1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137
| ┌──(root㉿Eecho)-[~] └─# rustscan -a 192.168.43.139 -- -A .----. .-. .-. .----..---. .----. .---. .--. .-. .-. | {} }| { } |{ {__ {_ _}{ {__ / ___} / {} \ | `| | | .-. \| {_} |.-._} } | | .-._} }\ }/ /\ \| |\ | `-' `-'`-----'`----' `-' `----' `---' `-' `-'`-' `-' The Modern Day Port Scanner. ________________________________________ : http://discord.skerritt.blog : : https://github.com/RustScan/RustScan : -------------------------------------- RustScan: Making sure 'closed' isn't just a state of mind.
[~] The config file is expected to be at "/root/.rustscan.toml" [~] File limit higher than batch size. Can increase speed by increasing batch size '-b 10140'. Open 192.168.43.139:22 Open 192.168.43.139:80 Open 192.168.43.139:443 Open 192.168.43.139:3306 [~] Starting Script(s) [>] Running script "nmap -vvv -p {{port}} -{{ipversion}} {{ip}} -A" on ip 192.168.43.139 Depending on the complexity of the script, results may take some time to appear. [~] Starting Nmap 7.99 ( https://nmap.org ) at 2026-05-18 16:54 +0800 NSE: Loaded 158 scripts for scanning. NSE: Script Pre-scanning. NSE: Starting runlevel 1 (of 3) scan. Initiating NSE at 16:54 Completed NSE at 16:54, 0.00s elapsed NSE: Starting runlevel 2 (of 3) scan. Initiating NSE at 16:54 Completed NSE at 16:54, 0.00s elapsed NSE: Starting runlevel 3 (of 3) scan. Initiating NSE at 16:54 Completed NSE at 16:54, 0.00s elapsed Initiating ARP Ping Scan at 16:54 Scanning 192.168.43.139 [1 port] Completed ARP Ping Scan at 16:54, 0.04s elapsed (1 total hosts) Initiating Parallel DNS resolution of 1 host. at 16:54 Completed Parallel DNS resolution of 1 host. at 16:54, 0.50s elapsed DNS resolution of 1 IPs took 0.50s. Mode: Async [#: 3, OK: 0, NX: 1, DR: 0, SF: 0, TR: 1, CN: 0] Initiating SYN Stealth Scan at 16:54 Scanning 192.168.43.139 [4 ports] Discovered open port 443/tcp on 192.168.43.139 Discovered open port 80/tcp on 192.168.43.139 Discovered open port 3306/tcp on 192.168.43.139 Discovered open port 22/tcp on 192.168.43.139 Completed SYN Stealth Scan at 16:54, 0.02s elapsed (4 total ports) Initiating Service scan at 16:54 Scanning 4 services on 192.168.43.139 Completed Service scan at 16:54, 6.97s elapsed (4 services on 1 host) Initiating OS detection (try #1) against 192.168.43.139 NSE: Script scanning 192.168.43.139. NSE: Starting runlevel 1 (of 3) scan. Initiating NSE at 16:54 Completed NSE at 16:54, 5.49s elapsed NSE: Starting runlevel 2 (of 3) scan. Initiating NSE at 16:54 Completed NSE at 16:54, 0.08s elapsed NSE: Starting runlevel 3 (of 3) scan. Initiating NSE at 16:54 Completed NSE at 16:54, 0.00s elapsed Nmap scan report for 192.168.43.139 Host is up, received arp-response (0.00061s latency). Scanned at 2026-05-18 16:54:12 CST for 13s
