Hosts
No hosts contacted.
TCP
Source |
Source Port |
Destination |
Destination Port |
192.168.56.101 |
49178 |
203.208.41.97 www.google-analytics.com |
443 |
192.168.56.101 |
49182 |
217.69.139.110 browser.cdnmail.ru |
443 |
192.168.56.101 |
49179 |
217.69.139.245 mrds.mail.ru |
80 |
192.168.56.101 |
49180 |
217.69.139.245 mrds.mail.ru |
80 |
UDP
Source |
Source Port |
Destination |
Destination Port |
192.168.56.101 |
49713 |
114.114.114.114 |
53 |
192.168.56.101 |
50002 |
114.114.114.114 |
53 |
192.168.56.101 |
50568 |
114.114.114.114 |
53 |
192.168.56.101 |
53237 |
114.114.114.114 |
53 |
192.168.56.101 |
55368 |
114.114.114.114 |
53 |
192.168.56.101 |
57756 |
114.114.114.114 |
53 |
192.168.56.101 |
60384 |
114.114.114.114 |
53 |
192.168.56.101 |
62318 |
114.114.114.114 |
53 |
192.168.56.101 |
137 |
192.168.56.255 |
137 |
192.168.56.101 |
138 |
192.168.56.255 |
138 |
192.168.56.101 |
123 |
20.189.79.72 time.windows.com |
123 |
192.168.56.101 |
51963 |
224.0.0.252 |
5355 |
192.168.56.101 |
53657 |
224.0.0.252 |
5355 |
192.168.56.101 |
56804 |
224.0.0.252 |
5355 |
192.168.56.101 |
57236 |
224.0.0.252 |
5355 |
192.168.56.101 |
57874 |
224.0.0.252 |
5355 |
192.168.56.101 |
58367 |
224.0.0.252 |
5355 |
192.168.56.101 |
62191 |
224.0.0.252 |
5355 |
192.168.56.101 |
62912 |
224.0.0.252 |
5355 |
192.168.56.101 |
63429 |
224.0.0.252 |
5355 |
HTTP & HTTPS Requests
URI |
Data |
http://mrds.mail.ru/update/2/version.txt?type=loader_install&BID=%7B0FE5B21E-650F-4BE7-9EB3-E254D6956DD4%7D&kind=atom&masterid=%7BEC62C4D3-1690-429F-81A8-C9A02791C0C0%7D&rfr=&newrfr=496600&os=6.1&ver=3.1.0.88&old_mr1lad=5ec7a6a61656c9dd-3024036_2013344_496600-3024036_2013344_496600-3024036_2013344_496600&send_stats=1&statistic=0 |
GET /update/2/version.txt?type=loader_install&BID=%7B0FE5B21E-650F-4BE7-9EB3-E254D6956DD4%7D&kind=atom&masterid=%7BEC62C4D3-1690-429F-81A8-C9A02791C0C0%7D&rfr=&newrfr=496600&os=6.1&ver=3.1.0.88&old_mr1lad=5ec7a6a61656c9dd-3024036_2013344_496600-3024036_2013344_496600-3024036_2013344_496600&send_stats=1&statistic=0 HTTP/1.1
Connection: Close
User-Agent: AtomLoader
Host: mrds.mail.ru
|
http://mrds.mail.ru/update/2/version.txt?type=loader_run&BID=%7B0FE5B21E-650F-4BE7-9EB3-E254D6956DD4%7D&kind=atom&masterid=%7BEC62C4D3-1690-429F-81A8-C9A02791C0C0%7D&rfr=&newrfr=496600&os=6.1&ver=3.1.0.88&old_mr1lad=5ec7a6a61656c9dd-3024036_2013344_496600-3024036_2013344_496600-3024036_2013344_496600&send_stats=1&dsa=0 |
GET /update/2/version.txt?type=loader_run&BID=%7B0FE5B21E-650F-4BE7-9EB3-E254D6956DD4%7D&kind=atom&masterid=%7BEC62C4D3-1690-429F-81A8-C9A02791C0C0%7D&rfr=&newrfr=496600&os=6.1&ver=3.1.0.88&old_mr1lad=5ec7a6a61656c9dd-3024036_2013344_496600-3024036_2013344_496600-3024036_2013344_496600&send_stats=1&dsa=0 HTTP/1.1
Connection: Close
User-Agent: AtomLoader
Host: mrds.mail.ru
|
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts