1477899750 | 2024-11-04T00:07:02.265786
137 /
udp
NetBIOS Response:
Server Name: WIN-RTFOOBPBK9J
MAC Address: 00:16:3E:41:A6:00
Names:
WORKGROUP <0x0>
WIN-RTFOOBPBK9J <0x0>
WIN-RTFOOBPBK9J <0x20>
MAC Addresses
00:16:3E:41:A6:00
OUI: 00:16:3E
Organization: Xensource, Inc.
Assignment: MA-L
Registration Date: 2005-10-29
-2132779159 | 2024-11-04T04:30:50.530419
445 /
tcp
SMB Status:
Authentication: enabled
SMB Version: 1
OS: Windows Server 2012 R2 Standard Evaluation 9600
Software: Windows Server 2012 R2 Standard Evaluation 6.3
Capabilities: extended-security, infolevel-passthru, large-files, large-readx, large-writex, level2-oplocks, lock-and-read, lwio, nt-find, nt-smb, nt-status, rpc-remote-api, unicode
676597235 | 2024-11-08T03:39:53.166897
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x0f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 8.1/Windows Server 2012 R2
OS Build: 6.3.9600
Target Name: WIN-RTFOOBPBK9J
NetBIOS Domain Name: WIN-RTFOOBPBK9J
NetBIOS Computer Name: WIN-RTFOOBPBK9J
DNS Domain Name: WIN-RTFOOBPBK9J
FQDN: WIN-RTFOOBPBK9J
am Windows Server 2012R2
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
4d:1b:7c:5f:ea:b2:c3:a1:40:13:fb:f9:64:3d:a2:ee
Signature Algorithm: sha1WithRSAEncryption
Issuer: CN=WIN-RTFOOBPBK9J
Validity
Not Before: Jun 18 14:08:05 2024 GMT
Not After : Dec 18 14:08:05 2024 GMT
Subject: CN=WIN-RTFOOBPBK9J
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b8:6b:86:df:76:1c:45:dd:ed:a1:36:03:37:dc:
fa:2e:90:72:e7:9c:66:f1:66:c2:5e:86:12:36:3e:
82:ef:d2:03:2c:42:fb:b3:df:52:a0:36:55:7c:be:
df:a2:d7:ee:f0:4f:65:ba:f4:18:c1:bb:33:e8:22:
ab:a6:97:99:f3:8e:e9:e4:b9:6c:1f:70:c8:6d:5d:
17:7c:81:be:bd:5a:67:0b:3f:4b:2d:f0:69:87:3e:
ee:32:50:f1:ea:6d:99:b3:da:b0:68:4f:91:dd:52:
c2:1d:ba:9a:bf:74:6f:fb:37:3d:a0:ac:bc:e9:da:
4f:f8:4b:9b:f9:89:d4:e9:f7:94:20:5e:2e:01:71:
b0:7e:60:b8:ee:00:d6:ac:c0:92:bd:90:fe:ab:f6:
3c:a4:50:43:fa:a6:ea:49:a5:4f:1e:1c:88:68:31:
b8:6f:87:3e:f9:5e:b8:28:4c:45:3b:e4:ba:34:f4:
e1:8b:3b:4b:9f:15:7c:b2:86:07:67:0f:4d:72:20:
a4:f4:7c:97:a6:37:90:61:47:34:72:96:bd:77:52:
88:81:f6:ad:a5:5d:78:91:7d:18:2e:45:a4:fd:53:
8a:d2:29:6f:ed:69:82:dc:48:1c:43:1f:7d:e9:2f:
9a:b8:2c:9a:63:ee:0c:61:ea:2d:05:21:a0:76:ac:
b5:d7
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
06:03:58:e2:d4:7e:4d:c4:60:70:c4:f9:e7:c2:e8:03:46:34:
ac:8e:49:d8:e7:29:f5:15:23:55:16:ea:09:69:bb:74:94:bb:
95:15:6c:fc:90:c2:90:75:e7:9a:50:d7:89:3a:2d:68:27:28:
db:e8:80:60:f5:75:20:58:1c:98:f4:d7:68:c6:3e:0a:85:47:
e7:ef:5d:3c:50:0a:17:e8:3f:12:89:45:5b:d6:68:f9:ff:3a:
c2:b0:6d:cc:60:23:3b:5f:f9:e6:39:10:b8:7d:9c:1c:aa:c8:
39:04:ad:90:d7:51:fc:3a:32:4e:a0:26:16:17:62:47:04:c9:
15:5b:6d:97:c0:4a:6f:c6:6b:e6:97:8e:ec:2e:d7:06:32:34:
9f:87:b8:dc:f5:04:38:97:2c:71:0c:4e:fc:d2:b1:d1:56:fc:
7a:5d:e7:9d:94:52:67:e3:db:14:34:61:c7:07:e2:d9:d9:d2:
ee:0b:79:df:e0:87:a4:eb:3c:65:1d:05:7f:df:d8:f4:fd:a5:
75:f6:ff:2a:28:8c:2a:d8:72:4d:db:fe:bd:23:c7:4d:1e:e0:
21:a0:08:d9:9f:f4:65:4f:27:d2:a3:14:d4:b3:bc:69:35:c1:
da:7a:06:9d:12:ab:b1:9d:f4:e9:8c:5c:90:32:f8:23:e0:0d:
9a:e8:2a:47
1489525118 | 2024-10-16T09:49:34.249316
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Wed, 16 Oct 2024 09:49:34 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2012 R2
OS Build: 6.3.9600
Target Name: WIN-RTFOOBPBK9J
NetBIOS Domain Name: WIN-RTFOOBPBK9J
NetBIOS Computer Name: WIN-RTFOOBPBK9J
DNS Domain Name: WIN-RTFOOBPBK9J
FQDN: WIN-RTFOOBPBK9J