hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Full Version: Xscan Problems
Venom
recently i have been having problems with xscan even whilst using a proxy i cant scan does anyone have or known of any remote scanners which scan for nt passwords i have port scanners but need a nt scanner which i could upload to a ftp and execute which would then scan for weak nt paswords.
ducky
don't think there is such softie....anyway scan on a remote for port 139 then just check it out with Ipcscan on your own machine...Works best !
deziking
Dude i found an site that all the scanners on it try this site http://home.hccnet.nl/m3ssi4h.rul3z/
Tw|st3r
remote scanning is also possible with Xscan itself
you simply need to upload Xscan on the pub and access the ftp account you hacked, then use the following raw command:

CODE

site exec xscan.exe -host 127.0.0.0-127.255.255.255 -iis -webdav -nt -sql -rpc -p -t 100,10


now the remote server is scanning: you'll be able to find out the results in the "Log" subfolder

EDIT: of course, if u only need NTPW just skip the -iis, -webdav, -swl and -rpc options tongue.gif
Deus-DK
m8 if u recently have been having problems with your nt scans, u might wanna think about the blaster.worm updates that have been running around recently... I guess u are using port 139 for nt scans which i do my self... Ther eis 2 more ports to use for NT scanning... Haven't had any luck recently with the nt scans, using port 139, and i havent checked the other 2 ports...

If u want to -> 3389 ; 445 ; 139 <- is the ports that can be used for NT scanning...

Also, ppl have enabled their firewalls cause of this damn worm have been made... Think again m8 what might have caused you the problems wink.gif
ktr
it doesn't exist a good ntpass remote scanner... also xscan results are shitty
Sh4dowWalker
QUOTE (Tw|st3r @ Sep 2 2003, 01:21 PM)
remote scanning is also possible with Xscan itself
you simply need to upload Xscan on the pub and access the ftp account you hacked, then use the following raw command:

CODE

site exec xscan.exe -host 127.0.0.0-127.255.255.255 -iis -webdav -nt -sql -rpc -p -t 100,10


now the remote server is scanning: you'll be able to find out the results in the "Log" subfolder

EDIT: of course, if u only need NTPW just skip the -iis, -webdav, -swl and -rpc options tongue.gif

well this way a console window for x-scan will popup on remote system.
use some programs to hide this window like for example hiddenrun.exe, hidden32.exe
and the raw command you need to type in flashfxp is:
CODE
site exec hiddenrun.exe xscan.exe -host 127.0.0.0-127.255.255.255 -iis -webdav -nt -sql -rpc -p -t 100,10


this was flashfxp way to run the things, you can of course run xscan from shell on a remote computer. this way doesn't need the hiddenrun.exe.
ivb
Hey,

I've tried using Xscan also, and the shitty thing about it is the way the results are saved. It would have been better to just have a .txt file with a simple layout, but for the rest the scanner is great.

Using it remotely is indeed possible like said in the other replies, but ya have to run it hidden for sure.
Another problem is that Xscan is recognized by Anti-Virus programs, so that makes it kinda more shitty to use remotely.

I have also not seen any good ntpass scanner around yet, especially not a remote one.
Sh4dowWalker
ivb, maybe this nice tool coded by R0aDsT4R will help ya a little. With this proggie you can manage your webdav, nt and sql scan results from x-scan. It has support for few other most popular scanners too.
=k3Rn=
i got the same problem. i want to use xscan or any other bt pass scanner to scan for weak accounts from a remote machine.
i tryed several scanner - all get wrong results!
for testing i scanned a host of what i know that it has an weak account. wehn i scan from home i find it anytime - scanning from the remote i never find it.
i here someone can help me. already posted on some other boards too.
thx in advance
greetings
=k3Rn=
arun0075
hmmm... I tried all the possible ways to scan through remote pc i tried to scan through ftp, telnet , dameware cmd all starts scaning and also makes the html file but when i open the file it's empty can sum1 tell me is there anyway to scan for nt password remotely... and also now a days i can't scan from my pc... whenever i scan i get no resultsss can sum1 tell me y is this ?? is my ISP creating the problems...


thanks in advance.. smile.gif
Zivleton
If you're searching for a good NT scanner, I recommend strongly to use Hfind
It's VERY fast and gets working results...
You can download it here:
[URL=http://www.cnhonker.com/download/releases/Tools/HFind.zip]
biggrin.gif
arun0075
hmm.. thanks but i think this scanner is same as ipcscan 2.0 neways to be true i can't scan from my own pc whenever i try i don't get any result.. sad.gif( so i want to do scaning from a remote comp. i have full xcess to it but the thing is it's a university's comp and i don't want to run a program on it coz if i will do that they will find out so i usually use ftp for scaning or do scaning using telnet but then i get the logs empty... sad.gif( so is there any way out..

Thanks in advance
Uli
Thanks for the tool Sh4dowWalker
A111ex
I am using Xscan currently, however whenever i engage a scan, i seem to be unable to connect to ANY host. I am behind a firewall, and i am not sure if that has anything to do with it, or it is my isp. Anyone else experience these problems?
nolimit
NTscan from cnhonker.com isn't bad, has a console version as well i believe..
-
while on the subject, I've noticed that when scanning, if the scanner program is run under SYSTEM it can't get any hits, hell it can't even get a list of users (establish a null session). But when i run it on Administrator acct, it works fine.
Guessing it has something to do with privileges or account tokens ? Or maybe I'm doing something else wrong?
RFH2003
QUOTE (A111ex @ Jan 30 2004, 06:25 AM)
I am using Xscan currently, however whenever i engage a scan, i seem to be unable to connect to ANY host. I am behind a firewall, and i am not sure if that has anything to do with it, or it is my isp. Anyone else experience these problems?

I am having this problem too. I used to be able to scan perfectly and now I can only scan comps that are on my same ISP.
basepart
QUOTE (=k3Rn= @ Sep 17 2003, 10:32 AM)
i got the same problem. i want to use xscan or any other bt pass scanner to scan for weak accounts from a remote machine.
i tryed several scanner - all get wrong results!
for testing i scanned a host of what i know that it has an weak account. wehn i scan from home i find it anytime - scanning from the remote i never find it.
i here someone can help me. already posted on some other boards too.
thx in advance
greetings
=k3Rn=

Maybe there are restrictions on that remote scanner box (router, firewall, ip filtering etc)
Try to scan from an other box.
bytemaster2001
I have Telus ADSL and when I scan (I've tried SOOO many different ranges), I get no results. I even tried disabling my firewall and I use my Admin account as defaulyt... Any ideas?
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.