Sample-Ramadhan-01.pcap

MD5afc23c36bf9548e98fd3f88e25dd3f90
Submission Date2017-11-26 09:19:43
Tags(not set)
Alert 1
Showing 1-1 of 1 item.
#
TimestampSrc IpDest IpAlert SignatureP
1
2017-11-22T12:16:40.690075-0800104.31.72.20510.41.16.206ET INFO Suspicious Darkwave Popads Pop Under Redirect*
DNS 0
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
No results found.
TLS 0
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
No results found.
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 1
Showing 1-1 of 1 item.
#
TimestampSourceHostnamePortMethodURLStatus
1
2017-11-22T12:15:55.427280-080010.41.16.206cricfree.cc80GET/watch/site/stream2watch/ch07200
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 3
Showing 1-3 of 3 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2017-11-22T12:16:09.923383-08001026088540702287flow10.41.16.20661397104.31.72.20580TCPpcapanalyzer
2
2017-11-22T12:16:09.923383-0800762600887027205flow10.41.16.20661396104.31.72.20580TCPpcapanalyzer
3
2017-11-22T12:16:09.923383-08001928366680311224flow10.41.16.20661395104.31.72.20580TCPpcapanalyzer
File 1
Showing 1-1 of 1 item.
#
TimestampSourceDestinationFile NameFile MagicFile Size
1
2017-11-22T12:15:55.427280-0800104.31.72.20510.41.16.206/watch/site/stream2watch/ch07HTML document, ASCII text, with very long lines7027

Comments(not set)

Update Download PCAP Delete