Description
- Probable Name: Normal access to https://www.facebook.com using a middle mitmproxy
- MD5: -
- SHA1: -
- SHA256: -
- Password of zip file: -
- Duration:
Files
- .capinfos
- .dnstop
- .mitm
- Mitm proxy interception file of http and https
- .passivedns
- .pcap
- .rrd
- .weblogng
- .exe.zip
- bro
- Folder with all the bro output files
- .biargus
- Argus binary file with all the flows
- .binetflow
- Argus text file with bidirectional flows. Report time 3600 secs.
IP Addresses
- Normal host: 192.168.1.116
- Windows 7, Internet Explorer browser.
- Default GW: 192.168.1.2
Timeline
Tue Sep 13 17:05:25 CEST 2016
started win16
Tue Sep 13 17:06:57 CEST 2016
opened IE
Tue Sep 13 17:07:21 CEST 2016
Access https://www.facebook.com
Tue Sep 13 17:09:43 CEST 2016
Closed the IE
Tue Sep 13 17:10:06 CEST 2016
power off