NetWork | ZeroBOX

Network Analysis

IP Address Status Action
24.162.214.166 Active Moloch
45.36.99.184 Active Moloch
Name Response Post-Analysis Lookup
No hosts contacted.

No traffic

ICMP traffic

No ICMP traffic performed.

IRC traffic

No IRC requests performed.

Suricata Alerts

Flow SID Signature Category
TCP 192.168.56.102:49175 -> 45.36.99.184:443 2404318 ET CNC Feodo Tracker Reported CnC Server group 19 A Network Trojan was detected
TCP 192.168.56.102:49172 -> 24.162.214.166:443 2404315 ET CNC Feodo Tracker Reported CnC Server group 16 A Network Trojan was detected

Suricata TLS

No Suricata TLS

Snort Alerts

No Snort Alerts