NetWork | ZeroBOX

Network Analysis

IP Address Status Action
164.124.101.2 Active Moloch
91.92.247.161 Active Moloch
91.92.247.96 Active Moloch
Name Response Post-Analysis Lookup
No hosts contacted.
GET 200 http://91.92.247.161/zhark/api.php?id=b98311500ce6100fb01cd1be7ad4b7db&us=test22&mn=TEST22-PC&os=Windows%207%20Professional%20N&bld=1.0.3B
REQUEST
RESPONSE
GET 200 http://91.92.247.96/async.exe
REQUEST
RESPONSE
GET 200 http://91.92.247.161/zhark/api.php?id=b98311500ce6100fb01cd1be7ad4b7db&us=test22&mn=TEST22-PC&os=Windows%207%20Professional%20N&bld=1.0.3B&tsk=29
REQUEST
RESPONSE
GET 200 http://91.92.247.161/zhark/api.php?id=b98311500ce6100fb01cd1be7ad4b7db&us=test22&mn=TEST22-PC&os=Windows%207%20Professional%20N&bld=1.0.3B
REQUEST
RESPONSE

ICMP traffic

Source Destination ICMP Type Data
1.1.1.1 192.168.56.103 0 abcdefghijklmnopqrstuvwabcdefghi
1.1.1.1 192.168.56.103 0 abcdefghijklmnopqrstuvwabcdefghi
1.1.1.1 192.168.56.103 0 abcdefghijklmnopqrstuvwabcdefghi
1.1.1.1 192.168.56.103 0 abcdefghijklmnopqrstuvwabcdefghi

IRC traffic

No IRC requests performed.

Snort Alerts

No Snort Alerts