active_directory/hacks/bloodhound/20220528013449_computers.json

1 line
5.9 KiB
JSON

{"data":[{"ObjectIdentifier": "S-1-5-21-4008810161-2259990241-4173588148-1000", "AllowedToAct": [], "PrimaryGroupSID": "S-1-5-21-4008810161-2259990241-4173588148-516", "LocalAdmins": {"Collected": true, "FailureReason": null, "Results": [{"ObjectIdentifier": "S-1-5-21-4008810161-2259990241-4173588148-519", "ObjectType": "Group"}, {"ObjectIdentifier": "S-1-5-21-4008810161-2259990241-4173588148-512", "ObjectType": "Group"}, {"ObjectIdentifier": "S-1-5-21-4008810161-2259990241-4173588148-500", "ObjectType": "User"}]}, "PSRemoteUsers": {"Collected": true, "FailureReason": null, "Results": []}, "Properties": {"name": "DC1.XYZ.COM", "domainsid": "S-1-5-21-4008810161-2259990241-4173588148", "domain": "XYZ.COM", "distinguishedname": "CN=DC1,OU=DOMAIN CONTROLLERS,DC=XYZ,DC=COM", "unconstraineddelegation": true, "enabled": true, "trustedtoauth": false, "haslaps": false, "lastlogon": 1653713249, "lastlogontimestamp": 1652997298, "pwdlastset": 1652997287, "whencreated": 1652997258, "serviceprincipalnames": ["Dfsr-12F9A27C-BF97-4787-9364-D31B6C55EB04/DC1.xyz.com", "ldap/DC1.xyz.com/ForestDnsZones.xyz.com", "ldap/DC1.xyz.com/DomainDnsZones.xyz.com", "DNS/DC1.xyz.com", "GC/DC1.xyz.com/xyz.com", "RestrictedKrbHost/DC1.xyz.com", "RestrictedKrbHost/DC1", "RPC/cc03500d-0314-43f6-9108-fe86f20329b6._msdcs.xyz.com", "HOST/DC1/XYZ", "HOST/DC1.xyz.com/XYZ", "HOST/DC1", "HOST/DC1.xyz.com", "HOST/DC1.xyz.com/xyz.com", "E3514235-4B06-11D1-AB04-00C04FC2DCD2/cc03500d-0314-43f6-9108-fe86f20329b6/xyz.com", "ldap/DC1/XYZ", "ldap/cc03500d-0314-43f6-9108-fe86f20329b6._msdcs.xyz.com", "ldap/DC1.xyz.com/XYZ", "ldap/DC1", "ldap/DC1.xyz.com", "ldap/DC1.xyz.com/xyz.com"], "description": null, "operatingsystem": "Windows Server 2022 Standard Evaluation", "sidhistory": []}, "RemoteDesktopUsers": {"Collected": true, "FailureReason": null, "Results": []}, "DcomUsers": {"Collected": true, "FailureReason": null, "Results": []}, "AllowedToDelegate": [], "Sessions": {"Collected": true, "FailureReason": null, "Results": []}, "PrivilegedSessions": {"Collected": false, "FailureReason": null, "Results": []}, "RegistrySessions": {"Collected": false, "FailureReason": null, "Results": []}, "Aces": [{"RightName": "Owns", "IsInherited": false, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-512", "PrincipalType": "Group"}, {"RightName": "GenericAll", "IsInherited": false, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-512", "PrincipalType": "Group"}, {"RightName": "AddKeyCredentialLink", "IsInherited": true, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-526", "PrincipalType": "Group"}, {"RightName": "AddKeyCredentialLink", "IsInherited": true, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-527", "PrincipalType": "Group"}, {"RightName": "GenericAll", "IsInherited": true, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-519", "PrincipalType": "Group"}, {"RightName": "GenericWrite", "IsInherited": true, "PrincipalSID": "XYZ.COM-S-1-5-32-544", "PrincipalType": "Group"}, {"RightName": "WriteOwner", "IsInherited": true, "PrincipalSID": "XYZ.COM-S-1-5-32-544", "PrincipalType": "Group"}, {"RightName": "WriteDacl", "IsInherited": true, "PrincipalSID": "XYZ.COM-S-1-5-32-544", "PrincipalType": "Group"}], "HasSIDHistory": [], "IsDeleted": false, "Status": null, "IsACLProtected": false},{"ObjectIdentifier": "S-1-5-21-4008810161-2259990241-4173588148-1601", "AllowedToAct": [], "PrimaryGroupSID": "S-1-5-21-4008810161-2259990241-4173588148-515", "LocalAdmins": {"Collected": false, "FailureReason": null, "Results": []}, "PSRemoteUsers": {"Collected": false, "FailureReason": null, "Results": []}, "Properties": {"name": "DESKTOP-L31M0V1.XYZ.COM", "domainsid": "S-1-5-21-4008810161-2259990241-4173588148", "domain": "XYZ.COM", "distinguishedname": "CN=DESKTOP-L31M0V1,CN=COMPUTERS,DC=XYZ,DC=COM", "unconstraineddelegation": false, "enabled": true, "trustedtoauth": false, "haslaps": false, "lastlogon": 1653714644, "lastlogontimestamp": 1653191796, "pwdlastset": 1653191796, "whencreated": 1653191796, "serviceprincipalnames": ["RestrictedKrbHost/DESKTOP-L31M0V1", "HOST/DESKTOP-L31M0V1", "RestrictedKrbHost/DESKTOP-L31M0V1.xyz.com", "HOST/DESKTOP-L31M0V1.xyz.com"], "description": null, "operatingsystem": "Windows 11 Enterprise Evaluation", "sidhistory": []}, "RemoteDesktopUsers": {"Collected": false, "FailureReason": null, "Results": []}, "DcomUsers": {"Collected": false, "FailureReason": null, "Results": []}, "AllowedToDelegate": [], "Sessions": {"Collected": false, "FailureReason": null, "Results": []}, "PrivilegedSessions": {"Collected": false, "FailureReason": null, "Results": []}, "RegistrySessions": {"Collected": false, "FailureReason": null, "Results": []}, "Aces": [{"RightName": "Owns", "IsInherited": false, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-512", "PrincipalType": "Group"}, {"RightName": "GenericAll", "IsInherited": false, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-512", "PrincipalType": "Group"}, {"RightName": "GenericAll", "IsInherited": false, "PrincipalSID": "XYZ.COM-S-1-5-32-548", "PrincipalType": "Group"}, {"RightName": "AddKeyCredentialLink", "IsInherited": true, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-526", "PrincipalType": "Group"}, {"RightName": "AddKeyCredentialLink", "IsInherited": true, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-527", "PrincipalType": "Group"}, {"RightName": "GenericAll", "IsInherited": true, "PrincipalSID": "S-1-5-21-4008810161-2259990241-4173588148-519", "PrincipalType": "Group"}, {"RightName": "GenericWrite", "IsInherited": true, "PrincipalSID": "XYZ.COM-S-1-5-32-544", "PrincipalType": "Group"}, {"RightName": "WriteOwner", "IsInherited": true, "PrincipalSID": "XYZ.COM-S-1-5-32-544", "PrincipalType": "Group"}, {"RightName": "WriteDacl", "IsInherited": true, "PrincipalSID": "XYZ.COM-S-1-5-32-544", "PrincipalType": "Group"}], "HasSIDHistory": [], "IsDeleted": false, "Status": null, "IsACLProtected": false}],"meta":{"methods":0,"type":"computers","count":2, "version":4}}