To verify I used Angry IP Scanner (see Lab 29).
I can identify my computer (Mark) and another computer on this network
(markm). I was also looking for the Windows shares (ports 139, 445). Refer
to Chapter 4 to exploit this weakness.
*Note:
I want to mention that there is a version of NetStumbler named Mini-Stumbler
that works on PDAs. Once installed on the PDA the results are the same. I
also want to mention that one of the neatest features of NetStumbler/Mini-
Stumbler is that they support Global Positioning Satellites (GPS) technology.
If you attach a GPS device to your computer while running NetStumbler, you
will see the latitude and longitude of where your computer is at the moment
the device was discovered. These points can be mapped for future use.
Wireless
519
Lab 77: Trojan
Unauthorized Access and Control: Back Orifice
Prerequisites:
NULL Session
Countermeasures:
Secure ACLs, Bastion servers/workstations, Trojandetection
software, updated antivirus
Description:
According to the developers, ???Back Orifice (BO2K) is the
most powerful network administration tool available for the Microsoft
environment, bar none.??? It has, however, been used in the past to gain
unauthorized access and total control over computers, and I wanted
to include it in this chapter for that reason alone.
*Note:
Most times, though not always for unauthorized access/control physical
access to the target, it is possible to install this application remotely as well.
Pages:
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185