NetWork | ZeroBOX

Network Analysis

IP Address Status Action
164.124.101.2 Active Moloch
38.180.1.27 Active Moloch
68.178.227.97 Active Moloch
Name Response Post-Analysis Lookup
elturky.net 68.178.227.97
GET 404 http://elturky.net/ERP/public/js/dd_64.exe
REQUEST
RESPONSE
GET 404 http://elturky.net/ERP/public/js/cc2.exe
REQUEST
RESPONSE
GET 404 http://elturky.net/ERP/public/js/cc3.exe
REQUEST
RESPONSE
GET 404 http://elturky.net/ERP/public/js/cc4.exe
REQUEST
RESPONSE
GET 404 http://elturky.net/ERP/public/js/cc5.exe
REQUEST
RESPONSE
GET 404 http://elturky.net/ERP/public/js/cc1.php
REQUEST
RESPONSE
GET 404 http://elturky.net/ERP/public/js/cc2.php
REQUEST
RESPONSE
GET 404 http://elturky.net/ERP/public/js/cc3.php
REQUEST
RESPONSE
GET 200 http://elturky.net/ERP/public/js/debug2.ps1
REQUEST
RESPONSE
GET 200 http://38.180.1.27/index.php?id=017bd04f-b3bf-45b6-8167-9e8f41ff87bf&subid=HnTgSX1R
REQUEST
RESPONSE

ICMP traffic

No ICMP traffic performed.

IRC traffic

No IRC requests performed.

Snort Alerts

No Snort Alerts