魔盾安全分析报告

分析类型 开始时间 结束时间 持续时间 分析引擎版本
URL 2020-01-16 16:02:43 2020-01-16 16:04:43 120 秒 1.4-Maldun
虚拟机机器名 标签 虚拟机管理 开机时间 关机时间
win7-sp1-x64-shaapp01-1 win7-sp1-x64-shaapp01-1 KVM 2020-01-16 16:02:43 2020-01-16 16:04:44
魔盾分数

0.325

正常的

URL信息

URL https://www.80s.tw/
VirusTotal VirusTotal查询失败

特征

魔盾wping.org 域名信誉系统
Greylist: pos.baidu.com

运行截图

网络分析

域名解析

域名 响应
www.80s.tw A 59.124.229.137
CNAME gslb-v2-twn.netinfi.com
CNAME fc9548a72c616c5a6d7f3c4525d3f0ea.momentcdn.com
CNAME gslb.cname.neptune.netinfi.com
A 211.20.20.89
t.dyxz.la A 183.131.150.226
A 150.138.216.235
CNAME static.verycdn.net
A 58.223.209.12
A 183.131.150.228
CNAME t.dyxz.la.verycdn.net
dup.baidustatic.com CNAME ecomcbjs.jomodns.com
A 180.163.198.49
crt.comodoca.com A 91.199.212.52
pos.baidu.com A 180.101.49.206
CNAME cb.e.shifen.com
hm.baidu.com CNAME hm.e.shifen.com
A 106.120.159.126
eclick.baidu.com A 220.181.107.131
CNAME eclick.e.shifen.com

TCP连接

IP地址 端口
192.168.122.201 57844
192.168.122.201 56562
192.168.122.201 57041
192.168.122.201 57596
192.168.122.201 57467
192.168.122.201 58091
192.168.122.201 57317
192.168.122.201 57139
192.168.122.201 58069
192.168.122.201 58070
192.168.122.201 58084
192.168.122.201 57918
192.168.122.201 57824
192.168.122.201 57749
192.168.122.201 57461
192.168.122.201 56905
192.168.122.201 56906
192.168.122.201 56586
192.168.122.201 57501
192.168.122.201 57502
192.168.122.201 57407
192.168.122.201 57919
192.168.122.201 57928
192.168.122.201 57236
192.168.122.201 57237
192.168.122.201 57318
192.168.122.201 57770
192.168.122.201 57823
192.168.122.201 57275
192.168.122.201 57016
192.168.122.201 57017
192.168.122.201 57821
192.168.122.201 57822
192.168.122.201 56934
192.168.122.201 57197
192.168.122.201 57421
192.168.122.201 57260
192.168.122.201 57577
192.168.122.201 57908
192.168.122.201 56959
192.168.122.201 57704
192.168.122.201 57368
192.168.122.201 57442
192.168.122.201 57313
192.168.122.201 57167
192.168.122.201 57786
192.168.122.201 56868
192.168.122.201 57345
192.168.122.201 57890
192.168.122.201 56995
192.168.122.201 57751
192.168.122.201 57453
192.168.122.201 57642
192.168.122.201 57934
192.168.122.201 56785
192.168.122.201 57610
192.168.122.201 57635
192.168.122.201 58066
192.168.122.201 58104
192.168.122.201 58105
192.168.122.201 57857
192.168.122.201 56121
192.168.122.201 57690
192.168.122.201 57692
192.168.122.201 57053
192.168.122.201 57949
192.168.122.201 57950
192.168.122.201 57913
192.168.122.201 57600
192.168.122.201 57195
192.168.122.201 56889
192.168.122.201 57151
192.168.122.201 56947
192.168.122.201 57487
192.168.122.201 57618
192.168.122.201 57525
192.168.122.201 57177
192.168.122.201 57309
192.168.122.201 57186
192.168.122.201 57791
192.168.122.201 56898
192.168.122.201 56918
192.168.122.201 56551
192.168.122.201 57853
192.168.122.201 56903
192.168.122.201 57975
192.168.122.201 57976
192.168.122.201 57496
106.120.159.126 443
180.101.49.206 443
180.101.49.206 443
180.163.198.49 443
180.163.198.49 443
183.131.150.228 443
183.131.150.228 443
183.131.150.228 443
183.131.150.228 443
183.131.150.228 443
183.131.150.228 443
183.131.150.228 443
211.20.20.89 443
211.20.20.89 443
220.181.107.131 443
91.199.212.52 80
91.199.212.52 80
91.199.212.52 80
91.199.212.52 80
91.199.212.52 80
91.199.212.52 80
192.168.122.201 57135
192.168.122.201 57880
192.168.122.201 56895
192.168.122.201 56973
192.168.122.201 57320
192.168.122.201 58014
192.168.122.201 56865
192.168.122.201 57250
192.168.122.201 57050
192.168.122.201 57347
192.168.122.201 57582
192.168.122.201 57804
192.168.122.201 57806
192.168.122.201 56720
192.168.122.201 56987
192.168.122.201 56988
192.168.122.201 57592
192.168.122.201 57102
192.168.122.201 57943
192.168.122.201 57117
192.168.122.201 57443
192.168.122.201 57939
192.168.122.201 57080
192.168.122.201 57743
192.168.122.201 57373
192.168.122.201 57374
192.168.122.201 57204
192.168.122.201 58040
192.168.122.201 57425
192.168.122.201 58064
192.168.122.201 57399
192.168.122.201 57816
192.168.122.201 57324
192.168.122.201 57369
192.168.122.201 57147
192.168.122.201 57914
192.168.122.201 57537
192.168.122.201 57612
192.168.122.201 57253
192.168.122.201 57991
192.168.122.201 57222
192.168.122.201 57493
192.168.122.201 57111
192.168.122.201 57119
192.168.122.201 57341
192.168.122.201 57484
192.168.122.201 57485
192.168.122.201 57056
192.168.122.201 56710
192.168.122.201 56711
192.168.122.201 57723
192.168.122.201 57724
192.168.122.201 57393
192.168.122.201 56546
192.168.122.201 58015
192.168.122.201 56907
192.168.122.201 56368
192.168.122.201 56919
192.168.122.201 57529
192.168.122.201 57530
192.168.122.201 56952
192.168.122.201 57124
192.168.122.201 57164
192.168.122.201 57693
192.168.122.201 57221
192.168.122.201 56927
192.168.122.201 57446
192.168.122.201 57474
192.168.122.201 56142
192.168.122.201 57118
192.168.122.201 57771
192.168.122.201 57772
192.168.122.201 57088
192.168.122.201 56739
192.168.122.201 57261
192.168.122.201 57262
192.168.122.201 57988
192.168.122.201 57782
192.168.122.201 57652
192.168.122.201 57619
192.168.122.201 56970
192.168.122.201 57394
192.168.122.201 57396
192.168.122.201 57128
192.168.122.201 56992
192.168.122.201 57767
192.168.122.201 57768

UDP连接

IP地址 端口
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53
192.168.122.1 53

HTTP请求

URL HTTP数据
http://crt.comodoca.com/COMODORSADomainValidationSecureServerCA.crt
GET /COMODORSADomainValidationSecureServerCA.crt HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crt.comodoca.com

投放文件

无信息

行为分析

互斥量(Mutexes) 无信息
执行的命令 无信息
创建的服务 无信息
启动的服务 无信息

进程

iexplore.exe PID: 2640, 上一级进程 PID: 2320

访问的文件 无信息
读取的文件 无信息
修改的文件 无信息
删除的文件 无信息
注册表键 无信息
读取的注册表键 无信息
修改的注册表键 无信息
删除的注册表键 无信息
API解析 无信息