Does anyone know of a network scanner that can be run from a floppy, as im testing an XP box with no priviliges to the c drive and i want to make sure that no one can run a scanner on it.
We're running a network with terminals that have XP running with very little priviledges, ie no access to HDD or CD. so im just checking to see if anyone can run a password cracker or network scanner from the floppy.
I've also found out that even though the c: drive is not accessible the user can still access their "desktop" and save files to it. And win zip will let them run .exes through its unzip window.
Do you need to have the floppy drive accessible? You may want to disable it in the BIOS and simply password protect the BIOS.
I would be concerned about someone putting a keystroke logger on the machines more than a password cracker. I'd also be concerned about a sniffer, or someone simply rebooting with their own floppy or CDROM in the drive and it booting from there.
In theory, while you are running XP, the SAM file would not be accessible by the user, so a password cracker is moot. Unless they can run the rdist utility or there are backups of the SAM left on the disk. Or they can read the registry, which may contain passwords as well.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.