分析类型 | 虚拟机标签 | 开始时间 | 结束时间 | 持续时间 |
---|---|---|---|---|
URL | win7-sp1-x64-hpdapp01-1 | 2020-01-16 20:23:02 | 2020-01-16 20:25:12 | 130 秒 |
URL |
---|
URL专业沙箱检测 -> https://about.draw.io/integrations/ |
无主机纪录.
Name: None Country: None State: None City: None ZIP Code: None Address: None Orginization: None Domain Name(s): None Creation Date: None Updated Date: None Expiration Date: None Email(s): None Registrar(s): None Name Server(s): None Referral URL(s): None
无主机纪录.
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49160 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49161 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49162 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49163 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49164 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49165 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49177 | 13.224.153.61 assets3.freshdesk.com | 443 |
192.168.122.201 | 49178 | 13.33.10.62 assets6.freshdesk.com | 443 |
192.168.122.201 | 49170 | 13.35.65.63 assets10.freshdesk.com | 443 |
192.168.122.201 | 49172 | 13.35.65.63 assets10.freshdesk.com | 443 |
192.168.122.201 | 49173 | 13.35.65.63 assets10.freshdesk.com | 443 |
192.168.122.201 | 49176 | 13.35.65.63 assets10.freshdesk.com | 443 |
192.168.122.201 | 49175 | 143.204.86.62 assets5.freshdesk.com | 443 |
192.168.122.201 | 49174 | 203.208.50.98 fonts.googleapis.com | 443 |
192.168.122.201 | 49169 | 34.198.166.98 desk.draw.io | 443 |
192.168.122.201 | 49166 | 52.216.140.118 s3.amazonaws.com | 443 |
192.168.122.201 | 49167 | 52.216.140.118 s3.amazonaws.com | 443 |
192.168.122.201 | 49171 | 99.84.62.61 assets8.freshdesk.com | 443 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49310 | 192.168.122.1 | 53 |
192.168.122.201 | 49608 | 192.168.122.1 | 53 |
192.168.122.201 | 49749 | 192.168.122.1 | 53 |
192.168.122.201 | 51856 | 192.168.122.1 | 53 |
192.168.122.201 | 58897 | 192.168.122.1 | 53 |
192.168.122.201 | 60905 | 192.168.122.1 | 53 |
192.168.122.201 | 62594 | 192.168.122.1 | 53 |
192.168.122.201 | 63681 | 192.168.122.1 | 53 |
192.168.122.201 | 64155 | 192.168.122.1 | 53 |
192.168.122.201 | 64725 | 192.168.122.1 | 53 |
192.168.122.201 | 64912 | 192.168.122.1 | 53 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49160 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49161 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49162 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49163 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49164 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49165 | 104.20.89.78 about.draw.io | 443 |
192.168.122.201 | 49177 | 13.224.153.61 assets3.freshdesk.com | 443 |
192.168.122.201 | 49178 | 13.33.10.62 assets6.freshdesk.com | 443 |
192.168.122.201 | 49170 | 13.35.65.63 assets10.freshdesk.com | 443 |
192.168.122.201 | 49172 | 13.35.65.63 assets10.freshdesk.com | 443 |
192.168.122.201 | 49173 | 13.35.65.63 assets10.freshdesk.com | 443 |
192.168.122.201 | 49176 | 13.35.65.63 assets10.freshdesk.com | 443 |
192.168.122.201 | 49175 | 143.204.86.62 assets5.freshdesk.com | 443 |
192.168.122.201 | 49174 | 203.208.50.98 fonts.googleapis.com | 443 |
192.168.122.201 | 49169 | 34.198.166.98 desk.draw.io | 443 |
192.168.122.201 | 49166 | 52.216.140.118 s3.amazonaws.com | 443 |
192.168.122.201 | 49167 | 52.216.140.118 s3.amazonaws.com | 443 |
192.168.122.201 | 49171 | 99.84.62.61 assets8.freshdesk.com | 443 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49310 | 192.168.122.1 | 53 |
192.168.122.201 | 49608 | 192.168.122.1 | 53 |
192.168.122.201 | 49749 | 192.168.122.1 | 53 |
192.168.122.201 | 51856 | 192.168.122.1 | 53 |
192.168.122.201 | 58897 | 192.168.122.1 | 53 |
192.168.122.201 | 60905 | 192.168.122.1 | 53 |
192.168.122.201 | 62594 | 192.168.122.1 | 53 |
192.168.122.201 | 63681 | 192.168.122.1 | 53 |
192.168.122.201 | 64155 | 192.168.122.1 | 53 |
192.168.122.201 | 64725 | 192.168.122.1 | 53 |
192.168.122.201 | 64912 | 192.168.122.1 | 53 |
未发现HTTP请求.
无SMTP流量.
无IRC请求.
