NetWork | ZeroBOX

Network Analysis

IP Address Status Action
146.59.154.106 Active Moloch
164.124.101.2 Active Moloch

No traffic

ICMP traffic

No ICMP traffic performed.

IRC traffic

No IRC requests performed.

Suricata Alerts

Flow SID Signature Category
UDP 192.168.56.103:52760 -> 164.124.101.2:53 2033268 ET POLICY Observed DNS Query to Coin Mining Domain (nanopool .org) Potential Corporate Privacy Violation

Suricata TLS

Flow Issuer Subject Fingerprint
TLS 1.3
192.168.56.103:49162
146.59.154.106:14433
None None None

Snort Alerts

No Snort Alerts