CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-123-1//2015-04-22_capture-win8.pcap 04/22/15 11:39:23 0.2 b10 02/13/74 21:45:51

Flow View


Client Details

IP10.0.2.108
MAC08:00:27:fb:bb:39
USER-AGENTMozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0)

Conversations

sansarall.ru    (103.253.99.165:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/text/html0.html200 OKTEXT7.1 KB02/13/74 21:45:51
1/css/style.csstext/cssstyle.css200 OKTEXT13.1 KB03/31/74 13:45:46
3/css/ie8.csstext/cssie8.css200 OKTEXT229.0 B04/05/74 19:08:26
4/img/cogwheel.pngimage/pngcogwheel.png200 OKPNG5.7 KB06/30/74 09:36:02
5/img/logo.pngimage/pnglogo.png200 OKPNG5.3 KB06/23/74 17:39:07
6/img/header.jpgimage/jpegheader.jpg200 OKJPG1.5 KB06/29/74 19:32:55
7/img/btn.pngimage/pngbtn.png200 OKPNG7.0 KB06/30/74 19:25:17
8/img/cogwheel1.pngimage/pngcogwheel1.png200 OKPNG13.4 KB07/01/74 04:10:08
9/img/arrow-blue1.pngimage/pngarrow-blue1.png200 OKPNG1.6 KB08/03/74 20:41:42
10/img/block1.jpgimage/jpegblock1.jpg200 OKJPG43.0 KB06/29/74 18:43:57
11/img/body.jpgimage/jpegbody.jpg200 OKJPG113.3 KB06/30/74 02:31:52
13/img/pict1.jpgimage/jpegpict1.jpg200 OKJPG197.0 KB08/02/74 06:12:02
14/img/arrow-blue3.pngimage/pngarrow-blue3.png200 OKPNG1.6 KB09/19/74 06:45:18
15/img/pict2.jpgimage/jpegpict2.jpg200 OKJPG100.1 KB12/19/74 05:37:27
16/img/arrow-blue2.pngimage/pngarrow-blue2.png200 OKPNG1.6 KB02/28/75 06:55:37
17/img/robot.pngimage/pngrobot.png200 OKPNG65.4 KB06/23/74 17:34:04
18/favicon.icoimage/x-iconfavicon.ico200 OKICO1.1 KB07/23/76 19:40:56

fonts.googleapis.com    (173.194.65.95:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/css?family=Open+Sans:300italic,400italic,600italic,700italic,800italic,400,300,600,700,800&subset=latin,cyrillic,cyrillic-exttext/csscss200 OKTEXT186.0 B04/21/74 05:13:43

fonts.gstatic.com    (173.194.113.111:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
12/s/opensans/v10/K88pR3goAWT7BTt32Z01m_Y6323mHUZFJMgTvxaG2iE.eotfont/eotK88pR3goAWT7BTt32Z01m_Y6323mHUZFJMgTvxaG2iE.eot200 OKBINARY37.0 KB07/14/74 21:52:13