#!/bin/bash
# Full subnet scan for interesting ports

OUTPUT_DIR="/root/ir-assessment/redteam/irelydata/analysis"
SCAN_FILE="$OUTPUT_DIR/subnet_full_scan.txt"

echo "=== Scanning subnet 74.208.53.0/24 for open ports ==="
echo "Checking ports: 80, 443, 1433 (MSSQL), 3389 (RDP)"
echo "This will take a few minutes..."

# Scan all hosts in subnet
nmap -sS -p 80,443,1433,3389 -oG "$SCAN_FILE" 74.208.53.0/24 2>&1 | tee -a "$SCAN_FILE.log"

echo ""
echo "=== Scan complete ==="
echo "Results saved to: $SCAN_FILE"
