<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
	<channel>
		<title><![CDATA[PaulDotCom Forums]]></title>
		<link>http://forum.pauldotcom.com/index.php</link>
		<description><![CDATA[The most recent topics at PaulDotCom Forums.]]></description>
		<lastBuildDate>Mon, 09 Aug 2010 19:09:59 +0000</lastBuildDate>
		<generator>PunBB</generator>
		<item>
			<title><![CDATA[Mac user head in the ground]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=353&amp;action=new</link>
			<description><![CDATA[<p>My COO (My direct boss) keeps complaining about me locking computers down for the end users to try to minimize malware and security concerns.&nbsp; I still haven&#039;t been given a budget to deploy a unified network with a Windows server for Group Policy control so I am working with as much prudence as possible until such time I can push critical updates out via group policy.</p><p>Whenever we get into it in regards the users need to be able to have admin access on their PC&#039;s I explain the issues then he also fires back then they should just run a MAC because there are not viruses on a MAC.&nbsp; I would love to simply demonstrate how far into the sand his head is without committing professional suicide.&nbsp; I am not allowed to touch his MAC, so he is in 100% control of it.&nbsp; When I do deploy a more unified network, I know that this will come to a head as he will think that he is unnecessarily being controlled when he doesn&#039;t need the protection.</p><p>What would be a simple, easy way for me to demonstrate how vulnerable he is without committing professional suicide.&nbsp; If he could get owned in a controlled fashion by a trusted independent party it would be great.&nbsp; I think it would go a long way to silencing him when I am using best practices for protecting the network.</p>]]></description>
			<author><![CDATA[dummy@example.com (skydiver)]]></author>
			<pubDate>Mon, 09 Aug 2010 19:09:59 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=353&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[Hack the flag & Chili Cook off (shameless plug)]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=352&amp;action=new</link>
			<description><![CDATA[<p>I&#039;ve been helping organize the3 annual HTF &amp; chili cook off this year.&nbsp; <a href="http://sfissa.org/">http://sfissa.org/</a><br />8/14/2010 NOON&nbsp; to 5 ish.&nbsp; Beer + chili + hacking.&nbsp; We&#039;ve got a ninja and a samurai (noob) section if you can make it to the area bring it.</p><p>-- Tkrabec</p>]]></description>
			<author><![CDATA[dummy@example.com (tkrabec)]]></author>
			<pubDate>Mon, 09 Aug 2010 18:33:55 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=352&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[Session Lager - Full Sail Brewery]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=351&amp;action=new</link>
			<description><![CDATA[<p>Smooth, delicious lager. Kicks the pants off of Heineken.</p><p><a href="http://beeradvocate.com/beer/profile/5316/23713">http://beeradvocate.com/beer/profile/5316/23713</a></p><p>5.1 ABV, 11oz.</p><p>They also have a dark lager (black label) which is just as enjoyable, but it lacks the bite of a regular lager.&nbsp; Enjoy it from the bottle or a glass; a glass lets you drink it more faster, though.&nbsp; <img src="http://forum.pauldotcom.com/img/smilies/wink.png" width="15" height="15" alt="wink" /></p>]]></description>
			<author><![CDATA[dummy@example.com (veruus)]]></author>
			<pubDate>Thu, 05 Aug 2010 07:03:33 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=351&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[metasploit on android ruby on rails arm android]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=342&amp;action=new</link>
			<description><![CDATA[<p><a href="http://kj.security.net.my/?p=120">http://kj.security.net.my/?p=120</a> ... dammit I want this ... anybody dig up more info no this for me RoR for ARM I guess is what I need !?!</p>]]></description>
			<author><![CDATA[dummy@example.com (operat0r)]]></author>
			<pubDate>Sat, 13 Mar 2010 02:44:39 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=342&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[Bypass robots.txt during information gathering]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=350&amp;action=new</link>
			<description><![CDATA[<p>Hello,</p><p>This week I tried to test to site <a href="http://scanme.ntobjectives.com/">http://scanme.ntobjectives.com/</a> (testing site) with paros proxy tool to test if I can crawl deep to the site considering that the robots.txt is setup strictly. Crawling a site is important to determine all links possible to be vulnerable<br />user-agent: *<br />Disallow: /osrun/*<br />Disallow: /report/*<br />Disallow: /*</p><br /><p>Paros and W3af result simply shows few links detected even pushing the settings to be more verbose<br />NTO tool can crawl to all the links/directories on the site. I feel the they tool bypass the robots.txt and just crawl the entire site.<br /><a href="http://scanme.ntobjectives.com/report/">http://scanme.ntobjectives.com/report/</a>&nbsp; (link of the scan result)</p><p>Can you help how can I set Paros/ W3af to crawl to all links bypassing the robots.txt so I can get all the links needed to be check for XSS?</p><p>Thanks a lot</p>]]></description>
			<author><![CDATA[dummy@example.com (ny101880)]]></author>
			<pubDate>Tue, 09 Mar 2010 07:14:42 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=350&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[Windows information gathering script]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=349&amp;action=new</link>
			<description><![CDATA[<p>A couple years ago I got tired of manually running some of the same tools whenever I needed to analyze a Windows box, so I wrote a little wrapper script to help me do some standard, simple repeatable steps.&nbsp; Recently, I gave it to some friends who find it useful also, so I thought I would post it here in case it can benefit anyone else.</p><p>Basically the script (a horribly coded bat and vbs file) runs a collection of different commands and common third party tools that perform a handful of standard analysis steps, then it writes out the results into an awkward html report and after that it’s up to you to analyze the results, nothing revolutionary just helps cut down time and gives you a set of standard repeatable steps.&nbsp; The script is broken down into a bat file and a small vbs file and depending on what level of analysis you want, you can choose how verbose you want the output. Using psexec you can run the script against another machine without the remote user&#039;s interaction/knowledge.&nbsp; You will need to download the tools the script calls since I can&#039;t really distribute them.&nbsp; Below are the files you will need to place in the same folder as the script<br />The script is here <a href="http://theinterw3bs.com/wiki/images/Kludge/kludge-2.9.zip">http://theinterw3bs.com/wiki/images/Klu &#133; ge-2.9.zip</a><br />Listdlls.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/bb896656.aspx">http://technet.microsoft.com/en-us/sysi &#133; 96656.aspx</a><br />handle.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/bb896655.aspx">http://technet.microsoft.com/en-us/sysi &#133; 96655.aspx</a><br />Psinfo.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/bb897550.aspx">http://technet.microsoft.com/en-us/sysi &#133; 97550.aspx</a><br />psloggedon.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/bb897545.aspx">http://technet.microsoft.com/en-us/sysi &#133; 97545.aspx</a><br />streams.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/bb897440.aspx">http://technet.microsoft.com/en-us/sysi &#133; 97440.aspx</a><br />tcpvcon.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/bb897437.aspx">http://technet.microsoft.com/en-us/sysi &#133; 97437.aspx</a><br />vmmap.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/dd535533.aspx">http://technet.microsoft.com/en-us/sysi &#133; 35533.aspx</a><br />autorunsc.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/bb963902.aspx">http://technet.microsoft.com/en-us/sysi &#133; 63902.aspx</a><br />SigCheck.