CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/Dataset/Botnet-Capture/beingAnalyzedAndPublished/CTU-Malware-Capture-Botnet-44//botnet-capture-20110812-rbot.pcap 05/14/15 12:07:43 0.2 b10 08/12/11 13:05:47

Flow View


Client Details

IP78.40.125.4
MAC00:1e:49:db:19:c3
USER-AGENTGoogle Update/1.3.21.65;winhttp

Conversations

javadl-esd.sun.com    (195.113.232.73:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/update/1.6.0/map-1.6.0.xmlapplication/xmlmap-1.6.0.xml200 OKXML4.1 KB08/12/11 13:05:47

www.nmap.org    (74.207.254.18:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
1/text/html1.html301 Moved PermanentlyHTML301.0 B08/12/11 14:59:11

nmap.org    (74.207.254.18:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/(2)text/html(2)200 OKHTML23.7 KB08/12/11 14:59:12

crl.microsoft.com    (95.100.248.24:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
3/pki/crl/products/CodeSignPCA.crlapplication/pkix-crlCodeSignPCA.crl200 OKBINARY558.0 B08/13/11 13:04:24

cr-tools.clients.google.com    (74.125.232.202:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
4/service/check2?appid=%7B430FD4D0-B729-4F61-AA34-91526481799D%7D&appversion=1.3.21.65&applang=&machine=0&version=1.3.21.65&osversion=5.1&servicepack=Service%20Pack%202check2204 No Content0.0 B08/12/11 13:00:36

dl.javafx.com    (137.254.16.78:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
5/javafx-cache.jnlpjavafx-cache.jnlp304 Not Modified0.0 B08/12/11 13:14:36