-1251577104 | 2024-12-27T11:10:41.282824
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-9QL4SDRB93L
NetBIOS Domain Name: WIN-9QL4SDRB93L
NetBIOS Computer Name: WIN-9QL4SDRB93L
DNS Domain Name: WIN-9QL4SDRB93L
FQDN: WIN-9QL4SDRB93L
: Administrator
flees. 7
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
14:a4:83:f2:a7:5d:47:84:49:5f:82:47:63:17:e8:a1
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-9QL4SDRB93L
Validity
Not Before: Dec 6 04:35:25 2024 GMT
Not After : Jun 7 04:35:25 2025 GMT
Subject: CN=WIN-9QL4SDRB93L
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:9b:89:82:12:70:11:65:9c:8d:36:49:5b:00:54:
22:7f:12:bb:96:d5:e6:75:e6:6c:12:b8:47:e8:c4:
e0:7f:18:bd:c2:2e:a7:0e:f0:fb:34:5d:49:85:7a:
18:8a:fa:43:4a:84:e1:fe:f1:2c:52:6f:c3:82:b5:
8d:8e:4b:04:e7:3f:4f:c7:98:d5:bb:8f:d8:65:5c:
2f:f5:26:ed:38:01:a1:c5:3f:41:a0:e4:9f:3a:57:
3d:13:6e:0c:b1:4f:8f:30:af:e3:1d:2e:d2:4c:42:
80:31:4e:44:03:c4:8b:51:2f:92:3b:40:85:ae:4c:
61:e9:1f:76:5d:6e:da:a7:13:54:1d:44:dd:67:1b:
b6:df:74:2c:f4:b2:a1:2e:fc:3a:e3:55:43:0b:aa:
2c:f8:45:6f:f5:81:40:6e:8b:82:c7:2b:eb:24:71:
56:ba:17:26:ff:1d:33:ad:0e:67:0c:a3:d0:31:4c:
2d:df:e8:f8:0f:93:08:0d:03:aa:b5:59:7e:b6:fc:
60:ab:57:c6:7c:79:68:1a:27:46:16:77:3d:ac:83:
fc:01:bd:b9:7e:c2:1a:89:2b:9e:83:be:5a:d7:54:
a8:99:33:2a:d0:33:2c:19:14:e0:b2:f5:fd:49:6c:
ee:70:a6:62:d7:2f:18:dc:0b:9b:95:9d:fd:b5:e0:
da:95
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
0f:37:68:1c:60:15:ca:2d:1b:26:8b:a4:4c:4b:e6:ac:87:aa:
d8:a9:84:4b:f3:87:37:9e:24:54:e9:b4:d7:4d:21:84:57:5d:
24:e3:e3:ca:70:cd:78:9a:aa:ea:d7:a3:e6:f0:4c:de:d8:4a:
7d:9a:94:c0:77:27:d5:0f:34:e4:34:f9:bf:6d:bd:bd:d1:67:
84:e8:41:78:76:ca:90:72:5c:ed:25:54:dd:5c:cd:eb:a2:24:
17:a8:7a:61:c7:58:ff:61:78:61:be:7b:47:ea:76:b1:ec:32:
9c:b8:f4:16:f5:23:1f:94:7d:7f:72:e9:27:68:0d:b5:b9:02:
19:ab:03:a3:40:79:62:cb:d0:37:60:3d:f7:64:c9:27:29:25:
80:36:c1:bf:b4:44:58:00:01:9f:50:80:65:f6:ef:89:75:d7:
69:39:50:7c:02:43:97:5b:1f:7f:7a:25:b7:80:da:1f:c8:e7:
01:eb:85:d9:a3:d3:f4:ec:6e:4d:3b:e8:6b:e7:f5:88:03:41:
1c:d4:36:a0:52:1e:e5:bd:5c:2e:86:1a:ce:bc:e7:8e:97:3a:
01:ff:da:90:28:7f:7d:4e:65:e5:42:d3:bb:bc:50:10:eb:74:
39:5e:7b:83:80:70:a6:b3:00:8c:bf:53:22:35:39:87:65:7c:
02:a0:1b:43
-1684583448 | 2024-12-12T22:23:38.342808
5357 /
tcp
HTTP/1.1 503 Service Unavailable
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Thu, 12 Dec 2024 22:23:38 GMT
Connection: close
Content-Length: 326
1489525118 | 2024-12-23T21:36:25.253672
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Mon, 23 Dec 2024 21:36:25 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-9QL4SDRB93L
NetBIOS Domain Name: WIN-9QL4SDRB93L
NetBIOS Computer Name: WIN-9QL4SDRB93L
DNS Domain Name: WIN-9QL4SDRB93L
FQDN: WIN-9QL4SDRB93L