File smtp-brute
Script types:
portrule
Categories:
brute, intrusive
Download: http://nmap.org/svn/scripts/smtp-brute.nse
User Summary
Performs brute force password auditing against SMTP servers using either LOGIN, PLAIN, CRAM-MD5, DIGEST-MD5 or NTLM authentication.
Script Arguments
smtp-brute.auth
authentication mechanism to use LOGIN, PLAIN, CRAM-MD5, DIGEST-MD5 or NTLM
passdb, unpwdb.passlimit, unpwdb.timelimit, unpwdb.userlimit, userdb
See the documentation for the unpwdb library.smbdomain, smbhash, smbnoguest, smbpassword, smbtype, smbusername
See the documentation for the smbauth library.Example Usage
nmap -p 25 --script smtp-brute <host>
Script Output
PORT STATE SERVICE REASON 25/tcp open stmp syn-ack | smtp-brute: | Accounts | braddock:jules - Valid credentials | lane:sniper - Valid credentials | parker:scorpio - Valid credentials | Statistics |_ Performed 1160 guesses in 41 seconds, average tps: 33
Requires
Author: Patrik Karlsson
License: Same as Nmap--See http://nmap.org/book/man-legal.html


