1688663994 | 2025-01-04T09:53:33.377856
445 /
tcp
SMB Status:
Authentication: enabled
SMB Version: 1
OS: Windows Server 2012 R2 Standard 9600
Software: Windows Server 2012 R2 Standard 6.3
Capabilities: extended-security, infolevel-passthru, large-files, large-readx, large-writex, level2-oplocks, lock-and-read, lwio, nt-find, nt-smb, nt-status, rpc-remote-api, unicode
937751464 | 2024-12-12T18:07:00.887084
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x0f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 8.1/Windows Server 2012 R2
OS Build: 6.3.9600
Target Name: WIN-28U1LJHOHMR
NetBIOS Domain Name: WIN-28U1LJHOHMR
NetBIOS Computer Name: WIN-28U1LJHOHMR
DNS Domain Name: WIN-28U1LJHOHMR
FQDN: WIN-28U1LJHOHMR
Administrator supportagent
am Windows Server 2012R2
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
19:65:e6:ee:bb:f6:65:af:4a:70:07:9e:27:46:72:86
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-28U1LJHOHMR
Validity
Not Before: Nov 21 13:03:50 2024 GMT
Not After : May 23 13:03:50 2025 GMT
Subject: CN=WIN-28U1LJHOHMR
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:e6:e2:4f:a3:1f:d8:fb:05:34:bd:61:8a:94:db:
41:12:54:dc:1f:fa:fa:fe:8d:3d:43:65:e3:4f:95:
9d:97:98:d6:d3:8a:4e:b5:ea:1f:58:cf:2e:8b:54:
a5:f5:3a:75:8b:ab:68:26:c7:ab:4a:5b:b7:00:c1:
53:f9:8b:98:a6:e5:28:e4:b5:9f:9f:25:77:6f:ad:
6d:3e:c2:6b:d5:da:8c:e5:96:2b:85:57:2f:04:84:
0b:55:ac:42:16:7b:8a:3b:8c:01:46:a1:bd:1f:46:
d6:db:09:69:7a:97:87:8f:9c:c9:98:f7:b1:a7:38:
61:5a:14:19:f8:0a:34:69:28:89:8d:be:ba:5e:98:
58:06:80:89:2b:65:11:12:fd:74:f1:19:cc:c1:59:
6e:59:c1:5e:19:0e:91:6d:7c:ce:0e:5f:56:ed:aa:
02:01:6f:07:66:47:d3:07:0e:a0:29:76:77:02:42:
61:e7:ba:04:d1:09:da:5c:a3:90:6c:c4:63:a3:75:
55:75:c5:dc:be:64:47:4a:74:c3:ce:24:5d:fa:9c:
39:78:76:f1:cf:3b:6b:ec:c6:d4:f0:d8:1b:f6:32:
f1:86:85:55:99:64:cd:6b:85:36:d0:a0:49:9b:80:
a2:47:0d:f3:93:d6:c4:bf:62:87:9b:96:98:df:f3:
60:b3
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
0c:7a:77:ff:41:2e:4e:73:6c:f0:62:90:d4:23:83:16:c7:87:
0b:a8:c1:cb:e0:8f:3c:ff:e8:ef:15:da:90:f1:c9:98:9b:66:
a6:fa:93:68:59:d9:79:f9:d2:30:2b:44:a3:41:5d:b2:ab:ed:
75:1f:cf:c9:74:85:16:0c:1c:e9:19:d1:a3:6c:11:45:27:8b:
9a:99:41:dc:fa:35:f0:70:c8:29:25:25:aa:c6:57:72:2e:a0:
71:c0:ca:1f:a8:fd:10:ea:8a:b5:e9:01:56:3d:31:d5:3c:4e:
a9:e6:11:47:0d:89:f5:8d:4a:fa:5b:bf:6b:24:3a:da:37:e7:
2a:3a:f5:6c:b1:7e:50:8f:c2:88:1c:71:6b:d4:6a:6f:19:b5:
74:b2:69:93:d8:5b:0c:29:de:49:ac:b4:07:bf:25:69:8a:01:
f1:39:bd:b6:85:53:80:6f:f7:5d:6e:54:f1:d4:49:33:74:26:
69:c6:02:c5:bc:72:8b:3c:bb:3b:1a:8f:4b:92:97:67:8c:06:
24:39:5d:6b:d9:39:37:5c:7e:f1:95:d2:8a:7e:dc:c0:36:3b:
e3:81:c5:1f:7c:89:41:90:2c:bd:20:e4:17:4e:54:3c:d0:22:
40:e5:fd:bc:c3:48:40:40:a6:a8:50:75:23:de:83:da:83:e8:
c2:9b:04:62
1489525118 | 2025-01-11T07:10:22.645433
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sat, 11 Jan 2025 15:10:22 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2012 R2
OS Build: 6.3.9600
Target Name: WIN-28U1LJHOHMR
NetBIOS Domain Name: WIN-28U1LJHOHMR
NetBIOS Computer Name: WIN-28U1LJHOHMR
DNS Domain Name: WIN-28U1LJHOHMR
FQDN: WIN-28U1LJHOHMR