summaryrefslogtreecommitdiff
path: root/test/results/flow-info/default/whatsapp_login_call.pcap.out
diff options
context:
space:
mode:
authorToni Uhlig <matzeton@googlemail.com>2023-11-09 23:18:55 +0100
committerToni Uhlig <matzeton@googlemail.com>2023-11-09 23:44:35 +0100
commit8ebaccc27d779e981b500e80b69f62396dcaa0ca (patch)
tree62993474d9ea00d23c579a649ab048fd2a8e76e6 /test/results/flow-info/default/whatsapp_login_call.pcap.out
parentdcb595e16153caa1600b64adea6af20009ea8419 (diff)
py-flow-info: Improved analyse result printing.1.6rc4
Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
Diffstat (limited to 'test/results/flow-info/default/whatsapp_login_call.pcap.out')
-rw-r--r--test/results/flow-info/default/whatsapp_login_call.pcap.out36
1 files changed, 18 insertions, 18 deletions
diff --git a/test/results/flow-info/default/whatsapp_login_call.pcap.out b/test/results/flow-info/default/whatsapp_login_call.pcap.out
index 13c30c1bd..b9df754f8 100644
--- a/test/results/flow-info/default/whatsapp_login_call.pcap.out
+++ b/test/results/flow-info/default/whatsapp_login_call.pcap.out
@@ -32,9 +32,9 @@
detected: [....16] [ip4][..tcp] [....192.168.2.4][49193] -> [..17.110.229.14][.5223] [ApplePush][Apple][Cloud][Acceptable]
detected: [....14] [ip4][..tcp] [....192.168.2.4][49202] -> [.184.173.179.37][.5222] [WhatsApp][Unknown][Chat][Acceptable]
analyse: [....13] [ip4][..tcp] [....192.168.2.4][49201] -> [..17.178.104.12][..443] [TLS.Apple][Apple][Web][Safe]
- min| max| avg| stddev| variance| entropy
- [IAT.........: 0.000| 0.712| 0.120| 0.179| 32210.293| 3.400]
- [PKTLEN......: 40.000| 1480.000| 432.900| 595.100| 354099.200| 3.800]
+ min| max| avg| stddev| variance| entropy
+ [IAT.........: < 0.001| 0.712| 0.120| 0.179| 32210.293| 3.400]
+ [PKTLEN......: 40.000| 1480.000| 432.900| 595.100| 354099.200| 3.800]
[BINS(c->s)..: 9,1,0,2,0,1,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,4,0,0]
[BINS(s->c)..: 8,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,3,0,0]
[DIRECTIONS..: 0,1,0,0,1,1,1,0,0,0,0,0,0,0,1,1,1,1,0,0,0,0,1,1,1,1,0,0,0,0,1,1]
@@ -45,9 +45,9 @@
RISK: TLS (probably) Not Carrying HTTPS
new: [....17] [ip4][..tcp] [....192.168.2.4][49204] -> [..17.173.66.102][..443]
analyse: [....14] [ip4][..tcp] [....192.168.2.4][49202] -> [.184.173.179.37][.5222] [WhatsApp][Unknown][Chat][Acceptable]
- min| max| avg| stddev| variance| entropy
- [IAT.........: 0.000| 0.709| 0.193| 0.172| 29610.717| 4.400]
- [PKTLEN......: 52.000| 253.000| 102.800| 60.800| 3698.600| 4.800]
+ min| max| avg| stddev| variance| entropy
+ [IAT.........: 0.000| 0.709| 0.193| 0.172| 29610.717| 4.400]
+ [PKTLEN......: 52.000| 253.000| 102.800| 60.800| 3698.600| 4.800]
[BINS(c->s)..: 9,0,2,0,2,2,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 4,10,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[DIRECTIONS..: 0,1,0,1,0,1,1,0,0,0,1,0,1,0,0,1,0,0,1,0,1,1,0,0,1,1,0,0,1,1,1,0]
@@ -59,9 +59,9 @@
detection-update: [....17] [ip4][..tcp] [....192.168.2.4][49204] -> [..17.173.66.102][..443] [TLS.AppleStore][Apple][SoftwareUpdate][Safe][p53-buy.itunes.apple.com]
RISK: TLS (probably) Not Carrying HTTPS
analyse: [....17] [ip4][..tcp] [....192.168.2.4][49204] -> [..17.173.66.102][..443] [TLS.AppleStore][Apple][SoftwareUpdate][Safe]
- min| max| avg| stddev| variance| entropy
- [IAT.........: 0.000| 0.246| 0.057| 0.089| 7910.915| 3.400]
- [PKTLEN......: 40.000| 1480.000| 289.300| 408.500| 166890.900| 3.900]
+ min| max| avg| stddev| variance| entropy
+ [IAT.........: < 0.001| 0.246| 0.057| 0.089| 7910.915| 3.400]
+ [PKTLEN......: 40.000| 1480.000| 289.300| 408.500| 166890.900| 3.900]
[BINS(c->s)..: 9,1,0,0,0,0,0,1,0,0,0,0,0,0,1,1,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0]
[BINS(s->c)..: 9,1,1,0,0,0,0,0,0,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[DIRECTIONS..: 0,1,0,0,1,1,1,0,0,0,0,0,0,0,1,1,1,1,1,1,1,0,0,0,0,0,1,1,1,1,0,0]
@@ -105,9 +105,9 @@
detected: [....39] [ip4][..udp] [....192.168.2.4][51518] -> [..91.253.176.65][.9344] [STUN.WhatsAppCall][Unknown][VoIP][Acceptable][]
RISK: Known Proto on Non Std Port
analyse: [....39] [ip4][..udp] [....192.168.2.4][51518] -> [..91.253.176.65][.9344] [STUN.WhatsAppCall][Unknown][VoIP][Acceptable]
- min| max| avg| stddev| variance| entropy
- [IAT.........: 0.000| 0.352| 0.131| 0.070| 4931.355| 4.700]
- [PKTLEN......: 50.000| 337.000| 199.000| 98.800| 9763.600| 4.800]
+ min| max| avg| stddev| variance| entropy
+ [IAT.........: < 0.001| 0.352| 0.131| 0.070| 4931.355| 4.700]
+ [PKTLEN......: 50.000| 337.000| 199.000| 98.800| 9763.600| 4.800]
[BINS(c->s)..: 1,2,1,1,0,1,1,1,7,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 2,2,3,1,1,1,3,0,1,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[DIRECTIONS..: 0,1,0,1,0,0,1,0,1,0,0,1,1,0,1,0,0,0,1,1,0,1,0,1,0,1,0,1,0,1,0,1]
@@ -165,9 +165,9 @@
detected: [....55] [ip4][..udp] [....192.168.2.4][52794] -> [..91.253.176.65][.9665] [STUN.WhatsAppCall][Unknown][VoIP][Acceptable][]
RISK: Known Proto on Non Std Port
analyse: [....55] [ip4][..udp] [....192.168.2.4][52794] -> [..91.253.176.65][.9665] [STUN.WhatsAppCall][Unknown][VoIP][Acceptable]
- min| max| avg| stddev| variance| entropy
- [IAT.........: 0.000| 0.307| 0.114| 0.086| 7398.241| 4.500]
- [PKTLEN......: 54.000| 306.000| 141.000| 58.800| 3453.300| 4.900]
+ min| max| avg| stddev| variance| entropy
+ [IAT.........: < 0.001| 0.307| 0.114| 0.086| 7398.241| 4.500]
+ [PKTLEN......: 54.000| 306.000| 141.000| 58.800| 3453.300| 4.900]
[BINS(c->s)..: 1,3,0,6,3,1,1,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 2,2,2,3,4,2,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[DIRECTIONS..: 0,1,0,0,1,1,1,0,1,1,0,0,1,0,1,0,0,0,1,0,1,1,0,1,1,0,1,0,1,1,0,0]
@@ -201,9 +201,9 @@
detection-update: [....57] [ip4][..tcp] [....192.168.2.4][49205] -> [..17.173.66.102][..443] [TLS.AppleStore][Apple][SoftwareUpdate][Safe][p53-buy.itunes.apple.com]
RISK: TLS (probably) Not Carrying HTTPS
analyse: [....57] [ip4][..tcp] [....192.168.2.4][49205] -> [..17.173.66.102][..443] [TLS.AppleStore][Apple][SoftwareUpdate][Safe]
- min| max| avg| stddev| variance| entropy
- [IAT.........: 0.000| 0.272| 0.058| 0.092| 8444.798| 3.300]
- [PKTLEN......: 40.000| 1480.000| 289.300| 408.500| 166876.700| 3.900]
+ min| max| avg| stddev| variance| entropy
+ [IAT.........: < 0.001| 0.272| 0.058| 0.092| 8444.798| 3.300]
+ [PKTLEN......: 40.000| 1480.000| 289.300| 408.500| 166876.700| 3.900]
[BINS(c->s)..: 9,1,0,0,0,0,0,1,0,0,0,0,0,0,1,1,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0]
[BINS(s->c)..: 9,1,1,0,0,0,0,0,0,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[DIRECTIONS..: 0,1,0,0,1,1,1,0,0,0,0,0,0,0,1,1,1,1,1,1,1,0,0,0,0,0,1,1,1,1,0,0]