NetWork | ZeroBOX

Network Analysis

IP Address Status Action
164.124.101.2 Active Moloch
176.31.32.199 Active Moloch
62.109.1.30 Active Moloch
Name Response Post-Analysis Lookup
No hosts contacted.
GET 200 http://62.109.1.30/triggers/vm_.php?mICvfro6PEXVDXrLSnC2C=s6yb&e8f6de43394a8e2ef93b201a0d2ec922=c0280c4c3f572aabfa038560a3f515da&65ab24948c084368808c084126a043f5=gZlFWOwQDMhlTO2kjZ2QjN4MmNiRWZ3UmZyIGZxYTM0QjMxITZmhTY&mICvfro6PEXVDXrLSnC2C=s6yb
REQUEST
RESPONSE
GET 200 http://176.31.32.199/DriverGraphDevicea.exe
REQUEST
RESPONSE

ICMP traffic

Source Destination ICMP Type Data
192.168.56.101 62.109.1.30 8 abcdefghijklmnopqrstuvwabcdefghi
192.168.56.101 62.109.1.30 8 abcdefghijklmnopqrstuvwabcdefghi
62.109.1.30 192.168.56.101 0 abcdefghijklmnopqrstuvwabcdefghi
192.168.56.101 62.109.1.30 3
62.109.1.30 192.168.56.101 0 abcdefghijklmnopqrstuvwabcdefghi
192.168.56.101 62.109.1.30 8 abcdefghijklmnopqrstuvwabcdefghi
62.109.1.30 192.168.56.101 0 abcdefghijklmnopqrstuvwabcdefghi
192.168.56.101 62.109.1.30 8 abcdefghijklmnopqrstuvwabcdefghi
192.168.56.101 62.109.1.30 8 abcdefghijklmnopqrstuvwabcdefghi
62.109.1.30 192.168.56.101 0 abcdefghijklmnopqrstuvwabcdefghi
192.168.56.101 62.109.1.30 3
62.109.1.30 192.168.56.101 0 abcdefghijklmnopqrstuvwabcdefghi
192.168.56.101 62.109.1.30 8 abcdefghijklmnopqrstuvwabcdefghi
62.109.1.30 192.168.56.101 0 abcdefghijklmnopqrstuvwabcdefghi

IRC traffic

No IRC requests performed.

Snort Alerts

No Snort Alerts