capture-4.pcap

MD5328f1fdf68de21b992e297604fd8293f
Submission Date2020-11-21 18:29:14
Tags(not set)
Alert 0
#
TimestampSrc IpDest IpAlert SignatureP
No results found.
DNS 96
Showing 1-20 of 96 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
1
2020-11-21T18:25:48.403600-0800192.168.2.102192.168.2.1queryeasy.boxAAAA(not set)
2
2020-11-21T18:25:48.404877-0800192.168.2.1192.168.2.102answereasy.boxAAAA(not set)
3
2020-11-21T18:25:48.401777-0800192.168.2.102192.168.2.1queryeasy.boxA(not set)
4
2020-11-21T18:25:48.403593-0800192.168.2.1192.168.2.102answereasy.boxA(not set)
5
2020-11-21T18:26:04.241208-0800192.168.2.102192.168.2.1queryb-api.facebook.comAAAA(not set)
6
2020-11-21T18:26:04.243311-080092.208.99.129176.95.16.250queryb-api.facebook.comAAAA(not set)
7
2020-11-21T18:26:04.250403-0800176.95.16.25092.208.99.129answerb-api.facebook.comAAAA(not set)
8
2020-11-21T18:26:04.251293-0800192.168.2.1192.168.2.102answerb-api.facebook.comAAAA(not set)
9
2020-11-21T18:26:04.356901-080092.208.99.129176.95.16.250queryb-api.facebook.comA(not set)
10
2020-11-21T18:26:04.364181-0800176.95.16.25092.208.99.129answerb-api.facebook.comA(not set)
11
2020-11-21T18:26:22.901512-0800192.168.2.102192.168.2.1querywww.google.comA(not set)
12
2020-11-21T18:26:22.902597-0800192.168.2.1192.168.2.102answerwww.google.comA(not set)
13
2020-11-21T18:26:04.242711-080092.208.99.129176.95.16.251queryb-api.facebook.comAAAA(not set)
14
2020-11-21T18:26:04.251422-0800176.95.16.25192.208.99.129answerb-api.facebook.comAAAA(not set)
15
2020-11-21T18:26:04.355684-0800192.168.2.102192.168.2.1queryb-api.facebook.comA(not set)
16
2020-11-21T18:26:04.365059-0800192.168.2.1192.168.2.102answerb-api.facebook.comA(not set)
17
2020-11-21T18:26:41.295716-0800192.168.2.102192.168.2.1queryeasy.boxA(not set)
18
2020-11-21T18:26:41.296817-0800192.168.2.1192.168.2.102answereasy.boxA(not set)
19
2020-11-21T18:26:42.862383-080092.208.99.129176.95.16.250queryencrypted-tbn0.gstatic.comA(not set)
20
2020-11-21T18:26:42.864724-080092.208.99.129176.95.16.250queryencrypted-tbn0.gstatic.comAAAA(not set)
TLS 16
Showing 1-16 of 16 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2020-11-21T18:26:04.527302-080092.208.99.12969.171.250.35TLS 1.3b-api.facebook.com
2
2020-11-21T18:26:04.526982-0800192.168.2.10269.171.250.35TLS 1.3b-api.facebook.com
3
2020-11-21T18:26:42.942206-080092.208.99.129172.217.23.110TLS 1.3encrypted-tbn0.gstatic.com
4
2020-11-21T18:26:55.050504-0800192.168.2.102172.217.22.67TLS 1.3id.google.de
5
2020-11-21T18:26:55.058375-0800192.168.2.102172.217.21.193TLS 1.3www-andreafortuna-org.cdn.ampproject.org
6
2020-11-21T18:26:42.941503-0800192.168.2.102172.217.23.110TLS 1.3encrypted-tbn0.gstatic.com
7
2020-11-21T18:26:55.050694-080092.208.99.129172.217.22.67TLS 1.3id.google.de
8
2020-11-21T18:26:55.058573-080092.208.99.129172.217.21.193TLS 1.3www-andreafortuna-org.cdn.ampproject.org
9
2020-11-21T18:27:49.512400-0800192.168.2.10552.17.22.64TLS 1.2api-global.netflix.com
10
2020-11-21T18:27:49.512711-080092.208.99.12952.17.22.64TLS 1.2api-global.netflix.com
11
2020-11-21T18:27:51.173375-080092.208.99.129113.23.255.197TLS 1.2pcap.honeynet.org.my
12
2020-11-21T18:27:51.176920-080092.208.99.129113.23.255.197TLS 1.2pcap.honeynet.org.my
13
2020-11-21T18:27:51.374279-080092.208.99.129113.23.255.197TLS 1.2pcap.honeynet.org.my
14
2020-11-21T18:28:01.147761-0800192.168.2.102113.23.255.197TLS 1.2pcap.honeynet.org.my
15
2020-11-21T18:28:05.587945-0800192.168.2.102113.23.255.197TLS 1.2pcap.honeynet.org.my
16
2020-11-21T18:28:05.587945-0800192.168.2.102113.23.255.197TLS 1.2pcap.honeynet.org.my
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 91
Showing 1-20 of 91 items.
