]
# Send SYN with random Src Port for each Dst port
for dst_port in port_range:
src_port = random.randint(1025,65534)
resp = sr1(
IP(dst=host)/TCP(sport=src_port,dport=dst_port,flags="S"),timeout=1,
verbose=0,
)
if resp is None:
print(f"{host}:{dst_port} is filtered (silently dropped).")
elif(resp.haslayer(TCP)):
if(resp.getlayer(TCP).flags == 0x12):
# Send a gratuitous RST to close the connection
send_rst = sr(
IP(dst=host)/TCP(sport=src_port,dport=dst_port,flags='R'),
timeout=1,
verbose=0,
)
print(f"{host}:{dst_port} is open.")
elif (resp.getlayer(TCP).flags == 0x14):
print(f"{host}:{dst_port} is closed.")
elif(resp.haslayer(ICMP)):
if(
int(resp.getlayer(ICMP).type) == 3 and
int(resp.getlayer(ICMP).code) in [1,2,3,9,10,13]
):
print(f"{host}:{dst_port} is filtered (silently dropped).")

您可以尝试使用

host = Net(hostInput)

Net是Scapy用来处理IPv4地址格式的util类。如果将其传递给数据包,sr(将向每个主机发送一个数据包。

然而,我不确定这将是如何即插即用的:sr1的使用将输出限制为一个数据包,因此您可能不得不将其更改为sr(它会为您提供所有答案的列表(

最新更新