Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
srtk.hometax.go.kr | 116.67.103.155 |
- TCP Requests
-
-
192.168.56.101:49173 116.67.103.155:443srtk.hometax.go.kr
-
192.168.56.101:49174 116.67.103.155:443srtk.hometax.go.kr
-
192.168.56.101:49175 116.67.103.155:443srtk.hometax.go.kr
-
192.168.56.101:49176 116.67.103.155:443srtk.hometax.go.kr
-
192.168.56.101:49177 116.67.103.155:443srtk.hometax.go.kr
-
192.168.56.101:49178 116.67.103.155:443srtk.hometax.go.kr
-
192.168.56.101:49179 116.67.103.155:443srtk.hometax.go.kr
-
192.168.56.101:49180 116.67.103.155:443srtk.hometax.go.kr
-
192.168.56.101:49188 117.18.232.200:80
-
GET
200
https://srtk.hometax.go.kr/download/rollups/seed.js
REQUEST
RESPONSE
BODY
GET /download/rollups/seed.js HTTP/1.1
Accept: application/javascript, */*;q=0.8
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: srtk.hometax.go.kr
Connection: Keep-Alive
HTTP/1.1 200 OK
Age: 1683
Date: Tue, 28 Nov 2023 05:17:35 GMT
Connection: Keep-Alive
Via: NS-CACHE-10.0: 5
Content-Type: text/javascript
Last-Modified: Fri, 25 Aug 2017 11:07:21 GMT
Content-Length: 22159
GET
200
https://srtk.hometax.go.kr/download/jquery-1.11.1.min.js
REQUEST
RESPONSE
BODY
GET /download/jquery-1.11.1.min.js HTTP/1.1
Accept: application/javascript, */*;q=0.8
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: srtk.hometax.go.kr
Connection: Keep-Alive
HTTP/1.1 200 OK
Age: 1683
Date: Tue, 28 Nov 2023 05:17:35 GMT
Connection: Keep-Alive
Via: NS-CACHE-10.0: 5
Content-Type: text/javascript
Last-Modified: Fri, 25 Aug 2017 11:07:21 GMT
Content-Length: 95786
GET
200
https://srtk.hometax.go.kr/download/cri.css?v=1
REQUEST
RESPONSE
BODY
GET /download/cri.css?v=1 HTTP/1.1
Accept: text/css
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: srtk.hometax.go.kr
Connection: Keep-Alive
HTTP/1.1 200 OK
Age: 122
Date: Tue, 28 Nov 2023 05:43:37 GMT
Connection: Keep-Alive
Via: NS-CACHE-10.0: 5
Content-Type: text/css
Last-Modified: Fri, 22 Sep 2017 00:28:29 GMT
Content-Length: 7627
GET
200
https://srtk.hometax.go.kr/download/components/enc-cp949-min.js
REQUEST
RESPONSE
BODY
GET /download/components/enc-cp949-min.js HTTP/1.1
Accept: application/javascript, */*;q=0.8
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: srtk.hometax.go.kr
Connection: Keep-Alive
HTTP/1.1 200 OK
Age: 1442
Date: Tue, 28 Nov 2023 05:21:37 GMT
Connection: Keep-Alive
Via: NS-CACHE-10.0: 5
Content-Type: text/javascript
Last-Modified: Fri, 25 Aug 2017 11:07:21 GMT
Content-Length: 221488
GET
200
https://srtk.hometax.go.kr/download/rollups/aes.js
REQUEST
RESPONSE
BODY
GET /download/rollups/aes.js HTTP/1.1
Accept: application/javascript, */*;q=0.8
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: srtk.hometax.go.kr
Connection: Keep-Alive
HTTP/1.1 200 OK
Age: 702
Date: Tue, 28 Nov 2023 05:33:56 GMT
Connection: Keep-Alive
Via: NS-CACHE-10.0: 5
Content-Type: text/javascript
Last-Modified: Fri, 25 Aug 2017 10:51:20 GMT
Content-Length: 12236
GET
200
https://srtk.hometax.go.kr/download/cri_ems_nt.js?v=1
REQUEST
RESPONSE
BODY
GET /download/cri_ems_nt.js?v=1 HTTP/1.1
Accept: application/javascript, */*;q=0.8
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: srtk.hometax.go.kr
Connection: Keep-Alive
HTTP/1.1 200 OK
Age: 1506
Date: Tue, 28 Nov 2023 05:20:32 GMT
Connection: Keep-Alive
Via: NS-CACHE-10.0: 5
Content-Type: text/javascript
Last-Modified: Tue, 24 Nov 2020 14:48:23 GMT
Content-Length: 47802
GET
200
https://srtk.hometax.go.kr/download/rollups/md5.js
REQUEST
RESPONSE
BODY
GET /download/rollups/md5.js HTTP/1.1
Accept: application/javascript, */*;q=0.8
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: srtk.hometax.go.kr
Connection: Keep-Alive
HTTP/1.1 200 OK
Age: 1337
Date: Tue, 28 Nov 2023 05:23:22 GMT
Connection: Keep-Alive
Via: NS-CACHE-10.0: 5
Content-Type: text/javascript
Last-Modified: Fri, 25 Aug 2017 11:07:21 GMT
Content-Length: 5077
GET
200
https://srtk.hometax.go.kr/download/img/security_pop_bt_close.png
REQUEST
RESPONSE
BODY
GET /download/img/security_pop_bt_close.png HTTP/1.1
Accept: image/png, image/svg+xml, image/*;q=0.8, */*;q=0.5
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: srtk.hometax.go.kr
Connection: Keep-Alive
HTTP/1.1 200 OK
Age: 553
Date: Tue, 28 Nov 2023 05:36:25 GMT
Connection: Keep-Alive
Via: NS-CACHE-10.0: 5
Content-Type: image/png
Last-Modified: Fri, 25 Aug 2017 10:51:20 GMT
Content-Length: 1089
GET
200
https://srtk.hometax.go.kr/download/img/security_pop_ic_lock.png
REQUEST
RESPONSE
BODY
GET /download/img/security_pop_ic_lock.png HTTP/1.1
Accept: image/png, image/svg+xml, image/*;q=0.8, */*;q=0.5
Accept-Language: ko-KR
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept-Encoding: gzip, deflate
Host: srtk.hometax.go.kr
Connection: Keep-Alive
HTTP/1.1 200 OK
Age: 1612
Date: Tue, 28 Nov 2023 05:18:46 GMT
Connection: Keep-Alive
Via: NS-CACHE-10.0: 5
Content-Type: image/png
Last-Modified: Fri, 25 Aug 2017 10:51:20 GMT
Content-Length: 4433
GET
200
http://ie9cvlist.ie.microsoft.com/IE9CompatViewList.xml
REQUEST
RESPONSE
BODY
GET /IE9CompatViewList.xml HTTP/1.1
Accept: */*
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Host: ie9cvlist.ie.microsoft.com
If-Modified-Since: Thu, 21 Nov 2019 19:37:08 GMT
If-None-Match: 0x8D76EBA32AF0BC3
Connection: Keep-Alive
HTTP/1.1 200 OK
Content-Encoding: gzip
Age: 2091
Cache-Control: max-age=21600
Content-MD5: p9g4jsuZO6TaLMVAI9ujVg==
Content-Type: text/xml
Date: Tue, 28 Nov 2023 05:46:36 GMT
Etag: 0x8D9521D2D2DF1EC
Last-Modified: Wed, 28 Jul 2021 23:12:31 GMT
Server: ECAcc (tka/897A)
Vary: Accept-Encoding
X-Cache: HIT
x-ms-blob-type: BlockBlob
x-ms-lease-status: unlocked
x-ms-request-id: d7968daa-101e-001c-75b9-213515000000
x-ms-version: 2009-09-19
Content-Length: 13702
ICMP traffic
Source | Destination | ICMP Type | Data |
---|---|---|---|
8.8.8.8 | 192.168.56.101 | 0 | abcdefghijklmnopqrstuvwabcdefghi |
IRC traffic
No IRC requests performed.
Suricata Alerts
Suricata TLS
Flow | Issuer | Subject | Fingerprint |
---|---|---|---|
TLSv1 192.168.56.101:49177 116.67.103.155:443 |
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA | serialNumber=102-83-01521, unknown=KR, unknown=Government Entity, C=KR, ST=Sejong, O=National Tax Service, CN=www.hometax.go.kr | ad:c7:ba:35:01:64:a2:d8:57:ab:3a:46:65:c0:86:75:e4:5d:39:92 |
TLSv1 192.168.56.101:49176 116.67.103.155:443 |
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA | serialNumber=102-83-01521, unknown=KR, unknown=Government Entity, C=KR, ST=Sejong, O=National Tax Service, CN=www.hometax.go.kr | ad:c7:ba:35:01:64:a2:d8:57:ab:3a:46:65:c0:86:75:e4:5d:39:92 |
TLSv1 192.168.56.101:49178 116.67.103.155:443 |
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA | serialNumber=102-83-01521, unknown=KR, unknown=Government Entity, C=KR, ST=Sejong, O=National Tax Service, CN=www.hometax.go.kr | ad:c7:ba:35:01:64:a2:d8:57:ab:3a:46:65:c0:86:75:e4:5d:39:92 |
TLSv1 192.168.56.101:49175 116.67.103.155:443 |
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA | serialNumber=102-83-01521, unknown=KR, unknown=Government Entity, C=KR, ST=Sejong, O=National Tax Service, CN=www.hometax.go.kr | ad:c7:ba:35:01:64:a2:d8:57:ab:3a:46:65:c0:86:75:e4:5d:39:92 |
TLSv1 192.168.56.101:49179 116.67.103.155:443 |
None | None | None |
TLSv1 192.168.56.101:49174 116.67.103.155:443 |
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA | serialNumber=102-83-01521, unknown=KR, unknown=Government Entity, C=KR, ST=Sejong, O=National Tax Service, CN=www.hometax.go.kr | ad:c7:ba:35:01:64:a2:d8:57:ab:3a:46:65:c0:86:75:e4:5d:39:92 |
TLSv1 192.168.56.101:49180 116.67.103.155:443 |
None | None | None |
TLSv1 192.168.56.101:49173 116.67.103.155:443 |
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA | serialNumber=102-83-01521, unknown=KR, unknown=Government Entity, C=KR, ST=Sejong, O=National Tax Service, CN=www.hometax.go.kr | ad:c7:ba:35:01:64:a2:d8:57:ab:3a:46:65:c0:86:75:e4:5d:39:92 |
Snort Alerts
No Snort Alerts