Penetration Testing mailing list archives

Re: [PEN-TEST] Network Mapping


From: "Frasnelli, Dan" <dfrasnel () COREWAR COM>
Date: Thu, 14 Sep 2000 15:38:42 -0400

I've found that, in Perl, one of the API calls that is
wrapped up in the Lanman module can be used to
enumerate the NetBIOS names of machines that the
target sees on the wire.  I've gotten this to work

I notice a preferred tool for doing this under Un*x (nbtscan)
has both win32 and perl ports.
See http://www.abb.aha.ru/software/nbtscan.html

successfully over the Internet.  I am sure that this is
nothing new...but has definite uses, in both white and
black hat situations...though I really haven't put any
thought into converting this into a viable step as part
of either.

nbtscan can read netbios system name, user, mac addr etc.
across the wire.  Utility of this information is an academic
exercise left up to the reader.

-dan


Current thread: