summaryrefslogtreecommitdiff
path: root/test/results/flow-info/default/fuzz-2006-06-26-2594.pcap.out
diff options
context:
space:
mode:
Diffstat (limited to 'test/results/flow-info/default/fuzz-2006-06-26-2594.pcap.out')
1 files changed, 765 insertions, 502 deletions
diff --git a/test/results/flow-info/default/fuzz-2006-06-26-2594.pcap.out b/test/results/flow-info/default/fuzz-2006-06-26-2594.pcap.out
index 47ac560f0..50f270a7e 100644
--- a/test/results/flow-info/default/fuzz-2006-06-26-2594.pcap.out
+++ b/test/results/flow-info/default/fuzz-2006-06-26-2594.pcap.out
@@ -58,18 +58,19 @@
new: [....18] [ip4][..tcp] [....192.168.1.2][.2717] -> [..147.137.21.94][..445]
new: [....19] [ip4][..tcp] [....192.168.1.2][.2718] -> [..147.137.21.94][..139]
new: [....20] [ip4][..tcp] [...192.168.1.71][.2718] -> [.147.137.21.122][..139]
- update: [.....4] [ip4][..udp] [....192.168.1.2][.2712] -> [...192.37.115.0][...53]
+ update: [.....4] [ip4][..udp] [....192.168.1.2][.2712] -> [...192.37.115.0][...53] [DNS][Unknown][Network][Acceptable]
update: [....11] [ip4][..udp] [...192.168.1.52][.5060] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [.....3] [ip4][..udp] [....192.168.1.2][.2712] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [.....3] [ip4][..udp] [....192.168.1.2][.2712] -> [....192.168.1.1][...53]
update: [.....6] [ip4][..udp] [....192.168.1.3][...53] -> [....192.168.1.2][.2712] [DNS][Unknown][Network][Acceptable]
+ update: [.....7] [ip4][..udp] [....192.168.1.2][.2713] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [.....7] [ip4][..udp] [....192.168.1.2][.2713] -> [....192.168.1.1][...53]
- update: [.....8] [ip4][..udp] [..192.168.1.110][.2713] -> [....192.168.1.1][...53]
+ update: [.....8] [ip4][..udp] [..192.168.1.110][.2713] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [....10] [ip4][..udp] [....192.168.1.2][.2714] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....13] [ip4][..udp] [....192.168.1.2][.2715] -> [....192.168.1.1][...53]
+ update: [....13] [ip4][..udp] [....192.168.1.2][.2715] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [.....9] [ip4][..udp] [....192.168.1.2][.2597] -> [....192.168.1.1][29440]
update: [.....5] [ip4][..udp] [....192.168.1.2][.2712] -> [....192.168.1.1][49973]
new: [....21] [ip4][..udp] [....192.114.1.2][.2719] -> [....192.168.1.1][...53]
@@ -110,8 +111,8 @@
new: [....43] [ip4][..tcp] [.....37.115.0.2][.2639] -> [..147.234.1.253][...21] [MIDSTREAM]
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [6/16]
update: [....16] [ip4][..udp] [..208.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [....14] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....14] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53]
update: [....15] [ip4][..udp] [....192.168.1.1][.9587] -> [....192.168.1.2][..156]
new: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53]
detected: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
@@ -120,22 +121,23 @@
detected: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [1/16]
- update: [.....4] [ip4][..udp] [....192.168.1.2][.2712] -> [...192.37.115.0][...53]
+ update: [.....4] [ip4][..udp] [....192.168.1.2][.2712] -> [...192.37.115.0][...53] [DNS][Unknown][Network][Acceptable]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....17] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.251][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
- RISK: Unsafe Protocol, Unidirectional Traffic
+ RISK: Unsafe Protocol
update: [.....2] [ip4][..udp] [....217.168.1.2][..137] -> [..192.168.1.255][..137]
update: [....11] [ip4][..udp] [...192.168.1.52][.5060] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [.....3] [ip4][..udp] [....192.168.1.2][.2712] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [.....3] [ip4][..udp] [....192.168.1.2][.2712] -> [....192.168.1.1][...53]
update: [.....6] [ip4][..udp] [....192.168.1.3][...53] -> [....192.168.1.2][.2712] [DNS][Unknown][Network][Acceptable]
+ update: [.....7] [ip4][..udp] [....192.168.1.2][.2713] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [.....7] [ip4][..udp] [....192.168.1.2][.2713] -> [....192.168.1.1][...53]
- update: [.....8] [ip4][..udp] [..192.168.1.110][.2713] -> [....192.168.1.1][...53]
+ update: [.....8] [ip4][..udp] [..192.168.1.110][.2713] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [....10] [ip4][..udp] [....192.168.1.2][.2714] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....13] [ip4][..udp] [....192.168.1.2][.2715] -> [....192.168.1.1][...53]
+ update: [....13] [ip4][..udp] [....192.168.1.2][.2715] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [.....9] [ip4][..udp] [....192.168.1.2][.2597] -> [....192.168.1.1][29440]
update: [.....5] [ip4][..udp] [....192.168.1.2][.2712] -> [....192.168.1.1][49973]
detection-update: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
@@ -154,11 +156,12 @@
detected: [....50] [ip4][..udp] [....192.168.1.2][.2724] -> [...192.168.17.1][...53] [DNS][Unknown][Network][Acceptable][_zip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
update: [....16] [ip4][..udp] [..208.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [....14] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....14] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53]
update: [....22] [ip4][..udp] [....192.168.1.2][.2719] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet
- update: [....21] [ip4][..udp] [....192.114.1.2][.2719] -> [....192.168.1.1][...53]
+ update: [....21] [ip4][..udp] [....192.114.1.2][.2719] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....15] [ip4][..udp] [....192.168.1.1][.9587] -> [....192.168.1.2][..156]
