Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
- TCP Requests
-
-
176.113.115.135:431 192.168.56.102:49283
-
176.113.115.136:431 192.168.56.102:49284
-
176.113.115.84:431 192.168.56.102:49281
-
176.113.115.85:431 192.168.56.102:49285
-
213.91.128.133:10060 192.168.56.102:49278
-
45.143.201.238:431 192.168.56.102:49280
-
62.122.184.92:431 192.168.56.102:49279
-
80.66.75.4:431 192.168.56.102:49282
-
No traffic
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
Flow | SID | Signature | Category |
---|---|---|---|
TCP 62.122.184.92:431 -> 192.168.56.102:49279 | 2402000 | ET DROP Dshield Block Listed Source group 1 | Misc Attack |
TCP 176.113.115.136:431 -> 192.168.56.102:49284 | 2400021 | ET DROP Spamhaus DROP Listed Traffic Inbound group 22 | Misc Attack |
TCP 176.113.115.135:431 -> 192.168.56.102:49283 | 2400021 | ET DROP Spamhaus DROP Listed Traffic Inbound group 22 | Misc Attack |
TCP 176.113.115.85:431 -> 192.168.56.102:49285 | 2400021 | ET DROP Spamhaus DROP Listed Traffic Inbound group 22 | Misc Attack |
TCP 176.113.115.84:431 -> 192.168.56.102:49281 | 2400021 | ET DROP Spamhaus DROP Listed Traffic Inbound group 22 | Misc Attack |
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts