capture-27.pcap

MD55ce9ba9cd9e5182e55bb53f6e1f7cb81
Submission Date2018-10-06 12:24:37
Tags(not set)
Alert 0
#
TimestampSrc IpDest IpAlert SignatureP
No results found.
DNS 132
Showing 1-20 of 132 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
1
2018-10-06T11:49:45.443307-070092.208.144.158176.95.16.194querygraph.facebook.comA(not set)
2
2018-10-06T11:49:45.470817-0700176.95.16.19492.208.144.158answergraph.facebook.comA(not set)
3
2018-10-06T11:49:45.407459-070092.208.144.158176.95.16.194querygraph.facebook.comAAAA(not set)
4
2018-10-06T11:49:45.433369-0700176.95.16.19492.208.144.158answergraph.facebook.comAAAA(not set)
5
2018-10-06T11:49:47.113788-070092.208.144.158176.95.16.194querysettings.crashlytics.comA(not set)
6
2018-10-06T11:49:47.139345-0700176.95.16.19492.208.144.158answersettings.crashlytics.comA(not set)
7
2018-10-06T11:49:46.286196-070092.208.144.158176.95.16.194queryandroid.clients.google.comA(not set)
8
2018-10-06T11:49:46.311672-0700176.95.16.19492.208.144.158answerandroid.clients.google.comA(not set)
9
2018-10-06T11:49:46.249041-070092.208.144.158176.95.16.194queryandroid.clients.google.comAAAA(not set)
10
2018-10-06T11:49:46.275717-0700176.95.16.19492.208.144.158answerandroid.clients.google.comAAAA(not set)
11
2018-10-06T11:49:46.976303-070092.208.144.158176.95.16.194querysettings.crashlytics.comAAAA(not set)
12
2018-10-06T11:49:47.003322-0700176.95.16.19492.208.144.158answersettings.crashlytics.comAAAA(not set)
13
2018-10-06T11:49:47.287531-070092.208.144.158176.95.16.194querycloudconfig.googleapis.comAAAA(not set)
14
2018-10-06T11:49:47.312591-0700176.95.16.19492.208.144.158answercloudconfig.googleapis.comAAAA(not set)
15
2018-10-06T11:49:47.322415-070092.208.144.158176.95.16.194querycloudconfig.googleapis.comA(not set)
16
2018-10-06T11:49:47.826282-070092.208.144.158176.95.16.194querygraph.facebook.comA(not set)
17
2018-10-06T11:49:47.853131-0700176.95.16.19492.208.144.158answergraph.facebook.comA(not set)
18
2018-10-06T11:49:47.704907-070092.208.144.158176.95.16.194query4pics-api-prod.lotum.comA(not set)
19
2018-10-06T11:49:47.732342-0700176.95.16.19492.208.144.158answer4pics-api-prod.lotum.comA(not set)
20
2018-10-06T11:49:47.964340-070092.208.144.158176.95.16.194queryapp.adjust.comA(not set)
TLS 58
Showing 1-20 of 58 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2018-10-06T11:49:45.581531-070092.208.144.158185.60.216.15TLS 1.2graph.facebook.com
2
2018-10-06T11:49:46.460249-070092.208.144.158172.217.23.174TLS 1.2android.clients.google.com
3
2018-10-06T11:49:47.466414-070092.208.144.158216.58.207.138TLS 1.2cloudconfig.googleapis.com
4
2018-10-06T11:49:47.415138-070092.208.144.15854.235.194.181TLS 1.2settings.crashlytics.com
5
2018-10-06T11:49:46.401104-070092.208.144.158185.60.216.15TLS 1.2graph.facebook.com
6
2018-10-06T11:49:47.892509-070092.208.144.158185.60.216.15TLS 1.3 draft-26-fbgraph.facebook.com
7
2018-10-06T11:49:48.036858-070092.208.144.15834.204.229.165TLS 1.24pics-api-prod.lotum.com
8
2018-10-06T11:49:48.247588-070092.208.144.158178.162.219.61TLS 1.2app.adjust.com
9
2018-10-06T11:49:48.254485-070092.208.144.158192.48.236.10TLS 1.2ads.mopub.com
10
2018-10-06T11:49:48.296841-070092.208.144.158192.48.236.10TLS 1.2ads.mopub.com
11
2018-10-06T11:49:48.439033-070092.208.144.15854.221.229.104TLS 1.2e.crashlytics.com
12
2018-10-06T11:49:48.618504-070092.208.144.15834.204.229.165TLS 1.24pics-api-prod.lotum.com
13
2018-10-06T11:49:48.844142-070092.208.144.15852.222.163.159TLS 1.2d1eu3ezuaevlep.cloudfront.net
14
2018-10-06T11:49:49.200887-070092.208.144.15852.222.163.159TLS 1.2d1eu3ezuaevlep.cloudfront.net
15
2018-10-06T11:49:49.636456-070092.208.144.15852.222.163.159TLS 1.2d1eu3ezuaevlep.cloudfront.net
16
2018-10-06T11:49:50.040795-070092.208.144.15852.222.163.159TLS 1.2d1eu3ezuaevlep.cloudfront.net
17
2018-10-06T11:49:47.628085-070092.208.144.158172.217.23.174TLS 1.2android.clients.google.com
18
2018-10-06T11:49:48.105885-070092.208.144.158178.162.219.61TLS 1.2app.adjust.com
19
2018-10-06T11:49:48.469308-070092.208.144.15852.222.163.247TLS 1.2d321uiyz3syu8v.cloudfront.net
20
2018-10-06T11:49:50.240462-070092.208.144.158110.74.183.44TLS 1.2pcap.honeynet.org.my
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 1
Showing 1-1 of 1 item.
#
TimestampSourceHostnamePortMethodURLStatus
1
2018-10-06T11:50:13.461016-070092.208.144.158portal.fb.com80GET/mobile/status.php204
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 182
Showing 1-20 of 182 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2018-10-06T11:50:45.492747-07001971390054150286flow37.49.231.664318092.208.144.1589960UDPpcapanalyzer
2
2018-10-06T11:50:45.492747-0700954870077560129flow146.185.222.94851592.208.144.15815078TCPpcapanalyzer
3
2018-10-06T11:51:26.975851-07001161604033492334flow92.208.144.158613315.72.255.55222TCPpcapanalyzer
4
2018-10-06T11:51:26.975851-0700678892659227941flow64.233.167.188522892.208.144.15858942TCPpcapanalyzer
5
2018-10-06T11:51:26.975851-07001739481145779897flow34.223.230.8344392.208.144.15844116TCPpcapanalyzer
6
2018-10-06T11:51:26.975851-0700837125697021851flow92.208.144.15842073185.60.216.11443TCPpcapanalyzer
7
2018-10-06T11:51:26.975851-0700849037788936296flow92.208.144.1585563454.77.255.15080TCPpcapanalyzer
8
2018-10-06T11:51:26.975851-0700597331230546737flow92.208.144.1583830052.19.68.7580TCPpcapanalyzer
9
2018-10-06T11:51:26.975851-0700473795086384000flow104.87.234.5244392.208.144.15850118TCPpcapanalyzer
10
2018-10-06T11:51:26.975851-07001182050225992316flow185.60.216.5344392.208.144.15835121TCPpcapanalyzer
11
2018-10-06T11:51:26.975851-0700833661806327096flow92.208.144.15842333103.235.47.74443TCPpcapanalyzer
12
2018-10-06T11:51:26.975851-0700975400022102596flow92.208.144.15841118172.217.21.110443TCPpcapanalyzer
13
2018-10-06T11:51:26.975851-0700655843718100205flow103.235.47.748092.208.144.15855532TCPpcapanalyzer
14
2018-10-06T11:51:26.975851-07001262774136644406flow103.235.47.7444392.208.144.15855560TCPpcapanalyzer
15
2018-10-06T11:51:26.975851-0700533583179102110flow92.208.144.15847733172.217.22.194443TCPpcapanalyzer
16
2018-10-06T11:51:26.975851-07001900772201118428flow54.76.80.7344392.208.144.15856604TCPpcapanalyzer
17
2018-10-06T11:51:26.975851-07001768764233792226flow54.76.80.7344392.208.144.15856605TCPpcapanalyzer
18
2018-10-06T11:51:26.975851-07001902058543918671flow52.50.157.4744392.208.144.15835848TCPpcapanalyzer
19
2018-10-06T11:51:26.975851-07001627837767234658flow103.235.47.748092.208.144.15858805TCPpcapanalyzer
20
2018-10-06T11:51:26.975851-07001094727099128961flow103.235.47.7444392.208.144.15853881TCPpcapanalyzer
File 0
#
TimestampSourceDestinationFile NameFile MagicFile Size
No results found.

Comments(not set)

Update Download PCAP Delete