new: [....51] [ip4][..udp] [....192.168.1.2][.2725] -> [....192.168.1.1][...53]
detected: [....51] [ip4][..udp] [....192.168.1.2][.2725] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
@@ -168,46 +171,51 @@
detected: [....52] [ip4][..udp] [...192.168.1.46][...53] -> [....192.168.1.2][.2726] [DNS][Unknown][Network][Acceptable][sip.cybercity.dk]
RISK: Unidirectional Traffic
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [1/16]
- idle: [.....4] [ip4][..udp] [....192.168.1.2][.2712] -> [...192.37.115.0][...53]
+ idle: [.....4] [ip4][..udp] [....192.168.1.2][.2712] -> [...192.37.115.0][...53] [DNS][Unknown][Network][Acceptable]
guessed: [.....2] [ip4][..udp] [....217.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable][]
idle: [.....2] [ip4][..udp] [....217.168.1.2][..137] -> [..192.168.1.255][..137]
- idle: [.....3] [ip4][..udp] [....192.168.1.2][.2712] -> [....192.168.1.1][...53]
+ idle: [.....3] [ip4][..udp] [....192.168.1.2][.2712] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....47] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][.9587]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....17] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.251][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
- RISK: Unsafe Protocol, Unidirectional Traffic
+ RISK: Unsafe Protocol
update: [....11] [ip4][..udp] [...192.168.1.52][.5060] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [.....6] [ip4][..udp] [....192.168.1.3][...53] -> [....192.168.1.2][.2712] [DNS][Unknown][Network][Acceptable]
+ update: [.....7] [ip4][..udp] [....192.168.1.2][.2713] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [.....7] [ip4][..udp] [....192.168.1.2][.2713] -> [....192.168.1.1][...53]
- update: [.....8] [ip4][..udp] [..192.168.1.110][.2713] -> [....192.168.1.1][...53]
+ update: [.....8] [ip4][..udp] [..192.168.1.110][.2713] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [....10] [ip4][..udp] [....192.168.1.2][.2714] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....13] [ip4][..udp] [....192.168.1.2][.2715] -> [....192.168.1.1][...53]
- update: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53]
- update: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53]
+ update: [....13] [ip4][..udp] [....192.168.1.2][.2715] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....46] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2723] [DNS][Unknown][Network][Acceptable]
+ update: [....48] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [....50] [ip4][..udp] [....192.168.1.2][.2724] -> [...192.168.17.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....48] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][...53]
- update: [....50] [ip4][..udp] [....192.168.1.2][.2724] -> [...192.168.17.1][...53]
update: [....49] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][25481]
update: [.....9] [ip4][..udp] [....192.168.1.2][.2597] -> [....192.168.1.1][29440]
update: [.....5] [ip4][..udp] [....192.168.1.2][.2712] -> [....192.168.1.1][49973]
idle: [....17] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.251][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
- RISK: Unsafe Protocol, Unidirectional Traffic
+ RISK: Unsafe Protocol
idle: [....16] [ip4][..udp] [..208.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
idle: [....11] [ip4][..udp] [...192.168.1.52][.5060] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
idle: [.....6] [ip4][..udp] [....192.168.1.3][...53] -> [....192.168.1.2][.2712] [DNS][Unknown][Network][Acceptable]
+ idle: [.....8] [ip4][..udp] [..192.168.1.110][.2713] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ idle: [.....7] [ip4][..udp] [....192.168.1.2][.2713] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [.....8] [ip4][..udp] [..192.168.1.110][.2713] -> [....192.168.1.1][...53]
- idle: [.....7] [ip4][..udp] [....192.168.1.2][.2713] -> [....192.168.1.1][...53]
idle: [....10] [ip4][..udp] [....192.168.1.2][.2714] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- idle: [....13] [ip4][..udp] [....192.168.1.2][.2715] -> [....192.168.1.1][...53]
- idle: [....14] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53]
+ idle: [....13] [ip4][..udp] [....192.168.1.2][.2715] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [....14] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
not-detected: [....41] [ip4][..tcp] [....192.168.1.2][.2721] -> [..147.234.1.253][58999] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
end: [....41] [ip4][..tcp] [....192.168.1.2][.2721] -> [..147.234.1.253][58999]
@@ -226,20 +234,22 @@
update: [....47] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][.9587]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [....22] [ip4][..udp] [....192.168.1.2][.2719] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet
- update: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53]
- update: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53]
+ update: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....46] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2723] [DNS][Unknown][Network][Acceptable]
+ update: [....48] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [....50] [ip4][..udp] [....192.168.1.2][.2724] -> [...192.168.17.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....48] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][...53]
- update: [....50] [ip4][..udp] [....192.168.1.2][.2724] -> [...192.168.17.1][...53]
update: [....51] [ip4][..udp] [....192.168.1.2][.2725] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
update: [....52] [ip4][..udp] [...192.168.1.46][...53] -> [....192.168.1.2][.2726] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
update: [....49] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][25481]
- update: [....21] [ip4][..udp] [....192.114.1.2][.2719] -> [....192.168.1.1][...53]
+ update: [....21] [ip4][..udp] [....192.114.1.2][.2719] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
new: [....53] [ip4][..udp] [..192.168.1.202][..137] -> [..192.168.1.255][..137]
detected: [....53] [ip4][..udp] [..192.168.1.202][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable][eci_dom]
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [1/16]
@@ -249,20 +259,22 @@
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [2/16]
idle: [....22] [ip4][..udp] [....192.168.1.2][.2719] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet
- idle: [....21] [ip4][..udp] [....192.114.1.2][.2719] -> [....192.168.1.1][...53]
+ idle: [....21] [ip4][..udp] [....192.114.1.2][.2719] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....47] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][.9587]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53]
- update: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53]
update: [....46] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2723] [DNS][Unknown][Network][Acceptable]
+ update: [....48] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [....50] [ip4][..udp] [....192.168.1.2][.2724] -> [...192.168.17.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....48] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][...53]
- update: [....50] [ip4][..udp] [....192.168.1.2][.2724] -> [...192.168.17.1][...53]
update: [....51] [ip4][..udp] [....192.168.1.2][.2725] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
update: [....52] [ip4][..udp] [...192.168.1.46][...53] -> [....192.168.1.2][.2726] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
update: [....49] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][25481]
update: [....37] [ip4][..170] [170.170.170.170] -> [170.170.170.170]
new: [....55] [ip4][..udp] [....192.168.1.2][43690] -> [192.170.170.170][43690]
@@ -279,7 +291,8 @@
new: [....60] [ip4][..udp] [....172.168.1.2][.2734] -> [....192.168.1.1][...53]
detected: [....60] [ip4][..udp] [....172.168.1.2][.2734] -> [....192.168.1.1][...53] [DNS][Azure][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
- idle: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53]
+ idle: [....44] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.136.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
detection-update: [....59] [ip4][..udp] [....192.168.1.2][.2734] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cyberxity.dk]
RISK: Unidirectional Traffic
detection-update: [....59] [ip4][..udp] [....192.168.1.2][.2734] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
@@ -293,17 +306,20 @@
not-detected: [....47] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][.9587] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [....47] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][.9587]
- idle: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53]
- idle: [....46] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2723] [DNS][Unknown][Network][Acceptable]
+ idle: [....45] [ip4][..udp] [....192.168.1.2][.2722] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ idle: [....46] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2723] [DNS][Unknown][Network][Acceptable]
guessed: [....49] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][25481] [NetBIOS][Unknown][System][Acceptable][]
idle: [....49] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][25481]
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [1/16]
new: [....63] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..169]
- idle: [....50] [ip4][..udp] [....192.168.1.2][.2724] -> [...192.168.17.1][...53]
- idle: [....48] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][...53]
+ idle: [....50] [ip4][..udp] [....192.168.1.2][.2724] -> [...192.168.17.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [....48] [ip4][..udp] [....192.168.1.2][.2724] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....53] [ip4][..udp] [..192.168.1.202][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
- update: [....54] [ip4][..udp] [....192.168.1.2][.2732] -> [....192.168.1.1][...53]
+ update: [....54] [ip4][..udp] [....192.168.1.2][.2732] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
new: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53]
detected: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
@@ -318,22 +334,23 @@
RISK: Malformed Packet, Unidirectional Traffic
idle: [....51] [ip4][..udp] [....192.168.1.2][.2725] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
idle: [....52] [ip4][..udp] [...192.168.1.46][...53] -> [....192.168.1.2][.2726] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
update: [....55] [ip4][..udp] [....192.168.1.2][43690] -> [192.170.170.170][43690]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....53] [ip4][..udp] [..192.168.1.202][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....63] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..169]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [....60] [ip4][..udp] [....172.168.1.2][.2734] -> [....192.168.1.1][...53] [DNS][Azure][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....54] [ip4][..udp] [....192.168.1.2][.2732] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....56] [ip4][..udp] [....192.168.1.2][.2733] -> [..192.168.115.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....60] [ip4][..udp] [....172.168.1.2][.2734] -> [....192.168.1.1][...53]
- update: [....54] [ip4][..udp] [....192.168.1.2][.2732] -> [....192.168.1.1][...53]
- update: [....56] [ip4][..udp] [....192.168.1.2][.2733] -> [..192.168.115.1][...53]
update: [....57] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2733] [DNS][Unknown][Network][Acceptable]
+ update: [....59] [ip4][..udp] [....192.168.1.2][.2734] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....59] [ip4][..udp] [....192.168.1.2][.2734] -> [....192.168.1.1][...53]
- update: [....61] [ip4][..udp] [....200.168.1.2][.2735] -> [....192.168.1.1][...53]
- update: [....62] [ip4][..udp] [....253.168.1.1][...53] -> [....192.168.1.2][.2735] [DNS][Unknown][Network][Acceptable]
+ update: [....61] [ip4][..udp] [....200.168.1.2][.2735] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ update: [....62] [ip4][..udp] [....253.168.1.1][...53] -> [....192.168.1.2][.2735] [DNS][Unknown][Network][Acceptable]
new: [....67] [ip4][..udp] [....192.168.1.2][.2737] -> [....192.168.1.1][...53]
detected: [....67] [ip4][..udp] [....192.168.1.2][.2737] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Unidirectional Traffic
@@ -369,9 +386,12 @@
new: [....76] [ip4][..udp] [..192.168.130.1][...53] -> [....192.168.1.2][.2741]
detected: [....76] [ip4][..udp] [..192.168.130.1][...53] -> [....192.168.1.2][.2741] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Unidirectional Traffic
- update: [....65] [ip4][..udp] [....192.168.1.2][.2684] -> [....192.168.1.1][...53]
- update: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53]
- update: [....66] [ip4][..udp] [....192.168.1.2][.2736] -> [...192.168.1.17][...53]
+ update: [....65] [ip4][..udp] [....192.168.1.2][.2684] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [....66] [ip4][..udp] [....192.168.1.2][.2736] -> [...192.168.1.17][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
new: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53]
detected: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
@@ -382,25 +402,29 @@
RISK: Unidirectional Traffic
update: [....55] [ip4][..udp] [....192.168.1.2][43690] -> [192.170.170.170][43690]
update: [....68] [ip4][..udp] [....192.168.1.2][20932] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....53] [ip4][..udp] [..192.168.1.202][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....63] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..169]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [....60] [ip4][..udp] [....172.168.1.2][.2734] -> [....192.168.1.1][...53] [DNS][Azure][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....71] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....54] [ip4][..udp] [....192.168.1.2][.2732] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....56] [ip4][..udp] [....192.168.1.2][.2733] -> [..192.168.115.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....60] [ip4][..udp] [....172.168.1.2][.2734] -> [....192.168.1.1][...53]
- update: [....71] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53]
- update: [....54] [ip4][..udp] [....192.168.1.2][.2732] -> [....192.168.1.1][...53]
- update: [....56] [ip4][..udp] [....192.168.1.2][.2733] -> [..192.168.115.1][...53]
update: [....57] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2733] [DNS][Unknown][Network][Acceptable]
+ update: [....59] [ip4][..udp] [....192.168.1.2][.2734] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....59] [ip4][..udp] [....192.168.1.2][.2734] -> [....192.168.1.1][...53]
update: [....67] [ip4][..udp] [....192.168.1.2][.2737] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....69] [ip4][..udp] [....192.168.1.2][.2738] -> [...192.168.84.1][...53]
- update: [....70] [ip4][..udp] [....192.168.1.2][.2738] -> [....192.168.1.1][...53]
- update: [....61] [ip4][..udp] [....200.168.1.2][.2735] -> [....192.168.1.1][...53]
- update: [....62] [ip4][..udp] [....253.168.1.1][...53] -> [....192.168.1.2][.2735] [DNS][Unknown][Network][Acceptable]
+ update: [....69] [ip4][..udp] [....192.168.1.2][.2738] -> [...192.168.84.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....70] [ip4][..udp] [....192.168.1.2][.2738] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....61] [ip4][..udp] [....200.168.1.2][.2735] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ update: [....62] [ip4][..udp] [....253.168.1.1][...53] -> [....192.168.1.2][.2735] [DNS][Unknown][Network][Acceptable]
update: [....37] [ip4][..170] [170.170.170.170] -> [170.170.170.170]
ERROR-EVENT: Unknown packet type [1/16]
new: [....79] [ip4][..udp] [....192.168.1.2][.2743] -> [....192.168.1.1][...53]
@@ -409,7 +433,8 @@
detection-update: [....79] [ip4][..udp] [....192.168.1.2][.2743] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
update: [....58] [ip4][..120] [....192.168.1.2] -> [..212.242.33.35]
update: [....72] [ip4][..udp] [....192.168.1.2][.2739] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....73] [ip4][..udp] [....192.168.1.2][.2740] -> [....192.168.1.1][...53]
+ update: [....73] [ip4][..udp] [....192.168.1.2][.2740] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
new: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53]
detected: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
@@ -419,14 +444,18 @@
RISK: Unidirectional Traffic
idle: [....55] [ip4][..udp] [....192.168.1.2][43690] -> [192.170.170.170][43690]
idle: [....53] [ip4][..udp] [..192.168.1.202][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
- idle: [....54] [ip4][..udp] [....192.168.1.2][.2732] -> [....192.168.1.1][...53]
+ idle: [....54] [ip4][..udp] [....192.168.1.2][.2732] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....74] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][.8329]
- update: [....65] [ip4][..udp] [....192.168.1.2][.2684] -> [....192.168.1.1][...53]
- update: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53]
- update: [....66] [ip4][..udp] [....192.168.1.2][.2736] -> [...192.168.1.17][...53]
- update: [....75] [ip4][..udp] [....192.168.1.2][.2741] -> [....192.168.1.1][...53]
- update: [....76] [ip4][..udp] [..192.168.130.1][...53] -> [....192.168.1.2][.2741] [DNS][Unknown][Network][Acceptable]
+ update: [....65] [ip4][..udp] [....192.168.1.2][.2684] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [....66] [ip4][..udp] [....192.168.1.2][.2736] -> [...192.168.1.17][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....75] [ip4][..udp] [....192.168.1.2][.2741] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ update: [....76] [ip4][..udp] [..192.168.130.1][...53] -> [....192.168.1.2][.2741] [DNS][Unknown][Network][Acceptable]
new: [....82] [ip4][..udp] [..192.168.1.170][43690] -> [170.170.170.170][43690]
new: [....83] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2745]
detected: [....83] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2745] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
@@ -438,25 +467,29 @@
new: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53]
detected: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp._s?p.brvjula.net]
RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- idle: [....60] [ip4][..udp] [....172.168.1.2][.2734] -> [....192.168.1.1][...53]
+ idle: [....60] [ip4][..udp] [....172.168.1.2][.2734] -> [....192.168.1.1][...53] [DNS][Azure][Network][Acceptable]
+ RISK: Unidirectional Traffic
idle: [....57] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2733] [DNS][Unknown][Network][Acceptable]
+ idle: [....56] [ip4][..udp] [....192.168.1.2][.2733] -> [..192.168.115.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [....56] [ip4][..udp] [....192.168.1.2][.2733] -> [..192.168.115.1][...53]
- idle: [....59] [ip4][..udp] [....192.168.1.2][.2734] -> [....192.168.1.1][...53]
- update: [....68] [ip4][..udp] [....192.168.1.2][20932] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
+ idle: [....59] [ip4][..udp] [....192.168.1.2][.2734] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ update: [....68] [ip4][..udp] [....192.168.1.2][20932] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....63] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..169]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [....71] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....71] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53]
update: [....67] [ip4][..udp] [....192.168.1.2][.2737] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....69] [ip4][..udp] [....192.168.1.2][.2738] -> [...192.168.84.1][...53]
- update: [....70] [ip4][..udp] [....192.168.1.2][.2738] -> [....192.168.1.1][...53]
- update: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53]
- update: [....61] [ip4][..udp] [....200.168.1.2][.2735] -> [....192.168.1.1][...53]
- update: [....62] [ip4][..udp] [....253.168.1.1][...53] -> [....192.168.1.2][.2735] [DNS][Unknown][Network][Acceptable]
+ update: [....69] [ip4][..udp] [....192.168.1.2][.2738] -> [...192.168.84.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....70] [ip4][..udp] [....192.168.1.2][.2738] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....61] [ip4][..udp] [....200.168.1.2][.2735] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ update: [....62] [ip4][..udp] [....253.168.1.1][...53] -> [....192.168.1.2][.2735] [DNS][Unknown][Network][Acceptable]
update: [....78] [ip4][..udp] [....192.168.1.2][.2730] -> [....192.168.1.1][43690]
new: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53]
detected: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
@@ -481,11 +514,12 @@
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
guessed: [....63] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..169] [NetBIOS][Unknown][System][Acceptable][]
idle: [....63] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..169]
- idle: [....61] [ip4][..udp] [....200.168.1.2][.2735] -> [....192.168.1.1][...53]
- idle: [....62] [ip4][..udp] [....253.168.1.1][...53] -> [....192.168.1.2][.2735] [DNS][Unknown][Network][Acceptable]
+ idle: [....61] [ip4][..udp] [....200.168.1.2][.2735] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ idle: [....62] [ip4][..udp] [....253.168.1.1][...53] -> [....192.168.1.2][.2735] [DNS][Unknown][Network][Acceptable]
update: [....72] [ip4][..udp] [....192.168.1.2][.2739] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....73] [ip4][..udp] [....192.168.1.2][.2740] -> [....192.168.1.1][...53]
+ update: [....73] [ip4][..udp] [....192.168.1.2][.2740] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....79] [ip4][..udp] [....192.168.1.2][.2743] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
new: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53]
detected: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
@@ -506,13 +540,17 @@
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....81] [ip4][..udp] [....192.168.1.2][...88] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....74] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][.8329]
- update: [....65] [ip4][..udp] [....192.168.1.2][.2684] -> [....192.168.1.1][...53]
- update: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53]
- update: [....66] [ip4][..udp] [....192.168.1.2][.2736] -> [...192.168.1.17][...53]
- update: [....75] [ip4][..udp] [....192.168.1.2][.2741] -> [....192.168.1.1][...53]
+ update: [....65] [ip4][..udp] [....192.168.1.2][.2684] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [....66] [ip4][..udp] [....192.168.1.2][.2736] -> [...192.168.1.17][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....75] [ip4][..udp] [....192.168.1.2][.2741] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....76] [ip4][..udp] [..192.168.130.1][...53] -> [....192.168.1.2][.2741] [DNS][Unknown][Network][Acceptable]
+ update: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53]
new: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53]
detected: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Unidirectional Traffic
@@ -536,19 +574,22 @@
RISK: Unidirectional Traffic
update: [....82] [ip4][..udp] [..192.168.1.170][43690] -> [170.170.170.170][43690]
update: [....68] [ip4][..udp] [....192.168.1.2][20932] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [....71] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....71] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53]
update: [....67] [ip4][..udp] [....192.168.1.2][.2737] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....69] [ip4][..udp] [....192.168.1.2][.2738] -> [...192.168.84.1][...53]
- update: [....70] [ip4][..udp] [....192.168.1.2][.2738] -> [....192.168.1.1][...53]
- update: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53]
+ update: [....69] [ip4][..udp] [....192.168.1.2][.2738] -> [...192.168.84.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....70] [ip4][..udp] [....192.168.1.2][.2738] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....83] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2745] [DNS][Unknown][Network][Acceptable]
+ update: [....84] [ip4][..udp] [....192.168.1.2][.2746] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....84] [ip4][..udp] [....192.168.1.2][.2746] -> [....192.168.1.1][...53]
- update: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53]
+ update: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....78] [ip4][..udp] [....192.168.1.2][.2730] -> [....192.168.1.1][43690]
new: [...103] [ip4][..udp] [....192.169.1.2][.5060] -> [..200.68.120.81][.5060]
detected: [...103] [ip4][..udp] [....192.169.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
@@ -558,12 +599,12 @@
RISK: Unidirectional Traffic
detection-update: [...104] [ip4][..udp] [....192.168.1.2][.2753] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.527.in-addr.arpa]
new: [...105] [ip4][..udp] [.....192.86.1.2][.5060] -> [..200.68.120.99][.5060]
- update: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53]
- update: [....88] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2747] [DNS][Unknown][Network][Acceptable]
+ update: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....90] [ip4][..udp] [....192.168.1.2][.2748] -> [....192.168.1.1][...53]
+ update: [....88] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2747] [DNS][Unknown][Network][Acceptable]
+ update: [....90] [ip4][..udp] [....192.168.1.2][.2748] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....89] [ip4][..udp] [....192.168.1.2][.5060] -> [..200.68.120.81][.4932] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [....91] [ip4][..udp] [....192.168.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
RISK: Unidirectional Traffic
ERROR-EVENT: Unknown packet type [1/16]
@@ -571,42 +612,53 @@
new: [...107] [ip4][..118] [....192.168.1.2] -> [..200.68.120.81]
detected: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cyberciwy.dk]
RISK: Unidirectional Traffic
- idle: [....65] [ip4][..udp] [....192.168.1.2][.2684] -> [....192.168.1.1][...53]
- idle: [....66] [ip4][..udp] [....192.168.1.2][.2736] -> [...192.168.1.17][...53]
- idle: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53]
- update: [....93] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2733] [DNS][Unknown][Network][Acceptable]
+ idle: [....65] [ip4][..udp] [....192.168.1.2][.2684] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ idle: [....66] [ip4][..udp] [....192.168.1.2][.2736] -> [...192.168.1.17][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [....64] [ip4][..udp] [....192.168.1.2][.2736] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [....93] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2733] [DNS][Unknown][Network][Acceptable]
update: [....72] [ip4][..udp] [....192.168.1.2][.2739] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....73] [ip4][..udp] [....192.168.1.2][.2740] -> [....192.168.1.1][...53]
+ update: [....73] [ip4][..udp] [....192.168.1.2][.2740] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....79] [ip4][..udp] [....192.168.1.2][.2743] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53]
- update: [....94] [ip4][..udp] [....192.168.1.2][.2750] -> [....192.168.1.1][...53]
- update: [....95] [ip4][..udp] [....192.168.1.2][10942] -> [....192.168.1.1][...53]
+ update: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [....94] [ip4][..udp] [....192.168.1.2][.2750] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [....95] [ip4][..udp] [....192.168.1.2][10942] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
new: [...108] [ip4][..udp] [.....14.168.1.2][.2754] -> [....192.168.1.1][...53]
detected: [...108] [ip4][..udp] [.....14.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
detection-update: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
idle: [....68] [ip4][..udp] [....192.168.1.2][20932] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
idle: [....67] [ip4][..udp] [....192.168.1.2][.2737] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- idle: [....69] [ip4][..udp] [....192.168.1.2][.2738] -> [...192.168.84.1][...53]
+ idle: [....69] [ip4][..udp] [....192.168.1.2][.2738] -> [...192.168.84.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....81] [ip4][..udp] [....192.168.1.2][...88] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....74] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][.8329]
