file 2.pcap

MD5fe72cd84f2b0daad8f225dfbdaec1541
Submission Date2020-11-21 10:01:36
Tags(not set)
Alert 0
#
TimestampSrc IpDest IpAlert SignatureP
No results found.
DNS 98
Showing 1-20 of 98 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
1
2020-11-21T10:00:46.175000-080010.8.0.28.8.8.8querymqtt-mini.facebook.comA(not set)
2
2020-11-21T10:00:46.209000-08008.8.8.810.8.0.2answermqtt-mini.facebook.comA(not set)
3
2020-11-21T10:00:46.209000-080010.8.0.28.8.8.8querypagead2.googlesyndication.comA(not set)
4
2020-11-21T10:00:46.211000-08008.8.8.810.8.0.2answerpagead2.googlesyndication.comA(not set)
5
2020-11-21T10:00:46.219000-080010.8.0.28.8.8.8querywjbyaouA(not set)
6
2020-11-21T10:00:46.218000-080010.8.0.28.8.8.8querykheifznA(not set)
7
2020-11-21T10:00:46.219000-080010.8.0.28.8.8.8queryzvaoteszfcA(not set)
8
2020-11-21T10:00:46.222000-08008.8.8.810.8.0.2answerwjbyaouA(not set)
9
2020-11-21T10:00:46.224000-080010.8.0.28.8.8.8querymtalk.google.comA(not set)
10
2020-11-21T10:00:46.224000-08008.8.8.810.8.0.2answermtalk.google.comA(not set)
11
2020-11-21T10:00:46.231000-080010.8.0.28.8.8.8querylaunches.appsflyer.comA(not set)
12
2020-11-21T10:00:46.231000-08008.8.8.810.8.0.2answerlaunches.appsflyer.comA(not set)
13
2020-11-21T10:00:46.251000-080010.8.0.28.8.8.8querysa.api.intl.miui.comA(not set)
14
2020-11-21T10:00:46.251000-08008.8.8.810.8.0.2answersa.api.intl.miui.comA(not set)
15
2020-11-21T10:00:46.222000-08008.8.8.810.8.0.2answerkheifznA(not set)
16
2020-11-21T10:00:46.227000-080010.8.0.28.8.8.8querygraph.facebook.comA(not set)
17
2020-11-21T10:00:46.228000-08008.8.8.810.8.0.2answergraph.facebook.comA(not set)
18
2020-11-21T10:00:46.249000-080010.8.0.28.8.8.8querydata.mistat.intl.xiaomi.comA(not set)
19
2020-11-21T10:00:46.250000-08008.8.8.810.8.0.2answerdata.mistat.intl.xiaomi.comA(not set)
20
2020-11-21T10:00:46.250000-080010.8.0.28.8.8.8querytracking.intl.miui.comA(not set)
TLS 200
Showing 1-20 of 200 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2020-11-21T10:00:46.215000-080010.8.0.269.171.250.34TLS 1.3mqtt-mini.facebook.com
2
2020-11-21T10:00:46.215000-080069.171.250.3410.8.0.2TLS 1.3mqtt-mini.facebook.com
3
2020-11-21T10:00:46.225000-080074.125.200.18810.8.0.2TLS 1.3mtalk.google.com
4
2020-11-21T10:00:46.231000-080076.223.46.15110.8.0.2TLS 1.2graphql.zenius.net
5
2020-11-21T10:00:46.253000-080013.35.13.9110.8.0.2UNDETERMINEDwzrkt.com
6
2020-11-21T10:00:46.244000-080010.8.0.252.219.129.79UNDETERMINEDzs-inline.s3.ap-southeast-1.amazonaws.com
7
2020-11-21T10:00:46.244000-080052.219.129.7910.8.0.2UNDETERMINEDzs-inline.s3.ap-southeast-1.amazonaws.com
8
2020-11-21T10:00:46.253000-080010.8.0.252.219.124.103UNDETERMINEDzs-inline.s3.ap-southeast-1.amazonaws.com
9
2020-11-21T10:00:46.254000-080052.219.124.10310.8.0.2UNDETERMINEDzs-inline.s3.ap-southeast-1.amazonaws.com
10
2020-11-21T10:00:46.271000-080010.8.0.2161.117.96.220UNDETERMINEDdata.mistat.intl.xiaomi.com
11
2020-11-21T10:00:46.271000-080010.8.0.247.74.174.53UNDETERMINEDtracking.intl.miui.com
12
2020-11-21T10:00:46.272000-080047.74.174.5310.8.0.2UNDETERMINEDtracking.intl.miui.com
13
2020-11-21T10:00:46.225000-080010.8.0.274.125.200.188TLS 1.3mtalk.google.com
14
2020-11-21T10:00:46.231000-080010.8.0.276.223.46.151TLS 1.2graphql.zenius.net
15
2020-11-21T10:00:46.244000-080010.8.0.252.219.129.79UNDETERMINEDzs-inline.s3.ap-southeast-1.amazonaws.com
16
2020-11-21T10:00:46.244000-080052.219.129.7910.8.0.2UNDETERMINEDzs-inline.s3.ap-southeast-1.amazonaws.com
17
2020-11-21T10:00:46.253000-080010.8.0.213.35.13.91UNDETERMINEDwzrkt.com
18
2020-11-21T10:00:46.255000-0800172.217.194.9510.8.0.2TLS 1.3firebaseremoteconfig.googleapis.com
19
2020-11-21T10:00:46.268000-080010.8.0.213.35.13.109UNDETERMINEDwzrkt.com
20
2020-11-21T10:00:46.273000-080047.74.233.13710.8.0.2UNDETERMINEDdata.mistat.intl.xiaomi.com
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 6
Showing 1-6 of 6 items.
#
TimestampSourceHostnamePortMethodURLStatus
1
2020-11-21T10:00:47.870000-080031.13.71.50c.whatsapp.net41159POST/chat(not set)
2
2020-11-21T10:00:47.870000-080069.171.250.61c.whatsapp.net41159POST/chat(not set)
3
2020-11-21T10:00:47.870000-080010.8.0.2c.whatsapp.net80POST/chat(not set)
4
2020-11-21T10:00:47.870000-080034.193.38.112c.whatsapp.net41159POST/chat(not set)
5
2020-11-21T10:00:47.870000-080010.8.0.2c.whatsapp.net80POST/chat302
6
2020-11-21T10:00:47.870000-080010.8.0.2c.whatsapp.net80POST/chat(not set)
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 271
Showing 1-20 of 271 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2020-11-21T10:00:47.870000-0800985245462476088flow10.8.0.24109652.219.124.103443TCPpcapanalyzer
2
2020-11-21T10:00:47.870000-08001266862173076224flow172.217.194.1553901610.8.0.241159TCPpcapanalyzer
3
2020-11-21T10:00:47.870000-08001548704369598368flow10.8.0.24712452.219.124.104443TCPpcapanalyzer
4
2020-11-21T10:00:47.870000-08001267349651871072flow10.8.0.2317058.8.8.853UDPpcapanalyzer
5
2020-11-21T10:00:47.870000-08001689686670972640flow161.117.204.1414165210.8.0.241159TCPpcapanalyzer
6
2020-11-21T10:00:47.870000-0800142684548113152flow69.171.250.153888010.8.0.241159TCPpcapanalyzer
7
2020-11-21T10:00:47.870000-08001409680573107608flow10.8.0.2202348.8.8.853UDPpcapanalyzer
8
2020-11-21T10:00:47.870000-08001831948872716048flow172.217.194.1553890410.8.0.241159TCPpcapanalyzer
9
2020-11-21T10:00:47.870000-0800847523041170552flow161.117.9.44329210.8.0.241159TCPpcapanalyzer
10
2020-11-21T10:00:47.870000-08001269903010022472flow104.17.244.2044150210.8.0.241159TCPpcapanalyzer
11
2020-11-21T10:00:47.870000-0800566301467491072flow10.8.0.24404274.125.24.95443TCPpcapanalyzer
12
2020-11-21T10:00:47.870000-0800988702911194760flow10.8.0.241838161.117.204.141443TCPpcapanalyzer
13
2020-11-21T10:00:47.870000-08001411147304413336flow47.88.222.24444310.8.0.239896TCPpcapanalyzer
14
2020-11-21T10:00:47.870000-08001693796954790840flow10.8.0.247138104.19.140.56443TCPpcapanalyzer
15
2020-11-21T10:00:47.870000-08001693850641768504flow10.8.0.24690852.219.132.39443TCPpcapanalyzer
16
2020-11-21T10:00:47.870000-08007719495873008flow10.8.0.240116161.117.71.89443TCPpcapanalyzer
17
2020-11-21T10:00:47.870000-08001274389103309144flow10.8.0.23950447.74.233.137443TCPpcapanalyzer
18
2020-11-21T10:00:47.870000-0800289499415220608flow10.8.0.24324613.227.255.46443TCPpcapanalyzer
19
2020-11-21T10:00:47.870000-0800149440531664656flow10.8.0.238904172.217.194.155443TCPpcapanalyzer
20
2020-11-21T10:00:47.870000-08001697795569254880flow10.8.0.237858184.31.3.26443TCPpcapanalyzer
File 10
Showing 1-10 of 10 items.
#
TimestampSourceDestinationFile NameFile MagicFile Size
1
2020-11-21T10:00:47.726000-080034.193.38.11210.8.0.2/chatHTML document, ASCII text, with no line terminators154
2
2020-11-21T10:00:47.870000-080031.13.71.5010.8.0.2/chatdata280
3
2020-11-21T10:00:47.870000-080010.8.0.231.13.71.50/chatHTML document, ASCII text, with no line terminators154
4
2020-11-21T10:00:47.870000-080010.8.0.231.13.71.50/chatdata280
5
2020-11-21T10:00:47.870000-080069.171.250.6110.8.0.2/chatdata280
6
2020-11-21T10:00:47.870000-080010.8.0.269.171.250.61/chatHTML document, ASCII text, with no line terminators154
7
2020-11-21T10:00:47.870000-080034.193.38.11210.8.0.2/chatdata280
8
2020-11-21T10:00:47.870000-080010.8.0.234.193.38.112/chatHTML document, ASCII text, with no line terminators154
9
2020-11-21T10:00:47.870000-080010.8.0.234.193.38.112/chatdata280
10
2020-11-21T10:00:47.870000-080010.8.0.269.171.250.61/chatdata280

Comments(not set)

Update Download PCAP Delete