-1049691616 | 2024-12-21T19:09:35.080629
137 /
udp
NetBIOS Response:
Server Name: WIN-UNK7EMLSJM2
MAC Address: E0:07:1B:6A:45:31
Names:
WIN-UNK7EMLSJM2 <0x0>
WIN-UNK7EMLSJM2 <0x20>
WORKGROUP <0x0>
MAC Addresses
E0:07:1B:6A:45:31
OUI: E0:07:1B
Organization: Hewlett Packard Enterprise
Assignment: MA-L
Registration Date: 2016-01-13
-1166656618 | 2024-12-06T02:40:23.052765
445 /
tcp
SMB Status:
Authentication: enabled
SMB Version: 2
Capabilities: raw-mode
-1223651253 | 2024-12-18T09:41:53.180453
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-UNK7EMLSJM2
NetBIOS Domain Name: WIN-UNK7EMLSJM2
NetBIOS Computer Name: WIN-UNK7EMLSJM2
DNS Domain Name: WIN-UNK7EMLSJM2
FQDN: WIN-UNK7EMLSJM2
; Administrator
SES
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
48:3d:76:7d:b2:6a:ab:93:41:2a:a1:fd:2a:b5:6b:6e
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-UNK7EMLSJM2
Validity
Not Before: Dec 12 08:14:12 2024 GMT
Not After : Jun 13 08:14:12 2025 GMT
Subject: CN=WIN-UNK7EMLSJM2
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:cd:9c:1e:eb:a9:12:86:64:ea:c7:73:97:b5:3f:
ad:e2:ef:93:55:c8:a4:90:6f:90:7e:75:05:01:30:
fc:90:13:8c:07:39:ac:ac:f6:b2:44:01:09:f4:f8:
5b:19:4a:5b:35:c6:a2:53:d1:d9:5f:f5:60:5f:45:
f0:8b:f1:05:a6:b3:89:97:96:4e:3c:39:b7:13:84:
7e:5a:3c:c8:01:84:d7:4b:70:da:0b:0e:e0:91:a4:
2c:7a:c4:31:ab:52:a0:3c:40:33:50:3d:3f:93:a5:
67:29:34:8e:71:34:b7:6d:1e:6d:77:c9:7e:37:0e:
bb:9c:48:1c:6a:95:53:73:0d:cc:8c:09:0e:bd:c3:
54:2d:5d:f7:1e:86:85:49:63:63:a7:94:a6:41:11:
bf:c8:cd:76:4a:85:d6:95:af:b2:64:51:84:08:39:
2a:ed:9f:ed:9a:ff:64:09:21:e5:b4:9d:e7:db:72:
d7:d0:46:56:1c:e5:41:1e:75:e9:94:fd:72:d7:64:
0d:6a:07:74:85:b7:b3:25:58:2e:66:a4:1b:ab:4f:
1f:ad:65:6d:2a:c1:e7:4d:fc:fb:30:83:21:ce:76:
2f:a0:36:46:27:fd:5b:e1:fa:22:f5:79:c4:a2:89:
82:6a:6f:69:4c:38:7c:38:a5:de:5e:e2:51:e3:b2:
b5:59
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
b8:de:bd:e9:2a:ff:01:b3:67:66:c7:29:c5:ab:c3:f6:ad:0f:
02:42:22:e8:1e:98:8c:67:ff:9f:6b:91:b0:fb:04:9a:eb:61:
2b:4b:c3:16:5e:2b:e7:21:75:3c:9e:de:47:94:f0:1c:49:92:
74:02:88:3a:f8:3d:34:47:d5:0d:31:52:54:60:70:f0:2b:cd:
f7:e7:72:67:36:fc:8a:75:9c:0f:2f:0c:5c:90:31:ff:99:bd:
86:d5:71:5e:6d:fa:a0:72:2f:b8:11:fe:de:6b:28:09:b6:9b:
98:61:d6:6f:2a:7f:60:46:bf:c4:c1:ab:1f:62:59:9c:03:1b:
57:3d:2d:34:9d:21:19:08:4f:3d:94:ed:1f:f1:e4:48:90:c9:
67:59:7e:47:84:d0:5b:a2:31:ef:91:4f:c4:99:ae:7b:23:a5:
a7:d6:60:0c:66:35:f5:37:29:2c:22:1c:9f:3e:49:1c:5f:59:
64:84:da:f0:56:03:ac:e1:a8:bc:fe:89:24:ba:20:b3:df:7b:
91:38:93:fd:c7:26:af:f8:7d:a1:b6:78:09:a0:76:ab:cf:a1:
06:07:c7:af:ba:6f:3a:0e:0b:71:f6:40:50:34:7a:17:ab:86:
f4:6d:30:4f:d6:57:9c:07:3c:2b:66:a1:e7:ec:49:d5:58:33:
24:4a:62:d1
-1684583448 | 2024-12-18T10:41:46.912291
5357 /
tcp
HTTP/1.1 503 Service Unavailable
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Wed, 18 Dec 2024 10:41:46 GMT
Connection: close
Content-Length: 326
1489525118 | 2024-11-30T10:47:14.731694
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sat, 30 Nov 2024 10:47:14 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: 123MAIL53COM
NetBIOS Domain Name: 123MAIL53COM
NetBIOS Computer Name: 123MAIL53COM
DNS Domain Name: 123mail53com
FQDN: 123mail53com