what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

hackfaq-10.html

hackfaq-10.html
Posted Aug 17, 1999

hackfaq-10.html

tags | paper
SHA-256 | 755fac89f626f941873dc4a0b71b56150e51a92da66c8b2e56f91e53e2c860e9

hackfaq-10.html

Change Mirror Download
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<HTML>
<HEAD>
<META NAME="GENERATOR" CONTENT="SGML-Tools 1.0.6">
<TITLE>The Hack FAQ: NT Console Attacks</TITLE>
<LINK HREF="hackfaq-11.html" REL=next>
<LINK HREF="hackfaq-9.html" REL=previous>
<LINK HREF="hackfaq.html#toc10" REL=contents>
</HEAD>
<BODY BGCOLOR="black" TEXT="white" LINK="gray" VLINK="gray" HLINK="red">
<A HREF="hackfaq-11.html">Next</A>
<A HREF="hackfaq-9.html">Previous</A>
<A HREF="hackfaq.html#toc10">Contents</A>
<HR>
<H2><A NAME="ntconsoleattacks"></A> <A NAME="s10">10. NT Console Attacks</A></H2>

<P>This section deals with attacking at the NT Console.
<P>
<H2><A NAME="ss10.1">10.1 What does direct console access for NT get me?</A>
</H2>

<P>First off, a number of
<A HREF="hackfaq-11.html#ntclientattacks">NT client attacks</A> may not work
if your target system does not allow logins except at the console. Any brute force
attack will obviously work much quicker if you are not going across the network.
<P>
<H2><A NAME="ss10.2">10.2 What about NT's file system?</A>
</H2>

<P>Obviously gaining access to the file system from the console is much easier than across
a network, especially if the Sys Admin is trying to keep you out.
<P>Try booting up the system from an MS-DOS diskette, and running NTFSDOS.EXE to access the
NTFS file system. Currently this software is read only, so it is only good for getting
copies of existing data. Linux is another OS that will read an NTFS file system, but
"simply loading Linux" on a "spare partition" is usually impractical, and hardly simple
if you are not familiar with it. See the question regarding recovering a
<A HREF="hackfaq-9.html#lostntadminpassword">lost NT password</A> that uses Linux in the recovery
process. I mean, if you log in as Administrator then you definitely have access to the
file system ;-).
<P>
<H2><A NAME="ss10.3">10.3 What is Netmon and why do I care?</A>
</H2>

<P>NetMon is Microsoft's Network Monitor. It is a sniffer that runs under NT, and being a
sniffer if you have to ask why you care, well, never mind ;-)
<P>NetMon is protected by a password scheme on version 3.51 that has nothing to do with
regular NT security. In Phrack 48 file 15, AON and daemon9 have not only cracked the
encryption scheme, they have written exploits for it as well. Check the resources
section for the location of the exploit code (it includes full source including a
Unix version in case you do not have an NT compiler).
<P>By the way, compared to other commercial sniffers, this early version of NetMon sucks.
It would only look at traffic to and from the machine you are running it on. However,
newer versions of NetMon supposedly do actual promiscuous sniffing and is a more
useful tool. I have not seen this new NetMon but others report good things about it.
<P>
<P>
<P>
<HR>
<A HREF="hackfaq-11.html">Next</A>
<A HREF="hackfaq-9.html">Previous</A>
<A HREF="hackfaq.html#toc10">Contents</A>
</BODY>
</HTML>
Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close