Wed Jul 12 20:39:28 CEST 2017 Automatic Analysis of the domains in this capture. Results maybe be wrong. Using https://github.com/staaldraad/fastfluxanalysis FastFlux Analysis Version: 1.0 (2013) ################################ count ################################ dist.torproject.org ################################ trans_id ################################ www.dropbox.com Qname |TTL |A Records |Ranges |ASNs |Countries |Nameservers | www.dropbox.com. | 60| 1| 1| 1| 1| 0| ---- Fast-Flux Scores ---- Modified Thorsten/Holz: Score (-25) Classified ([92mClean[0m) Modified Jaroslaw/Patrycja: Score (7) Classified ([92mClean[0m) Rule Based: [92mClean[0m ---- Geolocation ---- ---- URL Analysis ---- [93mDomain: www.dropbox.com.[0m Entropy analysis (UNIGRAM): [91mDGA[0m Entropy analysis (BIGRAM): [91mDGA[0m Probability analysis (UNIGRAM): [91mDGA[0m Probability analysis (BIGRAM): [91mDGA[0m Total Variation analysis (UNIGRAM): [91mDGA[0m Total Variation analysis (BIGRAM): [91mDGA[0m Naive-Bayesian analysis (UNIGRAM): [91mDGA[0m Naive-Bayesian analysis (BIGRAM): [92mBenign[0m Bayesian analysis (UNIGRAM): [91mDGA[0m Bayesian analysis (BIGRAM): [92mBenign[0m -- ################################ www.msftncsi.com Qname |TTL |A Records |Ranges |ASNs |Countries |Nameservers | www.msftncsi.com. | 520| 1| 1| 1| 1| 0| ---- Fast-Flux Scores ---- Modified Thorsten/Holz: Score (-30) Classified ([92mClean[0m) Modified Jaroslaw/Patrycja: Score (6) Classified ([92mClean[0m) Rule Based: [92mClean[0m ---- Geolocation ---- ---- URL Analysis ---- [93mDomain: www.msftncsi.com.[0m Entropy analysis (UNIGRAM): [91mDGA[0m Entropy analysis (BIGRAM): [91mDGA[0m Probability analysis (UNIGRAM): [91mDGA[0m Probability analysis (BIGRAM): [91mDGA[0m Total Variation analysis (UNIGRAM): [91mDGA[0m Total Variation analysis (BIGRAM): [91mDGA[0m Naive-Bayesian analysis (UNIGRAM): [91mDGA[0m Naive-Bayesian analysis (BIGRAM): [92mBenign[0m Bayesian analysis (UNIGRAM): [91mDGA[0m Bayesian analysis (BIGRAM): [92mBenign[0m --