Network Analysis
IP Address | Status | Action |
---|---|---|
106.247.248.106 | Active | Moloch |
129.134.26.123 | Active | Moloch |
129.250.35.250 | Active | Moloch |
164.124.101.2 | Active | Moloch |
17.253.68.251 | Active | Moloch |
216.239.35.4 | Active | Moloch |
61.205.120.130 | Active | Moloch |
62.149.0.30 | Active | Moloch |
91.108.241.156 | Active | Moloch |
94.198.159.10 | Active | Moloch |
- UDP Requests
-
-
192.168.56.101:52816 106.247.248.106:123pool.ntp.org
-
192.168.56.101:52816 129.134.26.123:123time.facebook.com
-
192.168.56.101:52816 129.250.35.250:123x.ns.gin.ntt.net
-
192.168.56.101:52815 164.124.101.2:53
-
192.168.56.101:53004 164.124.101.2:53
-
192.168.56.101:53850 164.124.101.2:53
-
192.168.56.101:54148 164.124.101.2:53
-
192.168.56.101:54883 164.124.101.2:53
-
192.168.56.101:55146 164.124.101.2:53
-
192.168.56.101:59002 164.124.101.2:53
-
192.168.56.101:61950 164.124.101.2:53
-
192.168.56.101:52816 17.253.68.251:123time.apple.com
-
192.168.56.101:137 192.168.56.255:137
-
192.168.56.101:138 192.168.56.255:138
-
192.168.56.101:52816 216.239.35.4:123time.google.com
-
192.168.56.101:49154 239.255.255.250:1900
-
192.168.56.101:52816 61.205.120.130:123ntp.nict.jp
-
192.168.56.101:52816 62.149.0.30:123ntp.time.in.ua
-
192.168.56.101:52816 94.198.159.10:123ntp.time.nl
-
No traffic
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
No Suricata Alerts
Suricata TLS
Flow | Issuer | Subject | Fingerprint |
---|---|---|---|
TLS 1.2 192.168.56.101:49165 91.108.241.156:6450 |
C=XX, ST=N/A, L=N/A, O=Self-signed certificate, CN=91.108.241.156: Self-signed certificate | C=XX, ST=N/A, L=N/A, O=Self-signed certificate, CN=91.108.241.156: Self-signed certificate | a4:a1:04:b9:d8:9e:94:ef:c4:9b:59:88:e0:15:d2:85:87:ca:2b:e9 |
TLS 1.2 192.168.56.101:49166 91.108.241.156:6450 |
C=XX, ST=N/A, L=N/A, O=Self-signed certificate, CN=91.108.241.156: Self-signed certificate | C=XX, ST=N/A, L=N/A, O=Self-signed certificate, CN=91.108.241.156: Self-signed certificate | a4:a1:04:b9:d8:9e:94:ef:c4:9b:59:88:e0:15:d2:85:87:ca:2b:e9 |
TLS 1.2 192.168.56.101:49167 91.108.241.156:6450 |
C=XX, ST=N/A, L=N/A, O=Self-signed certificate, CN=91.108.241.156: Self-signed certificate | C=XX, ST=N/A, L=N/A, O=Self-signed certificate, CN=91.108.241.156: Self-signed certificate | a4:a1:04:b9:d8:9e:94:ef:c4:9b:59:88:e0:15:d2:85:87:ca:2b:e9 |
TLS 1.2 192.168.56.101:49168 91.108.241.156:443 |
C=XX, ST=N/A, L=N/A, O=Self-signed certificate, CN=91.108.241.156: Self-signed certificate | C=XX, ST=N/A, L=N/A, O=Self-signed certificate, CN=91.108.241.156: Self-signed certificate | 60:1a:8a:4a:00:47:b8:2c:c4:4e:48:f7:cb:e5:ba:5c:fe:5d:b8:52 |
Snort Alerts
No Snort Alerts