#
TimestampSourceHostnamePortMethodURLStatus
1
2020-11-21T18:26:23.500969-0800192.168.2.102easy.box80POST/data_model.cgi200
2
2020-11-21T18:25:38.314524-0800192.168.2.102easy.box80POST/data_model.cgi200
3
2020-11-21T18:26:24.642710-0800192.168.2.102easy.box80POST/data_model.cgi200
4
2020-11-21T18:25:38.624806-0800192.168.2.102easy.box80POST/data_model.cgi200
5
2020-11-21T18:26:24.767469-0800192.168.2.102easy.box80POST/data_model.cgi200
6
2020-11-21T18:26:33.669878-0800192.168.2.102easy.box80POST/data_model.cgi200
7
2020-11-21T18:26:34.289586-0800192.168.2.102easy.box80POST/data_model.cgi200
8
2020-11-21T18:26:34.357151-0800192.168.2.102easy.box80POST/data_model.cgi200
9
2020-11-21T18:26:36.590475-0800192.168.2.102easy.box80POST/data_model.cgi200
10
2020-11-21T18:26:38.874485-0800192.168.2.102easy.box80POST/data_model.cgi200
11
2020-11-21T18:26:41.193342-0800192.168.2.102easy.box80POST/data_model.cgi200
12
2020-11-21T18:26:41.298558-0800192.168.2.102easy.box80POST/data_model.cgi200
13
2020-11-21T18:26:44.239923-0800192.168.2.102easy.box80POST/data_model.cgi200
14
2020-11-21T18:26:44.362201-0800192.168.2.102easy.box80POST/data_model.cgi200
15
2020-11-21T18:26:47.039906-0800192.168.2.102easy.box80POST/data_model.cgi200
16
2020-11-21T18:26:50.043082-0800192.168.2.102easy.box80POST/data_model.cgi200
17
2020-11-21T18:26:53.612468-0800192.168.2.102easy.box80POST/data_model.cgi200
18
2020-11-21T18:26:41.341941-0800192.168.2.102easy.box80GET/main.cgi?page=app.html200
19
2020-11-21T18:26:41.390267-0800192.168.2.102easy.box80GET/main.cgi?page=app.html200
20
2020-11-21T18:26:53.710260-0800192.168.2.102easy.box80POST/data_model.cgi200
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 173
Showing 1-20 of 173 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2020-11-21T18:28:05.587945-080020499008013165flowfe80:0000:0000:0000:d660:e3ff:fe55:c480(not set)ff02:0000:0000:0000:0000:0001:fff9:2bd0(not set)IPv6-ICMPpcapanalyzer
2
2020-11-21T18:28:05.587945-08002132055254673325flowfdee:569e:0153:0001:f925:78a4:face:b87f(not set)fdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)IPv6-ICMPpcapanalyzer
3
2020-11-21T18:28:05.587945-0800202859024436932flowfdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)ff02:0000:0000:0000:0000:0001:ffce:b87f(not set)IPv6-ICMPpcapanalyzer
4
2020-11-21T18:28:05.587945-0800790260226682417flowfdee:569e:0153:0001:e428:6dff:fe01:3656(not set)fdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)IPv6-ICMPpcapanalyzer
5
2020-11-21T18:28:05.587945-0800938230439960343flowfdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)ff02:0000:0000:0000:0000:0001:ff01:3656(not set)IPv6-ICMPpcapanalyzer
6
2020-11-21T18:28:05.587945-08001687341455889596flowfe80:0000:0000:0000:e809:57ff:fef9:2bd0(not set)fe80:0000:0000:0000:d660:e3ff:fe55:c480(not set)IPv6-ICMPpcapanalyzer
7
2020-11-21T18:28:05.587945-0800993553913689357flowfdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)ff02:0000:0000:0000:0000:0001:ff2e:2ce3(not set)IPv6-ICMPpcapanalyzer
8
2020-11-21T18:28:05.587945-080057457201850015flowfdee:569e:0153:0001:e428:6dff:fe01:365640740ff05:0000:0000:0000:0000:0000:0000:000c1900UDPpcapanalyzer
9
2020-11-21T18:28:05.587945-08001348558730763563flowfe80:0000:0000:0000:e428:6dff:fe01:365648770ff02:0000:0000:0000:0000:0000:0000:000c1900UDPpcapanalyzer
10
2020-11-21T18:28:05.587945-0800664804232485306flow192.168.2.1085353224.0.0.2515353UDPpcapanalyzer
11
2020-11-21T18:28:05.587945-0800126636240333131flowfdee:569e:0153:0001:7e0b:c6ff:fe2e:2ce3(not set)fdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)IPv6-ICMPpcapanalyzer
12
2020-11-21T18:28:05.587945-0800625539642929488flowfdee:569e:0153:0001:e809:57ff:fef9:2bd0(not set)fdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)IPv6-ICMPpcapanalyzer
13
2020-11-21T18:28:05.587945-0800542973191597282flowfdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)ff02:0000:0000:0000:0000:0001:fff9:2bd0(not set)IPv6-ICMPpcapanalyzer
14
2020-11-21T18:28:05.587945-08001128716536839590flowfe80:0000:0000:0000:d660:e3ff:fe55:c480(not set)fe80:0000:0000:0000:2692:0eff:fecb:8258(not set)IPv6-ICMPpcapanalyzer
15
2020-11-21T18:28:05.587945-0800568257662734051flow87.248.118.22443192.168.2.10249270TCPpcapanalyzer
16
2020-11-21T18:28:05.587945-08001154378964528106flow192.168.2.1024179685.13.153.10980TCPpcapanalyzer
17
2020-11-21T18:28:05.587945-08001721748440814773flowfdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)ff02:0000:0000:0000:0000:0001:ffcb:8258(not set)IPv6-ICMPpcapanalyzer
18
2020-11-21T18:28:05.587945-0800596729000540036flow192.168.2.180192.168.2.10254622TCPpcapanalyzer
19
2020-11-21T18:28:05.587945-08001164725542648363flowfdee:569e:0153:0001:d660:e3ff:fe55:c480(not set)fdee:569e:0153:0001:2692:0eff:fecb:8258(not set)IPv6-ICMPpcapanalyzer
20
2020-11-21T18:28:05.587945-0800492056352779534flow92.208.99.1294179685.13.153.10980TCPpcapanalyzer
File 180
Showing 1-20 of 180 items.
#
TimestampSourceDestinationFile NameFile MagicFile Size
1
2020-11-21T18:26:23.395257-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators511
2
2020-11-21T18:26:23.500969-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text1042
3
2020-11-21T18:25:38.143631-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators409
4
2020-11-21T18:25:38.314524-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text807
5
2020-11-21T18:26:24.539664-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators409
6
2020-11-21T18:26:24.642710-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text807
7
2020-11-21T18:25:38.517535-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators445
8
2020-11-21T18:25:38.624806-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text821
9
2020-11-21T18:26:24.664550-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators445
10
2020-11-21T18:26:24.767469-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text821
11
2020-11-21T18:26:33.588579-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators511
12
2020-11-21T18:26:33.669878-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text1042
13
2020-11-21T18:26:34.287119-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators492
14
2020-11-21T18:26:34.289586-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text1019
15
2020-11-21T18:26:34.354765-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators554
16
2020-11-21T18:26:34.357151-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text1110
17
2020-11-21T18:26:36.492719-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators343
18
2020-11-21T18:26:36.590475-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text483
19
2020-11-21T18:26:38.807305-0800192.168.2.102192.168.2.1/data_model.cgiASCII text, with very long lines, with no line terminators492
20
2020-11-21T18:26:38.874485-0800192.168.2.1192.168.2.102/data_model.cgiXML 1.0 document, ASCII text1019

Comments(not set)

Update Download PCAP Delete