no-op.pcap

MD502694043088079d46163ceb0c428fc63
Submission Date2019-10-11 20:08:14
Tags(not set)
Alert 0
#
TimestampSrc IpDest IpAlert SignatureP
No results found.
DNS 58
Showing 1-20 of 58 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
1
2019-08-14T19:52:56.046763-0700192.168.2.162114.114.114.114querycrab.baidu.comA(not set)
2
2019-08-14T19:52:56.084769-0700192.168.2.162114.114.114.114queryvse.baidu.comA(not set)
3
2019-08-14T19:52:56.085222-0700192.168.2.162114.114.114.114queryvse.baidu.comAAAA(not set)
4
2019-08-14T19:52:56.093784-0700114.114.114.114192.168.2.162answercrab.baidu.comA(not set)
5
2019-08-14T19:52:56.112650-0700114.114.114.114192.168.2.162answervse.baidu.comA(not set)
6
2019-08-14T19:52:56.112806-0700114.114.114.114192.168.2.162answervse.baidu.comAAAA(not set)
7
2019-08-14T19:53:32.596749-0700192.168.2.162192.168.2.1querymail.maillb.baidu.comA(not set)
8
2019-08-14T19:53:32.600313-0700192.168.2.1192.168.2.162answermail.maillb.baidu.comA(not set)
9
2019-08-14T19:53:18.424819-0700192.168.2.162192.168.2.1querytools.google.comA(not set)
10
2019-08-14T19:53:59.908244-0700192.168.2.162192.168.2.1query_ldap._tcp.headquaters._sites.dc._msdcs.internal.baidu.comSRV(not set)
11
2019-08-14T19:53:59.914187-0700192.168.2.1192.168.2.162answer_ldap._tcp.headquaters._sites.dc._msdcs.internal.baidu.comSRV(not set)
12
2019-08-14T19:53:59.917576-0700192.168.2.162192.168.2.1query_ldap._tcp.internal.baidu.comSRV(not set)
13
2019-08-14T19:53:59.921692-0700192.168.2.1192.168.2.162answer_ldap._tcp.internal.baidu.comSRV(not set)
14
2019-08-14T19:54:00.924444-0700192.168.2.162192.168.2.1query_ldap._tcp.internal.baidu.comSRV(not set)
15
2019-08-14T19:54:00.928249-0700192.168.2.1192.168.2.162answer_ldap._tcp.internal.baidu.comSRV(not set)
16
2019-08-14T19:53:18.429665-0700192.168.2.1192.168.2.162answertools.google.comA(not set)
17
2019-08-14T19:53:33.096204-0700192.168.2.162192.168.2.1querye6987.a.akamaiedge.netA(not set)
18
2019-08-14T19:53:33.102570-0700192.168.2.1192.168.2.162answere6987.a.akamaiedge.netA(not set)
19
2019-08-14T19:53:49.432560-0700192.168.2.162192.168.2.1querytools.l.google.comA(not set)
20
2019-08-14T19:53:49.437504-0700192.168.2.1192.168.2.162answertools.l.google.comA(not set)
TLS 175
Showing 1-20 of 175 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2019-08-14T19:52:56.085292-0700192.168.2.162123.125.115.234TLS 1.2xiaodu.baidu.com
2
2019-08-14T19:52:56.100292-0700192.168.2.162180.76.76.200TLS 1.2httpdns.baidubce.com
3
2019-08-14T19:52:56.141151-0700192.168.2.162180.76.76.200TLS 1.2httpdns.baidubce.com
4
2019-08-14T19:52:56.222125-0700192.168.2.162106.120.159.200TLS 1.2vse.baidu.com
5
2019-08-14T19:52:53.111278-0700192.168.2.16210.14.172.85TLS 1.2api.iemp.baidu.com
6
2019-08-14T19:52:56.187685-0700192.168.2.162106.120.159.200TLS 1.2vse.baidu.com
7
2019-08-14T19:52:56.254033-0700192.168.2.162111.206.37.242TLS 1.2crab.baidu.com
8
2019-08-14T19:52:58.131432-0700192.168.2.162111.202.114.98TLS 1.2vse.baidu.com
9
2019-08-14T19:52:57.835862-0700192.168.2.162111.202.114.98TLS 1.2vse.baidu.com
10
2019-08-14T19:52:58.170345-0700192.168.2.162123.125.115.234TLS 1.2xiaodu.baidu.com
11
2019-08-14T19:52:58.460976-0700192.168.2.162123.125.115.234TLS 1.2xiaodu.baidu.com
12
2019-08-14T19:52:58.486022-0700192.168.2.162123.125.115.234TLS 1.2xiaodu.baidu.com
13
2019-08-14T19:52:59.612555-0700192.168.2.162123.125.115.234TLS 1.2xiaodu.baidu.com
14
2019-08-14T19:52:58.059214-0700192.168.2.162111.202.114.98TLS 1.2vse.baidu.com
15
2019-08-14T19:52:58.852717-0700192.168.2.162111.202.114.98TLS 1.2vse.baidu.com
16
2019-08-14T19:52:59.553378-0700192.168.2.162123.125.115.234TLS 1.2xiaodu.baidu.com
17
2019-08-14T19:52:59.521136-0700192.168.2.162111.202.114.98TLS 1.2vse.baidu.com
18
2019-08-14T19:52:59.573277-0700192.168.2.162111.202.114.98TLS 1.2vse.baidu.com
19
2019-08-14T19:52:59.753360-0700192.168.2.162123.125.115.234TLS 1.2xiaodu.baidu.com
20
2019-08-14T19:52:59.995394-0700192.168.2.162123.125.115.234TLS 1.2xiaodu.baidu.com
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 5
Showing 1-5 of 5 items.
#
TimestampSourceHostnamePortMethodURLStatus
1
2019-08-14T19:52:53.052516-0700192.168.2.162pac.internal.baidu.com80GET/bdnew.pac200
2
2019-08-14T19:54:17.613505-0700192.168.2.162safebrowsing.googleapis.com8118CONNECTsafebrowsing.googleapis.com:443200
3
2019-08-14T19:53:37.054657-0700192.168.2.162dns.weixin.qq.com8080GET/cgi-bin/micromsg-bin/newgetdns?uin=1582635116&clientversion=302192657&scene=0&net=1&md5=db4a8b1a573f5a359f7abf9534ed0bc1&devicetype=imac&lan=zh_CN&sigver=2200
4
2019-08-14T19:53:37.083742-0700192.168.2.162szminorshort.weixin.qq.com80POST/mmtls/6964dfd5200
5
2019-08-14T19:55:37.597467-0700192.168.2.162isure.stream.qqmusic.qq.com80GET/C400003vUjJp3QwFcd.m4a?guid=2000001519&vkey=00317D5EA3BFE56F9AD24A7BA2BC96AAC1113B533ACA507A2F3C7B57F74C59D1ADDC1AF0BE6E859443CA3C60E865515C5348B0E20779AF45&uin=&fromtag=50206
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 347
Showing 1-20 of 347 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2019-08-14T19:52:53.085182-0700979517909145490flow17.33.18.1443192.168.2.16265113TCPpcapanalyzer
2
2019-08-14T19:52:53.085182-0700842504157307991flow172.22.15.178188192.168.2.16265118TCPpcapanalyzer
3
2019-08-14T19:55:37.597467-0700703720884347460flow192.168.2.1625606310.127.67.33389TCPpcapanalyzer
4
2019-08-14T19:55:37.597467-07001266962894618696flow192.168.2.16252229192.168.2.153UDPpcapanalyzer
5
2019-08-14T19:55:37.597467-07001126852467995460flow192.168.2.16257286123.125.115.234443TCPpcapanalyzer
6
2019-08-14T19:55:37.597467-0700282625115264195flow192.168.2.16241756111.202.114.98443TCPpcapanalyzer
7
2019-08-14T19:55:37.597467-0700986368382249620flow192.168.2.16241578111.202.114.98443TCPpcapanalyzer
8
2019-08-14T19:55:37.597467-07001409384013643940flow192.168.2.16261679192.168.2.153UDPpcapanalyzer
9
2019-08-14T19:55:37.597467-07001409396895988908flow192.168.2.16256043172.19.44.103268TCPpcapanalyzer
10
2019-08-14T19:55:37.597467-07001268706653781581flow192.168.2.16260879216.58.200.46443TCPpcapanalyzer
11
2019-08-14T19:55:37.597467-0700143270601023369flow192.168.2.1624022192.168.2.153UDPpcapanalyzer
12
2019-08-14T19:55:37.597467-07001129317779441534flow192.168.2.16244747180.149.144.101443TCPpcapanalyzer
13
2019-08-14T19:55:37.597467-07001270166938765432flow172.31.63.12443192.168.2.16265186TCPpcapanalyzer
14
2019-08-14T19:55:37.597467-0700285086131895536flow192.168.2.16257492123.125.115.234443TCPpcapanalyzer
15
2019-08-14T19:55:37.597467-07002115081493657708flow192.168.2.16257336123.125.115.234443TCPpcapanalyzer
16
2019-08-14T19:55:37.597467-07001693066596280930flow192.168.2.16241598111.202.114.98443TCPpcapanalyzer
17
2019-08-14T19:55:37.597467-0700145860463231431flow192.168.2.16241676111.202.114.98443TCPpcapanalyzer
18
2019-08-14T19:55:37.597467-0700850600171243116flow192.168.2.16257256123.125.115.234443TCPpcapanalyzer
19
2019-08-14T19:55:37.597467-07001554360636872367flow192.168.2.16241798111.202.114.98443TCPpcapanalyzer
20
2019-08-14T19:55:37.597467-0700710399557639497flow192.168.2.1625605192.168.2.153UDPpcapanalyzer
File 5
Showing 1-5 of 5 items.
#
TimestampSourceDestinationFile NameFile MagicFile Size
1
2019-08-14T19:52:53.052516-070010.14.34.64192.168.2.162/bdnew.pacASCII text, with CRLF line terminators8040
2
2019-08-14T19:53:37.054657-0700101.226.211.106192.168.2.162/cgi-bin/micromsg-bin/newgetdnsXML 1.0 document, ASCII text10703
3
2019-08-14T19:53:37.057779-0700192.168.2.16214.18.245.167/mmtls/6964dfd5data556
4
2019-08-14T19:53:37.083742-070014.18.245.167192.168.2.162/mmtls/6964dfd5data207
5
2019-08-14T19:55:37.597467-0700123.160.10.167192.168.2.162/C400003vUjJp3QwFcd.m4aISO Media, MP4 v2 [ISO 14496-14]296621

Comments(not set)

Update Download PCAP Delete