network – cisco-torch

Cisco torch

Cisco Torch was designed as a mass scanning, fingerprinting, and exploitation tool. Cisco-torch is unlike other tools in that it utilises multiple threads, (forking techniques), to launch scanning processes. It also uses several methods to  simultaneously carry out application layer fingerprinting. Cisco torch can be used for launching dictionary based password attacks against the services and discovering hosts running the following services:

Telnet,

SSH,

Web,

NTP

SNMP.

 

backtrack 5 r1

/pentest/cisco/cisco-torch

./cisco-torch.pl -b -t -A (ip address)
root@bt:/pentest/cisco/cisco-torch# ./cisco-torch.pl -b -t -A ip address
Using config file torch.conf…
Loading include and plugin …

###############################################################
#   Cisco Torch Mass Scanner                   #
#   Becase we need it…                                      #
#   http://www.arhont.com/cisco-torch.pl                      #
###############################################################

List of targets contains 1 host(s)
10651:    Checking (ip address) …
Fingerprint:            255251125255251125255251125255251125255251125255251125
Description:            Cisco IOS host (tested on 2611, 2950 and Aironet 1200 AP)
Fingerprinting Successful

Tryng cisco:cisco
*** Found valid login/password pair : cisco / cisco
* Cisco by SNMP found ***
*System Description: Cisco IOS Software, 3600 Software (C3640-JK9O3S-M), Version 12.4(16a), RELEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2007 by Cisco Systems, Inc.
Compiled Mon 10-Sep-07 12:25 by prod_rel_team

*** Check  (ip address) community SNMP   : public
*** Check  (ip address) community SNMP   : private
*** Found no public SNMP community : private
***System Description:Cisco IOS Software, 3600 Software (C3640-JK9O3S-M), Version 12.4(16a), RELEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2007 by Cisco Systems, Inc.
Compiled Mon 10-Sep-07 12:25 by prod_rel_team
Cisco-IOS Webserver found
HTTP/1.1 401 Unauthorized
Date: Fri, 01 Jan 2002 02:41:16 GMT
Server: cisco-IOS
Accept-Ranges: none
WWW-Authenticate: Basic realm=”level_15 or view_access”

401 Unauthorized

Tryng cisco
HTTP/1.0 900 NET OR SSL ERROR

./cisco-torch.pl 10651: open_tcp_connection: failed `(ip address), 443 (Connection refused)

you will see lot of fails as will try all connection options

– All scans done. Cisco Torch Mass Scanner  –
—> Exiting.
root@bt:/pentest/cisco/cisco-torch#

#######################################################

 

results show interesting finds are,

*** Check  (ip address) community SNMP   : public
*** Check  (ip address) community SNMP   : private

*** Found valid login/password pair : cisco / cisco

Cisco-IOS Webserver found
HTTP/1.1 401 Unauthorized
Date: Fri, 01 Jan 2002 02:41:16 GMT
Server: cisco-IOS
Accept-Ranges: none
WWW-Authenticate: Basic realm=”level_15 or view_access”

Advertisements

One thought on “network – cisco-torch

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s