TCP connect()扫描
扫描原理:
通过建立tcp连接判断是否开启了端口
#include <winsock2.h>
#include <ws2tcpip.h>
#include<process.h>
#include<windows.h>
#include <stdio.h>
char tgtIP[20] ;//定义目的地址
char port[5];
int Maxport=100;
int Scan(void* port);//发送数据函数
int main( int argc , char *argv[] )
{
HANDLE ThreadHandle[Maxport];
WSADATA wsaData;
if(argc<=2)
{
printf("请输入IP和端口号");
return 0;
}
strcpy(port,argv[2]);
strcpy(tgtIP,argv[1]);
int pNOW=atoi(port);
if ( WSAStartup(MAKEWORD(2,2),&wsaData))
{
printf("初始化WinSock失败\n");
exit(0);
}
printf("开始扫描请稍等....\n");
for(int i = 0; i < Maxport; i++)
{
//开启新线程
ThreadHandle[i] = CreateThread(NULL, 0, (LPTHREAD_START_ROUTINE)Scan,&pNOW,0,NULL);
pNOW++;
//防止线程创建过快
Sleep(100);
}
DWORD WaitThread = WaitForMultipleObjects( 20 , ThreadHandle , TRUE , INFINITE );
if( WaitThread != WAIT_FAILED)
{
for( int n = 0 ; n < Maxport ; n++ )
{
CloseHandle( ThreadHandle[n] );
}
}
WSACleanup();
return 0;
}
//扫描端口的函数
int Scan(void* port)
{
SOCKET sock;
SOCKADDR_IN sin;
int portNow=*(int*)port;
int ret;
if((sock =socket(AF_INET,SOCK_STREAM,IPPROTO_TCP))==INVALID_SOCKET )
{
printf("Socket Setup Error...\n");
return 0;
}
sin.sin_family = AF_INET;
sin.sin_port = htons(portNow);
sin.sin_addr.S_un.S_addr = inet_addr(tgtIP);
ret=connect (sock, (struct sockaddr *)&sin,
sizeof (struct sockaddr_in));
if(ret>=0)
printf("端口%d开启\n",portNow);
}