pcap-POC-MY-ASTRO-Edge520-Branch-GE1-2019-03-28_04-50-57.pcap

MD5f17481e87b1c72d5d94b4645a263c149
Submission Date2019-03-27 21:55:42
Tags(not set)
Alert 0
#
TimestampSrc IpDest IpAlert SignatureP
No results found.
DNS 0
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
No results found.
TLS 2
Showing 1-2 of 2 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2019-03-27T21:51:02.646591-0700121.122.86.8440.84.34.148UNDETERMINEDwinatp-gw-eus.microsoft.com
2
2019-03-27T21:51:02.655225-0700121.122.86.8440.84.34.148UNDETERMINEDwinatp-gw-eus.microsoft.com
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 4
Showing 1-4 of 4 items.
#
TimestampSourceHostnamePortMethodURLStatus
1
2019-03-27T21:51:02.646591-0700121.122.86.84www.msftconnecttest.com80GET/connecttest.txt(not set)
2
2019-03-27T21:51:02.646591-0700121.122.86.84prpmv1.dbp.gov.my80GET/Search.aspx?k=menimang(not set)
3
2019-03-27T21:51:02.655225-0700121.122.86.84prpmv1.dbp.gov.my80GET/Search.aspx?k=menimang(not set)
4
2019-03-27T21:51:02.655225-0700121.122.86.84www.msftconnecttest.com80GET/connecttest.txt(not set)
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 282
Showing 1-20 of 282 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2019-03-27T21:51:02.646591-0700422355586678086flow40.100.17.2443121.122.86.8420489TCPpcapanalyzer
2
2019-03-27T21:51:02.646591-0700985415061611856flow121.122.86.842181534.232.189.299092TCPpcapanalyzer
3
2019-03-27T21:51:02.646591-0700422660529264392flow121.122.86.845574140.81.250.1803544UDPpcapanalyzer
4
2019-03-27T21:51:02.646591-0700989804518334735flow121.122.86.842046640.100.18.2443TCPpcapanalyzer
5
2019-03-27T21:51:02.646591-0700850147214221026flow121.122.86.842030740.100.17.18443TCPpcapanalyzer
6
2019-03-27T21:51:02.646591-0700568863363476337flow31.216.145.79443121.122.86.8420046TCPpcapanalyzer
7
2019-03-27T21:51:02.646591-07001694954396373542flow121.122.86.842050040.100.18.2443TCPpcapanalyzer
8
2019-03-27T21:51:02.646591-07002118363009795080flow121.122.86.84201271.9.24.20180TCPpcapanalyzer
9
2019-03-27T21:51:02.646591-07001696309458630137flow121.122.86.842000440.100.28.184443TCPpcapanalyzer
10
2019-03-27T21:51:02.646591-07008286379474734flow121.122.86.842063340.100.18.2443TCPpcapanalyzer
11
2019-03-27T21:51:02.646591-07008303559375728flow121.122.86.842004240.69.153.67443TCPpcapanalyzer
12
2019-03-27T21:51:02.646591-0700291421361045891flow121.122.86.842008352.114.77.33443TCPpcapanalyzer
13
2019-03-27T21:51:02.646591-0700995710098297834flow121.122.86.842015940.100.17.200443TCPpcapanalyzer
14
2019-03-27T21:51:02.646591-0700433443044614243flow121.121.56.1731447121.122.86.8421407UDPpcapanalyzer
15
2019-03-27T21:51:02.646591-0700574356626709149flow121.122.86.8420001121.121.56.1732322UDPpcapanalyzer
16
2019-03-27T21:51:02.646591-0700578454025517368flow40.100.17.34443121.122.86.8420474TCPpcapanalyzer
17
2019-03-27T21:51:02.646591-07001142200695443938flow121.121.56.1732045121.122.86.8421407UDPpcapanalyzer
18
2019-03-27T21:51:02.646591-070016539159174271flow121.122.86.842066340.100.18.2443TCPpcapanalyzer
19
2019-03-27T21:51:02.646591-07001566163359618109flow121.122.86.842000115.233.44.24443TCPpcapanalyzer
20
2019-03-27T21:51:02.646591-07001707448456249895flow121.122.86.8420001203.77.233.9856096UDPpcapanalyzer
File 4
Showing 1-4 of 4 items.
#
TimestampSourceDestinationFile NameFile MagicFile Size
1
2019-03-27T21:51:02.646591-070013.107.4.52121.122.86.84/connecttest.txtASCII text, with no line terminators22
2
2019-03-27T21:51:02.646591-07001.9.24.201121.122.86.84/Search.aspxHTML document, ASCII text, with very long lines, with CRLF line terminators9572
3
2019-03-27T21:51:02.655225-07001.9.24.201121.122.86.84/Search.aspxHTML document, ASCII text, with very long lines, with CRLF line terminators9572
4
2019-03-27T21:51:02.655225-070013.107.4.52121.122.86.84/connecttest.txtASCII text, with no line terminators22

Comments(not set)

Update Download PCAP Delete