分析类型 | 虚拟机标签 | 开始时间 | 结束时间 | 持续时间 |
---|---|---|---|---|
URL | win7-sp1-x64-hpdapp01-1 | 2020-01-17 09:43:30 | 2020-01-17 09:45:43 | 133 秒 |
URL |
---|
URL专业沙箱检测 -> http://isaacwright.com:80/Swift_copy01.zip |
无主机纪录.
域名 | 安全评级 | 响应 |
---|---|---|
isaacwright.com | A 67.222.108.33 |
Name: None Country: None State: None City: None ZIP Code: None Address: None Orginization: None Domain Name(s): ISAACWRIGHT.COM Creation Date: 2003-05-31 03:43:45 Updated Date: 2014-09-25 20:21:20 Expiration Date: 2024-05-31 03:43:45 Email(s): registrar-abuse@google.com Registrar(s): Google LLC Name Server(s): NS-CLOUD-C1.GOOGLEDOMAINS.COM NS-CLOUD-C2.GOOGLEDOMAINS.COM NS-CLOUD-C3.GOOGLEDOMAINS.COM NS-CLOUD-C4.GOOGLEDOMAINS.COM Referral URL(s): None
无主机纪录.
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49165 | 67.222.108.33 isaacwright.com | 80 |
192.168.122.201 | 49170 | 67.222.108.33 isaacwright.com | 80 |
192.168.122.201 | 49172 | 67.222.108.33 isaacwright.com | 80 |
192.168.122.201 | 49173 | 67.222.108.33 isaacwright.com | 80 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49310 | 192.168.122.1 | 53 |
192.168.122.201 | 49608 | 192.168.122.1 | 53 |
192.168.122.201 | 51856 | 192.168.122.1 | 53 |
192.168.122.201 | 58897 | 192.168.122.1 | 53 |
192.168.122.201 | 64155 | 192.168.122.1 | 53 |
192.168.122.201 | 64912 | 192.168.122.1 | 53 |
域名 | 安全评级 | 响应 |
---|---|---|
isaacwright.com | A 67.222.108.33 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49165 | 67.222.108.33 isaacwright.com | 80 |
192.168.122.201 | 49170 | 67.222.108.33 isaacwright.com | 80 |
192.168.122.201 | 49172 | 67.222.108.33 isaacwright.com | 80 |
192.168.122.201 | 49173 | 67.222.108.33 isaacwright.com | 80 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
192.168.122.201 | 49310 | 192.168.122.1 | 53 |
192.168.122.201 | 49608 | 192.168.122.1 | 53 |
192.168.122.201 | 51856 | 192.168.122.1 | 53 |
192.168.122.201 | 58897 | 192.168.122.1 | 53 |
192.168.122.201 | 64155 | 192.168.122.1 | 53 |
192.168.122.201 | 64912 | 192.168.122.1 | 53 |
URI | HTTP数据 |
---|---|
URL专业沙箱检测 -> http://isaacwright.com/Swift_copy01.zip | GET /Swift_copy01.zip HTTP/1.1 Host: isaacwright.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.9) Gecko/20100101 Firefox/10.0.9 Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8 Accept-Language: zh-cn,zh;q=0.5 Accept-Encoding: gzip, deflate DNT: 1 Connection: keep-alive |
URL专业沙箱检测 -> http://isaacwright.com/favicon.ico | GET /favicon.ico HTTP/1.1 Host: isaacwright.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.9) Gecko/20100101 Firefox/10.0.9 Accept: image/png,image/*;q=0.8,*/*;q=0.5 Accept-Language: zh-cn,zh;q=0.5 Accept-Encoding: gzip, deflate DNT: 1 Connection: keep-alive |
URL专业沙箱检测 -> http://isaacwright.com/favicon.ico | GET /favicon.ico HTTP/1.1 Host: isaacwright.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.9) Gecko/20100101 Firefox/10.0.9 Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8 Accept-Language: zh-cn,zh;q=0.5 Accept-Encoding: gzip, deflate DNT: 1 Connection: keep-alive |
无SMTP流量.
无IRC请求.
无ICMP流量.
无 CIF 结果
无警报
No TLS
No Suricata HTTP
HTML 总结报告 (需15-60分钟同步) |
下载 |
---|
Task ID | 487951 |
---|---|
Mongo ID | 5e2111f92f8f2e4bf1636914 |
Cuckoo release | 1.4-Maldun |