mitm.pcap

MD5e0ab226dc17b88cd4afa9ea307439511
Submission Date2021-10-04 14:50:34
Tags(not set)
Alert 0
#
TimestampSrc IpDest IpAlert SignatureP
No results found.
DNS 136
Showing 1-20 of 136 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
1
2021-10-04T14:38:33.584436-0700192.168.128.90192.168.128.1queryapp-measurement.comA(not set)
2
2021-10-04T14:38:33.585499-0700192.168.128.90192.168.128.1queryapp-measurement.comA(not set)
3
2021-10-04T14:38:33.588366-0700192.168.128.1192.168.128.90answerapp-measurement.comA(not set)
4
2021-10-04T14:38:33.607554-0700192.168.128.1192.168.128.90answerapp-measurement.comA(not set)
5
2021-10-04T14:38:33.737818-0700192.168.128.90192.168.128.1queryalb.reddit.com65(not set)
6
2021-10-04T14:38:33.741186-0700192.168.128.90192.168.128.1queryinappcheck-lb.itunes-apple.com.akadns.net65(not set)
7
2021-10-04T14:38:33.741670-0700192.168.128.90192.168.128.1queryinappcheck-lb.itunes-apple.com.akadns.netA(not set)
8
2021-10-04T14:38:33.745400-0700192.168.128.90192.168.128.1queryalb.reddit.com65(not set)
9
2021-10-04T14:38:33.745688-0700192.168.128.90192.168.128.1queryinappcheck-lb.itunes-apple.com.akadns.net65(not set)
10
2021-10-04T14:38:33.745786-0700192.168.128.90192.168.128.1queryinappcheck-lb.itunes-apple.com.akadns.netA(not set)
11
2021-10-04T14:38:33.737380-0700192.168.128.90192.168.128.1queryfirebase-settings.crashlytics.comA(not set)
12
2021-10-04T14:38:33.740111-0700192.168.128.90192.168.128.1queryapi2.branch.ioA(not set)
13
2021-10-04T14:38:33.745301-0700192.168.128.90192.168.128.1queryfirebase-settings.crashlytics.comA(not set)
14
2021-10-04T14:38:33.745592-0700192.168.128.90192.168.128.1queryapi2.branch.ioA(not set)
15
2021-10-04T14:38:33.758678-0700192.168.128.1192.168.128.90answerfirebase-settings.crashlytics.comA(not set)
16
2021-10-04T14:38:33.760404-0700192.168.128.1192.168.128.90answerapi2.branch.ioA(not set)
17
2021-10-04T14:38:33.765831-0700192.168.128.1192.168.128.90answerfirebase-settings.crashlytics.comA(not set)
18
2021-10-04T14:38:33.766718-0700192.168.128.1192.168.128.90answerapi2.branch.ioA(not set)
19
2021-10-04T14:38:33.760495-0700192.168.128.1192.168.128.90answerinappcheck-lb.itunes-apple.com.akadns.net65(not set)
20
2021-10-04T14:38:33.760510-0700192.168.128.1192.168.128.90answeralb.reddit.com65(not set)
TLS 12
Showing 1-12 of 12 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2021-10-04T14:38:03.420663-0700192.168.128.9017.248.200.1TLS 1.2p71-fmip.icloud.com
2
2021-10-04T14:37:51.484303-0700192.168.128.9017.248.200.1TLS 1.2p71-fmip.icloud.com
3
2021-10-04T14:37:51.487325-0700192.168.128.9017.248.200.1TLS 1.2p71-fmip.icloud.com
4
2021-10-04T14:38:34.161151-0700192.168.128.90199.232.121.140TLS 1.3alb.reddit.com
5
2021-10-04T14:38:34.044356-0700192.168.128.9013.226.101.74TLS 1.3api2.branch.io
6
2021-10-04T14:38:34.158461-0700192.168.128.90104.120.129.198TLS 1.3inappcheck.itunes.apple.com
7
2021-10-04T14:38:34.545455-0700192.168.128.90199.232.121.140TLS 1.3oauth.reddit.com
