NetWork | ZeroBOX

Network Analysis

IP Address Status Action
136.243.104.235 Active Moloch
164.124.101.2 Active Moloch
188.42.129.148 Active Moloch
Name Response Post-Analysis Lookup
rl.ammyy.com 188.42.129.148
POST 200 http://rl.ammyy.com/
REQUEST
RESPONSE

ICMP traffic

No ICMP traffic performed.

IRC traffic

No IRC requests performed.

Suricata Alerts

Flow SID Signature Category
TCP 192.168.56.101:49161 -> 188.42.129.148:80 2025149 ET POLICY IP Check (rl. ammyy. com) Potential Corporate Privacy Violation

Suricata TLS

No Suricata TLS

Snort Alerts

No Snort Alerts