NetWork | ZeroBOX

Network Analysis

IP Address Status Action
164.124.101.2 Active Moloch
172.217.25.14 Active Moloch
185.66.15.228 Active Moloch
23.21.245.0 Active Moloch
GET 200 http://api.ipify.org/?format=xml
REQUEST
RESPONSE

ICMP traffic

Source Destination ICMP Type Data
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3
81.177.22.106 192.168.56.102 3

IRC traffic

No IRC requests performed.

Suricata Alerts

Flow SID Signature Category
TCP 192.168.56.102:49805 -> 23.21.245.0:80 2029622 ET POLICY External IP Lookup (ipify .org) Potential Corporate Privacy Violation

Suricata TLS

No Suricata TLS

Snort Alerts

No Snort Alerts