log_2019_08_19.pcap

MD5bae82e71be32f9d0992bc838d4d7d6e5
Submission Date2019-08-19 08:38:20
Tags(not set)
Alert 1
Showing 1-1 of 1 item.
#
TimestampSrc IpDest IpAlert SignatureP
1
2019-08-19T08:20:33.549579-0700172.31.29.164169.254.169.254ET POLICY curl User-Agent Outbound*
DNS 304
Showing 1-20 of 304 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
1
2019-08-19T08:08:40.093877-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netA(not set)
2
2019-08-19T08:08:40.034529-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netA(not set)
3
2019-08-19T08:08:40.093892-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netAAAA(not set)
4
2019-08-19T08:08:40.034545-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netAAAA(not set)
5
2019-08-19T08:09:00.104916-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netA(not set)
6
2019-08-19T08:09:00.104930-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netAAAA(not set)
7
2019-08-19T08:08:40.094208-0700172.31.0.2172.31.29.164answer187-163-187-32.static.axtel.net(not set)(not set)
8
2019-08-19T08:09:00.105162-0700172.31.0.2172.31.29.164answer187-163-187-32.static.axtel.net(not set)(not set)
9
2019-08-19T08:08:40.093366-0700172.31.0.2172.31.29.164answer187-163-187-32.static.axtel.net(not set)(not set)
10
2019-08-19T08:08:40.093654-0700172.31.0.2172.31.29.164answer187-163-187-32.static.axtel.net(not set)(not set)
11
2019-08-19T08:08:40.094218-0700172.31.0.2172.31.29.164answer187-163-187-32.static.axtel.net(not set)(not set)
12
2019-08-19T08:08:59.766022-0700172.31.29.164172.31.0.2query32.187.163.187.in-addr.arpaPTR(not set)
13
2019-08-19T08:08:59.955156-0700172.31.0.2172.31.29.164answer32.187.163.187.in-addr.arpa(not set)(not set)
14
2019-08-19T08:08:59.955401-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netA(not set)
15
2019-08-19T08:08:59.955732-0700172.31.0.2172.31.29.164answer187-163-187-32.static.axtel.net(not set)(not set)
16
2019-08-19T08:09:00.102581-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netA(not set)
17
2019-08-19T08:09:00.102598-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netAAAA(not set)
18
2019-08-19T08:09:00.103013-0700172.31.0.2172.31.29.164answer187-163-187-32.static.axtel.net(not set)(not set)
19
2019-08-19T08:09:00.103045-0700172.31.0.2172.31.29.164answer187-163-187-32.static.axtel.net(not set)(not set)
20
2019-08-19T08:09:00.104170-0700172.31.29.164172.31.0.2query187-163-187-32.static.axtel.netA(not set)
TLS 32
Showing 1-20 of 32 items.
#
TimestampSource IPDestination IPTLS VersionIssuer
1
2019-08-19T08:14:57.941457-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
2
2019-08-19T08:14:58.347339-0700172.31.29.16454.173.7.157TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
3
2019-08-19T08:14:58.432690-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
4
2019-08-19T08:14:58.028505-0700172.31.29.16454.173.7.157TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
5
2019-08-19T08:14:59.056418-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
6
2019-08-19T08:14:59.528237-0700172.31.29.16454.173.7.157TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
7
2019-08-19T08:15:05.489576-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
8
2019-08-19T08:14:58.489286-0700172.31.29.16454.173.7.157TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
9
2019-08-19T08:14:58.185138-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
10
2019-08-19T08:15:01.872517-0700172.31.29.16454.173.7.157TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
11
2019-08-19T08:15:01.962917-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
12
