information gathering – nbtscan

NBTscan is a program for scanning IP networks for NetBIOS name information. It sends NetBIOS status query to each address in supplied range and lists received information in human readable form. For each responded host it lists IP address, NetBIOS computer name, logged-in user name and MAC address.

root@bt:~# nbtscan 192.168.1.1-254
Doing NBT name scan for addresses from 192.168.1.1-254

IP address       NetBIOS Name     Server    User             MAC address
——————————————————————————
192.168.1.1    test-1         <server>  <unknown>        00-01-8a-ab-91-d4
192.168.1.2    test-2         <server>  <unknown>        00-01-8a-ab-92-d5

To find services use the -hv command

root@bt:~# nbtscan -hv 192.168.1.1
Doing NBT name scan for addresses from 192.168.1.100

NetBIOS Name Table for Host 192.168.1.1:

Incomplete packet, 155 bytes long.
Name             Service          Type
—————————————-
test-1       � Workstation Service
testdomain           � Domain Name
test-1      � File Server Service

Adapter address: 00-01-8a-ab-91-d4

Leave a comment