CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-151-1//2015-12-09_capture-win4.pcap 01/07/16 15:08:28 0.2 b10 01/04/01 01:03:51

Flow View


Client Details

IP10.0.2.104
MAC08:00:27:62:20:12
USER-AGENTMozilla/5.0 (Windows NT 6.1; rv:21.0) Gecko/20130401 Firefox/21.0

Conversations

178.165.11.214    (178.165.11.214:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/start.htmstart.htm404 Not Found0.0 B01/04/01 01:03:51
1/default.htmdefault.htm404 Not Found0.0 B09/15/11 15:10:20
51/login.htm(4)login.htm(4)404 Not Found0.0 B12/04/09 09:30:02

188.215.41.2    (188.215.41.2:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/home.htmhome.htm404 Not Found0.0 B09/29/11 23:20:43
4/main.htmmain.htm404 Not Found0.0 B05/25/42 14:23:15
72/setup.htm(9)setup.htm(9)404 Not Found0.0 B08/02/22 00:22:20

182.211.220.3    (182.211.220.3:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
3/setup.htmsetup.htm404 Not Found0.0 B10/27/31 19:59:14
20/search.htm(2)search.htm(2)BINARY0.0 B05/11/21 20:15:16

178.150.209.116    (178.150.209.116:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
5/welcome.htmwelcome.htm404 Not Found0.0 B06/08/42 06:55:19

91.105.84.28    (91.105.84.28:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
6/welcome.htm(2)welcome.htm(2)404 Not Found0.0 B02/17/45 21:34:33

220.92.144.195    (220.92.144.195:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
7/default.htm(2)default.htm(2)404 Not Found0.0 B08/28/61 02:07:53

119.197.99.228    (119.197.99.228:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
8/default.htm(3)default.htm(3)404 Not Found0.0 B03/23/78 07:26:21

116.68.64.61    (116.68.64.61:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
9/welcome.htm(3)text/htmlwelcome.htm(3)401 UnauthorizedHTML177.0 B04/12/78 06:10:06
18/index.htm(2)text/htmlindex.htm(2)401 UnauthorizedHTML175.0 B03/07/98 08:25:11
98/index.htm(7)text/htmlindex.htm(7)401 UnauthorizedHTML175.0 B01/24/36 20:33:38

85.17.31.111    (85.17.31.111:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
10/setup.htm(2)text/plainsetup.htm(2)404 Not FoundHTML135.0 B04/24/82 03:07:45

60.243.83.200    (60.243.83.200:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
11/default.htm(4)text/htmldefault.htm(4)200 OKHTML151.0 B08/27/83 22:55:57
40/login.htm(2)text/htmllogin.htm(2)200 OKHTML907.0 B07/23/02 01:45:40

116.203.138.16    (116.203.138.16:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
12/index.htmtext/htmlindex.htm404 Site or Page Not FoundHTML171.0 B09/25/85 06:30:43
25/home.htm(3)text/htmlhome.htm(3)404 Site or Page Not FoundHTML171.0 B05/17/24 01:56:36

81.163.94.90    (81.163.94.90:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
13/login.htmlogin.htm404 Not Found0.0 B06/09/90 18:01:56
19/online.htmonline.htm404 Not Found0.0 B07/20/18 08:28:11
48/index.htm(4)index.htm(4)404 Not Found0.0 B06/15/04 12:10:31

92.115.105.152    (92.115.105.152:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
14/start.htm(2)start.htm(2)404 Not Found0.0 B07/27/92 09:49:14

86.126.170.167    (86.126.170.167:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
15/start.htm(3)start.htm(3)404 Not Found0.0 B04/18/93 23:02:23

78.137.35.170    (78.137.35.170:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
16/search.htmtext/htmlsearch.htm401 Unauthorized0.0 B11/07/96 11:57:26

116.202.123.91    (116.202.123.91:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
17/home.htm(2)text/htmlhome.htm(2)404 Site or Page Not FoundHTML171.0 B07/30/97 06:29:12
79/welcome.htm(10)text/htmlwelcome.htm(10)404 Site or Page Not FoundHTML171.0 B03/06/24 20:49:22

46.250.102.27    (46.250.102.27:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
21/setup.htm(3)setup.htm(3)404 Not Found0.0 B05/31/09 20:50:01

37.115.129.49    (37.115.129.49:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
22/install.htminstall.htm404 Not Found0.0 B01/16/13 04:12:11

176.103.4.37    (176.103.4.37:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
23/welcome.htm(4)welcome.htm(4)404 Not Found0.0 B01/29/13 17:02:03

46.185.99.54    (46.185.99.54:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
24/online.htm(2)online.htm(2)404 Not Found0.0 B03/05/24 12:10:35
83/online.htm(5)online.htm(5)404 Not Found0.0 B10/23/24 18:29:28

77.121.94.230    (77.121.94.230:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
26/install.htm(2)install.htm(2)404 Not Found0.0 B02/22/32 21:47:04

69.204.153.221    (69.204.153.221:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
27/home.htm(4)text/htmlhome.htm(4)401 Authorization RequiredHTML105.0 B10/24/38 01:27:11
53/start.htm(4)text/htmlstart.htm(4)404 File Not FoundHTML84.0 B09/06/14 05:39:01

58.176.41.11    (58.176.41.11:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
28/search.htm(3)search.htm(3)200BINARY229.0 B07/21/44 00:59:25
29/search.htm(4)search.htm(4)200BINARY13.7 KB09/27/44 16:35:13

94.248.30.53    (94.248.30.53:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
30/main.htm(2)main.htm(2)404 Not Found0.0 B02/15/63 12:10:20
31/main.htm(3)main.htm(3)404 Not Found0.0 B07/27/65 15:25:42

151.0.57.156    (151.0.57.156:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
32/welcome.htm(5)welcome.htm(5)404 Not Found0.0 B04/22/68 10:55:06

105.229.11.170    (105.229.11.170:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
33/default.htm(5)default.htm(5)BINARY0.0 B08/28/69 09:54:33

5.196.203.193    (5.196.203.193:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
34/install.htm(3)text/htmlinstall.htm(3)404 Not FoundHTML3.6 KB12/03/80 15:36:08

91.225.74.181    (91.225.74.181:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
35/main.htm(4)main.htm(4)404 Not Found0.0 B12/16/82 05:28:09
37/default.htm(6)default.htm(6)404 Not Found0.0 B03/08/02 15:14:38
81/start.htm(6)start.htm(6)404 Not Found0.0 B05/03/24 06:38:00

116.102.6.215    (116.102.6.215:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
36/main.htm(5)text/htmlmain.htm(5)401 UnauthorizedHTML174.0 B11/29/01 17:44:21

188.233.194.177    (188.233.194.177:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
38/default.htm(7)default.htm(7)404 Not Found0.0 B04/03/02 12:07:03
80/install.htm(6)install.htm(6)404 Not Found0.0 B04/07/24 13:47:05

111.248.226.192    (111.248.226.192:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
39/search.htm(5)text/htmlsearch.htm(5)404 Not FoundHTML273.0 B05/26/02 17:06:12

131.117.254.146    (131.117.254.146:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
41/setup.htm(4)text/htmlsetup.htm(4)404 Not FoundHTML318.0 B01/11/03 03:02:45

5.105.118.25    (5.105.118.25:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
42/index.htm(3)index.htm(3)404 Not Found0.0 B03/02/03 07:34:25

195.114.152.171    (195.114.152.171:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
43/welcome.htm(6)welcome.htm(6)404 Not Found0.0 B12/20/03 08:58:58

151.0.4.43    (151.0.4.43:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
44/file.htmfile.htm404 Not Found0.0 B01/15/04 03:26:53

194.242.116.237    (194.242.116.237:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
45/install.htm(4)text/htmlinstall.htm(4)404 Not FoundHTML1.6 KB03/03/04 23:50:08
57/login.htm(5)text/htmllogin.htm(5)404 Not FoundHTML1.6 KB06/12/16 09:00:31

180.218.79.34    (180.218.79.34:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
46/default.htm(8)default.htm(8)200BINARY229.0 B03/07/04 10:23:07
47/welcome.htm(7)welcome.htm(7)200BINARY18.9 KB03/09/04 18:49:37

119.157.53.187    (119.157.53.187:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
49/home.htm(5)text/htmlhome.htm(5)200 OKHTML480.0 B10/14/07 06:08:29

114.25.241.94    (114.25.241.94:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
50/login.htm(3)text/htmllogin.htm(3)404 Not FoundHTML315.0 B11/22/07 07:57:30

109.251.73.94    (109.251.73.94:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
52/setup.htm(5)setup.htm(5)404 Not Found0.0 B05/09/12 04:14:54

188.254.246.164    (188.254.246.164:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
54/install.htm(5)install.htm(5)404 Not Found0.0 B11/02/15 22:24:30

116.202.17.116    (116.202.17.116:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
55/index.htm(5)text/htmlindex.htm(5)404 Site or Page Not FoundHTML171.0 B11/28/15 22:51:02

5.178.204.70    (5.178.204.70:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
56/online.htm(3)online.htm(3)404 Not Found0.0 B12/24/15 23:30:06
64/setup.htm(6)setup.htm(6)404 Not Found0.0 B06/26/20 15:58:38

188.241.206.91    (188.241.206.91:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
58/search.htm(6)search.htm(6)404 Not Found0.0 B09/08/17 06:12:37

192.162.76.152    (192.162.76.152:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
59/home.htm(6)text/htmlhome.htm(6)400 Bad RequestHTML349.0 B02/23/18 08:21:28
92/home.htm(10)text/htmlhome.htm(10)400 Bad RequestHTML349.0 B02/13/31 18:06:20
107/login.htm(8)text/htmllogin.htm(8)400 Bad RequestHTML349.0 B07/18/43 08:45:11

178.216.228.99    (178.216.228.99:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
60/main.htm(6)main.htm(6)404 Not Found0.0 B09/29/18 20:29:41

186.194.28.24    (186.194.28.24:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
61/default.htm(9)text/htmldefault.htm(9)400 Bad RequestHTML349.0 B11/27/18 18:40:12

176.113.230.223    (176.113.230.223:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
62/file.htm(2)file.htm(2)404 Not Found0.0 B04/15/20 08:26:39
84/home.htm(8)home.htm(8)404 Not Found0.0 B03/29/26 01:36:57
109/login.htm(9)login.htm(9)404 Not Found0.0 B08/13/43 19:39:43

121.147.51.252    (121.147.51.252:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
63/home.htm(7)home.htm(7)404 Not Found0.0 B05/03/20 16:11:28
102/index.htm(8)index.htm(8)404 Not Found0.0 B07/01/38 12:24:02

93.177.178.40    (93.177.178.40:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
65/setup.htm(7)setup.htm(7)404 Not Found0.0 B10/27/20 17:34:05
103/default.htm(14)default.htm(14)404 Not Found0.0 B08/20/38 20:32:31

175.195.158.99    (175.195.158.99:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
66/welcome.htm(8)text/htmlwelcome.htm(8)404 Not FoundHTML153.0 B10/28/20 13:28:07
97/default.htm(12)text/htmldefault.htm(12)404 Not FoundHTML153.0 B09/23/35 08:38:51

85.67.190.247    (85.67.190.247:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
67/online.htm(4)online.htm(4)500 Internal Server Error0.0 B03/27/21 09:29:34

81.198.217.4    (81.198.217.4:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
68/search.htm(7)search.htm(7)404 Not Found0.0 B03/27/21 13:59:25

190.78.65.109    (190.78.65.109:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
69/search.htm(8)search.htm(8)404 Not Found0.0 B07/27/21 15:21:00

115.118.78.26    (115.118.78.26:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
70/file.htm(3)text/htmlfile.htm(3)404 Site or Page Not FoundHTML171.0 B04/22/22 11:28:48

185.22.88.169    (185.22.88.169:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
71/setup.htm(8)setup.htm(8)404 Not Found0.0 B04/23/22 02:31:09

