Thursday, 4 April 2013

Host Discovery; hunting for Windows XP hosts

These are a couple of quick ways to do discover the OS version of your hosts:

A) Use nmap, and run the following command. 
nmap --script smb-os-discovery -p 445

B) Use Metasploit, and run the following commands.
use auxiliary/scanner/smb/smb_version
set rhosts

The output will display the Operating System on each of your hosts.

As a side note, you can use
nbtscan for a quick host discovery

or nmap 
nmap -sP -n