Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
d2js2viceajwla.cloudfront.net |
AAAA
2600:9000:2139:e400:11:6feb:6f80:93a1
AAAA
2600:9000:2139:d800:11:6feb:6f80:93a1
AAAA
2600:9000:2139:6a00:11:6feb:6f80:93a1
AAAA
2600:9000:2139:b000:11:6feb:6f80:93a1
AAAA
2600:9000:2139:ee00:11:6feb:6f80:93a1
AAAA
2600:9000:2139:4e00:11:6feb:6f80:93a1
AAAA
2600:9000:2139:e600:11:6feb:6f80:93a1
AAAA
2600:9000:2139:1600:11:6feb:6f80:93a1
|
99.86.202.75 |
aus.thunderbird.net | 99.86.202.125 | |
WYEnXVSECgshKtHcubAXXu.WYEnXVSECgshKtHcubAXXu | ||
prod.balrog.prod.cloudops.mozgcp.net | 35.244.181.201 | |
d2js2viceajwla.cloudfront.net | 99.86.202.75 | |
aus5.mozilla.org | 35.244.181.201 | |
prod.balrog.prod.cloudops.mozgcp.net | 35.244.181.201 |
- TCP Requests
-
-
192.168.56.102:49313 35.244.181.201:443aus5.mozilla.org
-
192.168.56.102:49335 35.244.181.201:443aus5.mozilla.org
-
192.168.56.102:49311 99.86.144.100:443
-
192.168.56.102:49315 99.86.144.46:443
-
192.168.56.102:49316 99.86.144.61:443
-
192.168.56.102:49312 99.86.144.82:443
-
192.168.56.102:49334 99.86.202.75:443d2js2viceajwla.cloudfront.net
-
- UDP Requests
-
-
192.168.56.102:49547 164.124.101.2:53
-
192.168.56.102:49958 164.124.101.2:53
-
192.168.56.102:50201 164.124.101.2:53
-
192.168.56.102:51397 164.124.101.2:53
-
192.168.56.102:54517 164.124.101.2:53
-
192.168.56.102:54700 164.124.101.2:53
-
192.168.56.102:55084 164.124.101.2:53
-
192.168.56.102:55426 164.124.101.2:53
-
192.168.56.102:57854 164.124.101.2:53
-
192.168.56.102:57860 164.124.101.2:53
-
192.168.56.102:58785 164.124.101.2:53
-
192.168.56.102:137 192.168.56.255:137
-
192.168.56.102:138 192.168.56.255:138
-
192.168.56.102:49152 239.255.255.250:3702
-
192.168.56.102:57353 239.255.255.250:1900
-
No traffic
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
No Suricata Alerts
Suricata TLS
Flow | Issuer | Subject | Fingerprint |
---|---|---|---|
TLS 1.2 192.168.56.102:49334 99.86.202.75:443 |
C=US, O=Let's Encrypt, CN=R3 | CN=thunderbird.net | dd:92:a0:f3:c5:f2:3a:c7:42:66:30:75:8a:b3:b3:03:6b:8c:df:9d |
TLS 1.2 192.168.56.102:49335 35.244.181.201:443 |
C=US, O=DigiCert Inc, CN=DigiCert SHA2 Secure Server CA | C=US, ST=California, L=Mountain View, O=Mozilla Corporation, CN=aus5.mozilla.org | 37:1a:8a:6e:ae:e7:b7:ae:1f:a9:c0:87:53:e5:a0:94:ef:0b:de:0c |
Snort Alerts
No Snort Alerts