Network Analysis
- TCP Requests
-
-
192.168.56.103:49187 183.111.183.31:80www.mrart.co.kr
-
192.168.56.103:49188 183.111.183.31:80www.mrart.co.kr
-
192.168.56.103:49194 183.111.183.31:80www.mrart.co.kr
-
192.168.56.103:49178 194.9.94.86:80www.xn--matfrmn-jxa4m.se
-
192.168.56.103:49179 194.9.94.86:80www.xn--matfrmn-jxa4m.se
-
192.168.56.103:49180 194.9.94.86:80www.xn--matfrmn-jxa4m.se
-
192.168.56.103:49184 198.12.241.35:80www.aceautocorp.com
-
192.168.56.103:49185 198.12.241.35:80www.aceautocorp.com
-
192.168.56.103:49186 198.12.241.35:80www.aceautocorp.com
-
192.168.56.103:49170 45.33.6.223:80www.sqlite.org
-
192.168.56.103:49175 54.38.220.85:80www.kinkynerdspro.blog
-
192.168.56.103:49176 54.38.220.85:80www.kinkynerdspro.blog
-
192.168.56.103:49177 54.38.220.85:80www.kinkynerdspro.blog
-
192.168.56.103:49168 66.96.161.166:80www.terelprime.com
-
192.168.56.103:49169 66.96.161.166:80www.terelprime.com
-
192.168.56.103:49181 91.195.240.19:80www.primeplay88.org
-
192.168.56.103:49182 91.195.240.19:80www.primeplay88.org
-
192.168.56.103:49183 91.195.240.19:80www.primeplay88.org
-
- UDP Requests
-
-
192.168.56.103:50800 164.124.101.2:53
-
192.168.56.103:52760 164.124.101.2:53
-
192.168.56.103:53673 164.124.101.2:53
-
192.168.56.103:62576 164.124.101.2:53
-
192.168.56.103:64894 164.124.101.2:53
-
192.168.56.103:137 192.168.56.101:137
-
192.168.56.103:137 192.168.56.102:137
-
192.168.56.103:137 192.168.56.255:137
-
192.168.56.103:138 192.168.56.255:138
-
192.168.56.103:49154 239.255.255.250:1900
-
8.8.8.8:53 192.168.56.103:53658
-
8.8.8.8:53 192.168.56.103:56613
-
8.8.8.8:53 192.168.56.103:62576
-
8.8.8.8:53 192.168.56.103:64178
-
8.8.8.8:53 192.168.56.103:64530
-
No traffic
ICMP traffic
Source | Destination | ICMP Type | Data |
---|---|---|---|
192.168.56.103 | 164.124.101.2 | 3 |
IRC traffic
No IRC requests performed.
Suricata Alerts
Flow | SID | Signature | Category |
---|---|---|---|
TCP 192.168.56.103:49185 -> 198.12.241.35:80 | 2221033 | SURICATA HTTP Request abnormal Content-Encoding header | Generic Protocol Command Decode |
TCP 192.168.56.103:49184 -> 198.12.241.35:80 | 2221033 | SURICATA HTTP Request abnormal Content-Encoding header | Generic Protocol Command Decode |
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts