cap.pcap

MD56dd6c0c5478a0973cff3528f2d8cbef5
Submission Date2020-03-31 14:37:20
Tags(not set)
Alert 0
#
TimestampSrc IpDest IpAlert SignatureP
No results found.
DNS 31
Showing 21-31 of 31 items.
#
TimestampSrc IpDest IpDns TypeResource Record NameResource Record TypeResource Data
21
2020-03-31T14:35:57.881909-070010.7.21.1510.0.0.100queryiecvlist.microsoft.comA(not set)
22
2020-03-31T14:36:01.126498-070010.7.21.1510.0.0.100querymsctlau.fcpd.fcbint.netA(not set)
23
2020-03-31T14:35:55.012371-070010.7.21.1510.0.0.100querynav.smartscreen.microsoft.comA(not set)
24
2020-03-31T14:35:54.712376-070010.7.21.1510.0.0.100querywww.sitescomputer.comA(not set)
25
2020-03-31T14:36:00.016673-070010.7.21.1510.0.0.100queryzelegate1.zscalerthree.netA(not set)
26
2020-03-31T14:36:02.253620-070010.7.21.1910.0.0.100querymsmca.zscalerthree.netA(not set)
27
2020-03-31T14:36:02.254273-070010.0.0.10010.7.21.19answermsmca.zscalerthree.netA(not set)
28
2020-03-31T14:36:02.254421-070010.7.21.1910.0.0.100querymsmca.zscalerthree.netAAAA(not set)
29
2020-03-31T14:36:02.297134-070010.0.0.10010.7.21.19answermsmca.zscalerthree.netAAAA(not set)
30
2020-03-31T14:36:08.327189-070010.7.21.1910.0.0.100querysmcacluster.zscalerthree.netA(not set)
31
2020-03-31T14:36:08.327829-070010.0.0.10010.7.21.19answersmcacluster.zscalerthree.netA(not set)
TLS 27
Showing 1-20 of 27 items.
#
TimestampSource IPDestination IPTLS VersionServer Name Indication
1
2020-03-31T14:35:14.718182-070010.7.21.19104.129.197.88TLSv1(not set)
2
2020-03-31T14:35:10.075489-070010.7.21.19104.129.195.88TLS 1.2(not set)
3
2020-03-31T14:35:11.564174-070010.7.21.19104.129.195.88TLSv1(not set)
4
2020-03-31T14:35:13.280384-070010.7.21.19104.129.193.108TLS 1.2(not set)
5
2020-03-31T14:35:17.880802-070010.7.21.19104.129.197.108TLSv1(not set)
6
2020-03-31T14:35:21.443333-070010.7.21.19104.129.193.108TLS 1.2(not set)
7
2020-03-31T14:35:18.152359-070010.7.21.19104.129.193.88TLS 1.2(not set)
8
2020-03-31T14:35:21.125483-070010.7.21.19104.129.193.108TLSv1(not set)
9
2020-03-31T14:35:26.064517-070010.7.21.19104.129.195.88TLS 1.2(not set)
10
2020-03-31T14:35:37.439553-070010.7.21.19104.129.193.108TLS 1.2(not set)
11
2020-03-31T14:35:34.148947-070010.7.21.19104.129.193.88TLS 1.2(not set)
12
2020-03-31T14:35:29.277174-070010.7.21.19104.129.193.108TLS 1.2(not set)
13
2020-03-31T14:35:31.464915-070010.7.21.19104.129.197.88TLSv1(not set)
14
2020-03-31T14:35:53.438268-070010.7.21.19104.129.193.108TLS 1.2(not set)
15
2020-03-31T14:35:34.626156-070010.7.21.19104.129.197.108TLSv1(not set)
16
2020-03-31T14:35:50.146244-070010.7.21.19104.129.193.88TLS 1.2(not set)
17
2020-03-31T14:35:51.526829-070010.7.21.19104.129.195.88TLSv1(not set)
18
2020-03-31T14:35:37.869559-070010.7.21.19104.129.193.108TLSv1(not set)
19
2020-03-31T14:35:42.070537-070010.7.21.19104.129.195.88TLS 1.2(not set)
20
2020-03-31T14:35:45.287323-070010.7.21.19104.129.193.108TLS 1.2(not set)
TFTP 0
#TimestampSrc IpDest IpTftp PacketTftp FileTftp Mode
No results found.
HTTP 12
Showing 1-12 of 12 items.
#
TimestampSourceHostnamePortMethodURLStatus
1
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.2180GEThttp://10.7.21.21:8080/?#100200
2
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.218080GET/?#100200
3
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.2180GEThttp://10.7.21.21:8080/?#100200
4
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.218080GET/?#100200
5
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.218080GET/?#100200
6
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.218080GET/?#100200
7
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.218080GET/?#100200
8
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.2180GEThttp://10.7.21.21:8080/?#100200
9
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.2180GEThttp://10.7.21.21:8080/?#100200
10
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.218080GET/?#100200
11
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.2180GEThttp://10.7.21.21:8080/?#100200
12
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.2180GEThttp://10.7.21.21:8080/?#100200
SMB 0
#
TimestampSrc IpDest IpSMB DialectCommandSessionTree
No results found.
SMTP 0
#
TimestampSourceDestinationEmail FromEmail ToSubject
No results found.
Flow 202
Showing 1-20 of 202 items.
#
TimestampFlow IdEvent TypeSourceSource PortDestinationDestination PortProtocolHost
1
2020-03-31T14:36:07.950622-07002043166266637380flow10.7.21.192210.0.143.13259311TCPpcapanalyzer
2
2020-03-31T14:36:07.950622-07001408176827868911flow10.7.21.159215104.129.195.88443TCPpcapanalyzer
3
2020-03-31T14:36:07.950622-07001971848336841558flow10.7.21.1927653104.129.195.88443TCPpcapanalyzer
4
2020-03-31T14:36:07.950622-0700424156872553334flow10.7.21.21808010.7.21.1663807TCPpcapanalyzer
5
2020-03-31T14:36:07.950622-07001409697246265087flow10.7.21.216207104.129.193.1089422TCPpcapanalyzer
6
2020-03-31T14:36:07.950622-0700988708848995789flow10.7.21.151945413.68.225.90443TCPpcapanalyzer
7
2020-03-31T14:36:07.950622-0700989292963435905flow10.7.21.1519967104.129.193.1089422TCPpcapanalyzer
8
2020-03-31T14:36:07.950622-07001412574876271203flow10.7.21.1744310.0.143.13259718TCPpcapanalyzer
9
2020-03-31T14:36:07.950622-0700569086249736317flow10.7.21.1918026104.129.193.88443TCPpcapanalyzer
10
2020-03-31T14:36:07.950622-07001132637498034384flow10.7.21.1744310.0.143.13259722TCPpcapanalyzer
11
2020-03-31T14:36:07.950622-0700288581935116371flow10.7.21.15151010.0.0.10053UDPpcapanalyzer
12
2020-03-31T14:36:07.950622-07007227216877276flow10.7.21.191263410.0.0.10053UDPpcapanalyzer
13
2020-03-31T14:36:07.950622-07001273989166591219flow10.7.21.1744310.0.143.13259712TCPpcapanalyzer
14
2020-03-31T14:36:07.950622-07001414842618139982flow10.7.21.1559455104.129.195.88443TCPpcapanalyzer
15
2020-03-31T14:36:07.950622-0700712357768253583flow10.7.21.1744310.0.143.13259724TCPpcapanalyzer
16
2020-03-31T14:36:07.950622-0700290549029253785flow10.7.21.2110175104.129.193.88443TCPpcapanalyzer
17
2020-03-31T14:36:07.950622-0700712838804589908flow10.7.21.155502137.116.54.68443TCPpcapanalyzer
18
2020-03-31T14:36:07.950622-07001416633620562898flow10.7.21.1744310.0.143.13259731TCPpcapanalyzer
19
2020-03-31T14:36:07.950622-07009426240339482flow10.7.21.1520799104.129.193.1089422TCPpcapanalyzer
20
2020-03-31T14:36:07.950622-07001698542386845924flow104.129.195.11744310.7.21.2459830TCPpcapanalyzer
File 12
Showing 1-12 of 12 items.
#
TimestampSourceDestinationFile NameFile MagicFile Size
1
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.21/raw G3 data, byte-padded100
2
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.15/raw G3 data, byte-padded100
3
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.15/raw G3 data, byte-padded100
4
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.15/raw G3 data, byte-padded100
5
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.15/raw G3 data, byte-padded100
6
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.15/raw G3 data, byte-padded100
7
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.21/raw G3 data, byte-padded100
8
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.21/raw G3 data, byte-padded100
9
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.21/raw G3 data, byte-padded100
10
2020-03-31T14:36:07.950622-070010.7.21.2110.7.21.15/raw G3 data, byte-padded100
11
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.21/raw G3 data, byte-padded100
12
2020-03-31T14:36:07.950622-070010.7.21.1510.7.21.21/raw G3 data, byte-padded100

Comments(not set)

Update Download PCAP Delete