aja, das kommt dem schon ziemlich nahe was ich suche. danke für den tip.
um nochmal auf x-scan zurück zukommen, falls das jetzt nicht iilegal ist:
Ich hab mal das Netz bei mir daheim mit x-scan gescannt und festgestellt, dass das ding ein haufen zeug rausfinden kann. ich hab auf einem rechner den 2003 server und x-scan listet mir alle freigegebenen Ordner, Drucker und HDDs auf. Das ist ja kein problem weil das ja jeder über die netzwerkumgebung auch rausfinden kann. Aber bei mein laptop gings wirklich rund:
[NetBios-Info]
[RemoteRegistryInfo]:
[ProductName]: Microsoft Windows XP
[SOFTWARE\Microsoft\Windows NT\CurrentVersion]:
CurrentBuild: 1.511.1 () (Obsolete data - do not use)
InstallDate: CB 89 C8 3F
ProductName: Microsoft Windows XP
RegDone:
RegisteredOrganization:
RegisteredOwner: Mathias Ewald
SoftwareType: SYSTEM
CurrentVersion: 5.1
CurrentBuildNumber: 2600
BuildLab: 2600.xpclient.010817-1148
CurrentType: Uniprocessor Free
SystemRoot: C:\WINDOWS
SourcePath: D:\I386
PathName: C:\WINDOWS
ProductId: 55375-OEM-0044256-78585
DigitalProductId: A4 00 00 00 03 00 00 00 35 35 33 37 35 2D 4F 45 4D 2D 30 30 34 34 32 35 36 2D 37 38 35 38 35 00 2D 00 00 00 41 32 32 2D 30 30 30 30 31 00 00 00 00 00 00 00 32 6D C2 B4 C6 28 1F 66 03 71 8D EE 65 79 03 00 00 00 00 00 73 94 C8 3F E6 C7 05 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 31 36 38 30 30 00 00 00 00 00 00 00 D9 12 00 00 8A CB DC FC F7 01 00 00 81 18 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 51 A0 BC 79
LicenseInfo: 34 8F FF E3 0A 60 F2 0A 98 08 46 83 18 E0 61 4A 4E D5 A0 CB 70 97 B1 4D F0 EF 7E 8B 9D 86 09 16 14 36 46 87 6A 39 1F 96 4A 40 91 F6 DE 39 DA ED 56 A5 9C 81 8D 9B 1F 1D
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]:
AutoRestartShell: 01 00 00 00
DefaultDomainName: LAPTOP1
DefaultUserName: Administrator
LegalNoticeCaption:
LegalNoticeText:
PowerdownAfterShutdown: 0
ReportBootOk: 1
Shell: Explorer.exe
ShutdownWithoutLogon: 0
System:
Userinit: C:\WINDOWS\system32\userinit.exe,
VmApplet: rundll32 shell32,Control_RunDLL "sysdm.cpl"
SfcQuota: FF FF FF FF
allocatecdroms: 0
allocatedasd: 0
allocatefloppies: 0
cachedlogonscount: 10
forceunlocklogon: 00 00 00 00
passwordexpirywarning: 0E 00 00 00
scremoveoption: 0
AllowMultipleTSSessions: 00 00 00 00
UIHost: 6C 6F 67 6F 6E 75 69 2E 65 78 65 00
LogonType: 00 00 00 00
DebugServerCommand: no
SFCDisable: 00 00 00 00
WinStationsDisabled: 0
HibernationPreviouslyEnabled: 01 00 00 00
ShowLogonOptions: 01 00 00 00
AltDefaultUserName: Administrator
AltDefaultDomainName: LAPTOP1
DisableCAD: 00 00 00 00
AutoAdminLogon: 0
DCacheUpdate: E0 D1 AF 84 90 B6 C3 01
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix]:
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q147222]:
Installed: 01 00 00 00
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q307274]:
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q307274\File 1]:
Flags:
New File:
New Link Date:
Old Link Date:
Installed: 01 00 00 00
Comments: Windows XP Hotfix (SP1) [See Q307274 for more information]
Backup Dir:
Fix Description: Windows XP Hotfix (SP1) [See Q307274 for more information]
Installed By:
Installed On:
Service Pack: 01 00 00 00
Valid: 01 00 00 00
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q308677]:
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q308677\File 1]:
Flags:
New File:
New Link Date:
Old Link Date:
Installed: 01 00 00 00
Comments: Windows XP Hotfix (SP1) [See Q308677 for more information]
Backup Dir:
Fix Description: Windows XP Hotfix (SP1) [See Q308677 for more information]
Installed By:
Installed On:
Service Pack: 01 00 00 00
Valid: 01 00 00 00
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q311889]:
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q311889\File 1]:
Flags:
New File:
New Link Date:
Old Link Date:
Installed: 01 00 00 00
Comments: Windows XP Hotfix (SP1) [See Q311889 for more information]
Backup Dir:
Fix Description: Windows XP Hotfix (SP1) [See Q311889 for more information]
Installed By:
Installed On:
Service Pack: 01 00 00 00
Valid: 01 00 00 00
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q312370]:
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q312370\File 1]:
Flags:
New File:
New Link Date:
Old Link Date:
Installed: 01 00 00 00
Comments: Windows XP Hotfix (SP1) [See Q312370 for more information]
Backup Dir:
Fix Description: Windows XP Hotfix (SP1) [See Q312370 for more information]
Installed By:
Installed On:
Service Pack: 01 00 00 00
Valid: 01 00 00 00
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q315000]:
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q315000\File 1]:
Flags:
New File:
New Link Date:
Old Link Date:
Installed: 01 00 00 00
Comments: Windows XP Hotfix (SP1) [See Q315000 for more information]
Backup Dir:
Fix Description: Windows XP Hotfix (SP1) [See Q315000 for more information]
Installed By:
Installed On:
Service Pack: 01 00 00 00
Valid: 01 00 00 00
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q321856]:
[SOFTWARE\Microsoft\Windows NT\CurrentVersion\HotFix\Q321856\File 1]:
Flags:
New File:
New Link Date:
Old Link Date:
Installed: 01 00 00 00
Comments: Windows XP Hotfix (SP1) [See Q321856 for more information]
Backup Dir:
Fix Description: Windows XP Hotfix (SP1) [See Q321856 for more information]
Installed By:
Installed On:
Service Pack: 01 00 00 00
Valid: 01 00 00 00
[NetServerGetInfo Level 101]:
Host name: "192.168.1.2"
OS: Windows NT
OS version: 5.1
Comment:""
Host type: WORKSTATION SERVER POTENTIAL_BROWSER MASTER_BROWSER
[NetRemoteToD]:
12-12-2003 15:27:36 GMT
[NetSessionEnum Level 10]:
192.168.1.2\ Time:1 Sec., Idle:0 Sec.
[NetShareEnum Level 1]:
"IPC$": IPC$ - [Remote-IPC] (System)
"ADMIN$": DISK - [Remoteadmin] (System)
"C$": DISK - [Standardfreigabe] (System)
Plugin category: NETBIOS
Plugin name: NetBios-Info
Plugin author: glacier
Plugin version: 1.1
Risk rank: high
Description: "xfocus" vulnerability search engine "xfocus" exploit search engine
Also die Hälfte davon versteh ich eh net aber was ich mitgekriegt hab ist dass es eine "remoteregistry" gibt aus der man lauter lustige sachen auslesen kann. Wie kann ich verhindern, dass sowas machbar ist???
mfg