Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
tiendev.click | 103.153.64.233 |
- TCP Requests
GET
200
http://tiendev.click/main.bat
REQUEST
RESPONSE
BODY
GET /main.bat HTTP/1.1
User-Agent: AutoIt
Host: tiendev.click
Cache-Control: no-cache
HTTP/1.1 200 OK
Connection: Keep-Alive
Keep-Alive: timeout=5, max=100
content-type: application/x-msdownload
last-modified: Tue, 01 Apr 2025 14:54:51 GMT
accept-ranges: bytes
content-length: 524
date: Thu, 03 Apr 2025 00:46:09 GMT
server: LiteSpeed
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
Flow | SID | Signature | Category |
---|---|---|---|
TCP 192.168.56.101:49162 -> 103.153.64.233:80 | 2008350 | ET POLICY Autoit Windows Automation tool User-Agent in HTTP Request - Possibly Hostile | Potential Corporate Privacy Violation |
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts