RDP


Nmap discovered a RDP server on the target port 3389 The running service is Microsoft Terminal Services

┌──(kali㉿kali)-[~/archive/thm/yearoftheowl]
└─$ nmap --script "rdp-enum-encryption or rdp-vuln-ms12-020 or rdp-ntlm-info" -p 3389 -T4 $IP 
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-09-09 16:35 CEST
Nmap scan report for 10.10.150.245
Host is up (0.030s latency).
 
PORT     STATE SERVICE
3389/tcp open  ms-wbt-server
| rdp-enum-encryption: 
|   Security layer
|     CredSSP (NLA): SUCCESS
|     CredSSP with Early User Auth: SUCCESS
|     RDSTLS: SUCCESS
|     SSL: SUCCESS
|_  RDP Protocol Version:  RDP 10.6 server
| rdp-ntlm-info: 
|   Target_Name: YEAR-OF-THE-OWL
|   NetBIOS_Domain_Name: YEAR-OF-THE-OWL
|   NetBIOS_Computer_Name: YEAR-OF-THE-OWL
|   DNS_Domain_Name: year-of-the-owl
|   DNS_Computer_Name: year-of-the-owl
|   Product_Version: 10.0.17763
|_  System_Time: 2024-09-09T14:35:43+00:00
 
Nmap done: 1 IP address (1 host up) scanned in 5.19 seconds

N/A