NetWork | ZeroBOX

Network Analysis

IP Address Status Action
164.124.101.2 Active Moloch
212.192.241.97 Active Moloch
Name Response Post-Analysis Lookup
matixx.xyz 212.192.241.97
GET 302 http://matixx.xyz/panel/
REQUEST
RESPONSE
GET 200 http://matixx.xyz/panel/login.php
REQUEST
RESPONSE
GET 302 http://matixx.xyz/panel/
REQUEST
RESPONSE
GET 200 http://matixx.xyz/panel/login.php
REQUEST
RESPONSE
GET 302 http://matixx.xyz/panel/
REQUEST
RESPONSE
GET 200 http://matixx.xyz/panel/login.php
REQUEST
RESPONSE
GET 302 http://matixx.xyz/panel/
REQUEST
RESPONSE
GET 200 http://matixx.xyz/panel/login.php
REQUEST
RESPONSE
GET 302 http://matixx.xyz/panel/
REQUEST
RESPONSE
GET 200 http://matixx.xyz/panel/login.php
REQUEST
RESPONSE

ICMP traffic

No ICMP traffic performed.

IRC traffic

No IRC requests performed.

Suricata Alerts

Flow SID Signature Category
TCP 192.168.56.101:49203 -> 212.192.241.97:80 2031088 ET HUNTING Request to .XYZ Domain with Minimal Headers Potentially Bad Traffic

Suricata TLS

No Suricata TLS

Snort Alerts

No Snort Alerts