nmap --open 10.129.1.125
smbclient -L 10.129.1.125 #smbclient \\\\IP\\共享目录 smbclient \\\\10.129.1.125\\WorkShares ls #dir也是可以的
What does the 3-letter acronym SMB stand for?
server message block
What port does SMB use to operate at?
What is the service name for port 445 that came up in our Nmap scan?
What is the 'flag' or 'switch' we can use with the SMB tool to 'list' the contents of the share?
How many shares are there on Dancing?
What is the name of the share we are able to access in the end with a blank password?
What is the command we can use within the SMB shell to download the files we find?