1702712738 | 2025-01-08T14:28:51.059990
445 /
tcp
SMB Status:
Authentication: enabled
SMB Version: 1
OS: Windows Server 2016 Datacenter 14393
Software: Windows Server 2016 Datacenter 6.3
Capabilities: extended-security, infolevel-passthru, large-files, large-readx, large-writex, level2-oplocks, lock-and-read, lwio, nt-find, nt-smb, nt-status, rpc-remote-api, unicode
757973282 | 2025-01-02T03:48:46.304825
1234 /
tcp
HTTP/1.0 200 OK
Content-Type: text/html; charset="utf-8"
Content-Length: 111
1394987635 | 2025-01-01T17:57:02.920804
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1607)/Windows Server 2016 (version 1607)
OS Build: 10.0.14393
Target Name: VMI645434
NetBIOS Domain Name: VMI645434
NetBIOS Computer Name: VMI645434
DNS Domain Name: vmi645434
FQDN: vmi645434
; Administrator
SES
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5d:46:e4:77:e8:f0:24:ae:40:77:e8:9a:fb:34:f1:96
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=vmi645434
Validity
Not Before: Nov 29 15:12:43 2024 GMT
Not After : May 31 15:12:43 2025 GMT
Subject: CN=vmi645434
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c3:44:94:28:19:22:43:d4:f5:96:46:4d:30:05:
29:aa:bc:06:f3:50:24:01:6c:0c:ca:bd:9a:4c:cb:
49:f1:c5:f0:dd:e1:d9:fe:ab:e3:92:06:3d:3d:f5:
61:76:2a:de:44:17:52:8b:59:83:8c:2e:6e:d3:60:
e9:71:11:70:e0:38:33:f9:9f:5e:1a:98:5c:58:47:
26:9d:a0:92:cf:79:55:31:d2:51:48:1c:45:58:60:
c3:3f:e3:22:c8:ba:de:75:b7:0c:31:a4:ea:34:2f:
d6:22:0d:29:de:eb:95:46:fd:5d:70:2c:7f:fe:4b:
03:af:0c:05:ef:f4:c3:06:17:4b:f9:82:ab:64:9e:
b7:98:17:f5:ff:3f:9e:b6:1a:53:29:ec:6f:b0:fe:
9a:d2:27:0c:cb:cf:93:bc:c7:ce:b7:2e:01:91:e1:
14:23:1f:37:55:f1:f5:38:c3:d1:fe:17:6a:e9:b8:
58:c6:7e:56:4c:9a:8a:c9:81:81:01:d4:bb:e2:50:
60:24:4e:2a:5d:34:ca:ff:61:b2:f4:4e:ba:8e:11:
09:b0:ea:45:51:20:d0:31:79:79:87:56:74:35:bd:
ca:a4:3b:89:42:c6:0b:2e:4b:88:a3:06:33:f4:c5:
1d:ac:a8:e9:ba:8a:76:e6:15:b9:b3:43:d0:9c:28:
38:f5
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
05:27:2b:70:11:cb:b9:3f:69:68:06:12:4f:a2:fe:7a:3e:05:
d2:72:5a:86:41:be:3c:b5:74:71:66:a3:c7:1d:5c:0d:55:d9:
6b:cb:6f:4b:ab:74:de:14:01:c5:db:8e:b4:31:05:3b:64:6b:
64:9c:be:16:75:bf:0e:45:c7:10:38:35:ef:24:8c:8f:e7:a5:
a3:39:ca:f9:f8:69:23:f0:7d:2e:a8:de:01:3e:47:80:24:72:
44:26:7b:45:0b:db:d2:65:ba:ed:5b:cf:a1:32:e1:ff:49:82:
f8:10:45:ad:c2:17:5c:4e:7d:a2:62:94:62:26:9e:f5:36:a5:
86:65:2e:fd:d6:34:a7:d3:b3:39:ad:32:83:74:98:8c:3d:cc:
57:23:b3:21:ef:55:49:22:19:bb:0f:fa:ab:d0:24:ba:82:32:
8b:ef:6b:ed:54:28:e9:ff:da:4b:b0:85:1e:fd:15:ce:34:e6:
60:34:78:eb:58:b1:21:dc:fa:5d:e0:b1:6e:78:5e:30:cf:e1:
b9:6e:8c:3a:ce:5e:5e:03:38:a5:cb:72:d3:80:9e:1c:9a:ac:
92:ef:53:ac:f7:5a:49:3a:33:bb:b4:49:7d:99:48:29:cd:76:
cc:ab:3e:d1:ee:61:9f:b1:c5:94:76:9a:1c:5c:b2:95:cc:e7:
3f:00:55:14
1489525118 | 2024-12-31T16:51:40.262244
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Tue, 31 Dec 2024 16:51:40 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2016 (version 1607)
OS Build: 10.0.14393
Target Name: VMI645434
NetBIOS Domain Name: VMI645434
NetBIOS Computer Name: VMI645434
DNS Domain Name: vmi645434
FQDN: vmi645434