Hosts
No hosts contacted.
TCP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
49174 |
113.96.200.36 master.etl.desktop.qq.com |
443 |
| 192.168.56.101 |
49175 |
183.3.225.35 c.gj.qq.com |
80 |
| 52.218.29.252 |
80 |
192.168.56.101 |
49180 |
UDP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
50534 |
114.114.114.114 |
53 |
| 192.168.56.101 |
51808 |
114.114.114.114 |
53 |
| 192.168.56.101 |
51963 |
114.114.114.114 |
53 |
| 192.168.56.101 |
56539 |
114.114.114.114 |
53 |
| 192.168.56.101 |
57874 |
114.114.114.114 |
53 |
| 192.168.56.101 |
58367 |
114.114.114.114 |
53 |
| 192.168.56.101 |
65004 |
114.114.114.114 |
53 |
| 192.168.56.101 |
137 |
192.168.56.255 |
137 |
| 192.168.56.101 |
138 |
192.168.56.255 |
138 |
| 192.168.56.101 |
49235 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
51378 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
56804 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
60123 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
62191 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
1900 |
239.255.255.250 |
1900 |
| 192.168.56.101 |
50535 |
239.255.255.250 |
3702 |
| 192.168.56.101 |
56540 |
239.255.255.250 |
3702 |
| 192.168.56.101 |
56807 |
239.255.255.250 |
1900 |
| 192.168.56.101 |
58368 |
239.255.255.250 |
3702 |
| 192.168.56.101 |
58707 |
239.255.255.250 |
3702 |
HTTP & HTTPS Requests
| URI |
Data |
| http://c.gj.qq.com/fcgi-bin/downurlquery?id=1331&guid=QN2U1b7Dzh4mWfuPJfnvwWmcR3k7VBi7SQLAkK8nC/0Dd%2BjqRqFt5RvIH7X5afSf&ver=13.0.12.101 |
GET /fcgi-bin/downurlquery?id=1331&guid=QN2U1b7Dzh4mWfuPJfnvwWmcR3k7VBi7SQLAkK8nC/0Dd%2BjqRqFt5RvIH7X5afSf&ver=13.0.12.101 HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
User-Agent: Mozilla/5.0 (compatible; MSIE 8.0; Windows NT 6.1; QQPCMgr7.0)
Host: c.gj.qq.com
|
| http://c.gj.qq.com/packconfig?serviceid=2230&clientver=1000&gjguid=19d12084090d3e540288d4a43ebf20e6&check=23141809&livetime=0 |
GET /packconfig?serviceid=2230&clientver=1000&gjguid=19d12084090d3e540288d4a43ebf20e6&check=23141809&livetime=0 HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
User-Agent: Mozilla/5.0 (compatible; MSIE 8.0; Windows NT 6.1; QQPCMgr7.0)
Host: c.gj.qq.com
|
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts