CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-331-1//2018-02-02_win7.pcap 02/02/18 21:33:28 0.3 b13 11/06/79 06:51:54

Flow View


Client Details

IP192.168.1.117
MAC08:00:27:0a:a9:9c
USER-AGENTMozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0)

Conversations

dlg-configs.buzzrin.de    (104.40.156.71:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/text/html0.html200 OK0.0 B11/06/79 06:51:54
1/config-from-productiontext/plainconfig-from-production200 OKTEXT3.6 KB11/06/79 23:49:56

az687722.vo.msecnd.net    (93.184.221.200:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/public-source/downloadguide/audacity/1.0/default/campaigns/product+website/ui/base.zipapplication/octet-streambase.zip200 OKZIP33.7 KB11/23/79 10:27:23
3/public-source/downloadguide/audacity/1.0/default/campaigns/product+website/ui/audacity-flow-5-text-en-us.zipapplication/octet-streamaudacity-flow-5-text-en-us.zip200 OKZIP46.1 KB11/23/79 10:31:56
4/public-source/downloadguide/audacity/1.0/default/campaigns/product+website/ui/progress.zipapplication/octet-streamprogress.zip200 OKZIP83.8 KB12/24/79 03:13:43
6/public-source/downloadguide/audacity/1.0/default/campaigns/product+website/ui/last.zipapplication/octet-streamlast.zip200 OKZIP37.0 KB03/13/80 23:41:06

dlg-messages.buzzrin.de    (104.45.146.238:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
5/1/dg/3text/html3200 OK0.0 B12/28/79 17:13:47

www.audacity.de    (104.24.101.86:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
7/download/audacity2.1.3.exeapplication/x-msdos-programaudacity2.1.3.exe206 Partial ContentBINARY12.9 MB05/22/81 05:49:58