DCIP_20181029110718_20181101170719_102_168_8_80_p78D6J.pcap

MD5a9e8e95cbd539ee56ee6127fe0a3b433
Submission Date2018-11-04 08:27:00
Tags(not set)
Alert 10
Showing 1-10 of 10 items.
#
TimestampSrc IpDest IpAlert SignatureP
1
2018-10-31T10:25:56.744438-070010.24.204.11102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
2
2018-10-30T06:45:00.152931-070010.24.139.250102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
3
2018-10-31T15:40:01.443130-070010.24.139.250102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
4
2018-10-31T06:25:45.747339-070010.24.204.11102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
5
2018-11-01T00:40:02.170864-070010.24.139.250102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
6
2018-10-31T12:40:00.235786-070010.24.139.250102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
7
2018-10-31T15:01:01.787095-070010.24.204.12102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
8
2018-11-01T08:20:00.581629-070010.24.204.11102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
9
2018-10-30T04:44:56.484772-070010.24.139.250102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
10
2018-10-30T13:20:00.685398-070010.24.204.11102.168.8.80ET SCAN Behavioral Unusual Port 445 traffic Potential Scan or Infection*
DNS 0
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
No results found.
TLS 0
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
No results found.
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 0
#
TimestampSourceHostnamePortMethodURLStatus
No results found.
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 183
Showing 1-20 of 183 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2018-10-31T15:20:01.171715-0700141481878764552flow10.24.139.25057459102.168.8.80445TCPpcapanalyzer
2
2018-10-31T15:20:01.171715-07001837121610504519flow10.24.139.25052586102.168.8.80445TCPpcapanalyzer
3
2018-10-31T15:20:01.171715-07001718138367409316flow10.24.139.25055040102.168.8.80445TCPpcapanalyzer
4
2018-10-31T15:20:01.171715-0700171877755546423flow10.24.204.1161789102.168.8.80445TCPpcapanalyzer
5
2018-10-31T15:20:01.171715-07001861652945334505flow10.24.204.1161258102.168.8.80445TCPpcapanalyzer
6
2018-10-31T15:20:01.171715-07001899117473233925flow10.24.204.1157180102.168.8.80445TCPpcapanalyzer
7
2018-10-31T15:20:01.171715-07001623434750406578flow10.24.204.1161307102.168.8.80445TCPpcapanalyzer
8
2018-10-31T15:20:01.171715-07001647452287161699flow10.24.139.25060141102.168.8.80445TCPpcapanalyzer
9
2018-10-31T15:20:01.171715-0700805557249205857flow10.24.204.1161834102.168.8.80445TCPpcapanalyzer
10
2018-10-31T15:20:01.171715-07001524119838011701flow10.24.204.1160785102.168.8.80445TCPpcapanalyzer
11
2018-10-31T15:20:01.171715-0700437490728577962flow10.24.204.1157220102.168.8.80445TCPpcapanalyzer
12
2018-10-31T15:20:01.171715-07001146844000381140flow10.24.139.25062399102.168.8.80445TCPpcapanalyzer
13
2018-10-31T15:20:01.171715-07001879305024989778flow10.24.204.1160745102.168.8.80445TCPpcapanalyzer
14
2018-10-31T15:20:01.171715-07001744314300959839flow10.24.139.25057643102.168.8.80445TCPpcapanalyzer
15
2018-10-31T15:20:01.171715-07001751488571717012flow10.24.139.25052772102.168.8.80445TCPpcapanalyzer
16
2018-10-31T15:20:01.171715-07001782206413926772flow10.24.139.25055229102.168.8.80445TCPpcapanalyzer
17
2018-10-31T15:20:01.171715-0700690769777180890flow10.24.139.25059952102.168.8.80445TCPpcapanalyzer
18
2018-10-31T15:20:01.171715-07001972253916749468flow10.24.204.1256254102.168.8.80445TCPpcapanalyzer
19
2018-10-31T15:20:01.171715-07001268779537441600flow10.24.139.25060677102.168.8.80445TCPpcapanalyzer
20
2018-10-31T15:20:01.171715-07001832596622801476flow10.24.139.25056067102.168.8.80445TCPpcapanalyzer
File 0
#
TimestampSourceDestinationFile NameFile MagicFile Size
No results found.

Comments(not set)

Update Download PCAP Delete