Let us now jump into Metasploit-specific modules for testing the MSSQL server and see what kind of information we can gain by using them.
Scanning MSSQL servers with Metasploit
Using the mssql_ping module
The very first auxiliary module that we will be using is mssql_ping. This module will gather service information related to the MSSQL server.
So, let us load the module and start the scanning process as follows:
![](https://static.packt-cdn.com/products/9781788297134/graphics/assets/690885a9-413f-4cd8-b8e2-0eda459bfc94.png)
We can clearly see that mssql_ping has generated an excellent output of the fingerprinted MSSQL service.
Brute-forcing MSSQL passwords
Metasploit also offers...