Hosts
No hosts contacted.
TCP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
49178 |
117.18.237.29 ocsp.digicert.com |
80 |
| 192.168.56.101 |
49176 |
124.225.105.97 www.download.windowsupdate.com |
80 |
UDP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
49235 |
114.114.114.114 |
53 |
| 192.168.56.101 |
51808 |
114.114.114.114 |
53 |
| 192.168.56.101 |
55368 |
114.114.114.114 |
53 |
| 192.168.56.101 |
56539 |
114.114.114.114 |
53 |
| 192.168.56.101 |
57236 |
114.114.114.114 |
53 |
| 192.168.56.101 |
57367 |
114.114.114.114 |
53 |
| 192.168.56.101 |
58070 |
114.114.114.114 |
53 |
| 192.168.56.101 |
63429 |
114.114.114.114 |
53 |
| 192.168.56.101 |
65004 |
114.114.114.114 |
53 |
| 192.168.56.101 |
137 |
192.168.56.255 |
137 |
| 192.168.56.101 |
138 |
192.168.56.255 |
138 |
| 192.168.56.101 |
123 |
20.189.79.72 time.windows.com |
123 |
| 192.168.56.101 |
49713 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
50568 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
51378 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
51963 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
53210 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
53237 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
53500 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
54178 |
224.0.0.252 |
5355 |
HTTP & HTTPS Requests
| URI |
Data |
| http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTfqhLjKLEJQZPin0KCzkdAQpVYowQUsT7DaQP4v0cB1JgmGggC72NkK8MCEAPxtOFfOoLxFJZ4s9fYR1w%3D |
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBTfqhLjKLEJQZPin0KCzkdAQpVYowQUsT7DaQP4v0cB1JgmGggC72NkK8MCEAPxtOFfOoLxFJZ4s9fYR1w%3D HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.digicert.com
|
| http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1
Cache-Control: max-age = 3600
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Wed, 03 Mar 2021 06:32:16 GMT
If-None-Match: "0d8f4f3f6fd71:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: www.download.windowsupdate.com
|
| http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSPwl%2BrBFlJbvzLXU1bGW08VysJ2wQUj%2Bh%2B8G0yagAFI8dwl2o6kP9r6tQCEAk%2F5j0aX2jxTsqshxoD96M%3D |
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBSPwl%2BrBFlJbvzLXU1bGW08VysJ2wQUj%2Bh%2B8G0yagAFI8dwl2o6kP9r6tQCEAk%2F5j0aX2jxTsqshxoD96M%3D HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.digicert.com
|
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts