RDP
Nmap discovered a RDP server on the target port 3389
The running service is Microsoft Terminal Services
┌──(kali㉿kali)-[~/archive/thm/yearoftheowl]
└─$ nmap --script "rdp-enum-encryption or rdp-vuln-ms12-020 or rdp-ntlm-info" -p 3389 -T4 $IP
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-09-09 16:35 CEST
Nmap scan report for 10.10.150.245
Host is up (0.030s latency).
PORT STATE SERVICE
3389/tcp open ms-wbt-server
| rdp-enum-encryption:
| Security layer
| CredSSP (NLA): SUCCESS
| CredSSP with Early User Auth: SUCCESS
| RDSTLS: SUCCESS
| SSL: SUCCESS
|_ RDP Protocol Version: RDP 10.6 server
| rdp-ntlm-info:
| Target_Name: YEAR-OF-THE-OWL
| NetBIOS_Domain_Name: YEAR-OF-THE-OWL
| NetBIOS_Computer_Name: YEAR-OF-THE-OWL
| DNS_Domain_Name: year-of-the-owl
| DNS_Computer_Name: year-of-the-owl
| Product_Version: 10.0.17763
|_ System_Time: 2024-09-09T14:35:43+00:00
Nmap done: 1 IP address (1 host up) scanned in 5.19 seconds
N/A