CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-327-2//2018-03-27_win3.pcap 03/27/18 19:37:55 0.3 b13 07/23/70 21:38:16

Flow View

www.download.windowsupdate.comapps.identrust.comapi.ipify.orgwww.msftncsi.comClient

Client Details

IP192.168.1.113
MAC08:00:27:11:4e:fa
USER-AGENTMicrosoft NCSI

Conversations

www.msftncsi.com    (195.113.232.73:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/ncsi.txttext/plainncsi.txt200 OKTEXT14.0 B07/23/70 21:38:16

api.ipify.org    (184.73.220.206:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
1/text/plain1.html200 OKTEXT12.0 B04/27/30 04:28:43

apps.identrust.com    (192.35.177.64:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/roots/dstrootcax3.p7capplication/x-pkcs7-mimedstrootcax3.p7c200 OKBINARY893.0 B08/03/36 20:29:02

www.download.windowsupdate.com    (195.113.232.72:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
3/msdownload/update/v3/static/trustedr/en/authrootstl.cabapplication/vnd.ms-cab-compressedauthrootstl.cab200 OKCAB52.7 KB08/13/36 02:26:09