Network Analysis
IP Address | Status | Action |
---|---|---|
23.27.46.60 | Active | Moloch |
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
- TCP Requests
GET
200
http://23.27.46.60/a0001/0228-01/positivereduce.exe
REQUEST
RESPONSE
BODY
GET /a0001/0228-01/positivereduce.exe HTTP/1.1
User-Agent: Mozilla/5.0 (Windows NT; Windows NT 10.0; en-US) WindowsPowerShell/5.1.19041.5486
Host: 23.27.46.60
Connection: Keep-Alive
HTTP/1.1 200 OK
Date: Mon, 03 Mar 2025 05:51:54 GMT
Server: Apache/2.4.58 (Ubuntu)
Last-Modified: Fri, 28 Feb 2025 15:09:34 GMT
ETag: "1d7200-62f3531ba2a41"
Accept-Ranges: bytes
Content-Length: 1929728
Keep-Alive: timeout=5, max=100
Connection: Keep-Alive
Content-Type: application/x-msdos-program
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts