laokoon
This commit is contained in:
@@ -0,0 +1,103 @@
|
||||
<?xml version="1.0" encoding="UTF-8"?>
|
||||
<!DOCTYPE nmaprun>
|
||||
<?xml-stylesheet href="file:///usr/bin/../share/nmap/nmap.xsl" type="text/xsl"?>
|
||||
<!-- Nmap 7.93 scan initiated Sat Oct 28 14:23:46 2023 as: nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -p- -oN /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/_full_tcp_nmap.txt -oX /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/xml/_full_tcp_nmap.xml 10.129.243.131 -->
|
||||
<nmaprun scanner="nmap" args="nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -p- -oN /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/_full_tcp_nmap.txt -oX /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/xml/_full_tcp_nmap.xml 10.129.243.131" start="1698495826" startstr="Sat Oct 28 14:23:46 2023" version="7.93" xmloutputversion="1.05">
|
||||
<scaninfo type="syn" protocol="tcp" numservices="65535" services="1-65535"/>
|
||||
<verbose level="2"/>
|
||||
<debugging level="0"/>
|
||||
<taskbegin task="NSE" time="1698495826"/>
|
||||
<taskend task="NSE" time="1698495826"/>
|
||||
<taskbegin task="NSE" time="1698495826"/>
|
||||
<taskend task="NSE" time="1698495826"/>
|
||||
<taskbegin task="NSE" time="1698495826"/>
|
||||
<taskend task="NSE" time="1698495826"/>
|
||||
<taskbegin task="SYN Stealth Scan" time="1698495826"/>
|
||||
<taskprogress task="SYN Stealth Scan" time="1698495857" percent="20.07" remaining="124" etc="1698495980"/>
|
||||
<taskprogress task="SYN Stealth Scan" time="1698495887" percent="47.75" remaining="67" etc="1698495954"/>
|
||||
<taskend task="SYN Stealth Scan" time="1698495964" extrainfo="65535 total ports"/>
|
||||
<taskbegin task="Service scan" time="1698495964"/>
|
||||
<taskend task="Service scan" time="1698496026" extrainfo="18 services on 1 host"/>
|
||||
<taskbegin task="Traceroute" time="1698496030"/>
|
||||
<taskend task="Traceroute" time="1698496030"/>
|
||||
<taskbegin task="Parallel DNS resolution of 1 host." time="1698496030"/>
|
||||
<taskend task="Parallel DNS resolution of 1 host." time="1698496030"/>
|
||||
<taskbegin task="NSE" time="1698496030"/>
|
||||
<taskprogress task="NSE" time="1698496061" percent="99.96" remaining="1" etc="1698496061"/>
|
||||
<taskend task="NSE" time="1698496070"/>
|
||||
<taskbegin task="NSE" time="1698496070"/>
|
||||
<taskend task="NSE" time="1698496072"/>
|
||||
<taskbegin task="NSE" time="1698496072"/>
|
||||
<taskend task="NSE" time="1698496072"/>
|
||||
<host starttime="1698495827" endtime="1698496072"><status state="up" reason="user-set" reason_ttl="0"/>
|
||||
<address addr="10.129.243.131" addrtype="ipv4"/>
|
||||
<hostnames>
|
||||
<hostname name="megacorp.htb" type="PTR"/>
|
||||
</hostnames>
|
||||
<ports><extraports state="filtered" count="65517">
|
||||
<extrareasons reason="no-response" count="65517" proto="tcp" ports="1-52,54-79,81-87,89-134,136-138,140-388,390-444,446-463,465-592,594-635,637-3267,3270-5984,5986-9388,9390-49666,49668-49673,49675-49694,49696-49842,49844-65535"/>
|
||||
</extraports>
|
||||
<port protocol="tcp" portid="53"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="domain" product="Simple DNS Plus" ostype="Windows" method="probed" conf="10"><cpe>cpe:/a:jh_software:simple_dns_plus</cpe><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="80"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="http" product="Microsoft IIS httpd" version="10.0" ostype="Windows" method="probed" conf="10"><cpe>cpe:/a:microsoft:internet_information_services:10.0</cpe><cpe>cpe:/o:microsoft:windows</cpe></service><script id="http-server-header" output="Microsoft-IIS/10.0"><elem>Microsoft-IIS/10.0</elem>
|
||||
</script><script id="http-title" output="Slandovia Energy"><elem key="title">Slandovia Energy</elem>
|
||||
</script><script id="http-methods" output="
 Supported Methods: OPTIONS TRACE GET HEAD POST
 Potentially risky methods: TRACE"><table key="Supported Methods">
|
||||
<elem>OPTIONS</elem>
|
||||
<elem>TRACE</elem>
|
||||
<elem>GET</elem>
|
||||
<elem>HEAD</elem>
|
||||
<elem>POST</elem>
|
||||
</table>
|
||||
<table key="Potentially risky methods">
|
||||
<elem>TRACE</elem>
|
||||
</table>
|
||||
</script></port>
|
||||
