Port scanning question...
...I admin a public network, a wireless network in a coffeehouse, and every few months it gets really slow due to some hanger-ons infected with spyware or trojans, or maybe they're doing a download thing. I've been able to quickly resolve the issue by running a series of port scans, picking up the offending MAC addresses, then giving them the boot via the router program. What I've noted after doing this a few times though is that I'm missing some of the computers I know are on the network and assume this to be due to the presence of a firewall on those machines. They're just downright inivisible to Angry IP and GFI Languard. Is there a way to port scan the network and pick up these 'invisible' computers? I've experimented with running Ethereal, but it doesn't work with my wireless card in any kind of promiscous mode. Would nmap or netcat pick up these firewalled boxes? I guess I could go into the router and clear the DHCP table, then refresh it and see who's on, but I prefer the network tools. Thanks.
The legality of port scanning...
...it's probably legal if it's part of your job.
http://seclists.org/lists/nmap-hacke...-Jun/0011.html
Then again, our legal system's so convoluted, you never really know.