PaulDotCom mailing list archives

RDP "Banner Grab"


From: rgula at tenablesecurity.com (Ron Gula)
Date: Thu, 11 Mar 2010 07:40:04 -0500

On 3/10/2010 4:54 PM, Chris Merkel wrote:
Let's say I have a bunch of windows boxes that can only be reached via
RDP - is there an automated way that one could get screen grabs of a
large group of hosts and, ideally, pulling down the domain list as it's
done?

-- 
- Chris Merkel


Hi Chris,

Nessus has a pure RDP OS fingerprinting module that is ideal for this
case. It does not grab screen shots but it does delve deep enough into
RDP to fingerprint it. This is ideal for those stand-alone, lights-out
Windows systems that aren't part of a domain. Here is a Tenable blog
post from 2007 about it:

http://blog.tenablesecurity.com/2007/10/windows-operati.html

-- 
Ron Gula, CEO
Tenable Network Security




Current thread: