summaryrefslogtreecommitdiff
path: root/test/results/flow-info/trickbot.pcap.out
diff options
context:
space:
mode:
authorToni Uhlig <matzeton@googlemail.com>2022-09-23 00:13:19 +0200
committerToni Uhlig <matzeton@googlemail.com>2022-09-23 00:13:19 +0200
commit36f1786bde2572cf7eb44aa1384b61ecfebdeff3 (patch)
tree83d4f3d5abc6d19ee4df1686c4cad7655cd1b335 /test/results/flow-info/trickbot.pcap.out
parent9a28475bba88b711b7075b58473b7e5b5df1f393 (diff)
nDPIsrvd.h: Fixed bug during token parsing/hashing. Do not hash array contents.
Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
Diffstat (limited to 'test/results/flow-info/trickbot.pcap.out')
-rw-r--r--test/results/flow-info/trickbot.pcap.out4
1 files changed, 2 insertions, 2 deletions
diff --git a/test/results/flow-info/trickbot.pcap.out b/test/results/flow-info/trickbot.pcap.out
index 1fe781cb4..9bafcdc01 100644
--- a/test/results/flow-info/trickbot.pcap.out
+++ b/test/results/flow-info/trickbot.pcap.out
@@ -7,13 +7,13 @@
detection-update: [.....1] [ip4][..tcp] [...10.12.29.101][61318] -> [.82.118.225.196][.7080] [HTTP][Web][Acceptable]
RISK: Known Proto on Non Std Port, HTTP Numeric IP Address, HTTP Suspicious Content
analyse: [.....1] [ip4][..tcp] [...10.12.29.101][61318] -> [.82.118.225.196][.7080] [HTTP][Web][Acceptable]
- [min|max|avg|stddev|variance|entropy]
+ min| max| avg| stddev| variance| entropy
[IAT.........: 0.000| 0.931| 0.157| 0.258|66793.452| 0.000]
[PKTLEN......: 54.000| 1514.000| 944.000| 662.500|438885.500| 4.500]
[BINS(c->s)..: 7,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 3,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,1,0,3,0,0,14,0,0]
[DIRECTIONS..: 0,1,0,0,0,1,1,1,0,1,0,1,1,0,1,1,1,1,1,1,1,1,1,1,1,1,0,1,0,1,1,1]
- [IATS........: 245675,245918,203,81,530,37,931085,931328,2339,2280,480234,19,480300,297566,15,8,7,8,7,8,8,7,7,6,9,297680,227938,227937,482874,14,14,0]
+ [IATS(ms)....: 245.7,245.9,0.2,0.1,0.5,0.0,931.1,931.3,2.3,2.3,480.2,0.0,480.3,297.6,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,297.7,227.9,227.9,482.9,0.0,0.0,0.0]
[PKTLENS.....: 66,58,54,403,982,54,54,1412,54,1412,54,1514,1337,54,1514,1514,1514,1514,1514,1514,1514,1514,1514,1514,1514,290,54,1412,54,1514,1514,1208]
end: [.....1] [ip4][..tcp] [...10.12.29.101][61318] -> [.82.118.225.196][.7080] [HTTP][Web][Acceptable]
RISK: Known Proto on Non Std Port, HTTP Numeric IP Address, HTTP Suspicious Content