CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-325-1//2018-01-30_win9.pcap 01/30/18 19:54:42 0.3 b13 04/21/88 10:37:04

Flow View


Client Details

IP192.168.1.119
MAC08:00:27:53:c0:11
USER-AGENTMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/62.0.3165.0 Safari/537.36

Conversations

myexternalip.com    (78.47.139.102:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/rawtext/plainraw200 OKTEXT13.0 B04/21/88 10:37:04

www.download.windowsupdate.com    (195.113.232.75:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
1/msdownload/update/v3/static/trustedr/en/authrootstl.cabapplication/vnd.ms-cab-compressedauthrootstl.cab200 OKCAB52.7 KB08/25/92 17:07:50

195.133.201.238    (195.133.201.238:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/465.pngimage/png465.png200 OKBINARY332.2 KB04/09/57 08:39:10

checkip.amazonaws.com    (107.22.255.106:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
3/5.html200 OKTEXT13.0 B04/15/58 03:45:06

92.53.91.141    (92.53.91.141:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
4/464.pngtext/html464.png502 Bad GatewayHTML359.0 B12/16/65 03:09:42

rocketmining.com    (98.124.251.68:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
5/toler.pngimage/pngtoler.png200 OKEXE495.5 KB03/28/41 11:19:18