PaulDotCom mailing list archives

Re: MSSQL Scanning of the Internet


From: Rob Fuller <jd.mubix () gmail com>
Date: Tue, 26 Nov 2013 10:45:39 -0500

zmap, haven't had a chance to check out masscan yet.


--
Rob Fuller | Mubix
Certified Checkbox Unchecker
Room362.com | Hak5.org


On Mon, Nov 25, 2013 at 5:12 PM, David Maynor <dmaynor () gmail com> wrote:

What did you use to do the scans?

On Nov 7, 2013, at 7:19 PM, Rob Fuller <jd.mubix () gmail com> wrote:

Scanned the Internet for port 1434 (mssql_ping), found 70k hosts, recorded
the MSSQL instances running on those servers. Posted it here (sort and
uniqued):

http://pastebin.com/xiEpWasx (expires in 24 hours)

Going to start doing research on what software installs with those
instance names and attempt to figure out what the default passwords for
those instances are. Posting the info to an etherpad as I gather it.

*Could really use some help if you know any or have come across and of
those instances or know their defaults:*

https://etherpad.mozilla.org/mssql-default-users



--
Rob Fuller | Mubix
Certified Checkbox Unchecker
Room362.com | Hak5.org

_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com


_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com

_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com

Current thread: