Sandbox Connection Report

This report is a summary of all the connections that the sandbox system saw.

Fields

  • md5hash
    MD5 of the binary making the connections
  • inet
    IP accessed by the binary
  • hostname
    Reverse DNS of the IP accessed
  • port
    Port accessed on the remote IP
  • protocol
    Which protocol was used to contact the remote IP
  • asn
    ASN of the IP
  • geo
    Country of the IP

Sample

"md5hash","inet","hostname","port","protocol","asn","geo"
"000191f8f3e8304e88219f9b78ec435f","239.255.255.250","",1900,"udp",6140,"-"
"000221956662249f9ce01eeff956b0a4","239.255.255.250","",1900,"udp",6140,"-"
"0005cfe8336a2d2157b9cdfb810c20ab","239.255.255.250","",1900,"udp",6140,"-"
"000744bac2fcf8b10cd227cf6a66927e","239.255.255.250","",1900,"udp",6140,"-"
"000a06e2f66235d80553d764318e86d7","239.255.255.250","",1900,"udp",6140,"-"
"000b4ab050878e4a38258617471196e5","66.220.17.200","",80,"tcp",6939,"US"
"000b4ab050878e4a38258617471196e5","239.255.255.250","",1900,"udp",6140,"-"
"000c5fc087fddc6d5205fca9e27b5f7f","239.255.255.250","",1900,"udp",6140,"-"
"001178d0b2e8433d964d43debc5069b4","239.255.255.250","",1900,"udp",6140,"-"
"00125ebcf6b00bd2b46681e20740027d","239.255.255.250","",1900,"udp",6140,"-"
"00137cd3454e92ca225d9dd834f55e0d","239.255.255.250","",1900,"udp",6140,"-"
"0015fca3e21fa53060bf75a154d6ed5d","239.255.255.250","",1900,"udp",6140,"-"
"001a218bb1dd40f23c710d03564f99a7","239.255.255.250","",1900,"udp",6140,"-"

Our 73 Report Types