pak004_932bdb768b3eeeec3fcd3540acd32aa0.pcap

MD5932bdb768b3eeeec3fcd3540acd32aa0
Submission Date2021-10-04 07:56:18
Tags(not set)
Alert 6
Showing 1-6 of 6 items.
#
TimestampSrc IpDest IpAlert SignatureP
1
2012-09-21T07:42:34.494625-0700173.194.41.188172.18.3.11ET INFO Observed Interesting Content-Type Inbound (application/x-sh)*
2
2012-09-21T07:42:36.845858-0700173.194.41.188172.18.3.11ET INFO Observed Interesting Content-Type Inbound (application/x-sh)*
3
2012-09-21T07:42:37.398726-070080.239.254.72172.18.3.11ET INFO Observed Interesting Content-Type Inbound (application/x-sh)*
4
2012-09-21T07:42:39.445690-0700173.194.41.188172.18.3.11ET INFO Observed Interesting Content-Type Inbound (application/x-sh)*
5
2012-09-21T07:42:39.570006-0700173.194.41.188172.18.3.11ET INFO Observed Interesting Content-Type Inbound (application/x-sh)*
6
2012-09-21T07:43:36.151476-070080.239.254.42172.18.3.11ET INFO Observed Interesting Content-Type Inbound (application/x-sh)*
DNS 327
Showing 1-20 of 327 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
1
2012-09-21T07:41:39.704863-0700172.18.3.11172.18.1.100querywww.google.co.ukA(not set)
2
2012-09-21T07:41:40.288015-0700172.18.3.11172.18.1.100queryplay.google.comA(not set)
3
2012-09-21T07:41:40.309850-0700172.18.3.11172.18.1.100querywww.youtube.comA(not set)
4
2012-09-21T07:41:40.337901-0700172.18.1.100172.18.3.11answerplay.google.comA(not set)
5
2012-09-21T07:41:40.339156-0700172.18.3.11172.18.1.100querynews.google.co.ukA(not set)
6
2012-09-21T07:41:40.339186-0700172.18.3.11172.18.1.100querymail.google.comA(not set)
7
2012-09-21T07:41:40.339973-0700172.18.1.100172.18.3.11answerwww.youtube.comA(not set)
8
2012-09-21T07:41:40.339974-0700172.18.1.100172.18.3.11answermail.google.comA(not set)
9
2012-09-21T07:41:40.340579-0700172.18.3.11172.18.1.100querydocs.google.comA(not set)
10
2012-09-21T07:41:40.341765-0700172.18.3.11172.18.1.100querybooks.google.co.ukA(not set)
11
2012-09-21T07:41:40.342098-0700172.18.1.100172.18.3.11answerbooks.google.co.ukA(not set)
12
2012-09-21T07:41:40.342539-0700172.18.3.11172.18.1.100querywww.blogger.comA(not set)
13
2012-09-21T07:41:40.363758-0700172.18.1.100172.18.3.11answernews.google.co.ukA(not set)
14
2012-09-21T07:41:40.363759-0700172.18.1.100172.18.3.11answerwww.blogger.comA(not set)
15
2012-09-21T07:41:40.365252-0700172.18.3.11172.18.1.100querypicasaweb.google.co.ukA(not set)
16
2012-09-21T07:41:40.380116-0700172.18.1.100172.18.3.11answerdocs.google.comA(not set)
17
2012-09-21T07:41:40.409792-0700172.18.1.100172.18.3.11answerpicasaweb.google.co.ukA(not set)
18
2012-09-21T07:41:40.287910-0700172.18.3.11172.18.1.100querymaps.google.co.ukA(not set)
19
2012-09-21T07:41:40.337900-0700172.18.1.100172.18.3.11answermaps.google.co.ukA(not set)
20
2012-09-21T07:41:40.381273-0700172.18.3.11172.18.1.100queryaccounts.google.comA(not set)
TLS 8
Showing 1-8 of 8 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2012-09-21T07:42:39.608580-0700172.18.3.11173.194.41.168TLSv1plusone.google.com
2
2012-09-21T07:42:39.469797-0700172.18.3.11173.194.41.174TLSv1apis.google.com
3
2012-09-21T07:42:39.679741-0700172.18.3.11173.194.41.175TLSv1ssl.gstatic.com
4
2012-09-21T07:42:40.459911-0700172.18.3.112.23.130.110TLSv1s-static.ak.facebook.com
5
2012-09-21T07:42:47.097613-0700172.18.3.11173.194.41.185TLSv1googleads.g.doubleclick.net
6
2012-09-21T07:42:40.801600-0700172.18.3.11173.252.101.16TLSv1www.facebook.com
7
2012-09-21T07:42:59.520623-0700172.18.3.11173.194.67.95TLSv1ajax.googleapis.com
8
2012-09-21T07:43:34.176791-0700172.18.3.11173.194.41.163TLSv1sb-ssl.google.com
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 687
Showing 141-160 of 687 items.