PORT STATE SERVICE REASON VERSION 22/tcp open ssh syn-ack ttl 64 OpenSSH 9.2p1 Debian 2+deb12u2 (protocol 2.0) | ssh-hostkey: | 256 0f:7d:a0:9a:ad:8f:f6:85:fc:69:f4:43:53:72:3b:b1 (ECDSA) | ecdsa-sha2-nistp256 AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBDvsuWp58qtywRU1vi0x4BdTb7DzEIC1QUeAUQ7J4zGNZl06u8F/mK47yOQ7lUxhjatdezcrOC7uB0YANLACPHI= | 256 0a:02:48:06:90:21:90:15:e6:7d:09:83:63:a2:bd:19 (ED25519) |_ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIDtykZPk4oGVU4e50FfBqeMfXY3Qwkc0CQG/bHJAHzpL 80/tcp open http syn-ack ttl 64 Apache httpd 2.4.59 ((Debian)) | http-robots.txt: 1 disallowed entry |_/wp-admin/ |_http-generator: WordPress 6.5.2 |_http-title: Site doesn't have a title (text/html; charset=UTF-8). | http-methods: |_ Supported Methods: GET HEAD POST OPTIONS |_http-server-header: Apache/2.4.59 (Debian) 443/tcp open http syn-ack ttl 64 Apache httpd 2.4.59 |_http-server-header: Apache/2.4.59 (Debian) |_http-title: Apache2 Debian Default Page: It works | http-methods: |_ Supported Methods: HEAD GET POST OPTIONS 3306/tcp open mysql syn-ack ttl 64 MariaDB 5.5.5-10.11.6 | mysql-info: | Protocol: 10 | Version: 5.5.5-10.11.6-MariaDB-0+deb12u1 | Thread ID: 34 | Capabilities flags: 63486 | Some Capabilities: Support41Auth, DontAllowDatabaseTableColumn, Speaks41ProtocolOld, SupportsCompression, FoundRows, ODBCClient, IgnoreSigpipes, IgnoreSpaceBeforeParenthesis, InteractiveClient, SupportsLoadDataLocal, ConnectWithDatabase, LongColumnFlag, SupportsTransactions, Speaks41ProtocolNew, SupportsMultipleResults, SupportsMultipleStatments, SupportsAuthPlugins | Status: Autocommit | Salt: )yI@Dr7V-y>fi[n7dq., |_ Auth Plugin Name: mysql_native_password MAC Address: 08:00:27:54:B9:27 (Oracle VirtualBox virtual NIC) Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port Device type: general purpose Running: Linux 4.X|5.X OS CPE: cpe:/o:linux:linux_kernel:4 cpe:/o:linux:linux_kernel:5 OS details: Linux 4.15 - 5.19 TCP/IP fingerprint: OS:SCAN(V=7.99%E=4%D=5/18%OT=22%CT=%CU=43435%PV=Y%DS=1%DC=D%G=N%M=080027%TM OS:=6A0AD3C1%P=x86_64-pc-linux-gnu)SEQ(SP=FF%GCD=1%ISR=104%TI=Z%CI=Z%II=I%T OS:S=A)OPS(O1=M5B4ST11NW7%O2=M5B4ST11NW7%O3=M5B4NNT11NW7%O4=M5B4ST11NW7%O5= OS:M5B4ST11NW7%O6=M5B4ST11)WIN(W1=FE88%W2=FE88%W3=FE88%W4=FE88%W5=FE88%W6=F OS:E88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M5B4NNSNW7%CC=Y%Q=)T1(R=Y%DF=Y%T=40%S=O%A OS:=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=Y%DF=Y%T=40%W=0%S=A%A=Z%F=R%O=%RD=0% OS:Q=)T5(R=Y%DF=Y%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=Y%DF=Y%T=40%W=0%S= OS:A%A=Z%F=R%O=%RD=0%Q=)T7(R=Y%DF=Y%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)U1(R= OS:Y%DF=N%T=40%IPL=164%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N% OS:T=40%CD=S)
Uptime guess: 39.804 days (since Wed Apr 8 21:36:16 2026) Network Distance: 1 hop TCP Sequence Prediction: Difficulty=255 (Good luck!) IP ID Sequence Generation: All zeros Service Info: Host: 127.0.1.1; OS: Linux; CPE: cpe:/o:linux:linux_kernel
TRACEROUTE HOP RTT ADDRESS 1 0.61 ms 192.168.43.139
NSE: Script Post-scanning. NSE: Starting runlevel 1 (of 3) scan. Initiating NSE at 16:54 Completed NSE at 16:54, 0.00s elapsed NSE: Starting runlevel 2 (of 3) scan. Initiating NSE at 16:54 Completed NSE at 16:54, 0.00s elapsed NSE: Starting runlevel 3 (of 3) scan. Initiating NSE at 16:54 Completed NSE at 16:54, 0.00s elapsed Read data files from: /usr/share/nmap OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ . Nmap done: 1 IP address (1 host up) scanned in 14.61 seconds Raw packets sent: 27 (1.982KB) | Rcvd: 19 (1.454KB)
|