Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
icanhazip.com | 104.16.184.241 | |
api.mylnikov.org | 104.21.44.66 | |
api.telegram.org | 149.154.167.220 |
GET
200
https://api.mylnikov.org/geolocation/wifi?v=1.1&bssid=0a:00:27:00:00:00
REQUEST
RESPONSE
BODY
GET /geolocation/wifi?v=1.1&bssid=0a:00:27:00:00:00 HTTP/1.1
Host: api.mylnikov.org
Connection: Keep-Alive
HTTP/1.1 200 OK
Date: Sat, 17 Aug 2024 13:16:00 GMT
Content-Type: application/json; charset=utf8
Content-Length: 88
Connection: keep-alive
Access-Control-Allow-Origin: *
Cache-Control: max-age=2678400
CF-Cache-Status: MISS
Last-Modified: Sat, 17 Aug 2024 13:16:00 GMT
Accept-Ranges: bytes
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=xplXyxBiAiUWEJGNzjNstcuTUwxvARxceKkOkGe9dBtGi%2Bq4n3FseAR0prPmvaiM6WNgNMJsFiEd%2FQDCjtTitpDOPDFC%2Fq2xbjOPluYsbeUSa0LZ9j%2B%2BS6NXFMMUdN2k7jTj"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Strict-Transport-Security: max-age=0; preload
X-Content-Type-Options: nosniff
Server: cloudflare
CF-RAY: 8b49ef9f2ab70906-LAX
alt-svc: h3=":443"; ma=86400
GET
200
http://icanhazip.com/
REQUEST
RESPONSE
BODY
GET / HTTP/1.1
Host: icanhazip.com
Connection: Keep-Alive
HTTP/1.1 200 OK
Date: Sat, 17 Aug 2024 13:15:58 GMT
Content-Type: text/plain
Content-Length: 16
Connection: keep-alive
Access-Control-Allow-Origin: *
Access-Control-Allow-Methods: GET
Set-Cookie: __cf_bm=eKoADUXZ_xqVNEb51lGVSj3P_XEUBgQqlpDnBacm0b0-1723900558-1.0.1.1-Z4RRb08VB3jA5M8TVvxgNkF1y3x_n0_xbzRN_Wzj8zoL7rdx2PiAA4JR.f17JIveRRgFclnQ76N8DfKoPnXkKQ; path=/; expires=Sat, 17-Aug-24 13:45:58 GMT; domain=.icanhazip.com; HttpOnly
Server: cloudflare
CF-RAY: 8b49ef98eee53077-ICN
alt-svc: h3=":443"; ma=86400
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
Suricata TLS
Flow | Issuer | Subject | Fingerprint |
---|---|---|---|
TLS 1.2 192.168.56.103:49179 104.21.44.66:443 |
C=US, O=Google Trust Services, CN=WE1 | CN=mylnikov.org | 02:37:7c:02:dd:73:81:8e:66:ea:4a:15:58:23:d8:bd:6d:a6:d0:39 |
Snort Alerts
No Snort Alerts