nmap
Anonymous FTP
PRTG Files are under C:\ProgramData\Paessler\PRTG Network Manager
Looking for password
The version of PRTG is vulnerable
Use the following exploit:
https://raw.githubusercontent.com/wildkindcc/CVE-2018-9276/master/CVE-2018-9276.py
I got NT Authority\System