The amount of information
obtained can be greatly reduced if the target has restricted anonymous
(refer to Chapter 1).
Procedure: From the WinFingerprint application enter in the target IP
address or IP range and select the options for the desired results.
Double-click on the WinFingerprint icon to start installation.
The WinFingerprint Setup Wizard begins. Accept the default choices during
the installation by clicking Next throughout the process.
To accept the default answer of Yes when asked to change the number
of ephemeral ports, click Yes.
140 Practical Hacking Techniques and Countermeasures
To accept the default answer of Yes when asked to decrease the amount
of time to release the connections, click Yes.
To accept the default answer of Yes when asked to decrease the time to
release the client UNC connection, click Yes.
Target Enumeration 141
WinFingerprint will now complete installing. You can read or uncheck the
Show Readme option. Click Finish. WinFingerprint will start.
Enter the target IP address, IP range, Subnet, IP list, or Neighborhood.
Select the scan options.
Select if you need a TCP and/or UDP port scan against the target.
Click Scan.
The results will be displayed in the lower window.
142 Practical Hacking Techniques and Countermeasures
Notice in the next screen that WinFingerprint identified the shares available
on the target.
Once the WinFingerprint application has made a NULL session connection
to the target (one of the options) and the Windows Shares have been identi-
fied, an attacker can open Windows Explorer and place in the Address bar
the path represented in the WinFingerprint results.
Pages:
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79