CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-316-1//capture_win15.pcap 09/25/17 15:00:41 0.3 b13 12/28/75 03:47:18

Flow View


Client Details

IP192.168.1.125
MAC08:00:27:44:99:65
USER-AGENTNSIS InetBgDL (Mozilla)

Conversations

download.mozilla.org    (34.192.80.166:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/?os=win&lang=en-US&product=firefox-latesttext/html0.html302 FoundTEXT123.0 B12/28/75 03:47:18

www.download.windowsupdate.com    (13.107.4.50:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
1/msdownload/update/v3/static/trustedr/en/authrootstl.cabapplication/vnd.ms-cab-compressedauthrootstl.cab200 OKCAB51.7 KB01/02/69 11:07:13

ocsp.digicert.com    (93.184.220.29:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/MFEwTzBNMEswSTAJBgUrDgMCGgUABBT3xL4LQLXDRDM9P665TW442vrsUQQUReuir%2FSSy4IxLVGLp6chnfNtyA8CEAQJGBtf1btmdVNDtW%2BVUAg%3Dapplication/ocsp-responseMFEwTzBNMEswSTAJBgUrDgMCGgUABBT3xL4LQLXDRDM9P665TW442vrsUQQUReuir%2FSSy4IxLVGLp6chnfNtyA8CEAQJGBtf1btmdVNDtW%2BVUAg%3D200 OKBINARY471.0 B02/20/69 16:54:50
3/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSnR4FoxLLkI7vkvsUIFlZt%2BlGH3gQUWsS5eyoKo6XqcQPAYPkt9mV1DlgCEAxTltyylJxw%2BsSKsIoHM44%3Dapplication/ocsp-responseMFEwTzBNMEswSTAJBgUrDgMCGgUABBSnR4FoxLLkI7vkvsUIFlZt%2BlGH3gQUWsS5eyoKo6XqcQPAYPkt9mV1DlgCEAxTltyylJxw%2BsSKsIoHM44%3D200 OKBINARY471.0 B02/24/69 14:11:54

detectportal.firefox.com    (195.113.232.75:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
4/success.txttext/plainsuccess.txt200 OKTEXT8.0 B06/01/73 00:51:03