lrec5.pcap

MD585acdf83bc4798c83f02fcaea8b4a132
Submission Date2020-03-26 04:23:05
Tags(not set)
Alert 1
Showing 1-1 of 1 item.
#
TimestampSrc IpDest IpAlert SignatureP
1
2019-03-21T17:38:59.572406-0700162.125.34.12910.211.196.77ET POLICY Dropbox.com Offsite File Backup in Use*
DNS 128
Showing 1-20 of 128 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
1
2019-03-21T17:38:14.482304-070010.211.196.7710.211.192.1querycode.createjs.comA(not set)
2
2019-03-21T17:38:14.488858-070010.211.192.110.211.196.77answercode.createjs.comA(not set)
3
2019-03-21T17:38:31.900688-070010.211.196.7710.211.192.1querywildcard.moatads.com.edgekey.netA(not set)
4
2019-03-21T17:38:31.905935-070010.211.192.110.211.196.77answerwildcard.moatads.com.edgekey.netA(not set)
5
2019-03-21T17:38:34.699292-070010.211.196.7710.211.192.1querya.optmnstr.comA(not set)
6
2019-03-21T17:38:34.703986-070010.211.192.110.211.196.77answera.optmnstr.comA(not set)
7
2019-03-21T17:38:34.697484-070010.211.196.7710.211.192.1querymaxcdn.bootstrapcdn.comA(not set)
8
2019-03-21T17:38:34.698144-070010.211.192.110.211.196.77answermaxcdn.bootstrapcdn.comA(not set)
9
2019-03-21T17:38:34.699187-070010.211.196.7710.211.192.1querymk0resourcesinfm536w.kinstacdn.comA(not set)
10
2019-03-21T17:38:34.702688-070010.211.196.7710.211.192.1querys3-us-west-2.amazonaws.comA(not set)
11
2019-03-21T17:38:34.710762-070010.211.192.110.211.196.77answermk0resourcesinfm536w.kinstacdn.comA(not set)
12
2019-03-21T17:38:34.712855-070010.211.192.110.211.196.77answers3-us-west-2.amazonaws.comA(not set)
13
2019-03-21T17:38:34.783506-070010.211.196.7710.211.192.1querywww.redditstatic.comA(not set)
14
2019-03-21T17:38:34.788277-070010.211.192.110.211.196.77answerwww.redditstatic.comA(not set)
15
2019-03-21T17:38:34.991894-070010.211.196.7710.211.192.1queryonesignal.comA(not set)
16
2019-03-21T17:38:34.997861-070010.211.192.110.211.196.77answeronesignal.comA(not set)
17
2019-03-21T17:38:35.180883-070010.211.196.7710.211.192.1queryscontent.xx.fbcdn.netA(not set)
18
2019-03-21T17:38:35.181272-070010.211.192.110.211.196.77answerscontent.xx.fbcdn.netA(not set)
19
2019-03-21T17:38:35.293788-070010.211.196.7710.211.192.1querystorage.pardot.comA(not set)
20
2019-03-21T17:38:35.308503-070010.211.192.110.211.196.77answerstorage.pardot.comA(not set)
TLS 85
Showing 1-20 of 85 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2019-03-21T17:38:14.520231-070010.211.196.7723.56.184.239TLS 1.2code.createjs.com
2
2019-03-21T17:38:34.965099-070010.211.196.7718.232.28.189TLS 1.2www2.infosecinstitute.com
3
2019-03-21T17:38:35.317382-070010.211.196.7718.232.28.189TLS 1.2pi.pardot.com
4
2019-03-21T17:38:35.322731-070010.211.196.7718.232.28.189TLS 1.2go.pardot.com
5
2019-03-21T17:38:35.374884-070010.211.196.77185.33.223.215TLS 1.2ams1-ib.adnxs.com
6
2019-03-21T17:38:35.533497-070010.211.196.7793.184.220.66TLS 1.3platform.twitter.com
7
2019-03-21T17:38:35.533628-070010.211.196.77216.58.198.168TLS 1.3www.googletagmanager.com
8
2019-03-21T17:38:34.727499-070010.211.196.77209.197.3.15TLS 1.2maxcdn.bootstrapcdn.com
9
2019-03-21T17:38:34.729261-070010.211.196.7768.70.192.128TLS 1.3mk0resourcesinfm536w.kinstacdn.com
10
2019-03-21T17:38:34.880084-070010.211.196.77151.101.17.140TLS 1.2buttons.reddit.com
11
2019-03-21T17:38:35.022338-070010.211.196.7752.218.248.24TLS 1.2s3-us-west-2.amazonaws.com
12
2019-03-21T17:38:35.304813-070010.211.196.7718.232.28.189TLS 1.2go.pardot.com
13
2019-03-21T17:38:35.361617-070010.211.196.77216.58.198.237TLS 1.3accounts.google.com
14
2019-03-21T17:38:35.609658-070010.211.196.7750.19.60.226TLS 1.2api.optmnstr.com
15
2019-03-21T17:38:35.893729-070010.211.196.77216.58.212.110TLS 1.3www.google-analytics.com
16
2019-03-21T17:38:36.073854-070010.211.196.7792.122.149.177TLS 1.2snap.licdn.com
17
2019-03-21T17:38:36.144860-070010.211.196.7799.84.8.41TLS 1.2assets.ubembed.com
18
2019-03-21T17:38:36.334364-070010.211.196.7752.1.245.201TLS 1.2cdn.insidesales.com
19
2019-03-21T17:38:34.719512-070010.211.196.7723.111.9.217TLS 1.2a.optmnstr.com
20
2019-03-21T17:38:34.726706-070010.211.196.77104.16.208.165TLS 1.2cdn.onesignal.com
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 3
Showing 1-3 of 3 items.
#
TimestampSourceHostnamePortMethodURLStatus
1
2019-03-21T17:39:11.457008-070010.211.196.77ocsp.int-x3.letsencrypt.org80POST/200
2
2019-03-21T17:40:02.934363-070010.211.196.77ocsp.int-x3.letsencrypt.org80POST/200
3
2019-03-21T17:40:33.710092-070010.211.196.77ocsp.int-x3.letsencrypt.org80POST/200
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 316
Showing 1-20 of 316 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2019-03-21T17:41:18.601835-0700281540183033256flow10.211.196.774984135.210.227.68443TCPpcapanalyzer
2
2019-03-21T17:41:18.601835-07001604949956293flow10.211.196.774996134.250.195.245443TCPpcapanalyzer
3
2019-03-21T17:41:18.601835-0700988103103409401flow10.211.196.7749978178.250.2.151443TCPpcapanalyzer
4
2019-03-21T17:41:18.601835-0700149607377780997flow10.211.196.7749801216.58.204.46443TCPpcapanalyzer
5
2019-03-21T17:41:18.601835-0700290426468659598flow10.211.196.7749910213.19.162.80443TCPpcapanalyzer
6
2019-03-21T17:41:18.601835-07002120447608975693flow10.211.196.774998552.31.114.28443TCPpcapanalyzer
7
2019-03-21T17:41:18.601835-07001698613100882224flow10.211.196.774996772.251.249.13443TCPpcapanalyzer
8
2019-03-21T17:41:18.601835-0700995593526599330flow199.166.0.2444310.211.196.7749973TCPpcapanalyzer
9
2019-03-21T17:41:18.601835-0700152448497640281flow10.211.196.774975199.84.8.101443TCPpcapanalyzer
10
2019-03-21T17:41:18.601835-0700297311302733739flow10.211.196.7749592192.0.73.2443TCPpcapanalyzer
11
2019-03-21T17:41:18.601835-07002131283811241011flow185.33.223.20844310.211.196.7749966TCPpcapanalyzer
12
2019-03-21T17:41:18.601835-07001146834356999855flow10.211.196.774996234.250.195.245443TCPpcapanalyzer
13
2019-03-21T17:41:18.601835-0700725867432757024flow52.213.182.6644310.211.196.7750014TCPpcapanalyzer
14
2019-03-21T17:41:18.601835-07002136807139410558flow185.33.223.19744310.211.196.7749970TCPpcapanalyzer
15
2019-03-21T17:41:18.601835-0700449166312328932flow10.211.196.774994752.31.211.225443TCPpcapanalyzer
16
2019-03-21T17:41:18.601835-070032494355032380flow10.211.196.7749965216.105.38.9443TCPpcapanalyzer
17
2019-03-21T17:41:18.601835-0700318433950396831flow10.211.196.7749906213.19.162.80443TCPpcapanalyzer
18
2019-03-21T17:41:18.601835-07001446129155560762flow34.210.221.14844310.211.196.7749571TCPpcapanalyzer
19
2019-03-21T17:41:18.601835-0700603542469634069flow74.214.194.13344310.211.196.7749928TCPpcapanalyzer
20
2019-03-21T17:41:18.601835-07001461019805177886flow185.33.223.19744310.211.196.7750008TCPpcapanalyzer
File 6
Showing 1-6 of 6 items.
#
TimestampSourceDestinationFile NameFile MagicFile Size
1
2019-03-21T17:39:11.287390-070010.211.196.77104.86.111.176/data85
2
2019-03-21T17:39:11.457008-0700104.86.111.17610.211.196.77/data527
3
2019-03-21T17:40:02.904918-070010.211.196.77104.86.111.176/data85
4
2019-03-21T17:40:02.934363-0700104.86.111.17610.211.196.77/data527
5
2019-03-21T17:40:33.550925-070010.211.196.77104.86.111.176/data85
6
2019-03-21T17:40:33.710092-0700104.86.111.17610.211.196.77/data527

Comments(not set)

Update Download PCAP Delete