NetWork | ZeroBOX

Network Analysis

IP Address Status Action
164.124.101.2 Active Moloch
172.217.25.14 Active Moloch
182.162.89.146 Active Moloch
222.122.49.28 Active Moloch
POST 404 http://www.jinjinpig.co.kr/Anyboard/skin/board.php
REQUEST
RESPONSE
POST 404 http://mail.namusoft.kr/jsp/user/eam/board.jsp
REQUEST
RESPONSE
POST 404 http://mail.namusoft.kr/jsp/user/eam/board.jsp
REQUEST
RESPONSE
POST 404 http://www.jinjinpig.co.kr/Anyboard/skin/board.php
REQUEST
RESPONSE
POST 404 http://mail.namusoft.kr/jsp/user/eam/board.jsp
REQUEST
RESPONSE

ICMP traffic

No ICMP traffic performed.

IRC traffic

No IRC requests performed.

Suricata Alerts

Flow SID Signature Category
TCP 192.168.56.102:49816 -> 182.162.89.146:80 2016897 ET MALWARE Possible Win32/Gapz MSIE 9 on Windows NT 5 A Network Trojan was detected

Suricata TLS

No Suricata TLS

Snort Alerts

No Snort Alerts