源地址 | 目标地址 | ICMP类型 | 数据 |
---|---|---|---|
192.168.122.201 | 192.168.122.1 | 3 |
无 CIF 结果
无警报
Timestamp | Source IP | Source Port | Destination IP | Destination Port | Version | Issuer | Subject | Fingerprint |
---|---|---|---|---|---|---|---|---|
2020-01-16 20:23:30.447970+0800 | 192.168.122.201 | 49160 | 104.20.89.78 | 443 | TLS 1.2 | C=US, ST=CA, L=San Francisco, O=CloudFlare, Inc., CN=CloudFlare Inc ECC CA-2 | C=US, ST=CA, L=San Francisco, O=Cloudflare, Inc., CN=draw.io | aa:28:3d:eb:3a:3a:c1:45:76:51:58:d4:f0:12:09:f5:42:0c:ba:67 |
2020-01-16 20:23:37.147754+0800 | 192.168.122.201 | 49166 | 52.216.140.118 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Baltimore CA-2 G2 | C=US, ST=Washington, L=Seattle, O=Amazon.com, Inc., CN=s3.amazonaws.com | 50:cf:be:64:52:a5:85:2a:58:6a:06:e1:39:4a:c6:3f:7f:56:b8:b3 |
2020-01-16 20:23:37.939235+0800 | 192.168.122.201 | 49167 | 52.216.140.118 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Baltimore CA-2 G2 | C=US, ST=Washington, L=Seattle, O=Amazon.com, Inc., CN=s3.amazonaws.com | 50:cf:be:64:52:a5:85:2a:58:6a:06:e1:39:4a:c6:3f:7f:56:b8:b3 |
2020-01-16 20:23:39.806961+0800 | 192.168.122.201 | 49169 | 34.198.166.98 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Server CA | C=US, ST=California, L=San Bruno, O=Freshworks Inc, OU=Freshworks, CN=support.swimlane.com | fa:51:f6:cc:f0:44:da:25:5c:69:3a:c2:8d:14:23:de:50:5d:bc:6f |
2020-01-16 20:23:47.647299+0800 | 192.168.122.201 | 49172 | 13.35.65.63 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Server CA | C=US, ST=California, L=San Bruno, O=Freshworks Inc, OU=Freshworks, CN=*.freshdesk.com | a1:5f:8f:1a:1d:4c:8e:9c:34:78:fc:38:ed:72:99:82:55:31:94:7b |
2020-01-16 20:23:47.664943+0800 | 192.168.122.201 | 49174 | 203.208.50.98 | 443 | TLS 1.2 | C=US, O=Google Trust Services, CN=GTS CA 1O1 | C=US, ST=California, L=Mountain View, O=Google LLC, CN=*.storage.googleapis.com | 7b:bd:9c:ba:37:4d:6a:e9:8f:85:9f:2f:54:6b:5d:cf:26:e1:51:19 |
2020-01-16 20:23:47.649992+0800 | 192.168.122.201 | 49170 | 13.35.65.63 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Server CA | C=US, ST=California, L=San Bruno, O=Freshworks Inc, OU=Freshworks, CN=*.freshdesk.com | a1:5f:8f:1a:1d:4c:8e:9c:34:78:fc:38:ed:72:99:82:55:31:94:7b |
2020-01-16 20:23:47.674001+0800 | 192.168.122.201 | 49176 | 13.35.65.63 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Server CA | C=US, ST=California, L=San Bruno, O=Freshworks Inc, OU=Freshworks, CN=*.freshdesk.com | a1:5f:8f:1a:1d:4c:8e:9c:34:78:fc:38:ed:72:99:82:55:31:94:7b |
2020-01-16 20:23:47.675413+0800 | 192.168.122.201 | 49175 | 143.204.86.62 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Server CA | C=US, ST=California, L=San Bruno, O=Freshworks Inc, OU=Freshworks, CN=*.freshdesk.com | a1:5f:8f:1a:1d:4c:8e:9c:34:78:fc:38:ed:72:99:82:55:31:94:7b |
2020-01-16 20:23:47.671322+0800 | 192.168.122.201 | 49171 | 99.84.62.61 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Server CA | C=US, ST=California, L=San Bruno, O=Freshworks Inc, OU=Freshworks, CN=*.freshdesk.com | a1:5f:8f:1a:1d:4c:8e:9c:34:78:fc:38:ed:72:99:82:55:31:94:7b |
2020-01-16 20:23:47.678179+0800 | 192.168.122.201 | 49173 | 13.35.65.63 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Server CA | C=US, ST=California, L=San Bruno, O=Freshworks Inc, OU=Freshworks, CN=*.freshdesk.com | a1:5f:8f:1a:1d:4c:8e:9c:34:78:fc:38:ed:72:99:82:55:31:94:7b |
2020-01-16 20:23:48.480152+0800 | 192.168.122.201 | 49178 | 13.33.10.62 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Server CA | C=US, ST=California, L=San Bruno, O=Freshworks Inc, OU=Freshworks, CN=*.freshdesk.com | a1:5f:8f:1a:1d:4c:8e:9c:34:78:fc:38:ed:72:99:82:55:31:94:7b |
2020-01-16 20:23:53.965418+0800 | 192.168.122.201 | 49177 | 13.224.153.61 | 443 | TLS 1.2 | C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Server CA | C=US, ST=California, L=San Bruno, O=Freshworks Inc, OU=Freshworks, CN=*.freshdesk.com | a1:5f:8f:1a:1d:4c:8e:9c:34:78:fc:38:ed:72:99:82:55:31:94:7b |
No Suricata HTTP
HTML 总结报告 (需15-60分钟同步) |
下载 |
---|
Task ID | 487887 |
---|---|
Mongo ID | 5e2056522f8f2e4be9636ba0 |
Cuckoo release | 1.4-Maldun |