Hosts
No hosts contacted.
TCP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
49198 |
124.225.105.97 www.download.windowsupdate.com |
80 |
| 192.168.56.101 |
49199 |
151.139.128.14 ocsp.usertrust.com |
80 |
| 192.168.56.101 |
49200 |
151.139.128.14 ocsp.usertrust.com |
80 |
| 192.168.56.101 |
49205 |
151.139.128.14 ocsp.usertrust.com |
80 |
| 192.168.56.101 |
49220 |
151.139.128.14 ocsp.usertrust.com |
80 |
| 192.168.56.101 |
49189 |
209.222.0.52 www.installaware.com |
80 |
| 192.168.56.101 |
49190 |
209.222.0.52 www.installaware.com |
443 |
UDP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
49710 |
114.114.114.114 |
53 |
| 192.168.56.101 |
49713 |
114.114.114.114 |
53 |
| 192.168.56.101 |
50002 |
114.114.114.114 |
53 |
| 192.168.56.101 |
50320 |
114.114.114.114 |
53 |
| 192.168.56.101 |
53657 |
114.114.114.114 |
53 |
| 192.168.56.101 |
54178 |
114.114.114.114 |
53 |
| 192.168.56.101 |
57089 |
114.114.114.114 |
53 |
| 192.168.56.101 |
58070 |
114.114.114.114 |
53 |
| 192.168.56.101 |
60384 |
114.114.114.114 |
53 |
| 192.168.56.101 |
62144 |
114.114.114.114 |
53 |
| 192.168.56.101 |
62318 |
114.114.114.114 |
53 |
| 192.168.56.101 |
62912 |
114.114.114.114 |
53 |
| 192.168.56.101 |
137 |
192.168.56.255 |
137 |
| 192.168.56.101 |
138 |
192.168.56.255 |
138 |
| 192.168.56.101 |
123 |
20.189.79.72 time.windows.com |
123 |
| 192.168.56.101 |
49235 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
50534 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
50849 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
51808 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
51963 |
224.0.0.252 |
5355 |
HTTP & HTTPS Requests
| URI |
Data |
| http://www.installaware.com/ |
GET / HTTP/1.1
Accept: */*
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Host: www.installaware.com
Connection: Keep-Alive
|
| http://crl.comodoca.com/AAACertificateServices.crl |
GET /AAACertificateServices.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.comodoca.com
|
| http://ocsp.usertrust.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTNMNJMNDqCqx8FcBWK16EHdimS6QQUU3m%2FWqorSs9UgOHYm8Cd8rIDZssCEH1bUSa0droR23QWC7xTDac%3D |
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBTNMNJMNDqCqx8FcBWK16EHdimS6QQUU3m%2FWqorSs9UgOHYm8Cd8rIDZssCEH1bUSa0droR23QWC7xTDac%3D HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.usertrust.com
|
| http://ocsp.comodoca.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBRTtU9uFqgVGHhJwXZyWCNXmVR5ngQUoBEKIz6W8Qfs4q8p74Klf9AwpLQCEDlyRDr5IrdR19NsEN0xNZU%3D |
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBRTtU9uFqgVGHhJwXZyWCNXmVR5ngQUoBEKIz6W8Qfs4q8p74Klf9AwpLQCEDlyRDr5IrdR19NsEN0xNZU%3D HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.comodoca.com
|
| http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1
Cache-Control: max-age = 3600
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Wed, 03 Mar 2021 06:32:16 GMT
If-None-Match: "0d8f4f3f6fd71:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: www.download.windowsupdate.com
|
| http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl |
GET /USERTrustRSACertificationAuthority.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.usertrust.com
|
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts