Network activity analysis exercise
Putting it all together, we can download a PCAP file from https://wiki.xplico.org/doku.php?id=pcap:pcap named SAMPLE OF ALL PROTOCOLS SUPPORTED IN XPLICO 0.6.3. This .pcap
file can also be downloaded directly from https://wiki.xplico.org/lib/exe/fetch.php?media=pcap:xplico.org_sample_capture_protocols_supported_in_0.6.3.pcap.bz2.
Some browsers may prompt you with a privacy warning, as in the following screenshot, due to the sample files being hosted on an older site:
Figure 10.55 – Security exception
Click on the Advanced button and then click on Proceed to wiki.xplico.org (unsafe) at the bottom of the page, as in the following screenshot. The site is safe, just a bit dated, and does not use SSL:
Figure 10.56 – Xplico.org safety exception
The downloaded file can be compressed by right-clicking on the file and selecting Extract Here.
We can start a new case analysis by clicking...