2018_10_19__22_54_05.pcap

MD5f4abda6a181ff069f3c39691e4369efd
Submission Date2018-10-19 17:29:00
Tags(not set)
Alert 8
Showing 1-8 of 8 items.
#
TimestampSrc IpDest IpAlert SignatureP
1
2018-10-19T13:54:12.213765-070010.0.0.210.0.0.138ET SCAN Possible Nmap User-Agent Observed*
2
2018-10-19T13:54:19.644127-070010.0.0.210.0.0.138ET SCAN Possible Nmap User-Agent Observed*
3
2018-10-19T13:54:13.916412-070010.0.0.210.0.0.138ET SCAN Possible Nmap User-Agent Observed*
4
2018-10-19T13:54:22.035211-070010.0.0.210.0.0.138ET SCAN Possible Nmap User-Agent Observed*
5
2018-10-19T13:54:13.916412-070010.0.0.210.0.0.138ET SCAN Possible Nmap User-Agent Observed*
6
2018-10-19T13:54:22.035211-070010.0.0.210.0.0.138ET SCAN Possible Nmap User-Agent Observed*
7
2018-10-19T13:54:12.213765-070010.0.0.210.0.0.138ET SCAN Possible Nmap User-Agent Observed*
8
2018-10-19T13:54:19.644127-070010.0.0.210.0.0.138ET SCAN Possible Nmap User-Agent Observed*
DNS 4
Showing 1-4 of 4 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
1
2018-10-19T13:54:07.326277-070010.0.0.210.0.0.138queryapi.amplitude.comA(not set)
2
2018-10-19T13:54:07.353020-070010.0.0.13810.0.0.2answerapi.amplitude.comA(not set)
3
2018-10-19T13:54:07.326277-070010.0.0.210.0.0.138queryapi.amplitude.comA(not set)
4
2018-10-19T13:54:07.353020-070010.0.0.13810.0.0.2answerapi.amplitude.comA(not set)
TLS 12
Showing 1-12 of 12 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2018-10-19T13:54:07.895164-070010.0.0.254.69.208.72TLS 1.2api.amplitude.com
2
2018-10-19T13:54:12.430196-070010.0.0.252.19.67.207TLS 1.2production.sweatco.in
3
2018-10-19T13:54:12.328019-070010.0.0.210.0.0.138TLS 1.2(not set)
4
2018-10-19T13:54:21.061652-070010.0.0.210.0.0.138UNDETERMINED(not set)
5
2018-10-19T13:54:23.146014-070010.0.0.210.0.0.138UNDETERMINED(not set)
6
2018-10-19T13:54:21.012079-070010.0.0.210.0.0.138UNDETERMINED(not set)
7
2018-10-19T13:54:12.328019-070010.0.0.210.0.0.138TLS 1.2(not set)
8
2018-10-19T13:54:07.895164-070010.0.0.254.69.208.72TLS 1.2api.amplitude.com
9
2018-10-19T13:54:12.430196-070010.0.0.252.19.67.207TLS 1.2production.sweatco.in
10
2018-10-19T13:54:21.061652-070010.0.0.210.0.0.138UNDETERMINED(not set)
11
2018-10-19T13:54:23.146014-070010.0.0.210.0.0.138UNDETERMINED(not set)
12
2018-10-19T13:54:21.012079-070010.0.0.210.0.0.138UNDETERMINED(not set)
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 8
Showing 1-8 of 8 items.
#
TimestampSourceHostnamePortMethodURLStatus
1
2018-10-19T13:54:12.213765-070010.0.0.210.0.0.138443OPTIONS/(not set)
2
2018-10-19T13:54:19.644127-070010.0.0.210.0.0.138443OPTIONS/(not set)
3
2018-10-19T13:54:22.042750-070010.0.0.210.0.0.13880OPTIONS/(not set)
4
2018-10-19T13:54:22.042750-070010.0.0.210.0.0.13880OPTIONS/(not set)
5
2018-10-19T13:54:12.213765-070010.0.0.210.0.0.138443OPTIONS/(not set)
6
2018-10-19T13:54:19.644127-070010.0.0.210.0.0.138443OPTIONS/(not set)
7
2018-10-19T13:54:21.113627-070010.0.0.210.0.0.13880OPTIONS/(not set)
8
2018-10-19T13:54:21.113627-070010.0.0.210.0.0.13880OPTIONS/(not set)
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 58
Showing 1-20 of 58 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2018-10-19T13:54:22.042750-07001548985398767772flow10.0.0.24029552.19.67.207443TCPpcapanalyzer
2
2018-10-19T13:54:22.042750-0700425185730964733flow10.0.0.25353224.0.0.2515353UDPpcapanalyzer
3
2018-10-19T13:54:22.042750-0700290315167402121flow10.0.0.23964710.0.0.13880TCPpcapanalyzer
4
2018-10-19T13:54:22.042750-07001847178535339484flow10.0.0.24838954.69.208.72443TCPpcapanalyzer
5
2018-10-19T13:54:22.042750-07001004858139619043flow10.0.0.23965410.0.0.13880TCPpcapanalyzer
6
2018-10-19T13:54:22.042750-07001710190553333670flow10.0.0.23963710.0.0.13880TCPpcapanalyzer
7
2018-10-19T13:54:22.042750-07001712140468558959flow10.0.0.13844310.0.0.245425TCPpcapanalyzer
8
2018-10-19T13:54:22.042750-07001016808885657069flow52.94.216.15044310.0.0.243687TCPpcapanalyzer
9
2018-10-19T13:54:22.042750-07002011441706915640flow31.13.84.49522210.0.0.242571TCPpcapanalyzer
10
2018-10-19T13:54:22.042750-07001729973173700131flow10.0.0.23959710.0.0.13880TCPpcapanalyzer
11
2018-10-19T13:54:22.042750-07001456111025959399flow10.0.0.24543310.0.0.138443TCPpcapanalyzer
12
2018-10-19T13:54:22.042750-07001463476895340930flow127.0.0.143120127.0.0.1443TCPpcapanalyzer
13
2018-10-19T13:54:22.042750-07001050286008589550flow10.0.0.24543110.0.0.138443TCPpcapanalyzer
14
2018-10-19T13:54:22.042750-0700921136342596205flow10.0.0.23961410.0.0.13880TCPpcapanalyzer
15
2018-10-19T13:54:22.042750-07001074857516240498flow10.0.0.23756850.16.211.190443TCPpcapanalyzer
16
2018-10-19T13:54:22.042750-07002061252590633870flow10.0.0.23965310.0.0.13880TCPpcapanalyzer
17
2018-10-19T13:54:22.042750-07001791749834930821flow10.0.0.24183610.0.0.13853UDPpcapanalyzer
18
2018-10-19T13:54:22.042750-07001097365293070672flow127.0.0.143119127.0.0.1443TCPpcapanalyzer
19
2018-10-19T13:54:22.042750-0700675393345653801flow10.0.0.24027552.19.67.207443TCPpcapanalyzer
20
2018-10-19T13:54:22.042750-0700817936868058663flow10.0.0.24028452.19.67.207443TCPpcapanalyzer
File 0
#
TimestampSourceDestinationFile NameFile MagicFile Size
No results found.

Comments(not set)

Update Download PCAP Delete