Windows Service Information Gathering

Windows Service Information Gathering is a critical post-exploitation technique commonly offered by advanced Remote Access Trojans (RATs) and Command-and-Control (C2) frameworks through their Service Manager feature. After enumerating existing services, and provided the attacker has sufficient privileges, they can inspect a wide range of service properties. This includes:

Gathering this information can expose crucial details about a target system, such as: