Image
 
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 19 guests and 2 members online
EH-Net Donations

Enter Amount:
$

Google Ads
EH-Net News Feeds
Latest Additions
Book Recommendations





 
Advertisement

You are here: Home arrow Forum arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow Netbios
Ethical Hacker Community Forums
November 22, 2008, 04:00:28 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: ChicagoCon 2-Day Ethical Hacking Conference with MS Blue Hats Oct 31 - Nov 1. Tickets Only $100! www.chicagocon.com/content/view/103/51/
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Netbios  (Read 3171 times)
0 Members and 1 Guest are viewing this topic.
N3o
Newbie
*
Offline Offline

Posts: 4


View Profile
« on: June 21, 2007, 06:59:16 AM »

Hi

Anybody here know any programs to crack (Bruteforce) netbios passwords, tryed to hack some computers by Netbios but can`t get any further when it asks for a password, I have tryed some bruteforces, but can`t get any of them to work Sad
Logged
ChrisG
EH-Net Columnist
Hero Member
*****
Offline Offline

Posts: 1038


View Profile WWW
« Reply #1 on: June 21, 2007, 08:41:14 AM »

http://www.cotse.com/tools/netbios.htm
Logged

...tests i took go here...

http://carnal0wnage.blogspot.com/
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 2347


Editor-In-Chief


View Profile WWW
« Reply #2 on: June 21, 2007, 10:04:13 AM »

Many older motherboards have a jumper that enables the power-on password feature. Many times you can remove the jumper, restart the computer, and voila, no password is needed.

Your results may vary.  Wink

Don
Logged

CISSP, MCSE, CEH, Security+ SME
Kev
Guest
« Reply #3 on: June 21, 2007, 10:54:48 AM »

He was asking about the Netbios that runs over the TCP/IP protocol wasnt he? Not bios protected by passwords.  Sometimes NetBios is the easiest way to break into somebody's computer. If the victim’s computer  has enabled File And Printer Sharing on his computer the nbtstat command will display one more NetBios names. From there you can gain access a number of ways and sometimes you don’t even have to crack anything if you are lucky enough for IPC$ to work. If you have access to the remote machine PQWAK is a good tool sometimes. Actually there are a lot of crackers that work to do this.

Logged
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 2347


Editor-In-Chief


View Profile WWW
« Reply #4 on: June 21, 2007, 11:00:05 AM »

Whoops.  Embarrassed

See what happens when you skim.

Sorry,
Don
Logged

CISSP, MCSE, CEH, Security+ SME
slimjim100
EH-Net Columnist
Sr. Member
*****
Offline Offline

Posts: 363



View Profile WWW
« Reply #5 on: June 21, 2007, 02:41:52 PM »

Cain & Able comes to mind here but there are a few.

Brian
Logged

CISSP, CCSE, CCNA, CCAI, Network+, Security+, JNCIA, & MCP
N3o
Newbie
*
Offline Offline

Posts: 4


View Profile
« Reply #6 on: June 22, 2007, 01:57:19 AM »

Thanks for all the replies  Smiley, I`ll try the tips you guys came up with  Cheesy

Tryed the program called Cain, and selected Hamachi as the server (Don`t know if it is possible to sniff up passwords through Hamachi Huh) but it doesn`t register any packets that comes in or out  Undecided, any ideas what to do?
« Last Edit: June 22, 2007, 02:58:58 AM by N3o » Logged
slimjim100
EH-Net Columnist
Sr. Member
*****
Offline Offline

Posts: 363



View Profile WWW
« Reply #7 on: June 22, 2007, 07:36:49 AM »

N3o,

           I am assuming you are doing testing and nothing non-ethical with the NetBIOS sniffing.... 

OK to sniff NetBIOS over Hamachi you have a few obstacles in your way like the fact that Hamachi uses 256AES encryption on there clients and the range you would be sniffing is there 5.X.X.X network (very large class A network to scan). The Hamachi Network is basically a Soft VPN over a Virtual NIC card so Cain will see it. The issue you will face is that you will only see other Hamachi clients that are in you network and you will have to scan them in smaller ranges with Cain to get them in your host table. To get NetBIOS passwords with Cain you need to Man in the Middle Attack them. Once you have the clients in Cain you will also have to make sure the hamachi installs where set to “allow windows vulnerabilities” so that the Hamachi server allows ports 135-139 & 445 (Windows NetBIOS ports) to pass over the virtual NIC. I have been able to MITM Attack my own Hamachi clients and I use Hamachi to map drive of my remote lab computers when I am on the road. If you need more help let me know and I might be able to make a small video on this to show you how to do it. I do warn you that sniffing computers that you do not own and without permission is “Cracking” and no one on this site will assist you with that kind of activity.

Thanks,

Brian

aka Slimjim100
Logged

CISSP, CCSE, CCNA, CCAI, Network+, Security+, JNCIA, & MCP
N3o
Newbie
*
Offline Offline

Posts: 4


View Profile
« Reply #8 on: June 23, 2007, 07:12:59 AM »

Would be great if you could make a video ^^, added you to my msn as well Shocked
Logged
slimjim100
EH-Net Columnist
Sr. Member
*****
Offline Offline

Posts: 363



View Profile WWW
« Reply #9 on: June 23, 2007, 10:10:38 AM »

You will have to give me a few days to have time to make one. With work and family my geek out time is not to much.

BriAN
Logged

CISSP, CCSE, CCNA, CCAI, Network+, Security+, JNCIA, & MCP
N3o
Newbie
*
Offline Offline

Posts: 4


View Profile
« Reply #10 on: June 23, 2007, 02:27:00 PM »

Okey, sure thing  Cheesy
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.7 | SMF © 2006-2008, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.157 seconds with 24 queries.
 
Sponsors

cwnp_moto__120x90.gif

Polls
During the most recent election, I:
 
Support EH-Net


Support EH-Net by
Buying all of your
Amazon items using
the search bar above.

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!
Recent Forum Topics
Vote For EH-Net

progenic.com
Click here to Vote!

Sadikhov.com
Top IT Cert Sites

binarica.com
Binarica Logo

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2008 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.