Hosts
No hosts contacted.
TCP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
49185 |
27.148.188.35 www.download.windowsupdate.com |
80 |
| 192.168.56.101 |
49178 |
34.194.20.225 trk.slimwareutilities.com |
80 |
| 192.168.56.101 |
49176 |
34.227.55.118 apps-api.slimwareutilities.com |
80 |
| 192.168.56.101 |
49177 |
52.207.195.86 trk.slimwareutilities.com |
80 |
| 192.168.56.101 |
49182 |
52.85.56.131 x.ss2.us |
80 |
| 192.168.56.101 |
49179 |
54.192.147.5 download.driverupdate.net |
443 |
| 192.168.56.101 |
49188 |
54.192.147.5 download.driverupdate.net |
443 |
UDP
| Source |
Source Port |
Destination |
Destination Port |
| 192.168.56.101 |
49713 |
114.114.114.114 |
53 |
| 192.168.56.101 |
50002 |
114.114.114.114 |
53 |
| 192.168.56.101 |
53210 |
114.114.114.114 |
53 |
| 192.168.56.101 |
53380 |
114.114.114.114 |
53 |
| 192.168.56.101 |
53657 |
114.114.114.114 |
53 |
| 192.168.56.101 |
54260 |
114.114.114.114 |
53 |
| 192.168.56.101 |
57236 |
114.114.114.114 |
53 |
| 192.168.56.101 |
60384 |
114.114.114.114 |
53 |
| 192.168.56.101 |
60911 |
114.114.114.114 |
53 |
| 192.168.56.101 |
62318 |
114.114.114.114 |
53 |
| 192.168.56.101 |
62912 |
114.114.114.114 |
53 |
| 192.168.56.101 |
137 |
192.168.56.255 |
137 |
| 192.168.56.101 |
138 |
192.168.56.255 |
138 |
| 192.168.56.101 |
123 |
20.189.79.72 time.windows.com |
123 |
| 192.168.56.101 |
49235 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
50534 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
50849 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
51808 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
51963 |
224.0.0.252 |
5355 |
| 192.168.56.101 |
53500 |
224.0.0.252 |
5355 |
HTTP & HTTPS Requests
| URI |
Data |
| http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1
Cache-Control: max-age = 3600
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Wed, 03 Mar 2021 06:32:16 GMT
If-None-Match: "0d8f4f3f6fd71:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: www.download.windowsupdate.com
|
| http://x.ss2.us/x.cer |
GET /x.cer HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: x.ss2.us
|
| http://apps-api.slimwareutilities.com/install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=A69E74E1-9913-4302-848B-CCE358278AF0 |
GET /install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=A69E74E1-9913-4302-848B-CCE358278AF0 HTTP/1.1
Connection: Keep-Alive
User-Agent: DriverUpdate Installer/2.24.2.28 (os:windows; ver:6.1; arc:AMD64)
Host: apps-api.slimwareutilities.com
|
| http://apps-api.slimwareutilities.com/install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=A69E74E1-9913-4302-848B-CCE358278AF0 |
GET /install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=A69E74E1-9913-4302-848B-CCE358278AF0 HTTP/1.1
Connection: Keep-Alive
User-Agent: DriverUpdate Installer/2.24.2.28 (os:windows; ver:6.1; arc:AMD64)
Host: apps-api.slimwareutilities.com
