Re: cracking DMZ servers username/password



Check out the Remote Desktop brute force tool tsgrinder here:
http://www.hammerofgod.com/download.htm

I've had problems with it, timing out after some time. You also need a dictionary, since it doesn't support character iteration... yet.

- Tom

"SW" <SW@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message news:40D1CDA5-475A-49D4-BA4A-A4DAA12397C1@xxxxxxxxxxxxxxxx
We have a Windows 2003 server on our DMZ, it's patched up to the latest and
we have enabled Remote desktop Connection, so we can manage it remotely over
the internet. Obviuosly I think this can be a risk, but I need to know if
the username and password can be cracked etc. I did a port scan on it and it
showed the RDC port open. I have changed the administrators username, what
tool can I use?

.