Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
web.waskitaprecast.co.id | 103.229.73.120 | |
www.google-analytics.com | 172.217.25.110 | |
www.googletagmanager.com | 172.217.174.104 | |
maps.googleapis.com | 172.217.25.106 |
- TCP Requests
-
-
192.168.56.102:49168 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49169 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49170 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49171 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49172 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49173 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49174 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49175 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49176 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49177 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49178 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49182 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49183 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49184 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49185 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49187 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49189 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49190 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49191 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49192 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49193 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49194 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49195 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49198 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49200 103.229.73.120:443web.waskitaprecast.co.id
-
192.168.56.102:49207 117.18.232.200:80
-
192.168.56.102:49209 117.18.232.200:443
-
192.168.56.102:49210 117.18.232.200:443
-
192.168.56.102:49211 117.18.232.200:443
-
192.168.56.102:49205 142.250.196.142:443www.google-analytics.com
-
192.168.56.102:49206 142.250.196.142:443www.google-analytics.com
-
192.168.56.102:49180 172.217.31.136:443www.googletagmanager.com
-
192.168.56.102:49181 172.217.31.136:443www.googletagmanager.com
-
192.168.56.102:49166 216.58.220.106:443maps.googleapis.com
-
192.168.56.102:49167 216.58.220.106:443maps.googleapis.com
-
- UDP Requests
-
-
192.168.56.102:52062 164.124.101.2:53
-
192.168.56.102:52336 164.124.101.2:53
-
192.168.56.102:58838 164.124.101.2:53
-
192.168.56.102:64034 164.124.101.2:53
-
192.168.56.102:64472 164.124.101.2:53
-
192.168.56.102:64995 164.124.101.2:53
-
192.168.56.102:137 192.168.56.255:137
-
192.168.56.102:138 192.168.56.255:138
-
192.168.56.102:49152 239.255.255.250:3702
-
192.168.56.102:49164 239.255.255.250:1900
-
GET
200
https://maps.googleapis.com/maps/api/js?key=AIzaSyDImG_9Yv6_1Yevn7UDkYzqA1IzBWLE7Tc
REQUEST
RESPONSE
BODY
GET /maps/api/js?key=AIzaSyDImG_9Yv6_1Yevn7UDkYzqA1IzBWLE7Tc HTTP/1.1
Accept: application/javascript, */*;q=0.8
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Win64; x64; Trident/5.0)
UA-CPU: AMD64
Accept-Encoding: gzip, deflate
Host: maps.googleapis.com
Connection: Keep-Alive
HTTP/1.1 200 OK
Content-Type: text/javascript; charset=UTF-8
Date: Tue, 24 Aug 2021 02:55:24 GMT
Expires: Tue, 24 Aug 2021 03:25:24 GMT
Cache-Control: public, max-age=1800
Vary: Accept-Language
Cross-Origin-Resource-Policy: cross-origin
Content-Encoding: gzip
Server: mafe
Content-Length: 45252
X-XSS-Protection: 0
X-Frame-Options: SAMEORIGIN
Server-Timing: gfet4t7; dur=25
Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000,h3-T051=":443"; ma=2592000,h3-Q050=":443"; ma=2592000,h3-Q046=":443"; ma=2592000,h3-Q043=":443"; ma=2592000,quic=":443"; ma=2592000; v="46,43"
GET
200
https://www.googletagmanager.com/gtag/js?id=UA-4896146-112
REQUEST
RESPONSE
BODY
GET /gtag/js?id=UA-4896146-112 HTTP/1.1
Accept: application/javascript, */*;q=0.8
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Win64; x64; Trident/5.0)
UA-CPU: AMD64
Accept-Encoding: gzip, deflate
Host: www.googletagmanager.com
Connection: Keep-Alive
HTTP/1.1 200 OK
Content-Type: application/javascript; charset=UTF-8
Access-Control-Allow-Origin: *
Access-Control-Allow-Credentials: true
Access-Control-Allow-Headers: Cache-Control
Content-Encoding: gzip
Vary: Accept-Encoding
Date: Tue, 24 Aug 2021 02:55:25 GMT
Expires: Tue, 24 Aug 2021 02:55:25 GMT
Cache-Control: private, max-age=900
Last-Modified: Tue, 24 Aug 2021 00:00:00 GMT
Strict-Transport-Security: max-age=31536000; includeSubDomains
Cross-Origin-Resource-Policy: cross-origin
Server: Google Tag Manager
X-XSS-Protection: 0
Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000,h3-T051=":443"; ma=2592000,h3-Q050=":443"; ma=2592000,h3-Q046=":443"; ma=2592000,h3-Q043=":443"; ma=2592000,quic=":443"; ma=2592000; v="46,43"
Transfer-Encoding: chunked
GET
200
https://www.google-analytics.com/analytics.js
REQUEST
RESPONSE
BODY
GET /analytics.js HTTP/1.1
Accept: application/javascript, */*;q=0.8
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Win64; x64; Trident/5.0)
UA-CPU: AMD64
Accept-Encoding: gzip, deflate
Host: www.google-analytics.com
Connection: Keep-Alive
HTTP/1.1 200 OK
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Date: Tue, 24 Aug 2021 01:43:30 GMT
Expires: Tue, 24 Aug 2021 03:43:30 GMT
Last-Modified: Tue, 13 Jul 2021 18:24:06 GMT
X-Content-Type-Options: nosniff
Content-Type: text/javascript
Vary: Accept-Encoding
Content-Encoding: gzip
Cross-Origin-Resource-Policy: cross-origin
Server: Golfe2
Content-Length: 19672
Age: 4318
Cache-Control: public, max-age=7200
Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000,h3-T051=":443"; ma=2592000,h3-Q050=":443"; ma=2592000,h3-Q046=":443"; ma=2592000,h3-Q043=":443"; ma=2592000,quic=":443"; ma=2592000; v="46,43"
GET
200
http://ie9cvlist.ie.microsoft.com/IE9CompatViewList.xml
REQUEST
RESPONSE
BODY
GET /IE9CompatViewList.xml HTTP/1.1
Accept: */*
UA-CPU: AMD64
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Win64; x64; Trident/5.0)
Host: ie9cvlist.ie.microsoft.com
If-Modified-Since: Fri, 16 Oct 2020 17:54:09 GMT
If-None-Match: 0x8D871FC7BDF491D
Connection: Keep-Alive
HTTP/1.1 200 OK
Content-Encoding: gzip
Age: 13099
Cache-Control: max-age=21600
Content-MD5: p9g4jsuZO6TaLMVAI9ujVg==
Content-Type: text/xml
Date: Tue, 24 Aug 2021 02:56:22 GMT
Etag: 0x8D9521D2D2DF1EC
Last-Modified: Wed, 28 Jul 2021 23:12:31 GMT
Server: ECAcc (tka/897A)
Vary: Accept-Encoding
X-Cache: HIT
x-ms-blob-type: BlockBlob
x-ms-lease-status: unlocked
x-ms-request-id: 219049e1-901e-008e-4975-98a2a3000000
x-ms-version: 2009-09-19
Content-Length: 13702
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
Suricata TLS
Flow | Issuer | Subject | Fingerprint |
---|---|---|---|
TLSv1 192.168.56.102:49166 216.58.220.106:443 |
C=US, O=Google Trust Services, CN=GTS CA 1O1 | C=US, ST=California, L=Mountain View, O=Google LLC, CN=upload.video.google.com | 09:06:ca:62:16:ea:36:9f:ef:73:76:5a:a3:02:4d:b4:eb:10:48:1b |
TLSv1 192.168.56.102:49167 216.58.220.106:443 |
C=US, O=Google Trust Services, CN=GTS CA 1O1 | C=US, ST=California, L=Mountain View, O=Google LLC, CN=upload.video.google.com | 09:06:ca:62:16:ea:36:9f:ef:73:76:5a:a3:02:4d:b4:eb:10:48:1b |
TLSv1 192.168.56.102:49180 172.217.31.136:443 |
C=US, O=Google Trust Services LLC, CN=GTS CA 1C3 | CN=*.google-analytics.com | d1:46:8b:be:e0:f0:27:e6:ba:e8:e2:28:0e:4c:20:e3:e4:62:32:3e |
TLSv1 192.168.56.102:49181 172.217.31.136:443 |
C=US, O=Google Trust Services LLC, CN=GTS CA 1C3 | CN=*.google-analytics.com | d1:46:8b:be:e0:f0:27:e6:ba:e8:e2:28:0e:4c:20:e3:e4:62:32:3e |
TLSv1 192.168.56.102:49205 142.250.196.142:443 |
C=US, O=Google Trust Services LLC, CN=GTS CA 1C3 | CN=*.google-analytics.com | d1:46:8b:be:e0:f0:27:e6:ba:e8:e2:28:0e:4c:20:e3:e4:62:32:3e |
TLSv1 192.168.56.102:49206 142.250.196.142:443 |
C=US, O=Google Trust Services LLC, CN=GTS CA 1C3 | CN=*.google-analytics.com | d1:46:8b:be:e0:f0:27:e6:ba:e8:e2:28:0e:4c:20:e3:e4:62:32:3e |
Snort Alerts
No Snort Alerts