lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <Pine.LNX.4.44.0309181225120.23702-100000@mailbox.prolocation.net>
From: raymond at prolocation.net (Raymond Dijkxhoorn)
Subject: dcom2_scanner v1.1

Hi!

>     Lots of people gave me useful feedback on my Unix based MS DCOM DCE RPC
> scanner.  I've updated it based on their suggestions.  This version has
> better OS detection, recognizes 9x/me systems as immune, better support for
> NT, and better detection of systems with DCOM disabled. 
> 
>    http://udel.edu/~doke/dcom2/dcom2_scanner-v1.1.tar.gz 
> 
>     Suggestions and constructive criticism are invited.

[root@...ter dcom2]# ./dcom2_scanner 130.161.180.59
** 130.161.180.59 does not have 2nd dcom patch -- BAD **
[root@...ter dcom2]# ./dcom2_scanner 130.161.180.59

This is a HPUX box, we got the same false positives with another box...

rpcscan-netreg-03 doest detect it properly, i suggest taking a peek at 
their code...

http://www.security.uconn.edu/netregscan/

Bye,
Raymond.


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