8
2021-10-04T14:38:34.161173-0700192.168.128.90142.251.40.67TLS 1.3firebase-settings.crashlytics.com
9
2021-10-04T14:38:46.299519-0700192.168.128.90199.232.121.140TLS 1.3www.redditstatic.com
10
2021-10-04T14:38:34.545455-0700192.168.128.90199.232.121.140TLS 1.3gateway.reddit.com
11
2021-10-04T14:38:46.483973-0700192.168.128.9064.233.185.149TLS 1.3ad.doubleclick.net
12
2021-10-04T14:38:46.683384-0700192.168.128.9023.64.174.7TLS 1.3secure.insightexpressai.com
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 0
#
TimestampSourceHostnamePortMethodURLStatus
No results found.
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 62
Showing 1-20 of 62 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2021-10-04T14:38:46.675901-07001690262709093222flow192.168.128.9052371192.168.128.153UDPpcapanalyzer
2
2021-10-04T14:38:46.675901-07001409981733241953flow192.168.128.905081813.226.101.74443TCPpcapanalyzer
3
2021-10-04T14:38:46.675901-0700566136623755441flow192.168.128.9059406192.168.128.153UDPpcapanalyzer
4
2021-10-04T14:38:46.675901-0700989218819728559flow192.168.128.906355034.225.232.112443TCPpcapanalyzer
5
2021-10-04T14:38:46.675901-0700145871926369524flow192.168.128.9050825199.232.121.140443TCPpcapanalyzer
6
2021-10-04T14:38:46.675901-07001553493771333277flow192.168.128.9060552192.168.128.153UDPpcapanalyzer
7
2021-10-04T14:38:46.675901-07001978040550248258flow192.168.128.9059335192.168.128.153UDPpcapanalyzer
8
2021-10-04T14:38:46.675901-0700995180234304753flow192.168.128.9063685192.168.128.153UDPpcapanalyzer
9
2021-10-04T14:38:46.675901-070010964856032015flow192.168.128.9052421192.168.128.153UDPpcapanalyzer
10
2021-10-04T14:38:46.675901-070011478104622684flow192.168.128.9055290192.168.128.153UDPpcapanalyzer
11
2021-10-04T14:38:46.675901-07001984665537323524flow192.168.128.9050821199.232.121.140443TCPpcapanalyzer
12
2021-10-04T14:38:46.675901-070018768808884475flow192.168.128.905081617.248.200.1443TCPpcapanalyzer
13
2021-10-04T14:38:46.675901-07001707818388740111flow192.168.128.9064804192.168.128.153UDPpcapanalyzer
14
2021-10-04T14:38:46.675901-0700864162257712827flow192.168.128.9051794192.168.128.153UDPpcapanalyzer
15
2021-10-04T14:38:46.675901-0700724118405794627flow192.168.128.9058836192.168.128.153UDPpcapanalyzer
16
2021-10-04T14:38:46.675901-07001710915059287705flow192.168.128.9050819142.251.40.67443TCPpcapanalyzer
17
2021-10-04T14:38:46.675901-07001150975878816404flow192.168.128.9050836199.232.121.140443TCPpcapanalyzer
18
2021-10-04T14:38:46.675901-0700736906670933820flow192.168.128.9056273192.168.128.153UDPpcapanalyzer
19
2021-10-04T14:38:46.675901-0700597307348916839flow192.168.128.9050824199.232.121.140443TCPpcapanalyzer
20
2021-10-04T14:38:46.675901-07001019672286081682flow192.168.128.905084064.233.185.149443TCPpcapanalyzer
File 0
#
TimestampSourceDestinationFile NameFile MagicFile Size
No results found.

Comments(not set)

Update Download PCAP Delete