Re: locate windows workstation if you know the username



Came across this tip:
http://www.jsifaq.com/SF/Tips/Tip.aspx?id=0771

Basically, see what machine pops up in your cache after you get a response.

Another way to do this would be to just sniff the traffic and see what
machine replies after you send out your message.

-Brendan

On 8/30/06, offset <offset@xxxxxxxxxxxxxxxx> wrote:
Greetings fellow pen-testers,

Looking for ideas on tracking down a windows workstation if you know the username.

I know that if I run net send username "" I can tell that the user is online without the message box popping up on their machine (usually), but I'd like to know which workstation a particular user is at for a targeted arp spoofing attack against a client.

-off

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php
------------------------------------------------------------------------



------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php
------------------------------------------------------------------------



Relevant Pages

  • Re: Boot floppy
    ... Root kit and other things? ... Cenzic Hailstorm finds vulnerabilities fast. ... Click the link to buy it, try it or download Hailstorm for FREE. ...
    (Pen-Test)
  • RE: Informing Companies about security vulnerabilities...
    ... Need to secure your web apps? ... Cenzic Hailstorm finds vulnerabilities fast. ... Click the link to buy it, try it or download Hailstorm for FREE. ...
    (Pen-Test)
  • RE: Boot floppy
    ... I assume you're not in a domain, so you don't have admin privs on the ... Cenzic Hailstorm finds vulnerabilities fast. ... Click the link to buy it, try it or download Hailstorm for FREE. ...
    (Pen-Test)
  • Re: Boot floppy
    ... and the user's own manager won't reign them in, ... Cenzic Hailstorm finds vulnerabilities fast. ... Click the link to buy it, try it or download Hailstorm for FREE. ...
    (Pen-Test)
  • RE: Old @Stake Tools
    ... Cenzic Hailstorm finds vulnerabilities fast. ... Click the link to buy it, try it or download Hailstorm for FREE. ... ting ding ting ding ting ding ...
    (Pen-Test)