2020_09_29_041213.pcap

MD5de43c28f54aadf072a81487b967f9409
Submission Date2020-09-28 13:21:28
Tags(not set)
Alert 0
#
TimestampSrc IpDest IpAlert SignatureP
No results found.
DNS 0
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
No results found.
TLS 21
Showing 1-20 of 21 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2020-09-28T13:12:17.132551-070010.8.0.174.125.205.94TLS 1.2connectivitycheck.gstatic.com
2
2020-09-28T13:12:17.848596-070010.8.0.187.248.118.23TLS 1.2data.flurry.com
3
2020-09-28T13:12:39.501949-070010.8.0.1173.194.73.95TLS 1.2play.googleapis.com
4
2020-09-28T13:13:22.072609-070010.8.0.1104.18.17.65TLS 1.2www.microvirt.com
5
2020-09-28T13:12:44.030232-070010.8.0.164.233.162.132TLS 1.2lh3.googleusercontent.com
6
2020-09-28T13:12:44.082235-070010.8.0.164.233.162.132TLS 1.2lh3.googleusercontent.com
7
2020-09-28T13:13:22.968665-070010.8.0.147.246.2.225TLS 1.2is.snssdk.com
8
2020-09-28T13:13:22.428632-070010.8.0.147.246.2.225TLS 1.2is.snssdk.com
9
2020-09-28T13:13:22.968665-070010.8.0.147.246.2.225TLS 1.2is.snssdk.com
10
2020-09-28T13:12:40.810031-070010.8.0.164.233.164.113TLS 1.2android.clients.google.com
11
2020-09-28T13:12:44.026232-070010.8.0.164.233.162.132TLS 1.2lh3.googleusercontent.com
12
2020-09-28T13:12:44.134238-070010.8.0.164.233.162.132TLS 1.2lh3.googleusercontent.com
13
2020-09-28T13:13:19.200430-070010.8.0.12.18.72.105TLS 1.2rt.applovin.com
14
2020-09-28T13:13:22.552639-070010.8.0.1163.181.0.226TLS 1.2sf3-ttcdn-tos.pstatp.com
15
2020-09-28T13:13:23.324688-070010.8.0.1103.235.46.88TLS 1.2crab.baidu.com
16
2020-09-28T13:13:24.860784-070010.8.0.118.203.20.219TLS 1.2launches.appsflyer.com
17
2020-09-28T13:13:34.249370-070010.8.0.147.246.2.225UNDETERMINEDis.snssdk.com
18
2020-09-28T13:13:44.338001-070010.8.0.147.246.2.227UNDETERMINEDis.snssdk.com
19
2020-09-28T13:13:44.474009-070010.8.0.147.246.2.228TLS 1.2is.snssdk.com
20
2020-09-28T13:14:06.959415-070010.8.0.131.13.72.8TLS 1.2graph.facebook.com
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 6
Showing 1-6 of 6 items.
#
TimestampSourceHostnamePortMethodURLStatus
1
2020-09-28T13:12:17.956602-070010.8.0.1static.rstgames.com80GET/durak/public/serverimages/s_u2ru.png?2200
2
2020-09-28T13:13:22.556640-070010.8.0.1android.bugly.qq.com80POST/rqd/async?aid=127376ea-2b5b-4c0c-b41f-318b214a5480200
3
2020-09-28T13:13:25.284810-070010.8.0.1api-es.doglobal.net80GET/pay/wechat_items?pkg=com.estrongs.android.pop&version=10067200
4
2020-09-28T13:12:38.133863-070010.8.0.1static.rstgames.com80GET/durak/public/serverimages/s_u2ru.png?2200
5
2020-09-28T13:13:25.492823-070010.8.0.1pasta.esfile.duapps.com80POST/api/data?tk=UsdE1SI5ZfEjOmJZCrHqIQ%3D%3D&token=261d3fbd917d2bed7240f027fddd17b9b3ca7f2d5c64af7194a61e890ac234ff&sv=hw-2.4.0200
6
2020-09-28T13:13:23.640707-070010.8.0.1sdk.e.qq.com80POST/activate200
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 45
