NetWork | ZeroBOX

Network Analysis

IP Address Status Action
164.124.101.2 Active Moloch
91.195.240.19 Active Moloch
GET 200 http://www.aintrepreneurship.com/o5gu/?k2JxtP=/JjJcHpkv1C8RzmGJ51zwgl+R193dhUaufmFsVl9ygQ8D4AjpEcsS5mFMtaBfQ79nKZjIQY7&tXR=NXitvt
REQUEST
RESPONSE

ICMP traffic

No ICMP traffic performed.

IRC traffic

No IRC requests performed.

Suricata Alerts

Flow SID Signature Category
TCP 192.168.56.101:49165 -> 91.195.240.19:80 2031412 ET MALWARE FormBook CnC Checkin (GET) Malware Command and Control Activity Detected

Suricata TLS

No Suricata TLS

Snort Alerts

No Snort Alerts