doktor5000 wrote:oj wrote:The 'other' use would be spying on and hacking windows machines on a LAN.

Well, nmap or metasploit and similar tools can be used for that, why add a permanent route for that?
Because since Vista windows "asks for it" in the multicast space. There are somewhat legitimate reasons for enabling it by default (looking for a media server for example) but I've poked into this extensively and believe Microsoft is up to something else with the setting. It is possible for this thwart a firewall, perhaps in conjunction with windows update.
You can passively acquire info and poke at the machine over multicast and the target won't 'suspect' anything is amiss. Windows is the blabbermouth that started the conversation.