Showing 1-20 of 45 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2020-09-28T13:13:44.778028-07001126702056593307flow10.0.2.154931774.125.205.94443TCPpcapanalyzer
2
2020-09-28T13:13:44.778028-07001975875076700771flow10.0.2.1550062173.194.73.155443TCPpcapanalyzer
3
2020-09-28T13:13:44.778028-07001836709543296395flow10.8.0.160026103.235.46.88443TCPpcapanalyzer
4
2020-09-28T13:13:44.778028-0700851965884105649flow10.8.0.139289163.181.0.226443TCPpcapanalyzer
5
2020-09-28T13:13:44.778028-07001838287943953811flow10.8.0.151616182.61.185.1380TCPpcapanalyzer
6
2020-09-28T13:13:44.778028-0700995183716912666flow10.8.0.15809547.246.2.227443TCPpcapanalyzer
7
2020-09-28T13:13:44.778028-0700715184060090363flow10.0.2.1553371173.194.73.95443TCPpcapanalyzer
8
2020-09-28T13:13:44.778028-07001559703480158232flow10.8.0.15520047.246.2.225443TCPpcapanalyzer
9
2020-09-28T13:13:44.778028-07001003625471090592flow10.0.2.155065352.85.238.49443TCPpcapanalyzer
10
2020-09-28T13:13:44.778028-070018527476086821flow10.8.0.15156787.248.118.23443TCPpcapanalyzer
11
2020-09-28T13:13:44.778028-07001569717196330320flow10.8.0.15519447.246.2.225443TCPpcapanalyzer
12
2020-09-28T13:13:44.778028-0700459929859310641flow10.8.0.15519647.246.2.225443TCPpcapanalyzer
13
2020-09-28T13:13:44.778028-0700884341345056303flow10.8.0.13990764.233.162.132443TCPpcapanalyzer
14
2020-09-28T13:13:44.778028-0700755788677121502flow10.8.0.15522774.125.205.94443TCPpcapanalyzer
15
2020-09-28T13:13:44.778028-07002024990172131986flow10.8.0.15518847.246.2.225443TCPpcapanalyzer
16
2020-09-28T13:13:44.778028-07001040136988523483flow10.0.2.153487164.233.164.113443TCPpcapanalyzer
17
2020-09-28T13:13:44.778028-0700623001177302773flow10.0.2.1548509104.18.17.65443TCPpcapanalyzer
18
2020-09-28T13:13:44.778028-07001467574284452820flow10.8.0.13288495.217.104.14710772TCPpcapanalyzer
19
2020-09-28T13:13:44.778028-0700624431401508324flow10.8.0.1376632.18.72.105443TCPpcapanalyzer
20
2020-09-28T13:13:44.778028-0700345447503197493flow10.0.2.156095864.233.162.132443TCPpcapanalyzer
File 8
Showing 1-8 of 8 items.
#
TimestampSourceDestinationFile NameFile MagicFile Size
1
2020-09-28T13:13:21.992604-070010.8.0.1203.205.239.17/rqd/asyncdata1170
2
2020-09-28T13:13:22.556640-0700203.205.239.1710.8.0.1/rqd/asyncdata130
3
2020-09-28T13:12:17.956602-070095.217.198.17510.8.0.1/durak/public/serverimages/s_u2ru.pngPNG image data, 140 x 88, 8-bit/color RGBA, non-interlaced3872
4
2020-09-28T13:13:24.920787-070010.8.0.1182.61.185.13/api/datadata7827
5
2020-09-28T13:13:25.284810-0700119.3.206.16410.8.0.1/pay/wechat_itemsUTF-8 Unicode text, with very long lines, with no line terminators621
6
2020-09-28T13:13:22.664646-070010.8.0.158.250.137.37/activatedata468
7
2020-09-28T13:12:38.133863-070095.217.198.17510.8.0.1/durak/public/serverimages/s_u2ru.pngPNG image data, 140 x 88, 8-bit/color RGBA, non-interlaced3872
8
2020-09-28T13:13:23.640707-070058.250.137.3710.8.0.1/activatedata2276

Comments(not set)

Update Download PCAP Delete