<port protocol="tcp" portid="88"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="kerberos-sec" product="Microsoft Windows Kerberos" extrainfo="server time: 2023-10-28 12:26:10Z" ostype="Windows" method="probed" conf="10"><cpe>cpe:/a:microsoft:kerberos</cpe><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="135"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="msrpc" product="Microsoft Windows RPC" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="139"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="netbios-ssn" product="Microsoft Windows netbios-ssn" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="389"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="ldap" product="Microsoft Windows Active Directory LDAP" extrainfo="Domain: MEGACORP.LOCAL0., Site: Default-First-Site-Name" hostname="DC" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="445"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="microsoft-ds" method="table" conf="3"/></port>
|
||||
<port protocol="tcp" portid="464"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="kpasswd5" method="table" conf="3"/></port>
|
||||
<port protocol="tcp" portid="593"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="ncacn_http" product="Microsoft Windows RPC over HTTP" version="1.0" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="636"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="tcpwrapped" method="probed" conf="8"/></port>
|
||||
<port protocol="tcp" portid="3268"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="ldap" product="Microsoft Windows Active Directory LDAP" extrainfo="Domain: MEGACORP.LOCAL0., Site: Default-First-Site-Name" hostname="DC" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="3269"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="tcpwrapped" method="probed" conf="8"/></port>
|
||||
<port protocol="tcp" portid="5985"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="http" product="Microsoft HTTPAPI httpd" version="2.0" extrainfo="SSDP/UPnP" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service><script id="http-title" output="Not Found"><elem key="title">Not Found</elem>
|
||||
</script><script id="http-server-header" output="Microsoft-HTTPAPI/2.0"><elem>Microsoft-HTTPAPI/2.0</elem>
|
||||
</script></port>
|
||||
<port protocol="tcp" portid="9389"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="mc-nmf" product=".NET Message Framing" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="49667"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="msrpc" product="Microsoft Windows RPC" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="49674"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="ncacn_http" product="Microsoft Windows RPC over HTTP" version="1.0" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="49695"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="msrpc" product="Microsoft Windows RPC" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="49843"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="msrpc" product="Microsoft Windows RPC" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
</ports>
|
||||
<os><portused state="open" proto="tcp" portid="53"/>
|
||||
<osfingerprint fingerprint="SCAN(V=7.93%E=4%D=10/28%OT=53%CT=%CU=%PV=Y%DS=2%DC=T%G=N%TM=653CFE48%P=x86_64-pc-linux-gnu)
SEQ(SP=101%GCD=1%ISR=10D%TI=I%II=I%SS=S%TS=U)
SEQ(SP=101%GCD=1%ISR=10D%TI=I%II=I%TS=U)
OPS(O1=M550NW8NNS%O2=M550NW8NNS%O3=M550NW8%O4=M550NW8NNS%O5=M550NW8NNS%O6=M550NNS)
WIN(W1=FFFF%W2=FFFF%W3=FFFF%W4=FFFF%W5=FFFF%W6=FF70)
ECN(R=Y%DF=Y%TG=80%W=FFFF%O=M550NW8NNS%CC=Y%Q=)
T1(R=Y%DF=Y%TG=80%S=O%A=S+%F=AS%RD=0%Q=)
T2(R=N)
T3(R=N)
T4(R=N)
U1(R=N)
IE(R=Y%DFI=N%TG=80%CD=Z)
"/>
|
||||
</os>
|
||||
<distance value="2"/>
|
||||
<tcpsequence index="257" difficulty="Good luck!" values="B4943AA1,36C5D9AD,82F2AEBF,32C656E8,F76AF91D,329F58B7"/>
|
||||
<ipidsequence class="Incremental" values="3D69,3D70,3D77,3D7C,3D81,3D86"/>
|
||||
<tcptssequence class="none returned (unsupported)"/>
|
||||
<hostscript><script id="clock-skew" output="0s"><elem key="count">1</elem>
|
||||
<elem key="stddev">0</elem>
|
||||
<elem key="mean">0</elem>
|
||||
<elem key="median">0</elem>
|
||||
</script><script id="p2p-conficker" output="
 Checking for Conficker.C or higher...
 Check 1 (port 25314/tcp): CLEAN (Timeout)
 Check 2 (port 10793/tcp): CLEAN (Timeout)
 Check 3 (port 25536/udp): CLEAN (Timeout)
 Check 4 (port 25523/udp): CLEAN (Timeout)
 0/4 checks are positive: Host is CLEAN or ports are blocked
"/><script id="smb2-time" output="
 date: 2023-10-28T12:27:13
 start_date: N/A"><elem key="date">2023-10-28T12:27:13</elem>
|
||||
<elem key="start_date">N/A</elem>
|
||||
</script><script id="smb2-security-mode" output="
 311: 
 Message signing enabled and required"><table key="311">
|
||||
<elem>Message signing enabled and required</elem>
|
||||
</table>
|
||||
</script></hostscript><trace port="135" proto="tcp">
|
||||
<hop ttl="1" ipaddr="10.10.14.1" rtt="35.29"/>
|
||||
<hop ttl="2" ipaddr="10.129.243.131" rtt="35.21" host="megacorp.htb"/>
|
||||
</trace>
|
||||
<times srtt="40934" rttvar="10374" to="100000"/>
|
||||
</host>
|
||||
<taskbegin task="NSE" time="1698496072"/>
|
||||
<taskend task="NSE" time="1698496072"/>
|
||||
<taskbegin task="NSE" time="1698496072"/>
|
||||
<taskend task="NSE" time="1698496072"/>
|
||||
<taskbegin task="NSE" time="1698496072"/>
|
||||
<taskend task="NSE" time="1698496072"/>
|
||||
<runstats><finished time="1698496072" timestr="Sat Oct 28 14:27:52 2023" summary="Nmap done at Sat Oct 28 14:27:52 2023; 1 IP address (1 host up) scanned in 246.21 seconds" elapsed="246.21" exit="success"/><hosts up="1" down="0" total="1"/>
|
||||
</runstats>
|
||||
</nmaprun>
|
||||
@@ -0,0 +1,92 @@
|
||||
<?xml version="1.0" encoding="UTF-8"?>
|
||||
<!DOCTYPE nmaprun>
|
||||
<?xml-stylesheet href="file:///usr/bin/../share/nmap/nmap.xsl" type="text/xsl"?>
|
||||
<!-- Nmap 7.93 scan initiated Sat Oct 28 14:23:46 2023 as: nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -oN /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/_quick_tcp_nmap.txt -oX /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/xml/_quick_tcp_nmap.xml 10.129.243.131 -->
|
||||
<nmaprun scanner="nmap" args="nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -oN /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/_quick_tcp_nmap.txt -oX /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/xml/_quick_tcp_nmap.xml 10.129.243.131" start="1698495826" startstr="Sat Oct 28 14:23:46 2023" version="7.93" xmloutputversion="1.05">
|
||||
<scaninfo type="syn" protocol="tcp" numservices="1000" services="1,3-4,6-7,9,13,17,19-26,30,32-33,37,42-43,49,53,70,79-85,88-90,99-100,106,109-111,113,119,125,135,139,143-144,146,161,163,179,199,211-212,222,254-256,259,264,280,301,306,311,340,366,389,406-407,416-417,425,427,443-445,458,464-465,481,497,500,512-515,524,541,543-545,548,554-555,563,587,593,616-617,625,631,636,646,648,666-668,683,687,691,700,705,711,714,720,722,726,749,765,777,783,787,800-801,808,843,873,880,888,898,900-903,911-912,981,987,990,992-993,995,999-1002,1007,1009-1011,1021-1100,1102,1104-1108,1110-1114,1117,1119,1121-1124,1126,1130-1132,1137-1138,1141,1145,1147-1149,1151-1152,1154,1163-1166,1169,1174-1175,1183,1185-1187,1192,1198-1199,1201,1213,1216-1218,1233-1234,1236,1244,1247-1248,1259,1271-1272,1277,1287,1296,1300-1301,1309-1311,1322,1328,1334,1352,1417,1433-1434,1443,1455,1461,1494,1500-1501,1503,1521,1524,1533,1556,1580,1583,1594,1600,1641,1658,1666,1687-1688,1700,1717-1721,1723,1755,1761,1782-1783,1801,1805,1812,1839-1840,1862-1864,1875,1900,1914,1935,1947,1971-1972,1974,1984,1998-2010,2013,2020-2022,2030,2033-2035,2038,2040-2043,2045-2049,2065,2068,2099-2100,2103,2105-2107,2111,2119,2121,2126,2135,2144,2160-2161,2170,2179,2190-2191,2196,2200,2222,2251,2260,2288,2301,2323,2366,2381-2383,2393-2394,2399,2401,2492,2500,2522,2525,2557,2601-2602,2604-2605,2607-2608,2638,2701-2702,2710,2717-2718,2725,2800,2809,2811,2869,2875,2909-2910,2920,2967-2968,2998,3000-3001,3003,3005-3007,3011,3013,3017,3030-3031,3052,3071,3077,3128,3168,3211,3221,3260-3261,3268-3269,3283,3300-3301,3306,3322-3325,3333,3351,3367,3369-3372,3389-3390,3404,3476,3493,3517,3527,3546,3551,3580,3659,3689-3690,3703,3737,3766,3784,3800-3801,3809,3814,3826-3828,3851,3869,3871,3878,3880,3889,3905,3914,3918,3920,3945,3971,3986,3995,3998,4000-4006,4045,4111,4125-4126,4129,4224,4242,4279,4321,4343,4443-4446,4449,4550,4567,4662,4848,4899-4900,4998,5000-5004,5009,5030,5033,5050-5051,5054,5060-5061,5080,5087,5100-5102,5120,5190,5200,5214,5221-5222,5225-5226,5269,5280,5298,5357,5405,5414,5431-5432,5440,5500,5510,5544,5550,5555,5560,5566,5631,5633,5666,5678-5679,5718,5730,5800-5802,5810-5811,5815,5822,5825,5850,5859,5862,5877,5900-5904,5906-5907,5910-5911,5915,5922,5925,5950,5952,5959-5963,5987-5989,5998-6007,6009,6025,6059,6100-6101,6106,6112,6123,6129,6156,6346,6389,6502,6510,6543,6547,6565-6567,6580,6646,6666-6669,6689,6692,6699,6779,6788-6789,6792,6839,6881,6901,6969,7000-7002,7004,7007,7019,7025,7070,7100,7103,7106,7200-7201,7402,7435,7443,7496,7512,7625,7627,7676,7741,7777-7778,7800,7911,7920-7921,7937-7938,7999-8002,8007-8011,8021-8022,8031,8042,8045,8080-8090,8093,8099-8100,8180-8181,8192-8194,8200,8222,8254,8290-8292,8300,8333,8383,8400,8402,8443,8500,8600,8649,8651-8652,8654,8701,8800,8873,8888,8899,8994,9000-9003,9009-9011,9040,9050,9071,9080-9081,9090-9091,9099-9103,9110-9111,9200,9207,9220,9290,9415,9418,9485,9500,9502-9503,9535,9575,9593-9595,9618,9666,9876-9878,9898,9900,9917,9929,9943-9944,9968,9998-10004,10009-10010,10012,10024-10025,10082,10180,10215,10243,10566,10616-10617,10621,10626,10628-10629,10778,11110-11111,11967,12000,12174,12265,12345,13456,13722,13782-13783,14000,14238,14441-14442,15000,15002-15004,15660,15742,16000-16001,16012,16016,16018,16080,16113,16992-16993,17877,17988,18040,18101,18988,19101,19283,19315,19350,19780,19801,19842,20000,20005,20031,20221-20222,20828,21571,22939,23502,24444,24800,25734-25735,26214,27000,27352-27353,27355-27356,27715,28201,30000,30718,30951,31038,31337,32768-32785,33354,33899,34571-34573,35500,38292,40193,40911,41511,42510,44176,44442-44443,44501,45100,48080,49152-49161,49163,49165,49167,49175-49176,49400,49999-50003,50006,50300,50389,50500,50636,50800,51103,51493,52673,52822,52848,52869,54045,54328,55055-55056,55555,55600,56737-56738,57294,57797,58080,60020,60443,61532,61900,62078,63331,64623,64680,65000,65129,65389"/>
|
||||
<verbose level="2"/>
|
||||
<debugging level="0"/>
|
||||
<taskbegin task="NSE" time="1698495826"/>
|
||||
<taskend task="NSE" time="1698495826"/>
|
||||
<taskbegin task="NSE" time="1698495826"/>
|
||||
<taskend task="NSE" time="1698495826"/>
|
||||
<taskbegin task="NSE" time="1698495826"/>
|
||||
<taskend task="NSE" time="1698495826"/>
|
||||
<taskbegin task="SYN Stealth Scan" time="1698495826"/>
|
||||
<taskend task="SYN Stealth Scan" time="1698495831" extrainfo="1000 total ports"/>
|
||||
<taskbegin task="Service scan" time="1698495831"/>
|
||||
<taskend task="Service scan" time="1698496226" extrainfo="12 services on 1 host"/>
|
||||
<taskbegin task="Traceroute" time="1698496232"/>
|
||||
<taskend task="Traceroute" time="1698496232"/>
|
||||
<taskbegin task="Parallel DNS resolution of 1 host." time="1698496232"/>
|
||||
<taskend task="Parallel DNS resolution of 1 host." time="1698496232"/>
|
||||
<taskbegin task="NSE" time="1698496232"/>
|
||||
<taskprogress task="NSE" time="1698496263" percent="99.94" remaining="1" etc="1698496263"/>
|
||||
<taskend task="NSE" time="1698496272"/>
|
||||
<taskbegin task="NSE" time="1698496272"/>
|
||||
<taskend task="NSE" time="1698496275"/>
|
||||
<taskbegin task="NSE" time="1698496275"/>
|
||||
<taskend task="NSE" time="1698496275"/>
|
||||
<host starttime="1698495826" endtime="1698496275"><status state="up" reason="user-set" reason_ttl="0"/>
|
||||
<address addr="10.129.243.131" addrtype="ipv4"/>
|
||||
<hostnames>
|
||||
<hostname name="megacorp.htb" type="PTR"/>
|
||||
</hostnames>
|
||||
<ports><extraports state="filtered" count="988">
|
||||
<extrareasons reason="no-response" count="988" proto="tcp" ports="1,3-4,6-7,9,13,17,19-26,30,32-33,37,42-43,49,70,79,81-85,89-90,99-100,106,109-111,113,119,125,143-144,146,161,163,179,199,211-212,222,254-256,259,264,280,301,306,311,340,366,406-407,416-417,425,427,443-444,458,465,481,497,500,512-515,524,541,543-545,548,554-555,563,587,616-617,625,631,646,648,666-668,683,687,691,700,705,711,714,720,722,726,749,765,777,783,787,800-801,808,843,873,880,888,898,900-903,911-912,981,987,990,992-993,995,999-1002,1007,1009-1011,1021-1100,1102,1104-1108,1110-1114,1117,1119,1121-1124,1126,1130-1132,1137-1138,1141,1145,1147-1149,1151-1152,1154,1163-1166,1169,1174-1175,1183,1185-1187,1192,1198-1199,1201,1213,1216-1218,1233-1234,1236,1244,1247-1248,1259,1271-1272,1277,1287,1296,1300-1301,1309-1311,1322,1328,1334,1352,1417,1433-1434,1443,1455,1461,1494,1500-1501,1503,1521,1524,1533,1556,1580,1583,1594,1600,1641,1658,1666,1687-1688,1700,1717-1721,1723,1755,1761,1782-1783,1801,1805,1812,1839-1840,1862-1864,1875,1900,1914,1935,1947,1971-1972,1974,1984,1998-2010,2013,2020-2022,2030,2033-2035,2038,2040-2043,2045-2049,2065,2068,2099-2100,2103,2105-2107,2111,2119,2121,2126,2135,2144,2160-2161,2170,2179,2190-2191,2196,2200,2222,2251,2260,2288,2301,2323,2366,2381-2383,2393-2394,2399,2401,2492,2500,2522,2525,2557,2601-2602,2604-2605,2607-2608,2638,2701-2702,2710,2717-2718,2725,2800,2809,2811,2869,2875,2909-2910,2920,2967-2968,2998,3000-3001,3003,3005-3007,3011,3013,3017,3030-3031,3052,3071,3077,3128,3168,3211,3221,3260-3261,3283,3300-3301,3306,3322-3325,3333,3351,3367,3369-3372,3389-3390,3404,3476,3493,3517,3527,3546,3551,3580,3659,3689-3690,3703,3737,3766,3784,3800-3801,3809,3814,3826-3828,3851,3869,3871,3878,3880,3889,3905,3914,3918,3920,3945,3971,3986,3995,3998,4000-4006,4045,4111,4125-4126,4129,4224,4242,4279,4321,4343,4443-4446,4449,4550