out.pcap

MD57a094e71c15f72bfd860b69279344bee
Submission Date2021-09-14 08:24:26
Tags(not set)
Alert 0
#
TimestampSrc IpDest IpAlert SignatureP
No results found.
DNS 72
Showing 61-72 of 72 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
61
2021-09-14T08:13:38.172763-0700192.168.1.53200.48.225.130querywww.grandstream.comA(not set)
62
2021-09-14T08:13:38.181142-0700200.48.225.130192.168.1.53answerwww.grandstream.comA(not set)
63
2021-09-14T08:13:59.235838-0700192.168.1.53200.48.225.130querywww.grandstream.comA(not set)
64
2021-09-14T08:13:59.289863-0700200.48.225.130192.168.1.53answerwww.grandstream.comA(not set)
65
2021-09-14T08:13:59.364637-0700192.168.1.53200.48.225.130querywww.grandstream.comA(not set)
66
2021-09-14T08:13:59.441966-0700200.48.225.130192.168.1.53answerwww.grandstream.comA(not set)
67
2021-09-14T08:13:17.084750-0700192.168.1.53200.48.225.130querywww.grandstream.comA(not set)
68
2021-09-14T08:13:17.110594-0700200.48.225.130192.168.1.53answerwww.grandstream.comA(not set)
69
2021-09-14T08:13:38.181586-0700192.168.1.53200.48.225.130querywww.grandstream.comA(not set)
70
2021-09-14T08:13:38.191083-0700200.48.225.130192.168.1.53answerwww.grandstream.comA(not set)
71
2021-09-14T08:13:59.290463-0700192.168.1.53200.48.225.130querywww.grandstream.comA(not set)
72
2021-09-14T08:13:59.364140-0700200.48.225.130192.168.1.53answerwww.grandstream.comA(not set)
TLS 0
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
No results found.
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 32
Showing 1-20 of 32 items.
#
TimestampSourceHostnamePortMethodURLStatus
1
2021-09-14T08:13:53.132166-0700192.168.1.46192.168.1.5380POST/cgi-bin/api-get_phone_status200
2
2021-09-14T08:13:55.312506-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_pcap_list?_nocache_=1631632435247200
3
2021-09-14T08:13:57.066692-0700192.168.1.46192.168.1.5380GET/cgi-bin/config_get?pvalues=35,270,271,2380,AccountRegisteredServer1,AccountRegistered1,404,417,401,2480,AccountRegisteredServer2,AccountRegistered2,504,517,501,2580,AccountRegisteredServer3,AccountRegistered3,604,617,601,2680,AccountRegisteredServer4,AccountRegistered4,704,717,701,2780,AccountRegisteredServer5,AccountRegistered5,804,817,801,2880,AccountRegisteredServer6,AccountRegistered6&sid=359383844e1631632352&update_session=false&_nocache_=1631632437043200
4
2021-09-14T08:13:59.310797-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_packet_status?_nocache_=1631632439246200
5
2021-09-14T08:14:01.134163-0700192.168.1.46192.168.1.5380GET/cgi-bin/config_get?pvalues=connectedSSID,7800&sid=359383844e1631632352&update_session=false&_nocache_=1631632441045200
6
2021-09-14T08:14:03.325015-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_pcap_list?_nocache_=1631632443248200
7
2021-09-14T08:14:05.067309-0700192.168.1.46192.168.1.5380GET/cgi-bin/config_get?pvalues=35,270,271,2380,AccountRegisteredServer1,AccountRegistered1,404,417,401,2480,AccountRegisteredServer2,AccountRegistered2,504,517,501,2580,AccountRegisteredServer3,AccountRegistered3,604,617,601,2680,AccountRegisteredServer4,AccountRegistered4,704,717,701,2780,AccountRegisteredServer5,AccountRegistered5,804,817,801,2880,AccountRegisteredServer6,AccountRegistered6&sid=359383844e1631632352&update_session=false&_nocache_=1631632445044200
8
2021-09-14T08:14:07.313694-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_packet_status?_nocache_=1631632447247200
9
2021-09-14T08:13:53.132166-0700192.168.1.46192.168.1.5380POST/cgi-bin/api-get_phone_status200
10
2021-09-14T08:13:55.312506-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_pcap_list?_nocache_=1631632435247200
11
2021-09-14T08:13:57.066692-0700192.168.1.46192.168.1.5380GET/cgi-bin/config_get?pvalues=35,270,271,2380,AccountRegisteredServer1,AccountRegistered1,404,417,401,2480,AccountRegisteredServer2,AccountRegistered2,504,517,501,2580,AccountRegisteredServer3,AccountRegistered3,604,617,601,2680,AccountRegisteredServer4,AccountRegistered4,704,717,701,2780,AccountRegisteredServer5,AccountRegistered5,804,817,801,2880,AccountRegisteredServer6,AccountRegistered6&sid=359383844e1631632352&update_session=false&_nocache_=1631632437043200
12
2021-09-14T08:13:59.310797-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_packet_status?_nocache_=1631632439246200
13
2021-09-14T08:14:01.134163-0700192.168.1.46192.168.1.5380GET/cgi-bin/config_get?pvalues=connectedSSID,7800&sid=359383844e1631632352&update_session=false&_nocache_=1631632441045200
14
2021-09-14T08:14:03.325015-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_pcap_list?_nocache_=1631632443248200
15
2021-09-14T08:14:05.067309-0700192.168.1.46192.168.1.5380GET/cgi-bin/config_get?pvalues=35,270,271,2380,AccountRegisteredServer1,AccountRegistered1,404,417,401,2480,AccountRegisteredServer2,AccountRegistered2,504,517,501,2580,AccountRegisteredServer3,AccountRegistered3,604,617,601,2680,AccountRegisteredServer4,AccountRegistered4,704,717,701,2780,AccountRegisteredServer5,AccountRegistered5,804,817,801,2880,AccountRegisteredServer6,AccountRegistered6&sid=359383844e1631632352&update_session=false&_nocache_=1631632445044200
16
2021-09-14T08:14:07.313694-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_packet_status?_nocache_=1631632447247200
17
2021-09-14T08:13:53.132166-0700192.168.1.46192.168.1.5380POST/cgi-bin/api-get_phone_status200
18
2021-09-14T08:13:55.312506-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_pcap_list?_nocache_=1631632435247200
19
2021-09-14T08:13:57.066692-0700192.168.1.46192.168.1.5380GET/cgi-bin/config_get?pvalues=35,270,271,2380,AccountRegisteredServer1,AccountRegistered1,404,417,401,2480,AccountRegisteredServer2,AccountRegistered2,504,517,501,2580,AccountRegisteredServer3,AccountRegistered3,604,617,601,2680,AccountRegisteredServer4,AccountRegistered4,704,717,701,2780,AccountRegisteredServer5,AccountRegistered5,804,817,801,2880,AccountRegisteredServer6,AccountRegistered6&sid=359383844e1631632352&update_session=false&_nocache_=1631632437043200
20
2021-09-14T08:13:59.310797-0700192.168.1.46192.168.1.5380GET/cgi-bin/api-get_packet_status?_nocache_=1631632439246200
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 120
Showing 1-20 of 120 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2021-09-14T08:14:05.564022-0700568678300082385flowfe80:0000:0000:0000:0217:c8ff:fe95:91f9546ff02:0000:0000:0000:0000:0000:0001:0002547UDPpcapanalyzer
2
2021-09-14T08:14:05.564022-07002124495841845021flow192.168.1.11900239.255.255.2501900UDPpcapanalyzer
3
2021-09-14T08:14:05.564022-07002002986922089030flow192.168.1.2658883239.255.255.2501900UDPpcapanalyzer
4
2021-09-14T08:14:05.564022-0700746820658042738flow192.168.1.47138192.168.1.255138UDPpcapanalyzer
5
2021-09-14T08:14:05.564022-07001041700226787971flow192.168.1.23138192.168.1.255138UDPpcapanalyzer
6
2021-09-14T08:14:05.564022-0700793322268127002flow192.168.1.22138192.168.1.255138UDPpcapanalyzer
7
2021-09-14T08:14:05.564022-07002065719216452907flow192.168.1.2558942239.255.255.2501900UDPpcapanalyzer
8