#
TimestampSourceHostnamePortMethodURLStatus
141
2012-09-21T07:42:05.572868-0700172.18.3.11www.google.co.uk80GET/gen_204?atyp=i&ct=1&cad=1&rsm=6&ei=H3tcUJzaJYWf0QW184CYBw&zx=1348238525504204
142
2012-09-21T07:42:05.644569-0700172.18.3.11www.google.co.uk80GET/s?hl=en&sugexp=les%3B&gs_nf=1&cp=2&gs_id=j&xhr=t&q=Th&pf=p&output=search&sclient=psy-ab&oq=&gs_l=&pbx=1&bav=on.2,or.r_gc.r_pw.r_qf.&fp=ff301ef4d48490c5&biw=1680&bih=920&tch=1&ech=2&psi=H3tcUJzaJYWf0QW184CYBw.1348238521751.1200
143
2012-09-21T07:41:49.972423-0700172.18.3.11sa.bbc.co.uk80GET/bbc/bbc/s?name=news.technology.page&cps_asset_id=10059376&page_type=index&section=technology&app_version=6.2.104-RC6&first_pub=2010-07-06T07:56:59+00:00&last_editorial_update=2012-09-21T14:30:31+00:00&title=&comments_box=false&cps_media_type=&cps_media_state=&app_type=web&ml_name=SSI&ml_version=0.11.1&language=en-GB&bbc_mc=ad1ps1pf1&screen_resolution=1680x1050&blq_s=3.5&blq_r=3.5&blq_v=journalism-domestic&ns__t=1348238509934&ns_c=UTF-8&ns_ti=BBC%20News%20-%20Technology&ns_jspageurl=http%3A//www.bbc.co.uk/news/technology/&ns_referrer=http%3A//www.bbc.co.uk/news/200
144
2012-09-21T07:41:45.463328-0700172.18.3.11news.bbcimg.co.uk80GET/js/app/personalisation_panel/1_9_1/personalisation_panel.js200
145
2012-09-21T07:42:05.651815-0700172.18.3.11ssl.gstatic.com80GET/gb/images/j_e6a6aca6.png200
146
2012-09-21T07:42:05.831689-0700172.18.3.11www.google.co.uk80GET/s?hl=en&sugexp=les%3B&gs_nf=1&cp=3&gs_id=s&xhr=t&q=The&pf=p&output=search&sclient=psy-ab&oq=&gs_l=&pbx=1&bav=on.2,or.r_gc.r_pw.r_qf.&fp=ff301ef4d48490c5&biw=1680&bih=920&tch=1&ech=3&psi=H3tcUJzaJYWf0QW184CYBw.1348238521751.1200
147
2012-09-21T07:41:45.494531-0700172.18.3.11news.bbcimg.co.uk80GET/view/3_0_2/cream/hi/shared/img/gvl3-icons-0-2.png200
148
2012-09-21T07:41:49.979235-0700172.18.3.11stats.bbc.co.uk80GET/o.gif?~RS~s~RS~News~RS~t~RS~HighWeb_Index~RS~i~RS~0~RS~p~RS~99113~RS~a~RS~Domestic~RS~u~RS~/news/technology/~RS~r~RS~http://www.bbc.co.uk/news/~RS~q~RS~~RS~z~RS~59~RS~200
149
2012-09-21T07:42:05.938968-0700172.18.3.11www.google.co.uk80GET/s?hl=en&sugexp=les%3B&gs_nf=1&cp=5&gs_id=1k&xhr=t&q=The%20k&pf=p&output=search&sclient=psy-ab&oq=&gs_l=&pbx=1&bav=on.2,or.r_gc.r_pw.r_qf.&fp=ff301ef4d48490c5&biw=1680&bih=920&tch=1&ech=5&psi=H3tcUJzaJYWf0QW184CYBw.1348238521751.1200
150
2012-09-21T07:41:50.019615-0700172.18.3.11emp.bbci.co.uk80GET/emp/releases/bump/revisions/872744/embed.js?emp=worldwide&enableClear=1304
151
2012-09-21T07:41:50.062268-0700172.18.3.11feeds.bbci.co.uk80GET/modules/comments/getcount/?items=__CPS__19651311,__CPS__19638862200
152
2012-09-21T07:42:06.076947-0700172.18.3.11www.google.co.uk80GET/s?hl=en&sugexp=les%3B&gs_nf=1&cp=6&gs_id=20&xhr=t&q=The%20ke&pf=p&output=search&sclient=psy-ab&oq=&gs_l=&pbx=1&bav=on.2,or.r_gc.r_pw.r_qf.&fp=ff301ef4d48490c5&biw=1680&bih=920&tch=1&ech=6&psi=H3tcUJzaJYWf0QW184CYBw.1348238521751.1200
153
2012-09-21T07:41:45.498271-0700172.18.3.11news.bbcimg.co.uk80GET/view/3_0_2/cream/hi/shared/img/livestats-sprite-ko.png200
154
2012-09-21T07:41:50.101114-0700172.18.3.11emp.bbci.co.uk80GET/emp/worldwide/embed.js?mediaset=journalism-pc301