,4567,4662,4848,4899-4900,4998,5000-5004,5009,5030,5033,5050-5051,5054,5060-5061,5080,5087,5100-5102,5120,5190,5200,5214,5221-5222,5225-5226,5269,5280,5298,5357,5405,5414,5431-5432,5440,5500,5510,5544,5550,5555,5560,5566,5631,5633,5666,5678-5679,5718,5730,5800-5802,5810-5811,5815,5822,5825,5850,5859,5862,5877,5900-5904,5906-5907,5910-5911,5915,5922,5925,5950,5952,5959-5963,5987-5989,5998-6007,6009,6025,6059,6100-6101,6106,6112,6123,6129,6156,6346,6389,6502,6510,6543,6547,6565-6567,6580,6646,6666-6669,6689,6692,6699,6779,6788-6789,6792,6839,6881,6901,6969,7000-7002,7004,7007,7019,7025,7070,7100,7103,7106,7200-7201,7402,7435,7443,7496,7512,7625,7627,7676,7741,7777-7778,7800,7911,7920-7921,7937-7938,7999-8002,8007-8011,8021-8022,8031,8042,8045,8080-8090,8093,8099-8100,8180-8181,8192-8194,8200,8222,8254,8290-8292,8300,8333,8383,8400,8402,8443,8500,8600,8649,8651-8652,8654,8701,8800,8873,8888,8899,8994,9000-9003,9009-9011,9040,9050,9071,9080-9081,9090-9091,9099-9103,9110-9111,9200,9207,9220,9290,9415,9418,9485,9500,9502-9503,9535,9575,9593-9595,9618,9666,9876-9878,9898,9900,9917,9929,9943-9944,9968,9998-10004,10009-10010,10012,10024-10025,10082,10180,10215,10243,10566,10616-10617,10621,10626,10628-10629,10778,11110-11111,11967,12000,12174,12265,12345,13456,13722,13782-13783,14000,14238,14441-14442,15000,15002-15004,15660,15742,16000-16001,16012,16016,16018,16080,16113,16992-16993,17877,17988,18040,18101,18988,19101,19283,19315,19350,19780,19801,19842,20000,20005,20031,20221-20222,20828,21571,22939,23502,24444,24800,25734-25735,26214,27000,27352-27353,27355-27356,27715,28201,30000,30718,30951,31038,31337,32768-32785,33354,33899,34571-34573,35500,38292,40193,40911,41511,42510,44176,44442-44443,44501,45100,48080,49152-49161,49163,49165,49167,49175-49176,49400,49999-50003,50006,50300,50389,50500,50636,50800,51103,51493,52673,52822,52848,52869,54045,54328,55055-55056,55555,55600,56737-56738,57294,57797,58080,60020,60443,61532,61900,62078,63331,64623,64680,65000,65129,65389"/>
|
||||
</extraports>
|
||||
<port protocol="tcp" portid="53"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="domain" method="table" conf="3"/></port>
|
||||
<port protocol="tcp" portid="80"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="http" product="Microsoft IIS httpd" version="10.0" ostype="Windows" method="probed" conf="10"><cpe>cpe:/a:microsoft:internet_information_services:10.0</cpe><cpe>cpe:/o:microsoft:windows</cpe></service><script id="http-title" output="Slandovia Energy"><elem key="title">Slandovia Energy</elem>
|
||||
</script><script id="http-methods" output="
 Supported Methods: OPTIONS TRACE GET HEAD POST
 Potentially risky methods: TRACE"><table key="Supported Methods">
|
||||
<elem>OPTIONS</elem>
|
||||
<elem>TRACE</elem>
|
||||
<elem>GET</elem>
|
||||
<elem>HEAD</elem>
|
||||
<elem>POST</elem>
|
||||
</table>
|
||||
<table key="Potentially risky methods">
|
||||
<elem>TRACE</elem>
|
||||
</table>
|
||||
</script></port>
|
||||
<port protocol="tcp" portid="88"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="kerberos-sec" product="Microsoft Windows Kerberos" extrainfo="server time: 2023-10-28 12:23:58Z" ostype="Windows" method="probed" conf="10"><cpe>cpe:/a:microsoft:kerberos</cpe><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="135"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="msrpc" product="Microsoft Windows RPC" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="139"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="netbios-ssn" product="Microsoft Windows netbios-ssn" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="389"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="ldap" product="Microsoft Windows Active Directory LDAP" extrainfo="Domain: MEGACORP.LOCAL0., Site: Default-First-Site-Name" hostname="DC" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="445"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="microsoft-ds" method="table" conf="3"/></port>
|
||||
<port protocol="tcp" portid="464"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="kpasswd5" method="table" conf="3"/></port>
|
||||
<port protocol="tcp" portid="593"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="ncacn_http" product="Microsoft Windows RPC over HTTP" version="1.0" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="636"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="tcpwrapped" method="probed" conf="8"/></port>
|
||||
<port protocol="tcp" portid="3268"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="ldap" product="Microsoft Windows Active Directory LDAP" extrainfo="Domain: MEGACORP.LOCAL0., Site: Default-First-Site-Name" hostname="DC" ostype="Windows" method="probed" conf="10"><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="tcp" portid="3269"><state state="open" reason="syn-ack" reason_ttl="127"/><service name="tcpwrapped" method="probed" conf="8"/></port>
|
||||
</ports>
|
||||
<os><portused state="open" proto="tcp" portid="53"/>
|
||||
<osfingerprint fingerprint="SCAN(V=7.93%E=4%D=10/28%OT=53%CT=%CU=%PV=Y%DS=2%DC=T%G=N%TM=653CFF13%P=x86_64-pc-linux-gnu)
SEQ(SP=108%GCD=1%ISR=10A%TS=U)
OPS(O1=M550NW8NNS%O2=M550NW8NNS%O3=M550NW8%O4=M550NW8NNS%O5=M550NW8NNS%O6=M550NNS)
WIN(W1=FFFF%W2=FFFF%W3=FFFF%W4=FFFF%W5=FFFF%W6=FF70)
ECN(R=Y%DF=Y%TG=80%W=FFFF%O=M550NW8NNS%CC=Y%Q=)
T1(R=Y%DF=Y%TG=80%S=O%A=S+%F=AS%RD=0%Q=)
T2(R=N)
T3(R=N)
T4(R=N)
U1(R=N)
IE(R=Y%DFI=N%TG=80%CD=Z)
"/>
|
||||
</os>
|
||||
<distance value="2"/>
|
||||
<tcpsequence index="264" difficulty="Good luck!" values="E2152,8373986E,1EB3F007,1E18CD74,E83696E7,925808C"/>
|
||||
<ipidsequence class="Busy server or unknown class" values="D7D7,D7F5,D80F,D829,D840,D850"/>
|
||||
<tcptssequence class="none returned (unsupported)"/>
|
||||
<hostscript><script id="smb2-security-mode" output="
 311: 
 Message signing enabled and required"><table key="311">
|
||||
<elem>Message signing enabled and required</elem>
|
||||
</table>
|
||||
</script><script id="clock-skew" output="0s"><elem key="mean">0</elem>
|
||||
<elem key="median">0</elem>
|
||||
<elem key="stddev">0</elem>
|
||||
<elem key="count">1</elem>
|
||||
</script><script id="smb2-time" output="
 date: 2023-10-28T12:30:36
 start_date: N/A"><elem key="date">2023-10-28T12:30:36</elem>
|
||||
<elem key="start_date">N/A</elem>
|
||||
</script><script id="p2p-conficker" output="
 Checking for Conficker.C or higher...
 Check 1 (port 25314/tcp): CLEAN (Timeout)
 Check 2 (port 10793/tcp): CLEAN (Timeout)
 Check 3 (port 25536/udp): CLEAN (Timeout)
 Check 4 (port 25523/udp): CLEAN (Timeout)
 0/4 checks are positive: Host is CLEAN or ports are blocked
"/></hostscript><trace port="53" proto="tcp">
|
||||
<hop ttl="1" ipaddr="10.10.14.1" rtt="74.01"/>
|
||||
<hop ttl="2" ipaddr="10.129.243.131" rtt="74.05" host="megacorp.htb"/>
|
||||
</trace>
|
||||
<times srtt="60872" rttvar="16656" to="127496"/>
|
||||
</host>
|
||||
<taskbegin task="NSE" time="1698496275"/>
|
||||
<taskend task="NSE" time="1698496275"/>
|
||||
<taskbegin task="NSE" time="1698496275"/>
|
||||
<taskend task="NSE" time="1698496275"/>
|
||||
<taskbegin task="NSE" time="1698496275"/>
|
||||
<taskend task="NSE" time="1698496275"/>
|
||||
<runstats><finished time="1698496275" timestr="Sat Oct 28 14:31:15 2023" summary="Nmap done at Sat Oct 28 14:31:15 2023; 1 IP address (1 host up) scanned in 449.29 seconds" elapsed="449.29" exit="success"/><hosts up="1" down="0" total="1"/>
|
||||
</runstats>
|
||||
</nmaprun>
|
||||
@@ -0,0 +1,112 @@
|
||||
<?xml version="1.0" encoding="UTF-8"?>
|
||||
<!DOCTYPE nmaprun>
|
||||
<?xml-stylesheet href="file:///usr/bin/../share/nmap/nmap.xsl" type="text/xsl"?>
|
||||
<!-- Nmap 7.93 scan initiated Sat Oct 28 14:23:46 2023 as: nmap -vv --reason -Pn -T4 -sU -A --top-ports 100 -oN /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/_top_100_udp_nmap.txt -oX /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/xml/_top_100_udp_nmap.xml 10.129.243.131 -->
|
||||
<nmaprun scanner="nmap" args="nmap -vv --reason -Pn -T4 -sU -A --top-ports 100 -oN /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/_top_100_udp_nmap.txt -oX /home/simon/CTF/LaokoonHaxorcist/fullpwn/results/10.129.243.131/scans/xml/_top_100_udp_nmap.xml 10.129.243.131" start="1698495826" startstr="Sat Oct 28 14:23:46 2023" version="7.93" xmloutputversion="1.05">
|
||||
<scaninfo type="udp" protocol="udp" numservices="100" services="7,9,17,19,49,53,67-69,80,88,111,120,123,135-139,158,161-162,177,427,443,445,497,500,514-515,518,520,593,623,626,631,996-999,1022-1023,1025-1030,1433-1434,1645-1646,1701,1718-1719,1812-1813,1900,2000,2048-2049,2222-2223,3283,3456,3703,4444,4500,5000,5060,5353,5632,9200,10000,17185,20031,30718,31337,32768-32769,32771,32815,33281,49152-49154,49156,49181-49182,49185-49186,49188,49190-49194,49200-49201,65024"/>
|
||||
<verbose level="2"/>
|
||||
<debugging level="0"/>
|
||||
<taskbegin task="NSE" time="1698495826"/>
|
||||
<taskend task="NSE" time="1698495826"/>
|
||||
<taskbegin task="NSE" time="1698495826"/>
|
||||
<taskend task="NSE" time="1698495826"/>
|
||||
<taskbegin task="NSE" time="1698495826"/>
|
||||
<taskend task="NSE" time="1698495826"/>
|
||||
<taskbegin task="UDP Scan" time="1698495826"/>
|
||||
<taskend task="UDP Scan" time="1698495832" extrainfo="100 total ports"/>
|
||||
<taskbegin task="Service scan" time="1698495832"/>
|
||||
<taskprogress task="Service scan" time="1698495930" percent="4.00" remaining="2352" etc="1698498282"/>
|
||||
<taskprogress task="Service scan" time="1698496028" percent="34.00" remaining="381" etc="1698496408"/>
|
||||
<taskprogress task="Service scan" time="1698496125" percent="64.00" remaining="165" etc="1698496290"/>
|
||||
<taskend task="Service scan" time="1698496223" extrainfo="100 services on 1 host"/>
|
||||
<taskbegin task="Traceroute" time="1698496227"/>
|
||||
<taskend task="Traceroute" time="1698496229"/>
|
||||
<taskbegin task="Parallel DNS resolution of 1 host." time="1698496229"/>
|
||||
<taskend task="Parallel DNS resolution of 1 host." time="1698496229"/>
|
||||
<taskbegin task="NSE" time="1698496229"/>
|
||||
<taskprogress task="NSE" time="1698496260" percent="98.60" remaining="1" etc="1698496260"/>
|
||||
<taskprogress task="NSE" time="1698496290" percent="98.62" remaining="1" etc="1698496291"/>
|
||||
<taskprogress task="NSE" time="1698496320" percent="98.64" remaining="2" etc="1698496321"/>
|
||||
<taskprogress task="NSE" time="1698496350" percent="98.69" remaining="2" etc="1698496352"/>
|
||||
<taskprogress task="NSE" time="1698496380" percent="98.71" remaining="2" etc="1698496382"/>
|
||||
<taskprogress task="NSE" time="1698496410" percent="98.72" remaining="3" etc="1698496412"/>
|
||||
<taskprogress task="NSE" time="1698496440" percent="98.80" remaining="3" etc="1698496443"/>
|
||||
<taskprogress task="NSE" time="1698496470" percent="98.82" remaining="3" etc="1698496473"/>
|
||||
<taskprogress task="NSE" time="1698496500" percent="98.83" remaining="4" etc="1698496503"/>
|
||||
<taskprogress task="NSE" time="1698496530" percent="98.89" remaining="4" etc="1698496533"/>
|
||||
<taskprogress task="NSE" time="1698496560" percent="98.91" remaining="4" etc="1698496564"/>
|
||||
<taskprogress task="NSE" time="1698496590" percent="98.92" remaining="4" etc="1698496594"/>
|
||||
<taskprogress task="NSE" time="1698496620" percent="98.95" remaining="5" etc="1698496624"/>
|
||||
<taskprogress task="NSE" time="1698496650" percent="99.00" remaining="5" etc="1698496654"/>
|
||||
<taskprogress task="NSE" time="1698496680" percent="99.02" remaining="5" etc="1698496684"/>
|
||||
<taskprogress task="NSE" time="1698496710" percent="99.04" remaining="5" etc="1698496715"/>
|
||||
<taskprogress task="NSE" time="1698496740" percent="99.10" remaining="5" etc="1698496745"/>
|
||||
<taskprogress task="NSE" time="1698496770" percent="99.11" remaining="5" etc="1698496775"/>
|
||||
<taskprogress task="NSE" time="1698496800" percent="99.15" remaining="5" etc="1698496805"/>
|
||||
<taskprogress task="NSE" time="1698496830" percent="99.18" remaining="5" etc="1698496835"/>
|
||||
<taskprogress task="NSE" time="1698496860" percent="99.22" remaining="5" etc="1698496865"/>
|
||||
<taskprogress task="NSE" time="1698496890" percent="99.26" remaining="5" etc="1698496895"/>
|
||||
<taskprogress task="NSE" time="1698496920" percent="99.28" remaining="6" etc="1698496925"/>
|
||||
<taskprogress task="NSE" time="1698496950" percent="99.30" remaining="6" etc="1698496955"/>
|
||||
<taskprogress task="NSE" time="1698496980" percent="99.35" remaining="5" etc="1698496985"/>
|
||||
<taskprogress task="NSE" time="1698497010" percent="99.37" remaining="5" etc="1698497015"/>
|
||||
<taskprogress task="NSE" time="1698497040" percent="99.40" remaining="5" etc="1698497045"/>
|
||||
<taskprogress task="NSE" time="1698497070" percent="99.44" remaining="5" etc="1698497075"/>
|
||||
<taskprogress task="NSE" time="1698497100" percent="99.47" remaining="5" etc="1698497105"/>
|
||||
<taskprogress task="NSE" time="1698497130" percent="99.51" remaining="5" etc="1698497134"/>
|
||||
<taskprogress task="NSE" time="1698497160" percent="99.53" remaining="5" etc="1698497164"/>
|
||||
<taskprogress task="NSE" time="1698497190" percent="99.56" remaining="5" etc="1698497194"/>
|
||||
<taskprogress task="NSE" time="1698497220" percent="99.59" remaining="5" etc="1698497224"/>
|
||||
<taskprogress task="NSE" time="1698497250" percent="99.61" remaining="4" etc="1698497254"/>
|
||||
<taskprogress task="NSE" time="1698497280" percent="99.66" remaining="4" etc="1698497284"/>
|
||||
<taskprogress task="NSE" time="1698497310" percent="99.69" remaining="4" etc="1698497313"/>
|
||||
<taskprogress task="NSE" time="1698497340" percent="99.73" remaining="4" etc="1698497343"/>
|
||||
<taskprogress task="NSE" time="1698497370" percent="99.75" remaining="3" etc="1698497373"/>
|
||||
<taskprogress task="NSE" time="1698497400" percent="99.79" remaining="3" etc="1698497402"/>
|
||||
<taskprogress task="NSE" time="1698497430" percent="99.82" remaining="3" etc="1698497432"/>
|
||||
<taskprogress task="NSE" time="1698497460" percent="99.85" remaining="2" etc="1698497462"/>
|
||||
<taskprogress task="NSE" time="1698497490" percent="99.87" remaining="2" etc="1698497492"/>
|
||||
<taskprogress task="NSE" time="1698497520" percent="99.92" remaining="2" etc="1698497521"/>
|
||||
<taskprogress task="NSE" time="1698497550" percent="99.96" remaining="1" etc="1698497551"/>
|
||||
<taskprogress task="NSE" time="1698497580" percent="99.99" remaining="1" etc="1698497580"/>
|
||||
<taskend task="NSE" time="1698497588"/>
|
||||
<taskbegin task="NSE" time="1698497588"/>
|
||||
<taskend task="NSE" time="1698497593"/>
|
||||
<taskbegin task="NSE" time="1698497593"/>
|
||||
<taskend task="NSE" time="1698497593"/>
|
||||
<host starttime="1698495826" endtime="1698497593"><status state="up" reason="user-set" reason_ttl="0"/>
|
||||
<address addr="10.129.243.131" addrtype="ipv4"/>
|
||||
<hostnames>
|
||||
<hostname name="megacorp.htb" type="PTR"/>
|
||||
</hostnames>
|
||||
<ports><extraports state="open|filtered" count="97">
|
||||
<extrareasons reason="no-response" count="97" proto="udp" ports="7,9,17,19,49,67-69,80,111,120,135-139,158,161-162,177,427,443,445,497,500,514-515,518,520,593,623,626,631,996-999,1022-1023,1025-1030,1433-1434,1645-1646,1701,1718-1719,1812-1813,1900,2000,2048-2049,2222-2223,3283,3456,3703,4444,4500,5000,5060,5353,5632,9200,10000,17185,20031,30718,31337,32768-32769,32771,32815,33281,49152-49154,49156,49181-49182,49185-49186,49188,49190-49194,49200-49201,65024"/>
|
||||
</extraports>
|
||||
<port protocol="udp" portid="53"><state state="open" reason="udp-response" reason_ttl="0"/><service name="domain" extrainfo="generic dns response: SERVFAIL" servicefp="SF-Port53-UDP:V=7.93%I=7%D=10/28%Time=653CFD6C%P=x86_64-pc-linux-gnu%r(NBTStat,32,"\x80\xf0\x80\x82\0\x01\0\0\0\0\0\0\x20CKAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA\0\0!\0\x01");" method="probed" conf="10"/><script id="fingerprint-strings" output="
 NBTStat: 
 CKAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA"><elem key="NBTStat">
 CKAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA</elem>
|
||||
</script></port>
|
||||
<port protocol="udp" portid="88"><state state="open" reason="udp-response" reason_ttl="0"/><service name="kerberos-sec" product="Microsoft Windows Kerberos" extrainfo="server time: 2023-10-28 12:23:58Z" ostype="Windows" method="probed" conf="10"><cpe>cpe:/a:microsoft:kerberos</cpe><cpe>cpe:/o:microsoft:windows</cpe></service></port>
|
||||
<port protocol="udp" portid="123"><state state="open" reason="udp-response" reason_ttl="127"/><service name="ntp" product="NTP" version="v3" method="probed" conf="10"/><script id="ntp-info" output="
 receive time stamp: 2023-10-28T12:30:46"><elem key="receive time stamp">2023-10-28T12:30:46</elem>
|
||||
</script></port>
|
||||
</ports>
|
||||
<os><osfingerprint fingerprint="SCAN(V=7.93%E=4%D=10/28%OT=%CT=%CU=%PV=Y%DS=2%DC=T%G=N%TM=653D0439%P=x86_64-pc-linux-gnu)
U1(R=N)
IE(R=N)
"/>
|
||||
</os>
|
||||
<distance value="2"/>
|
||||
<hostscript><script id="clock-skew" output="14s"><elem key="count">1</elem>
|
||||
<elem key="stddev">0</elem>
|
||||
<elem key="median">14</elem>
|
||||
<elem key="mean">14</elem>
|
||||
</script></hostscript><trace port="123" proto="udp">
|
||||
<hop ttl="1" ipaddr="10.10.14.1" rtt="44.38"/>
|
||||
<hop ttl="2" ipaddr="10.129.243.131" rtt="57.06" host="megacorp.htb"/>
|
||||
</trace>
|
||||
<times srtt="54857" rttvar="14239" to="111813"/>
|
||||
</host>
|
||||
<taskbegin task="NSE" time="1698497593"/>
|
||||
<taskend task="NSE" time="1698497593"/>
|
||||
<taskbegin task="NSE" time="1698497593"/>
|
||||
<taskend task="NSE" time="1698497593"/>
|
||||
<taskbegin task="NSE" time="1698497593"/>
|
||||
<taskend task="NSE" time="1698497593"/>
|
||||
<runstats><finished time="1698497593" timestr="Sat Oct 28 14:53:13 2023" summary="Nmap done at Sat Oct 28 14:53:13 2023; 1 IP address (1 host up) scanned in 1767.23 seconds" elapsed="1767.23" exit="success"/><hosts up="1" down="0" total="1"/>
|
||||
</runstats>
|
||||
</nmaprun>
|
||||
Reference in New Issue
Block a user