2021-09-14T08:14:05.564022-07002074781595339503flow192.168.1.3650105239.255.255.2501900UDPpcapanalyzer
9
2021-09-14T08:14:05.564022-07001142262592260878flow192.168.1.5348150200.48.225.13053UDPpcapanalyzer
10
2021-09-14T08:14:05.564022-07001572309080485130flow192.168.1.4063872239.255.255.2501900UDPpcapanalyzer
11
2021-09-14T08:14:05.564022-07001855248637085855flow192.168.1.5346867190.119.206.2505060UDPpcapanalyzer
12
2021-09-14T08:14:05.564022-070026988433597642flow192.168.1.4612515192.168.1.5380TCPpcapanalyzer
13
2021-09-14T08:14:05.564022-07002144347184666942flow192.168.1.5344083200.48.225.13053UDPpcapanalyzer
14
2021-09-14T08:14:05.564022-0700743925852214583flow192.168.1.2257581239.255.255.2501900UDPpcapanalyzer
15
2021-09-14T08:14:05.564022-0700192215827775323flow192.168.1.5344480200.48.225.13053UDPpcapanalyzer
16
2021-09-14T08:14:05.564022-07001742071953630874flow192.168.1.4616542192.168.1.5380TCPpcapanalyzer
17
2021-09-14T08:14:05.564022-07001182901572894308flow192.168.1.4622628192.168.1.5380TCPpcapanalyzer
18
2021-09-14T08:14:05.564022-07001610091907739295flow192.168.1.5343112200.48.225.13053UDPpcapanalyzer
19
2021-09-14T08:14:05.564022-0700924293000707155flow192.168.1.462638192.168.1.5380TCPpcapanalyzer
20
2021-09-14T08:14:05.564022-07001635917546510353flow192.168.1.5330807216.93.246.183478UDPpcapanalyzer
File 36
Showing 21-36 of 36 items.
#
TimestampSourceDestinationFile NameFile MagicFile Size
21
2021-09-14T08:13:55.312506-0700192.168.1.53192.168.1.46/cgi-bin/api-get_pcap_listASCII text, with no line terminators16
22
2021-09-14T08:13:57.066692-0700192.168.1.53192.168.1.46/cgi-bin/config_getASCII text, with very long lines, with no line terminators2486
23
2021-09-14T08:13:59.310797-0700192.168.1.53192.168.1.46/cgi-bin/api-get_packet_statusASCII text, with no line terminators18
24
2021-09-14T08:14:01.134163-0700192.168.1.53192.168.1.46/cgi-bin/config_getASCII text, with no line terminators142
25
2021-09-14T08:14:03.325015-0700192.168.1.53192.168.1.46/cgi-bin/api-get_pcap_listASCII text, with no line terminators16
26
2021-09-14T08:14:05.067309-0700192.168.1.53192.168.1.46/cgi-bin/config_getASCII text, with very long lines, with no line terminators2486
27
2021-09-14T08:14:07.313694-0700192.168.1.53192.168.1.46/cgi-bin/api-get_packet_statusASCII text, with no line terminators18
28
2021-09-14T08:13:53.060271-0700192.168.1.46192.168.1.53/cgi-bin/api-get_phone_statusASCII text, with no line terminators45
29
2021-09-14T08:13:53.132166-0700192.168.1.53192.168.1.46/cgi-bin/api-get_phone_statusASCII text, with no line terminators61
30
2021-09-14T08:13:55.312506-0700192.168.1.53192.168.1.46/cgi-bin/api-get_pcap_listASCII text, with no line terminators16
31
2021-09-14T08:13:57.066692-0700192.168.1.53192.168.1.46/cgi-bin/config_getASCII text, with very long lines, with no line terminators2486
32
2021-09-14T08:13:59.310797-0700192.168.1.53192.168.1.46/cgi-bin/api-get_packet_statusASCII text, with no line terminators18
33
2021-09-14T08:14:01.134163-0700192.168.1.53192.168.1.46/cgi-bin/config_getASCII text, with no line terminators142
34
2021-09-14T08:14:03.325015-0700192.168.1.53192.168.1.46/cgi-bin/api-get_pcap_listASCII text, with no line terminators16
35
2021-09-14T08:14:05.067309-0700192.168.1.53192.168.1.46/cgi-bin/config_getASCII text, with very long lines, with no line terminators2486
36
2021-09-14T08:14:07.313694-0700192.168.1.53192.168.1.46/cgi-bin/api-get_packet_statusASCII text, with no line terminators18

Comments(not set)

Update Download PCAP Delete