Kevin [Easy]
TCP:
Nmap scan report for 192.168.249.45
Host is up, received reset ttl 125 (0.076s latency).
Scanned at 2024-12-30 13:12:41 IST for 96s
PORT STATE SERVICE REASON VERSION
80/tcp open http syn-ack ttl 125 GoAhead WebServer
| http-methods:
|_ Supported Methods: GET HEAD
| http-title: HP Power Manager
|_Requested resource was http://192.168.249.45/index.asp
135/tcp open msrpc syn-ack ttl 125 Microsoft Windows RPC
139/tcp open netbios-ssn syn-ack ttl 125 Microsoft Windows netbios-ssn
445/tcp open microsoft-ds syn-ack ttl 125 Windows 7 Ultimate N 7600 microsoft-ds (workgroup: WORKGROUP)
3389/tcp open ms-wbt-server? syn-ack ttl 125
| rdp-ntlm-info:
| Target_Name: KEVIN
| NetBIOS_Domain_Name: KEVIN
| NetBIOS_Computer_Name: KEVIN
| DNS_Domain_Name: kevin
| DNS_Computer_Name: kevin
| Product_Version: 6.1.7600
|_ System_Time: 2024-12-30T07:44:13+00:00
| ssl-cert: Subject: commonName=kevin
| Issuer: commonName=kevin
| Public Key type: rsa
| Public Key bits: 2048
| Signature Algorithm: sha1WithRSAEncryption
| Not valid before: 2024-08-02T05:20:45
| Not valid after: 2025-02-01T05:20:45
| MD5: 53ab:b36b:cb2c:55e8:71a4:afb5:007e:393e
| SHA-1: 828f:9bfb:e0ea:33ca:c77a:87bd:2f6b:c5f2:fc93:8411
| -----BEGIN CERTIFICATE-----
| MIICzjCCAbagAwIBAgIQJ/wt4fxgRJZKTLJ30YoJGDANBgkqhkiG9w0BAQUFADAQ
| MQ4wDAYDVQQDEwVrZXZpbjAeFw0yNDA4MDIwNTIwNDVaFw0yNTAyMDEwNTIwNDVa
| MBAxDjAMBgNVBAMTBWtldmluMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC
| AQEAx7pFjLRu6ctqxQLh0R2XUmVWXJs9GgPJ8We1d1YJ/HKg1NAm9uDz7Eny5kB2
| lvUQNBY4VVYxt8kSJHAYgn4Y6AekzUMn3rTgF2FlK+Vl5ODSTeIwnHOBQ/YUEMwq
| ACykU6g3H5YU/UKmZzhMILsJ+4CFZ/opVf6z8Ii1obT4LrbJeQRgr/lousVp++6J
| i6JBmunW2XK1ot438lnUtqoqh5pZcs+gDS3ZHpW3tZNGB0c5hNpX9XP89m8uOvtc
| rxLXblHqvv4x7OOqS3xko1hROIv7f2IBBDhXC6KZDC+dGTe/aUMnRNEXfTxuVOld
| N4gKV4zi68eSU+s5THeRD+SYzwIDAQABoyQwIjATBgNVHSUEDDAKBggrBgEFBQcD
| ATALBgNVHQ8EBAMCBDAwDQYJKoZIhvcNAQEFBQADggEBABgvRB5w4GJeK5+q+dh1
| tx4aFu3b75zJ4jPZ1MHY7/p2pmhNtUBjjvHSO9MbvG2VQG7RKumZ8l4YvBVxY6Kj
| 1HDivgpnpHZW1i8WIgjJFn1LF9Y05zFqb4ASc3qUo8JWTH591XMv6pNhWgd1IyV4
| CpX5SZCEoEFcjUM4G52ekb8hN8KuLn/OMWgc7j/AsiVVbk3WyTYj34kQNC6j/lqf
| xWKX7V/+JALdEFKooOscv7Aoe7hfXmQaEH2w3SC1OVUw374fBGybPS4yv1TrIX8M
| dgJf//sAm1n65uQqwkyBa9aSqBR6gSwI35/hFbtDof28gBfmEbcgKShuVCk4g0O8
| 0wU=
|_-----END CERTIFICATE-----
|_ssl-date: 2024-12-30T07:44:24+00:00; +7s from scanner time.
3573/tcp open tag-ups-1? syn-ack ttl 125
49152/tcp open msrpc syn-ack ttl 125 Microsoft Windows RPC
49153/tcp open msrpc syn-ack ttl 125 Microsoft Windows RPC
49154/tcp open msrpc syn-ack ttl 125 Microsoft Windows RPC
49155/tcp open msrpc syn-ack ttl 125 Microsoft Windows RPC
49158/tcp open msrpc syn-ack ttl 125 Microsoft Windows RPC
49160/tcp open msrpc syn-ack ttl 125 Microsoft Windows RPC
Service Info: Host: KEVIN; OS: Windows; CPE: cpe:/o:microsoft:windows
Host script results:
| smb2-security-mode:
| 2:1:0:
|_ Message signing enabled but not required
| nbstat: NetBIOS name: KEVIN, NetBIOS user: <unknown>, NetBIOS MAC: 00:50:56:ab:b7:f9 (VMware)
| Names:
| KEVIN<20> Flags: <unique><active>
| KEVIN<00> Flags: <unique><active>
| WORKGROUP<00> Flags: <group><active>
| WORKGROUP<1e> Flags: <group><active>
| WORKGROUP<1d> Flags: <unique><active>
| \x01\x02__MSBROWSE__\x02<01> Flags: <group><active>
| Statistics:
| 00:50:56:ab:b7:f9:00:00:00:00:00:00:00:00:00:00:00
| 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
|_ 00:00:00:00:00:00:00:00:00:00:00:00:00:00
| smb2-time:
| date: 2024-12-30T07:44:13
|_ start_date: 2024-12-30T07:39:09
| p2p-conficker:
| Checking for Conficker.C or higher...
| Check 1 (port 27147/tcp): CLEAN (Couldn't connect)
| Check 2 (port 60230/tcp): CLEAN (Couldn't connect)
| Check 3 (port 12110/udp): CLEAN (Timeout)
| Check 4 (port 30044/udp): CLEAN (Timeout)
|_ 0/4 checks are positive: Host is CLEAN or ports are blocked
|_clock-skew: mean: 1h36m06s, deviation: 3h34m39s, median: 6s
| smb-os-discovery:
| OS: Windows 7 Ultimate N 7600 (Windows 7 Ultimate N 6.1)
| OS CPE: cpe:/o:microsoft:windows_7::-
| Computer name: kevin
| NetBIOS computer name: KEVIN\x00
| Workgroup: WORKGROUP\x00
|_ System time: 2024-12-29T23:44:13-08:00
| smb-security-mode:
| account_used: <blank>
| authentication_level: user
| challenge_response: supported
|_ message_signing: disabled (dangerous, but default)
UDP:
Last updated
Was this helpful?