分析类型 | 虚拟机标签 | 开始时间 | 结束时间 | 持续时间 |
---|---|---|---|---|
URL | win7-sp1-x64-hpdapp01-1 | 2019-11-16 00:45:51 | 2019-11-16 00:48:02 | 131 秒 |
URL |
---|
URL专业沙箱检测 -> https://d.xiaope.net/cn_xiaope_9.0_190814_x64.iso |
无主机纪录.
Name: None Country: CN State: Beijing City: None ZIP Code: None Address: None Orginization: A Li Yun Ji Suan You Xian Gong Si Domain Name(s): XIAOPE.NET xiaope.net Creation Date: 2019-02-11 10:46:32 Updated Date: 2019-07-25 11:53:58 2019-02-11 10:46:33 Expiration Date: 2020-02-11 10:46:32 Email(s): abuse@godaddy.com Registrar(s): GoDaddy.com, LLC Name Server(s): DEE.NS.CLOUDFLARE.COM GORDON.NS.CLOUDFLARE.COM Referral URL(s): None
无主机纪录.
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49161 | 13.107.136.9 zihanguoffice-my.sharepoint.com | 443 |
192.168.122.201 | 49160 | 149.129.38.1 d.xiaope.net | 443 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49608 | 192.168.122.1 | 53 |
192.168.122.201 | 64912 | 192.168.122.1 | 53 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49161 | 13.107.136.9 zihanguoffice-my.sharepoint.com | 443 |
192.168.122.201 | 49160 | 149.129.38.1 d.xiaope.net | 443 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49608 | 192.168.122.1 | 53 |
192.168.122.201 | 64912 | 192.168.122.1 | 53 |
未发现HTTP请求.
无SMTP流量.
无IRC请求.
无ICMP流量.
无 CIF 结果
无警报
Timestamp | Source IP | Source Port | Destination IP | Destination Port | Version | Issuer | Subject | Fingerprint |
---|---|---|---|---|---|---|---|---|
2019-11-16 00:46:18.564227+0800 | 192.168.122.201 | 49160 | 149.129.38.1 | 443 | TLS 1.2 | C=US, O=Let's Encrypt, CN=Let's Encrypt Authority X3 | CN=d.xiaope.net | 9c:f0:da:8b:e7:4e:3b:e2:a2:dd:fc:bb:d6:ce:85:54:dc:ab:ef:62 |
2019-11-16 00:46:21.930930+0800 | 192.168.122.201 | 49161 | 13.107.136.9 | 443 | TLS 1.2 | C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, OU=Microsoft IT, CN=Microsoft IT TLS CA 1 | C=US, ST=WA, L=Redmond, O=Microsoft Corporation, OU=Microsoft Corporation, CN=*.sharepoint.com | 7c:a6:dc:41:15:7f:1c:7a:e0:4d:86:73:c3:7b:fc:f0:dc:8e:46:3d |
No Suricata HTTP
HTML 总结报告 (需15-60分钟同步) |
下载 |
---|
Task ID | 460010 |
---|---|
Mongo ID | 5dced6e82f8f2e58c48368c3 |
Cuckoo release | 1.4-Maldun |