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/bb897441.aspx">http://technet.microsoft.com/en-us/sysi &#133; 97441.aspx</a><br />procdump.exe – <a href="http://technet.microsoft.com/en-us/sysinternals/dd996900.aspx">http://technet.microsoft.com/en-us/sysi &#133; 96900.aspx</a><br />7za.exe – 7-Zip Command Line Version – <a href="http://www.7-zip.org/download.html">http://www.7-zip.org/download.html</a><br />grep.exe, uniq.exe, cut.exe – <a href="http://sourceforge.net/projects/unxutils/">http://sourceforge.net/projects/unxutils/</a><br />md5deep.exe – <a href="http://md5deep.sourceforge.net/">http://md5deep.sourceforge.net/</a><br />mdd.exe – physical memory acquisition tool – <a href="http://sourceforge.net/projects/mdd/files/">http://sourceforge.net/projects/mdd/files/</a><br />mbr.exe – GMER mbr rootkit scanner – <a href="http://www2.gmer.net/mbr/">http://www2.gmer.net/mbr/</a><br />sarcli.dll, sar1.dll, sar2.dll, sar3.dll, sar4.dll, sar5.dll, sar6.dll, MEMSWEEP.sys, helper.exe – Sophos sarcli.exe – <a href="http://www.sophos.com/products/free-tools/sophos-anti-rootkit.html">http://www.sophos.com/products/free-too &#133; otkit.html</a><br />catchme.exe – rootkit/stealth malware scanner – <a href="http://www2.gmer.net/catchme.htm">http://www2.gmer.net/catchme.htm</a><br />rifiuti.exe, cygwin1.dll – <a href="http://www.foundstone.com/us/resources/proddesc/rifiuti.htm">http://www.foundstone.com/us/resources/ &#133; ifiuti.htm</a><br />rip.exe, regscan.exe, regslack.exe, p2×588.dll and the plugins directory from regripper – <a href="http://www.regripper.net/">http://www.regripper.net/</a><br />HoboCopy.exe – <a href="http://sourceforge.net/projects/wangdera/files/HoboCopy/">http://sourceforge.net/projects/wangder &#133; /HoboCopy/</a></p><p>I was asked to use some Windows binaries from a trusted source in case the machine I am analyzing has tainted exe’s.&nbsp; Usually never an issue but whatever, it was easy enough to do so I set the script to call the following native cmds from the same folder as the script. You will need to copy the following exe’s into the same folder or simply edit the script removing the .\ from the command.<br />Arp.exe – Copy the binary from trusted box<br />At.exe – Copy the binary from trusted box<br />ipconfig.exe – Copy the binary from trusted box<br />nbtstat.exe – Copy the binary from trusted box<br />net.exe – Copy the binary from trusted box<br />netsh.exe – Copy the binary from trusted box<br />netstat.exe – Copy the binary from trusted box<br />route.exe – Copy the binary from trusted box<br />schtasks.exe – Copy the binary from trusted box</p><p>There are 3 different output detail levels for the script 1 being the quickest, 2 being detailed and 3 detailed and with memory/process dumping. FYI - I was told Vista caused issues when running regslack but Win7 did better so unless XP/2003 you may need to adjust.&nbsp; </p><p>Using the tools above the script will automatically collect/report the following information.</p><p><strong>Gathers System Information</strong> – environment variables, OS info, path, drive info, partition info, user accounts, scheduled tasks, logged on users, shares, USB Device History, Installed Hotfixes and Service Packs</p><p><strong>Network info</strong> – TCP/UDP Connections, Cached DNS, IP and route info, firewall info, hosts file contents, NetBios Connections, NetBios over TCP Connections, Cache and Resolution, NetBios Session Information</p><p><strong>Process Information</strong> – lists all running processes, list all processes using wsock32.dll, Startup Apps, Services, Dlls, Open Handles</p><p><strong>File Information</strong> – dumps IE and FF browser history, outputs contents of Program Files, Documents and Settings and Windows directories, searches for ADS files, md5 hashes of Windows and Docs&amp;Settings directories, outputs event logs, outputs Flash version, Acrobat versions, Java Versions and lists version used by browser, Firefox version, outputs each user’s recyclebin contents, copies all user’s Flash Cookies, outputs any unsigned executables in the sys32 directory</p><p><strong>Registry Information</strong> – outputs installed BHO’s, outputs a bunch of common reg keys, dumps HKLM, HKCU, HKCR, HKU, HKCC, copies Sam, Sam.log, Sam.sav, Security, Security.log, Security.sav, Software, Software.log, Software.sav, System, System.alt, System.log, System.sav, Default, Default.log, Default.sav, Userdiff, Userdiff.log, Ntuser.dat.log and each user’s NTUSER.DAT.&nbsp; Outputs RegRipper plugins against each hive file, outputs RegSlack against each hive, outputs Regscan</p><p><strong>AV</strong> – currently dumps McAfee logs and Symantec logs (XP and Vista), outputs quarantine folder contents, runs rootkit scans</p><p><strong>Memory Analysis</strong> – dumps memory, dumps individual process memory, Virtual and Physical memory process analysis</p><p>As of right now you need to copy the script and the needed tools to the user&#039;s machine by some means.&nbsp; For example copy the folder to \\RemoteMachine\c$ , then if you named the folder &quot;kludge&quot; and you want to run it with a detail level of 2 use this psexec command to run the kludge.vbs script<br />psexec.exe \\RemoteMachine -u domain\AdminUserName -w c:\kludge cmd.exe /c c:\kludge\kludge.vbs 2<br />then when the script is finished it will zip itself up and you can copy it back to your machine.</p><p>A friend wrote a little python wrapper for the script that will copy the script/tools over and run it then copy it back to you so if anyone is interested in it I will send you a copy.</p><p>Sorry for the long post but if you need more info a better description is here - <a href="http://theinterw3bs.com/?p=399">http://theinterw3bs.com/?p=399</a> .&nbsp; If you have issues/suggestions/modifications please let me know.</p>]]></description>
			<author><![CDATA[dummy@example.com (Kvetch)]]></author>
			<pubDate>Thu, 04 Mar 2010 16:31:58 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=349&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA["IPv6 Survival Guide" seminar discount offer!]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=348&amp;action=new</link>
			<description><![CDATA[<p>Please be sure to sign up for an exclusive discount being offered to PaulDotCom listeners.&nbsp; Details can be found here:</p><p><a href="http://pauldotcom.com/2010/03/ipv6-survival-guide-seminar-di.html">http://pauldotcom.com/2010/03/ipv6-surv &#133; ar-di.html</a></p>]]></description>
			<author><![CDATA[dummy@example.com (MikeP)]]></author>
			<pubDate>Wed, 03 Mar 2010 16:47:10 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=348&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[Disabling Antivirus with Meterpreter]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=294&amp;action=new</link>
			<description><![CDATA[<p>I&#039;ve looked at the new getcountermeasure.rb script in the 3.3 version of Metasploit which expands the old killav.rb to look for a lot of things besides just antivirus processes (nice work, Darkoperator!). To play around with it I installed a current version of Avast on a Windows XP host and ran getcountermeasure to see what happens. As many of you probably know the script can&#039;t kill the 4 running processes (though it has them in the list as possible countermeasures). Trying to manually kill these processes gives me the reason:</p><div class="codebox"><pre><code>[-] stdapi_sys_process_kill: Operation failed: 5</code></pre></div><p>I found an old post from HD on the framework mailing list discussing this issue wrt killav.rb, where he explains that this is an Access Denied error probably caused by lack of permissions (I was the NT ADMINISTRATOR\SYSTEM user after exploit).</p><p>There&#039;s also a thread over on hak5 discussing a very similar issue wrt some switchblade scripts (<a href="http://hak5.org/forums/lofiversion/index.php?t10287.html">thread here</a>). A few people there have pointed out that AV vendors have taken some interesting countermeasures to avoid being killed (e.g., low level kernel hooking to avoid the process being killed from user space). And Eset uses a monitoring function that will restart the NOD32 process with a new pid if you manually kill it (as described in a posting by Carnal0wnage discussing similar issues <a href="http://carnal0wnage.blogspot.com/2007/06/defating-nod32-av.html">here</a>).</p><p>There were a few suggestions made on the hak5 forums but many of the suggestions were things like registry hacks to disable the antivirus after a reboot (this is the solution that Carnal0wnage describes in the linked post, as well).</p><p>Are there other ways to circumvent or disable modern antivirus? This is more for educational purposes than real pen testing (when people ask what exactly antivirus software is doing for them I can at least point to this and say it makes certain things more difficult). Antivirus is really just preventing further exploitation by restricting my toolset, so I can always circumvent the detection rules with packers, etc. but is there a way to actually kill off the av?</p>]]></description>
			<author><![CDATA[dummy@example.com (operat0r)]]></author>
			<pubDate>Fri, 26 Feb 2010 21:11:45 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=294&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[QuahogCon - Providence, RI in April]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=347&amp;action=new</link>
			<description><![CDATA[<p><a href="http://quahogcon.org/schedule/">http://quahogcon.org/schedule/</a></p><p>QuahogCon is a regional conference for the hacker culture in all forms. Hardware, Software, Security, Social, Eco Hacking, Zero Impact Living. Like most hacker cons, it will run Friday to Sunday. We&#039;ll have two tracks: one for InfoSec topics and the other track will be a mix of all the other topics with a bit of an emphasis on hardware hacking and DIY electronics. Besides our perennial InfoSec favorites, we want to hear from some new voices on a wider range of topics. If it&#039;s a good hack, we want to hear what you&#039;re doing.</p><p>It goes on April 23d thru 25th.</p><p>Some of the talks:&nbsp; </p><p>Dan Crowley - Windows File Pseudonyms &nbsp; &nbsp; <br />Mariano Alvira - The MC1322x Project&nbsp; <br />Nick DePetrillo /Don Bailey - We Found Carmen Sandiego! &nbsp; &nbsp; <br />Darren Wigley /Larry Pesce - Building the 2010 ShmooBall Launcher<br />Michael Schearer &quot;theprez98&quot; SHODAN for Pen Testers &nbsp; &nbsp; <br />Noah Bedford / Peter Schmidt - Neilsen The Little Microcontroller That Can: Awesome uses for the Atmel ATTiny45<br />Dragorn - Wifi Threats aren&#039;t dead, they just moved down the street &nbsp; &nbsp; <br />Deviant Ollam - Packing &amp; The Friendly Skies<br />Larry Pesce - Information disclosure via P2P networks &nbsp; &nbsp; <br />Jason Thibodeau - Hacking the Arcade: Basketball for Two<br />Alex Muentz - Security, Stupidity and Employability &nbsp; &nbsp; <br />Rob - Beginner Lock Picking</p><p>- MikeP</p>]]></description>
			<author><![CDATA[dummy@example.com (MikeP)]]></author>
			<pubDate>Tue, 23 Feb 2010 03:47:22 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=347&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[Releasing CeWL]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=157&amp;action=new</link>
			<description><![CDATA[<p>Having recently listened to the discussion on spidering websites to create custom word lists for password crackers I decided to write CeWL, the Custom Word List generator. It is a ruby app which will spider a given url and output a list of all the words it finds. It strips all html tags and tries to avoid things like css files.</p><p>You can download it and get more information from <a href="http://www.digininja.org/cewl.php">www.digininja.org/cewl.php</a> .</p><p>Any problems/questions/bugs let me know.</p>]]></description>
			<author><![CDATA[dummy@example.com (vdubhack)]]></author>
			<pubDate>Tue, 16 Feb 2010 01:08:48 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=157&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[Passive Vulnerability Assessment of Oracle Databases]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=173&amp;action=new</link>
			<description><![CDATA[<p>Hi</p><p>Is there a way to enumerate all of the databases within an environment?&nbsp; I want to use a tool to scan and then have the tool report to me all the databases within our environment.&nbsp; Additionally, once all the databases are identified, is there a tool to tell me whether the databases are secure?&nbsp; I am new at application/db security and would like some pointers/resources towards informational sites and so forth.</p><p>Thank you very much.</p><p>ML</p>]]></description>
			<author><![CDATA[dummy@example.com (iadcc)]]></author>
			<pubDate>Thu, 11 Feb 2010 12:10:43 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=173&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[SIM cards???]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=344&amp;action=new</link>
			<description><![CDATA[<p>I thought that if you removed a SIM card from a blackberry you could no longer use it to make calls or interact with the blackberry server. Well I removed my SIM card was able to make calls and send and receive email. I remember someone saying that if you remove the SIM card on a blackberry device you could perform offline attacks on it which seems not the case.</p>]]></description>
			<author><![CDATA[dummy@example.com (warrenjon)]]></author>
			<pubDate>Tue, 09 Feb 2010 21:59:04 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=344&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[USB flash boot 1337 uber]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=343&amp;action=new</link>
			<description><![CDATA[<p>revisit frmo an ole post </p><p><a href="http://hak5.org/forums/index.php?sho...06&amp;#entry88306">http://hak5.org/forums/index.php?sho... &#133; entry88306</a></p><p>for a full list I LIVE off USB .. I have backtrack windows XP and windows7 all on usb drives :</p><p>win7: <a href="http://rmccurdy.com/scripts/usboot%20windows%207.bat">http://rmccurdy.com/scripts/usboot%20windows%207.bat</a><br />winxp : <a href="http://www.usboot.org">www.usboot.org</a> ( you can push a usboot image in 4min and have windows up an running in under 4min .. with driverpacks )<br />backtrack 4 prefinal with changes: <a href="http://forums.remote-exploit.org/bac...tml#post148380">http://forums.remote-exploit.org/bac...tml#post148380</a></p><p>I have recently added portable:<br />GrabIt.exe<br />dvdflick.exe<br />MediaCoder 0.7.2.4582 portable.exe<br />Premiere 6.0 Portable</p><p>some of these windows apps are Thinstalls FYI you need admin for the dropbox portable</p>]]></description>
			<author><![CDATA[dummy@example.com (operat0r)]]></author>
			<pubDate>Tue, 09 Feb 2010 21:49:20 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=343&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[Securing Printers]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=307&amp;action=new</link>
			<description><![CDATA[<p>I am managing several Brother MFC network printers and would like to know what are the minimal protocols that should be enabled for basic Windows direct IP printing (No print servers).&nbsp; This thing has the following protocols enabled by default:<br />TCPIP<br />Web Based Management<br />IPP<br />IPP Port 80<br />IPP Port 631<br />Web Services<br />SNMP<br />Telnet<br />POP3/SMTP<br />FTP<br />TFTP<br />mDNS<br />NETBIOS/IP<br />LPD<br />RAW Port<br />Network Scan<br />Remote Setup<br />PC Fax Retrieve<br />LLMNR<br />LLTD</p><p>I am managing via the Brother Control Center3 software so I need SNMP enabled (I have secured the device with a strong password) but probably don&#039;t need web based management.&nbsp; I have disabled Telnet too but from here I am not sure how deep I can go without breaking it.&nbsp; I am managing it remotely via the VPN so I need to make sure I don&#039;t break it to the point that I can&#039;t access it to configure it.</p><p>Suggestions?</p>]]></description>
			<author><![CDATA[dummy@example.com (operat0r)]]></author>
			<pubDate>Thu, 04 Feb 2010 15:59:34 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=307&amp;action=new</guid>
		</item>
		<item>
			<title><![CDATA[How do you find all the sub domains of a site?]]></title>
			<link>http://forum.pauldotcom.com/viewtopic.php?id=340&amp;action=new</link>
			<description><![CDATA[<p>Looking for how you all find all the sub domains of a site from the outside.</p><p>Hate to say it but I&#039;m looking for a windows based solution.</p>]]></description>
			<author><![CDATA[dummy@example.com (operat0r)]]></author>
			<pubDate>Thu, 04 Feb 2010 15:58:32 +0000</pubDate>
			<guid>http://forum.pauldotcom.com/viewtopic.php?id=340&amp;action=new</guid>
		</item>
	</channel>
</rss>
