CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-211-2//2017-03-02_win2.pcap 02/03/17 19:08:26 0.2 b10 09/23/76 05:29:46

Flow View


Client Details

IP192.168.1.112
MAC08:00:27:e1:e3:8a
USER-AGENTAIPS

Conversations

www.arcai.com    (23.239.9.165:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/netCut/Update3.php?query=bmFtZT1BSVBTOnZlcnNpb249MjE0OmlkPQ==text/htmlUpdate3.php200 OKTEXT18.0 B09/23/76 05:29:46
2/netCut/Internet.php?query=ShareNetCuttext/htmlInternet.php302 Moved Temporarily0.0 B06/15/78 19:04:11
3/netCut/sharenetcut.html?query=ShareNetCuttext/htmlsharenetcut.html200 OKHTML4.6 KB06/21/78 12:27:27
4/netCut/images/sharenetcut.gifimage/gifsharenetcut.gif200 OKGIF13.5 KB06/26/78 15:09:12
5/netCut/Update.php?query=djoyMTQNCm46MTYNCg==text/htmlUpdate.php200 OKTEXT296.0 B04/05/80 23:48:40
6/netCut/Update3.php?query=bmFtZT1OZXRjdXQ6dmVyc2lvbj0yMTQ6aWQ9YzU3YTI2ZDAyMzM0ZTY3YzQzMmJkYWM0NDIxNmFkMTI=text/htmlUpdate3.php200 OKTEXT18.0 B05/16/81 04:48:06

www.msftncsi.com    (195.113.232.73:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
1/ncsi.txttext/plainncsi.txt200 OKTEXT14.0 B12/06/77 12:41:33