155
2012-09-21T07:41:50.192329-0700172.18.3.11www.bbc.co.uk80GET/news/special/shared/js/istats/v2/istats.js200
156
2012-09-21T07:42:06.146127-0700172.18.3.11www.google.co.uk80GET/s?hl=en&sugexp=les%3B&gs_nf=1&cp=7&gs_id=2e&xhr=t&q=The%20key&pf=p&output=search&sclient=psy-ab&oq=&gs_l=&pbx=1&bav=on.2,or.r_gc.r_pw.r_qf.&fp=ff301ef4d48490c5&biw=1680&bih=920&tch=1&ech=7&psi=H3tcUJzaJYWf0QW184CYBw.1348238521751.1200
157
2012-09-21T07:41:45.500514-0700172.18.3.11news.bbcimg.co.uk80GET/view/3_0_2/cream/hi/shared/img/market-data-down.png200
158
2012-09-21T07:41:50.347306-0700172.18.3.11emp.bbci.co.uk80GET/emp/releases/worldwide/revisions/749603_749269_749444_6/embed.js?mediaset=journalism-pc304
159
2012-09-21T07:41:45.535215-0700172.18.3.11news.bbcimg.co.uk80GET/view/1_4_35/cream/hi/news/img/services.gif200
160
2012-09-21T07:41:54.045062-0700172.18.3.11www.bbc.co.uk80GET/news/technology-19674761200
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 405
Showing 161-180 of 405 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
161
2012-09-21T07:43:38.102668-07001463600247564879flow172.18.3.11647480.239.254.13880TCPpcapanalyzer
162
2012-09-21T07:43:38.102668-07002027121431617043flow172.18.3.11647780.239.221.4380TCPpcapanalyzer
163
2012-09-21T07:43:38.102668-0700901872211608047flow172.18.3.1152490172.18.1.10053UDPpcapanalyzer
164
2012-09-21T07:43:38.102668-0700620893308581305flow172.18.3.11663980.239.149.4480TCPpcapanalyzer
165
2012-09-21T07:43:38.102668-0700621408697317743flow172.18.3.11644987.249.105.5880TCPpcapanalyzer
166
2012-09-21T07:43:38.102668-07001606785871149356flow172.18.3.1161801172.18.1.10053UDPpcapanalyzer
167
2012-09-21T07:43:38.102668-070058699269040922flow172.18.3.116626212.58.244.8080TCPpcapanalyzer
168
2012-09-21T07:43:38.102668-0700621928388892889flow172.18.3.116460212.58.244.7580TCPpcapanalyzer
169
2012-09-21T07:43:38.102668-0700340481332420894flow172.18.3.11652464.236.124.22980TCPpcapanalyzer
170
2012-09-21T07:43:38.102668-0700763142621311496flow172.18.3.1149369172.18.1.10053UDPpcapanalyzer
171
2012-09-21T07:43:38.102668-07001889175675006049flow172.18.3.116605213.174.142.2980TCPpcapanalyzer
172
2012-09-21T07:43:38.102668-07001326403956875693flow172.18.3.11645680.239.254.2480TCPpcapanalyzer
173
2012-09-21T07:43:38.102668-07001326880701218610flow172.18.3.1152464172.18.1.10053UDPpcapanalyzer
174
2012-09-21T07:43:38.102668-0700905389791076026flow172.18.3.1164110172.18.1.10053UDPpcapanalyzer
175
2012-09-21T07:43:38.102668-07002172787395330868flow172.18.3.11654398.124.224.24380TCPpcapanalyzer
176
2012-09-21T07:43:38.102668-0700624803872458189flow172.18.3.1163166172.18.1.10053UDPpcapanalyzer
177
2012-09-21T07:43:38.102668-0700766061051761553flow172.18.3.1153765172.18.1.10053UDPpcapanalyzer
178
2012-09-21T07:43:38.102668-07001892061890523973flow172.18.3.116557173.252.101.16443TCPpcapanalyzer
179
2012-09-21T07:43:38.102668-07001329605854638704flow172.18.3.11642480.239.217.17180TCPpcapanalyzer
180
2012-09-21T07:43:38.102668-0700907563040781089flow172.18.3.11642580.239.254.3480TCPpcapanalyzer
File 654
Showing 81-100 of 654 items.
#
TimestampSourceDestinationFile NameFile MagicFile Size
81
2012-09-21T07:41:44.893419-070080.239.254.24172.18.3.11/media/images/62967000/jpg/_62967972_hi016012954.jpgJPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 144x81, frames 37308
82
2012-09-21T07:41:44.897784-070080.239.254.24172.18.3.11/media/images/62987000/jpg/_62987391_hi016011678.jpgJPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 144x81, frames 35577
83
2012-09-21T07:41:44.904783-070080.239.254.24172.18.3.11/media/images/63018000/jpg/_63018262_hi016017809.jpgJPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 144x81, frames 37657
84
2012-09-21T07:41:45.254892-070087.249.105.58172.18.3.11/bbc/bbc/sHTML document, ASCII text, with very long lines857
85
2012-09-21T07:41:45.380959-070080.239.254.24172.18.3.11/js/view/0_0_32/news-index.jsASCII text, with very long lines, with no line terminators28046
86
2012-09-21T07:41:44.933637-070080.239.254.24172.18.3.11/media/images/63025000/jpg/_63025125_016028534-1.jpgJPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 144x81, frames 36250
87
2012-09-21T07:41:44.936981-070080.239.254.24172.18.3.11/media/images/63028000/jpg/_63028641_binoche640.jpgJPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 144x81, frames 34047
88
2012-09-21T07:41:45.414479-070087.249.105.58172.18.3.11/bbc/bbc/sGIF image data, version 89a, 1 x 143
89
2012-09-21T07:41:44.950703-070080.239.254.24172.18.3.11/media/images/63012000/jpg/_63012675_63012074.jpgJPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 144x81, frames 37013
90
2012-09-21T07:41:45.380433-070080.239.217.171172.18.3.11/frameworks/demi/0.9.8/sharedmodules/demi-1.jsASCII text17723
91
2012-09-21T07:41:45.418689-070080.239.217.171172.18.3.11/frameworks/barlesque/2.10.0/desktop/3.5/img/bbccookies/cookie_prompt_sprite.pngPNG image data, 16 x 330, 16-bit/color RGB, non-interlaced2779
92
2012-09-21T07:41:45.435571-070080.239.254.24172.18.3.11/view/1_4_35/cream/hi/news/img/subnav-divider.pngPNG image data, 1 x 10, 8-bit colormap, non-interlaced126
93
2012-09-21T07:41:45.435721-070080.239.254.24172.18.3.11/view/3_0_2/cream/hi/shared/img/transparencies/rgba-0-0-0-07.pngPNG image data, 20 x 20, 8-bit/color RGBA, non-interlaced130
94
2012-09-21T07:41:45.481766-070080.239.254.24172.18.3.11/view/3_0_2/cream/hi/shared/img/search.pngPNG image data, 32 x 24, 8-bit/color RGBA, non-interlaced390
95
2012-09-21T07:41:45.478856-070080.239.254.24172.18.3.11/view/1_4_35/cream/hi/news/img/red-masthead.pngPNG image data, 1800 x 128, 8-bit/color RGB, non-interlaced36830
96
2012-09-21T07:41:45.521161-070080.239.254.24172.18.3.11/view/3_0_2/cream/hi/shared/img/programmes-iplayer-brand.pngPNG image data, 122 x 22, 8-bit colormap, non-interlaced2240
97
2012-09-21T07:41:45.524575-070080.239.254.24172.18.3.11/view/1_4_35/cream/hi/news/img/languages-sprite.gifGIF image data, version 89a, 1873 x 4811937
98
2012-09-21T07:41:45.566662-070080.239.217.171172.18.3.11/frameworks/istats/0.11.1/modules/istats-1.jsASCII text, with very long lines, with no line terminators8005
99
2012-09-21T07:41:45.508437-070080.239.254.42172.18.3.11/emp/worldwide/embed.jsHTML document, ASCII text317
100
2012-09-21T07:41:45.613716-070080.239.217.171172.18.3.11/frameworks/swfobject/0.1.3/sharedmodules/swfobject-2.jsC source, ASCII text25620

Comments(not set)

Update Download PCAP Delete