nmap提取指定端口 ip

W.r 359 次浏览 0
# coding: utf-8

import os
import sys
try:
    import xml.etree.cElementTree as ET
except ImportError:
    import xml.etree.ElementTree as ET
reload(__import__('sys')).setdefaultencoding('utf-8')

'''
nmap -Pn --open -n -vv -F -oX d:\\xxx.xml 10.129.246.1/24
nmap -n -vv --open -oX d:\\vm.xml 192.168.106.1/24
--open这个参数必须加
nmap -Pn -n -vv -p80 -oX d:\\xxx.xml 10.129.246.1/24 检测单一端口的就不用执行端口提了
'''


def deal_nmap_xml(xml_name, save_name):
    try:
        root = ET.fromstring(xml_name)
        ip_list = []
    except:
        print u"请检查nmap扫描文件标签是否完整"
        sys.exit()
    res = open(save_name + '.txt', 'w')  # 轻易不要改动
    for host in root.findall('host'):
        if len(host) > 3:
            pass
            #print '\n', str(len(host)),  # 打印host标签中子元素个数
        if host[0].get('state') == "up":  # 判断IP是否存活
            ip = host[1].get('addr')  # 提取IP地址
            #print ip,
            ip_list.append(ip)  # 验证存活IP个数
            ip_ = '\n' + ip + '\t'
            res.writelines(ip_)
            # 提取端口
            if len(host) == 6:
                for port in host[4][1:]:  # 若确认端口开放,但没有提取出端口请修改host[4][此处+1试试:],加一后为host[4][2:],下面的几处方法一样
                    #print port.get('portid'),
                    port_ = str(port.get('portid')) + ','
                    res.write(port_)
            elif len(host) == 5:
                for port in host[3][2:]:
                    # print port.tag,
                    #print port.get('portid'),
                    port_ = str(port.get('portid')) + ','
                    res.write(port_)
            elif len(host) == 4:
                for port in host[3][1:]:
                    #print port.get('portid'),
                    port_ = str(port.get('portid')) + ','
                    res.write(port_)
            elif len(host) < 4:
                print host[0].get('state')
    res.close()
    print 'Alive IP Total:{} '.format(len(ip_list))

#根据端口提取相应的IP
def get_ip(save_name, port):
    with open(save_name+'.txt', 'r') as xxx:
        port_info = xxx.readlines()
        res_name = save_name+'-out'
        with open(res_name + '.txt', 'w+') as save_file:
            for x in port.split(','):
                for line_info in port_info:
                    try:
                        if x in line_info.split('\t')[1].split(','):
                            line =line_info.split('\t')[0] +":"+x+ '\n'
                            #print line,
                            save_file.writelines(line)
                    except:
                        pass
    print "Done!"

def main(path, port):
    if os.path.isfile(path):
        save_name = path.split('.')[0]
        print save_name
        bd = open(path, 'r').read()  # nmap的扫描结果文件
        print 'Start extracting IP&Port'
        deal_nmap_xml(bd, save_name)
        get_ip(save_name, port)        
    else:    
        for i in os.listdir(path.strip()):
            if i.endswith('.xml'):
                #print i
                xml_path = path + os.path.sep + i
                save_name = i.split('.')[0]
                print save_name
                bd = open(xml_path, 'r').read()  # nmap的扫描结果文件
                print 'Start extracting IP&Port'
                deal_nmap_xml(bd, save_name)
                get_ip(save_name, port)



if __name__ == "__main__":
    #批量提取
    #123.py "C:\Users\Desktop\portscan\xml" 21
    #123.py "C:\Users\Desktop\portscan\xml" "21,22,23"
    
    #单个文件提取,将nmap扫描文件放在123.py同一目录
    #123.py nmap.xml 21
    #123.py nmap.xml "21,22,23"    
    
   
    
    path = sys.argv[1] #1.若是单个文件,需输入完整路径(文件和此脚本在同一目录可不写路径) 2.可以输入xml文件所在目录
    port = sys.argv[2] #提取的端口,多个使用','逗号隔开。如:"21,22,23,25,110"
    main(path, port)    

U用法

nmap -v -p(端口) --open IP/24 -oA 1.txt

-oN <filespec> (标准输出)

-oX <filespec> (XML输出)

-oS <filespec> (ScRipT KIdd|3 oUTpuT)

-oG <filespec> (Grep输出)

-oA <basename> (输出至所有格式)

结果输出后

python sb.py 1.txt "80"

发表评论 取消回复
表情