CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-132-1//2015-09-09_win3.pcap 09/11/15 11:55:38 0.2 b10 05/06/77 06:34:39

Flow View


Client Details

IP10.0.2.103
MAC08:00:27:3d:00:32
USER-AGENTMozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0)

Conversations

singin.loginto.me    (192.161.48.59:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/050915/dsfihkfisgbdfsdfbsdkfs.php?id=Rand+1106&token1=bW9yaWFiKzk0Ng%3D%3D&token2=cmF2aXZAaHlicmlkc2VjLmNvbQ%3D%3D&C=Clicktext/htmldsfihkfisgbdfsdfbsdkfs.php302 FoundTEXT487.0 B05/06/77 06:34:39
1/050915/Details.zipapplication/zipDetails.zip200 OKBINARY84.1 KB05/10/77 10:30:43

facetoo.co.vu    (192.52.167.125:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/index.phptext/htmlindex.php200 OKTEXT2.0 B02/04/79 22:40:09
3/IOS.php?Pn=V0lOMyB8IEFkbWluaXN0cmF0b3I&fr=&GR=RmFjZUJvb2soSU9TKTxicj4gMjAxNS0wOC0yNA&com=IDxicj4gIDxicj4g&ID=79341922501652521118810123125599148119&o=TWljcm9zb2Z0IFdpbmRvd3MgNyBVbHRpbWF0ZSA&ho=ZmFjZXRvby5jby52dQ==&av=&v=501Ptext/htmlIOS.php200 OKTEXT3.0 B01/19/80 21:40:13