CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-143-1//2015-10-23_win6.pcap 10/23/15 10:36:21 0.2 b10 03/01/74 16:40:32

Flow View


Client Details

IP10.0.2.106
MAC08:00:27:68:c6:39
USER-AGENTMozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.99 Safari/537.36

Conversations

icanhazip.com    (104.238.145.30:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/text/plain0.html200 OKTEXT13.0 B03/01/74 16:40:32

197.149.90.166:12267    (197.149.90.166:12267)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
1/25AU11/WIN6/0/61/0/EHKBGFBLGBIJEHKBGFBLGBIJ0.0 B03/08/74 11:31:48
3/25AU11/WIN6/41/5/1/EHKBGFBLGBIJEHKBGFBLGBIJ0.0 B05/13/74 15:13:28

www.download.windowsupdate.com    (191.234.4.50:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/msdownload/update/v3/static/trustedr/en/authrootstl.cabapplication/octet-streamauthrootstl.cab200 OKCAB48.8 KB03/26/74 12:04:29