commutative_payload.pcap

MD544bb73da46c505ba58a1ccebd6bb4847
Submission Date2020-03-31 04:40:33
Tags(not set)
Alert 4
Showing 1-4 of 4 items.
#
TimestampSrc IpDest IpAlert SignatureP
1
2020-01-05T23:21:38.727965-080010.0.5.15192.168.10.168ET EXPLOIT Possible ETERNALBLUE Probe MS17-010 (MSF style)*
2
2020-01-05T23:21:38.727965-080010.0.5.15192.168.10.168ET EXPLOIT Possible ETERNALBLUE Probe MS17-010 (Generic Flags)*
3
2020-01-05T23:21:38.728405-0800192.168.10.16810.0.5.15ET EXPLOIT ETERNALBLUE Probe Vulnerable System Response MS17-010*
4
2020-01-05T23:21:49.017135-080010.0.5.15192.168.10.168ET EXPLOIT ETERNALBLUE Exploit M2 MS17-010*
DNS 0
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
No results found.
TLS 0
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
No results found.
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 0
#
TimestampSourceHostnamePortMethodURLStatus
No results found.
SMB 30
Showing 1-20 of 30 items.
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
1
2020-01-05T23:21:38.698785-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_NEGOTIATE_PROTOCOL00
2
2020-01-05T23:21:38.841283-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_NEGOTIATE_PROTOCOL00
3
2020-01-05T23:21:38.714637-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_SESSION_SETUP_ANDX20480
4
2020-01-05T23:21:38.721256-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_SESSION_SETUP_ANDX20480
5
2020-01-05T23:21:38.724298-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_SESSION_SETUP_ANDX20490
6
2020-01-05T23:21:38.851808-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_SESSION_SETUP_ANDX20480
7
2020-01-05T23:21:38.864385-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TREE_CONNECT_ANDX20482048
8
2020-01-05T23:21:38.907338-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_NT_TRANS20482048
9
2020-01-05T23:21:38.923515-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
10
2020-01-05T23:21:38.923525-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
11
2020-01-05T23:21:38.923573-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
12
2020-01-05T23:21:38.923584-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
13
2020-01-05T23:21:38.923589-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
14
2020-01-05T23:21:38.923589-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
15
2020-01-05T23:21:38.923932-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
16
2020-01-05T23:21:38.923969-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
17
2020-01-05T23:21:38.923971-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
18
2020-01-05T23:21:38.923973-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
19
2020-01-05T23:21:38.923977-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
20
2020-01-05T23:21:38.923977-080010.0.5.15192.168.10.168NT LM 0.12SMB1_COMMAND_TRANS2_SECONDARY20482048
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 23
Showing 1-20 of 23 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2020-01-05T23:21:49.045348-0800847654208850330flow10.0.5.1544005192.168.10.168445TCPpcapanalyzer
2
2020-01-05T23:21:49.045348-0800716889635220765flow10.0.5.1539953192.168.10.168445TCPpcapanalyzer
3
2020-01-05T23:21:49.045348-08001566915202701360flow10.0.5.1537793192.168.10.168445TCPpcapanalyzer
4
2020-01-05T23:21:49.045348-08001004450580533870flow10.0.5.1534271192.168.10.168445TCPpcapanalyzer
5
2020-01-05T23:21:49.045348-08001006589474262887flow10.0.5.1534377192.168.10.168445TCPpcapanalyzer
6
2020-01-05T23:21:49.045348-0800455957487103809flow10.0.5.1534221192.168.10.168445TCPpcapanalyzer
7
2020-01-05T23:21:49.045348-0800596798054653198flow10.0.5.1542647192.168.10.168445TCPpcapanalyzer
8
2020-01-05T23:21:49.045348-08001168630000451423flow10.0.5.1536639192.168.10.168445TCPpcapanalyzer
9
2020-01-05T23:21:49.045348-0800469340605187678flow10.0.5.1540009192.168.10.168445TCPpcapanalyzer
10
2020-01-05T23:21:49.045348-08001174892062719710flow10.0.5.1541739192.168.10.168445TCPpcapanalyzer
11
2020-01-05T23:21:49.045348-08001740315917351741flow10.0.5.1541083192.168.10.168445TCPpcapanalyzer
12
2020-01-05T23:21:49.045348-08001466812399940003flow10.0.5.1536933192.168.10.168445TCPpcapanalyzer
13
2020-01-05T23:21:49.045348-08001750318896123255flow10.0.5.1537903192.168.10.168445TCPpcapanalyzer
14
2020-01-05T23:21:49.045348-080068027450922741flow10.0.5.1545439192.168.10.168445TCPpcapanalyzer
15
2020-01-05T23:21:49.045348-0800495557085496323flow10.0.5.1535605192.168.10.168445TCPpcapanalyzer
16
2020-01-05T23:21:49.045348-08001200331154057397flow10.0.5.1538407192.168.10.168445TCPpcapanalyzer
17
2020-01-05T23:21:49.045348-08001069476384767651flow10.0.5.1542799192.168.10.168445TCPpcapanalyzer
18
2020-01-05T23:21:49.045348-08001644031340511634flow10.0.5.1546855192.168.10.168445TCPpcapanalyzer
19
2020-01-05T23:21:49.045348-08002225690171422688flow10.0.5.1543947192.168.10.168445TCPpcapanalyzer
20
2020-01-05T23:21:49.045348-0800396141476847705flow10.0.5.1543437192.168.10.168135TCPpcapanalyzer
File 0
#
TimestampSourceDestinationFile NameFile MagicFile Size
No results found.

Comments(not set)

Update Download PCAP Delete