NetWork | ZeroBOX

Network Analysis

IP Address Status Action
164.124.101.2 Active Moloch
54.39.152.114 Active Moloch
Name Response Post-Analysis Lookup
jelepenorocks.com 54.39.152.114

No traffic

ICMP traffic

No ICMP traffic performed.

IRC traffic

Command Params Type
PASS request. client
USER AGENT client
TIME CONDITIONS client
CONNECT %s HTTP/%s client
USER %s\x00%02x\x00\x00\x00\x00APOP %s %s\x00\x00LIST\x00\x00\x00\x00RETR\x00\x00\x00\x00Got unexpected pop3-server response\x00STLS not supported.\x00Authentication failed: %d\x00\x00\x00Access denied. %c\x00\x00\x00PASS %s\x00+APOP\x00\x00\x00FTP\x00FTPS\x00\x00\x00\x00Error accept()ing server connect\x00\x00\x00\x00Connection accepted from server client
CONNECT \x00\x00\x003D3783A0703A11DE8C7A806E6F6E6963\x0b\x00\x00\x00NODE_SERVERE\x00\x00\x00{"user":"test22","pc":"TEST22-PC","os":"","localip":"192.168.56.10 client

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Snort Alerts

No Snort Alerts