2019-08-19T08:15:01.458723-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
13
2019-08-19T08:15:04.184302-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
14
2019-08-19T08:15:03.255432-0700172.31.29.16454.173.7.157TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
15
2019-08-19T08:15:04.553297-0700172.31.29.16454.173.7.157TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
16
2019-08-19T08:16:08.676572-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
17
2019-08-19T08:16:08.945939-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
18
2019-08-19T08:16:09.214547-0700172.31.29.16454.236.176.77TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
19
2019-08-19T08:16:08.601959-0700172.31.29.16454.173.7.157TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
20
2019-08-19T08:16:09.071064-0700172.31.29.16454.173.7.157TLS 1.2C=US, O=Amazon, OU=Server CA 1B, CN=Amazon
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 1
Showing 1-1 of 1 item.
#
TimestampSourceHostnamePortMethodURLStatus
1
2019-08-19T08:20:33.549579-0700172.31.29.164169.254.169.25480GET/latest/meta-data/network/interfaces/macs/0e:08:40:15:c2:5d/local-ipv4s200
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 233
Showing 1-20 of 233 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2019-08-19T08:34:28.738375-07002126252476240053flow172.31.29.16435617172.31.0.253UDPpcapanalyzer
2
2019-08-19T08:34:28.738375-0700298928589495623flow10.10.1.19263009172.31.29.16480TCPpcapanalyzer
3
2019-08-19T08:34:28.738375-07002139455205709546flow172.31.29.16456093172.31.0.253UDPpcapanalyzer
4
2019-08-19T08:34:28.738375-07002150669365320148flow172.31.29.16439589172.31.0.253UDPpcapanalyzer
5
2019-08-19T08:34:28.738375-0700757643966802609flow10.10.0.237(not set)172.31.29.164(not set)ICMPpcapanalyzer
6
2019-08-19T08:34:28.738375-07001613227221354209flow172.31.29.16438417172.31.0.253UDPpcapanalyzer
7
2019-08-19T08:34:28.738375-07001051411155346710flow10.10.1.19263013172.31.29.16480TCPpcapanalyzer
8
2019-08-19T08:34:28.738375-0700491201376329436flow172.31.29.16449820172.31.0.253UDPpcapanalyzer
9
2019-08-19T08:34:28.738375-07002069339862687036flow172.31.29.16422187.163.187.3249379TCPpcapanalyzer
10
2019-08-19T08:34:28.738375-07002074137357804926flow10.10.1.19263014172.31.29.16480TCPpcapanalyzer
11
2019-08-19T08:34:28.738375-07002076362150291160flow10.10.1.19263010172.31.29.16480TCPpcapanalyzer
12
2019-08-19T08:34:28.738375-07001517737229501063flow10.10.0.13389172.31.29.16453851TCPpcapanalyzer
13
2019-08-19T08:34:28.738375-0700814118492418118flow172.31.29.16438335172.31.0.253UDPpcapanalyzer
14
2019-08-19T08:34:28.738375-07001379645426291508flow172.31.29.16457460172.31.0.253UDPpcapanalyzer
15
2019-08-19T08:34:28.738375-0700114567119265497flow172.31.29.16453950172.31.32.1623306TCPpcapanalyzer
16
2019-08-19T08:34:28.738375-0700118965149396661flow172.31.29.16456752172.31.0.253UDPpcapanalyzer
17
2019-08-19T08:34:28.738375-07002092378069192995flow172.31.29.16460517172.31.0.253UDPpcapanalyzer
18
2019-08-19T08:34:28.738375-0700690681132323849flow172.31.29.16453527172.31.0.253UDPpcapanalyzer
19
2019-08-19T08:34:28.738375-07001683398413084143flow10.10.1.19263016172.31.29.16480TCPpcapanalyzer
20
2019-08-19T08:34:28.738375-0700980655863501476flow10.10.1.19263011172.31.29.16480TCPpcapanalyzer
File 1
Showing 1-1 of 1 item.
#
TimestampSourceDestinationFile NameFile MagicFile Size
1
2019-08-19T08:20:33.549579-0700169.254.169.254172.31.29.164/latest/meta-data/network/interfaces/macs/0e:08:40:15:c2:5d/local-ipv4sASCII text, with no line terminators13

Comments(not set)

Update Download PCAP Delete