2 :445 smb
$ nmap -p 139,445 --script=smb-enum-shares.nse,smb-enum-users.nse $ip
Host script results:
| smb-enum-shares:
| account_used: guest
| \\192.168.137.145\IPC$:
| Type: STYPE_IPC_HIDDEN
| Comment: IPC Service (APEX server (Samba, Ubuntu))
| Users: 1
| Max Users: <unlimited>
| Path: C:\tmp
| Anonymous access: READ/WRITE
| Current user access: READ/WRITE
| \\192.168.137.145\docs:
| Type: STYPE_DISKTREE
| Comment: Documents
| Users: 0
| Max Users: <unlimited>
| Path: C:\var\www\html\source\Documents
| Anonymous access: READ/WRITE
| Current user access: READ/WRITE
| \\192.168.137.145\print$:
| Type: STYPE_DISKTREE
| Comment: Printer Drivers
| Users: 0
| Max Users: <unlimited>
| Path: C:\var\lib\samba\printers
| Anonymous access: <none>
|_ Current user access: <none>
$ smbmap -H $ip
[+] Guest session IP: 192.168.137.145:445 Name: 192.168.137.145
Disk Permissions Comment
---- ----------- -------
print$ NO ACCESS Printer Drivers
docs READ ONLY Documents
IPC$ NO ACCESS IPC Service (APEX server (Samba, Ubuntu))
$ smbclient //192.168.137.145/docs
Enter WORKGROUP\kashz's password:
Try "help" to get a list of possible commands.
smb: \> dir
. D 0 Fri Apr 9 08:47:12 2021
.. D 0 Fri Apr 9 08:47:12 2021
OpenEMR Success Stories.pdf A 290738 Fri Apr 9 08:47:12 2021
OpenEMR Features.pdf A 490355 Fri Apr 9 08:47:12 2021
Last updated