Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
ascend.macronator.biz |
CNAME
s3-1-w.amazonaws.com
|
16.182.36.201 |
GET
200
http://ascend.macronator.biz/bot/hash.crc
REQUEST
RESPONSE
BODY
GET /bot/hash.crc HTTP/1.1
Host: ascend.macronator.biz
Connection: Keep-Alive
HTTP/1.1 200 OK
x-amz-id-2: ZR+MXUmjB8IwtBnbodPa4btB4/32YCcxUl5viZ4DGgMPEoCMJvTEMSvPXWH6KtHt/tNiW4fDFirh7cR6y8UNuYY6dFL2r+yp
x-amz-request-id: H4EY21H1Q0ZRWCH0
Date: Wed, 13 Sep 2023 08:22:00 GMT
Last-Modified: Mon, 11 Sep 2023 16:03:09 GMT
ETag: "b560c39d0547e12b0e354e2ac3dbff36"
x-amz-server-side-encryption: AES256
Accept-Ranges: bytes
Content-Type: text/plain
Server: AmazonS3
Content-Length: 32
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
Flow | SID | Signature | Category |
---|---|---|---|
UDP 192.168.56.101:59002 -> 164.124.101.2:53 | 2027863 | ET INFO Observed DNS Query to .biz TLD | Potentially Bad Traffic |
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts