The current enum_computers post module currently uses 'net view' in a shell to recover computers which is pretty unreliable; it often wont return any results; and inconsitant; it doesn't return all domain computers.
As a windows domain member you can enumerate domain computers (and shared folders/printers/users/groups etc) with LDAP lookups in AD.
This is really handy for identifying specific server types etc:
I was wondering if it could be done via WinAPIs or some funky Powershell? Will try and implement this myself if I have some time!
Tracking this as http://dev.metasploit.com/redmine/issues/7473 and set @Meatballs1 as a watcher.