180.215.77.118    (180.215.77.118:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
73/default.htm(10)text/htmldefault.htm(10)404 Site or Page Not FoundHTML171.0 B08/04/22 16:09:07

188.254.146.197    (188.254.146.197:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
74/default.htm(11)default.htm(11)404 Not Found0.0 B09/24/22 00:55:56

176.9.162.155    (176.9.162.155:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
75/setup.htm(10)setup.htm(10)BINARY0.0 B11/12/22 21:43:07

213.110.134.43    (213.110.134.43:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
76/start.htm(5)text/htmlstart.htm(5)200 OKHTML181.0 B11/22/22 09:25:38

109.87.118.108    (109.87.118.108:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
77/welcome.htm(9)welcome.htm(9)404 Not Found0.0 B04/22/23 04:56:00

109.87.67.60    (109.87.67.60:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
78/search.htm(9)search.htm(9)404 Not Found0.0 B05/17/23 21:38:21
89/file.htm(4)file.htm(4)404 Not Found0.0 B06/05/30 09:40:30

176.104.94.108    (176.104.94.108:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
82/welcome.htm(11)welcome.htm(11)404 Not Found0.0 B07/15/24 18:05:00

77.122.161.72    (77.122.161.72:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
85/online.htm(6)online.htm(6)404 Not Found0.0 B08/25/26 20:12:39

188.209.253.135    (188.209.253.135:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
86/login.htm(6)login.htm(6)404 Not Found0.0 B06/08/27 13:43:55

77.121.76.179    (77.121.76.179:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
87/setup.htm(11)setup.htm(11)404 Not Found0.0 B10/05/29 12:45:47

89.38.65.104    (89.38.65.104:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
88/welcome.htm(12)welcome.htm(12)404 Not Found0.0 B03/29/30 22:06:51

92.87.38.231    (92.87.38.231:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
90/main.htm(7)main.htm(7)404 Not Found0.0 B12/22/30 19:03:58

178.54.26.104    (178.54.26.104:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
91/home.htm(9)home.htm(9)404 Not Found0.0 B12/26/30 11:42:40

188.0.88.40    (188.0.88.40:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
93/welcome.htm(13)welcome.htm(13)404 Not Found0.0 B02/17/31 12:22:58

185.39.72.173    (185.39.72.173:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
94/login.htm(7)login.htm(7)404 Not Found0.0 B02/24/32 13:14:03

46.118.60.48    (46.118.60.48:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
95/index.htm(6)index.htm(6)BINARY0.0 B03/16/32 14:32:32

208.107.225.195    (208.107.225.195:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
96/welcome.htm(14)text/htmlwelcome.htm(14)400 Bad RequestHTML349.0 B07/12/34 09:58:34

77.123.8.201    (77.123.8.201:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
99/default.htm(13)default.htm(13)404 Not Found0.0 B06/15/36 06:00:03

188.190.26.56    (188.190.26.56:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
100/start.htm(7)start.htm(7)404 Not Found0.0 B06/05/37 03:58:36

176.121.242.132    (176.121.242.132:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
101/main.htm(8)main.htm(8)404 Not Found0.0 B02/03/38 17:02:50
105/install.htm(7)install.htm(7)404 Not Found0.0 B09/15/40 19:55:16

91.215.146.72    (91.215.146.72:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
104/start.htm(8)start.htm(8)404 Not Found0.0 B08/21/38 02:53:25

91.74.227.45    (91.74.227.45:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
106/file.htm(5)text/htmlfile.htm(5)404 Not FoundTEXT110.0 B12/30/41 14:17:42

86.120.34.150    (86.120.34.150:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
108/install.htm(8)text/htmlinstall.htm(8)200 OKHTML2.6 KB08/12/43 01:10:15

116.203.59.162    (116.203.59.162:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
110/setup.htm(12)text/htmlsetup.htm(12)404 Site or Page Not FoundHTML171.0 B02/03/44 05:36:25

85.232.131.82    (85.232.131.82:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
111/default.htm(15)default.htm(15)BINARY0.0 B02/06/44 02:39:55