Cookie: AWSALBCORS=0Y4iIMB35VpCOyHt4YWXgr6S2VOhBoeCuC0L2pqS/N8keIZCn0nCofHQOi642OFulQQSJEVchMGGDhu9utuiksC8+P0gwil9hERL1t1xjRYHLXWI+4KmzzytNbIQ; AWSALB=0Y4iIMB35VpCOyHt4YWXgr6S2VOhBoeCuC0L2pqS/N8keIZCn0nCofHQOi642OFulQQSJEVchMGGDhu9utuiksC8+P0gwil9hERL1t1xjRYHLXWI+4KmzzytNbIQ
|
| http://trk.slimwareutilities.com/ulc.php?ev=InstallerInvoked&upl=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&machineId=A69E74E1-9913-4302-848B-CCE358278AF0&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.2.28&product=SW2&msBclVersion=4.0.0 |
GET /ulc.php?ev=InstallerInvoked&upl=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&machineId=A69E74E1-9913-4302-848B-CCE358278AF0&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.2.28&product=SW2&msBclVersion=4.0.0 HTTP/1.1
Connection: Keep-Alive
User-Agent: DriverUpdate Installer/2.24.2.28 (os:windows; ver:6.1; arc:AMD64)
Host: trk.slimwareutilities.com
|
| http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1
Cache-Control: max-age = 900
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Mon, 19 Apr 2021 20:17:25 GMT
If-None-Match: "80f8835935d71:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: www.download.windowsupdate.com
|
| http://trk.slimwareutilities.com/ulc.php?ev=InstallerAccepted&upl=YToxMzp7czo5OiJ1bF9zdHViaWQiO3M6MzY6IjNiYThmZWQ0LTc5ZjMtNDhjYS04MGM3LTc3MjkzZDFhNzlmNSI7czoxMDoidWxfY29icmFuZCI7czozOiJTVzIiO3M6MTE6InVsX2NhbXBhaWduIjtzOjY6InhkbTUwNyI7czo4OiJ1bF9zdWJpZCI7czoyNzoiNDUweDUwX0ltYWdlQWQyX0Fza0hQQ2hyb21lIjtzOjc6InByb2R1Y3QiO3M6MzoiU1cyIjtzOjk6Im1zdGJ0cmFjayI7czo2OiJUVEFCMDMiO3M6MTE6Im1zdGJjb2JyYW5kIjtzOjM6IkJYWiI7czo3OiJtc3RiYWdlIjtzOjE6IjAiO3M6MTE6ImJyb3dzZXJUeXBlIjtzOjI6IklFIjtzOjE0OiJicm93c2VyVmVyc2lvbiI7czozOiI5LjAiO3M6MTU6ImJyb3dzZXJMYW5ndWFnZSI7czowOiIiO3M6MTA6InBsYXRmb3JtT1MiO3M6NzoiV2luZG93cyI7czoxNzoicGxhdGZvcm1PU1ZlcnNpb24iO3M6MzoiOS4wIjt9&machineId=A69E74E1-9913-4302-848B-CCE358278AF0&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.2.28&product=SW2 |
GET /ulc.php?ev=InstallerAccepted&upl=YToxMzp7czo5OiJ1bF9zdHViaWQiO3M6MzY6IjNiYThmZWQ0LTc5ZjMtNDhjYS04MGM3LTc3MjkzZDFhNzlmNSI7czoxMDoidWxfY29icmFuZCI7czozOiJTVzIiO3M6MTE6InVsX2NhbXBhaWduIjtzOjY6InhkbTUwNyI7czo4OiJ1bF9zdWJpZCI7czoyNzoiNDUweDUwX0ltYWdlQWQyX0Fza0hQQ2hyb21lIjtzOjc6InByb2R1Y3QiO3M6MzoiU1cyIjtzOjk6Im1zdGJ0cmFjayI7czo2OiJUVEFCMDMiO3M6MTE6Im1zdGJjb2JyYW5kIjtzOjM6IkJYWiI7czo3OiJtc3RiYWdlIjtzOjE6IjAiO3M6MTE6ImJyb3dzZXJUeXBlIjtzOjI6IklFIjtzOjE0OiJicm93c2VyVmVyc2lvbiI7czozOiI5LjAiO3M6MTU6ImJyb3dzZXJMYW5ndWFnZSI7czowOiIiO3M6MTA6InBsYXRmb3JtT1MiO3M6NzoiV2luZG93cyI7czoxNzoicGxhdGZvcm1PU1ZlcnNpb24iO3M6MzoiOS4wIjt9&machineId=A69E74E1-9913-4302-848B-CCE358278AF0&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.2.28&product=SW2 HTTP/1.1
Connection: Keep-Alive
User-Agent: DriverUpdate Installer/2.24.2.28 (os:windows; ver:6.1; arc:AMD64)
Host: trk.slimwareutilities.com
|
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts