11:24 PM 10/7/2002 Newbies Guide To Netbios By CyberMagsa!! This File Was Downloaded From www.hacknewbies.com please come again. ===================================================================================== - ______ ______ ___ ________ ____ ___ - - | | | | / \ / | | | / / ___ - - | | | | / \ / _____| | | / / | | - - | |__| | / ___ \ | / | |/ / | | - - | | / |___| \ | | | / | | - - | __ | / \ | | | \ | | - - | | | | / /-\ \ | \_____ | |\ \ |___| - - | | | | / / \ \ \ | | | \ \ ___ - - |_____| |_____| /_____/ \_____\ \________| |__| \__\ |___| - - - ===================================================================================== PLEASE view this document in notepad if viewed in anything else it will not be displayed correctly... ----------------------------------------disclaim-------------------------------------- I shall NOT take any responsibilty for the way you use or mis-use this information. it is for educational perpuses only. feel free to pass this doc around but please DO NOT change it in anyway. -------------------------------------------------------------------------------------- Netbios. Netbios is the easiest Hack i know you dont have to be a wiz with an IQ of 190 to master this hack but it will help if you have a genral understanding of you win32 platform (windows). First of all you need Netbios enabled in on your box to do this in XP goto your dial-up connection properties and and click on TCP/IP properties click the advanced tab then WINS and enable it down the bottom..restart and Done..Mind this is For XP only..it should be enabled automaticly on any other version. Next find a target the Best way to do this is to get MiRc this is a good Irc client for Winblowz get this up and running and use the /dns to get an IP address. Then open up command prompt or ms-dos and type nbtstat -A IP address hit enter and wait you should get 1 of 2 screens. 1.host not found. (or something like that) 2. C:\>nbtstat -A 192.168.0.99 Local Area Connection: Node IpAddress: [192.168.0.99] Scope Id: [] NetBIOS Remote Machine Name Table Name Type Status --------------------------------------------- SERVER <00> UNIQUE Registered SLASHER <00> GROUP Registered SERVER <03> UNIQUE Registered SERVER <20> UNIQUE Registered SLASHER <1E> GROUP Registered SLASHER <1D> UNIQUE Registered ..__MSBROWSE__.<01> GROUP Registered SERVER <01> UNIQUE Registered MAC Address = 00-02-E3-05-AE-ED WoW Wtf is that. well this tells all see the <20> Hex this is what we are looking for this lets us know that this box is open and hackable, there are a few exection's to this rule but 90% of the time this is the case. if you cant find a host the first time just keep trying there are lots of open comps out there.ok now that we have found a open host lets start hacking. to view the hosts shares (thats what we are hacking) type Net view \\ip address you should get a list something like this. C:\>net view \\192.168.0.99 Shared resources at \\192.168.0.99 850 Share name Type Used as Comment ------------------------------------------------------------------------------- C Disk cd-rom Disk GAMES (D) Disk Printer Print HP DeskJet 692C SharedDocs Disk The command completed successfully. this is farley strait forwald.. ok so now that you have found out the name of the shares time to start looking inside them. there are 2 ways to do this. 1. type the ip into your browser (internet explorer) like so \\ip address 2. type net use x: \\ipaddress\sharename (example: net use c: \\123.123.123.123\c) the second command is good because you can view the shares in dos thus speeding up the load time. what is does is maps the c drive of the remote host to a local drive in this case x: to you computer. so just type x: in to youe shell (command prompt, ms-dos) and browse just like it was your c drive. ------------------------------------------------ How the Hack works. ------------------------------------------------ Ok so now you know the hack. but there is no point in knowing a hack with knowing how it works. Netbios is a TCP/IP protocol (this means that it runs over the internet) it is used to share files and printers. the port that netbios runs under is 139. it is easy to hack because windows has installed programes to exploit this vulnrability. although there arnt as many people open to this attack as in the past. there are still a few. -------------------------------------------------------------------------------- Gr33tz to NoPh0BiA and In4sa take it easy guyz Thanks for the read hope ya like.. E-mail: Cyber@hacknewbies.com