- update: [....75] [ip4][..udp] [....192.168.1.2][.2741] -> [....192.168.1.1][...53]
+ update: [....75] [ip4][..udp] [....192.168.1.2][.2741] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....76] [ip4][..udp] [..192.168.130.1][...53] -> [....192.168.1.2][.2741] [DNS][Unknown][Network][Acceptable]
+ update: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53]
new: [...109] [ip4][..udp] [....192.168.1.2][.2755] -> [....192.168.1.1][...53]
detected: [...109] [ip4][..udp] [....192.168.1.2][.2755] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Unidirectional Traffic
detection-update: [...109] [ip4][..udp] [....192.168.1.2][.2755] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
- idle: [....71] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53]
- idle: [....70] [ip4][..udp] [....192.168.1.2][.2738] -> [....192.168.1.1][...53]
- update: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53]
+ idle: [....71] [ip4][..udp] [....192.168.1.2][.2716] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [....70] [ip4][..udp] [....192.168.1.2][.2738] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [....97] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2751] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- update: [....98] [ip4][..udp] [....192.168.1.2][.2752] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
+ update: [....98] [ip4][..udp] [....192.168.1.2][.2752] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
DAEMON-EVENT: [Processed: 241 pkts][ZLib][compressions: 0|diff: 0 / 0]
DAEMON-EVENT: [Flows][active: 63 / 109|skipped: 0|!detected: 6|guessed: 4|detection-updates: 26|updates: 178]
new: [...110] [ip4][..udp] [....192.168.1.2][.2756] -> [....192.168.1.1][...53]
@@ -619,35 +671,37 @@
guessed: [....74] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][.8329] [NetBIOS][Unknown][System][Acceptable][]
idle: [....74] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][.8329]
idle: [....72] [ip4][..udp] [....192.168.1.2][.2739] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- idle: [....73] [ip4][..udp] [....192.168.1.2][.2740] -> [....192.168.1.1][...53]
+ idle: [....73] [ip4][..udp] [....192.168.1.2][.2740] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....82] [ip4][..udp] [..192.168.1.170][43690] -> [170.170.170.170][43690]
update: [....99] [ip4][..udp] [....192.168.1.2][.4292] -> [..200.68.37.115][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...105] [ip4][..udp] [.....192.86.1.2][.5060] -> [..200.68.120.99][.5060]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...100] [ip4][..udp] [....192.168.1.2][.4901] -> [..200.68.120.81][29440] [SIP][Unknown][VoIP][Acceptable]
- RISK: Known Proto on Non Std Port, Unidirectional Traffic
- update: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53]
- update: [...101] [ip4][..udp] [....192.168.1.2][.2752] -> [....102.168.1.1][...53]
- update: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53]
+ RISK: Known Proto on Non Std Port
+ update: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...101] [ip4][..udp] [....192.168.1.2][.2752] -> [....102.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....83] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2745] [DNS][Unknown][Network][Acceptable]
+ update: [....84] [ip4][..udp] [....192.168.1.2][.2746] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....84] [ip4][..udp] [....192.168.1.2][.2746] -> [....192.168.1.1][...53]
- update: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53]
+ update: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....88] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2747] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
- update: [....90] [ip4][..udp] [....192.168.1.2][.2748] -> [....192.168.1.1][...53]
+ update: [....90] [ip4][..udp] [....192.168.1.2][.2748] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...104] [ip4][..udp] [....192.168.1.2][.2753] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
update: [....89] [ip4][..udp] [....192.168.1.2][.5060] -> [..200.68.120.81][.4932] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [....91] [ip4][..udp] [....192.168.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
RISK: Unidirectional Traffic
- update: [...102] [ip4][..udp] [.....192.98.1.2][.2752] -> [.....25.168.1.1][...53]
+ update: [...102] [ip4][..udp] [.....192.98.1.2][.2752] -> [.....25.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....37] [ip4][..170] [170.170.170.170] -> [170.170.170.170]
update: [...103] [ip4][..udp] [....192.169.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [....78] [ip4][..udp] [....192.168.1.2][.2730] -> [....192.168.1.1][43690]
new: [...111] [ip4][..udp] [....192.168.1.2][.2757] -> [....192.168.1.1][...53]
detected: [...111] [ip4][..udp] [....192.168.1.2][.2757] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.v.0.127.in-addr.arpa]
@@ -665,16 +719,19 @@
[PKTLENS.....: 78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78,78]
[ENTROPIES...: 4.3,4.2,4.2,4.3,4.2,4.2,4.2,4.3,4.3,4.3,4.3,4.3,4.3,4.2,4.2,4.2,4.3,4.2,4.2,4.3,4.2,4.2,4.2,4.3,4.2,4.2,4.3,4.3,4.3,4.3,4.2,3.2]
idle: [....76] [ip4][..udp] [..192.168.130.1][...53] -> [....192.168.1.2][.2741] [DNS][Unknown][Network][Acceptable]
+ idle: [....75] [ip4][..udp] [....192.168.1.2][.2741] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [....75] [ip4][..udp] [....192.168.1.2][.2741] -> [....192.168.1.1][...53]
update: [....58] [ip4][..120] [....192.168.1.2] -> [..212.242.33.35]
update: [....93] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2733] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
update: [....79] [ip4][..udp] [....192.168.1.2][.2743] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53]
- update: [....94] [ip4][..udp] [....192.168.1.2][.2750] -> [....192.168.1.1][...53]
- update: [....95] [ip4][..udp] [....192.168.1.2][10942] -> [....192.168.1.1][...53]
- update: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53]
+ update: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [....94] [ip4][..udp] [....192.168.1.2][.2750] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [....95] [ip4][..udp] [....192.168.1.2][10942] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
new: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53]
detected: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
@@ -687,17 +744,22 @@
RISK: Unidirectional Traffic
detection-update: [...115] [ip4][..udp] [....192.168.1.2][.2758] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.gybercity.dk]
RISK: Unidirectional Traffic
- idle: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53]
+ idle: [....77] [ip4][..udp] [....192.168.1.2][.2742] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
not-detected: [....78] [ip4][..udp] [....192.168.1.2][.2730] -> [....192.168.1.1][43690] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [....78] [ip4][..udp] [....192.168.1.2][.2730] -> [....192.168.1.1][43690]
update: [....81] [ip4][..udp] [....192.168.1.2][...88] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
- update: [...108] [ip4][..udp] [.....14.168.1.2][.2754] -> [....192.168.1.1][...53]
- update: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53]
- update: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53]
+ update: [...108] [ip4][..udp] [.....14.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [....97] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2751] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- update: [....98] [ip4][..udp] [....192.168.1.2][.2752] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
+ update: [....98] [ip4][..udp] [....192.168.1.2][.2752] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...109] [ip4][..udp] [....192.168.1.2][.2755] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
new: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53]
detected: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.sn-addr.arpa]
@@ -705,7 +767,8 @@
new: [...117] [ip4][...37] [....192.168.1.1] -> [....192.168.1.2]
idle: [....79] [ip4][..udp] [....192.168.1.2][.2743] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
update: [....85] [ip4][..240] [....192.168.1.2] -> [....192.168.1.1]
- update: [...110] [ip4][..udp] [....192.168.1.2][.2756] -> [....192.168.1.1][...53]
+ update: [...110] [ip4][..udp] [....192.168.1.2][.2756] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [1/16]
new: [...118] [ip4][..udp] [.....192.22.1.2][.2760] -> [....192.168.1.1][...53]
new: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53]
@@ -717,41 +780,45 @@
detection-update: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
idle: [....81] [ip4][..udp] [....192.168.1.2][...88] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
- idle: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53]
+ idle: [....80] [ip4][..udp] [....192.168.1.2][.2744] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....82] [ip4][..udp] [..192.168.1.170][43690] -> [170.170.170.170][43690]
update: [....99] [ip4][..udp] [....192.168.1.2][.4292] -> [..200.68.37.115][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...105] [ip4][..udp] [.....192.86.1.2][.5060] -> [..200.68.120.99][.5060]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...100] [ip4][..udp] [....192.168.1.2][.4901] -> [..200.68.120.81][29440] [SIP][Unknown][VoIP][Acceptable]
- RISK: Known Proto on Non Std Port, Unidirectional Traffic
- update: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53]
- update: [...101] [ip4][..udp] [....192.168.1.2][.2752] -> [....102.168.1.1][...53]
- update: [....93] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2733] [DNS][Unknown][Network][Acceptable]
+ RISK: Known Proto on Non Std Port
+ update: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ update: [...101] [ip4][..udp] [....192.168.1.2][.2752] -> [....102.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [....93] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2733] [DNS][Unknown][Network][Acceptable]
update: [....83] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2745] [DNS][Unknown][Network][Acceptable]
+ update: [....84] [ip4][..udp] [....192.168.1.2][.2746] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....84] [ip4][..udp] [....192.168.1.2][.2746] -> [....192.168.1.1][...53]
- update: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53]
+ update: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....88] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2747] [DNS][Unknown][Network][Acceptable]
+ update: [....90] [ip4][..udp] [....192.168.1.2][.2748] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [....94] [ip4][..udp] [....192.168.1.2][.2750] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [....95] [ip4][..udp] [....192.168.1.2][10942] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [....90] [ip4][..udp] [....192.168.1.2][.2748] -> [....192.168.1.1][...53]
- update: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53]
- update: [....94] [ip4][..udp] [....192.168.1.2][.2750] -> [....192.168.1.1][...53]
- update: [....95] [ip4][..udp] [....192.168.1.2][10942] -> [....192.168.1.1][...53]
update: [...104] [ip4][..udp] [....192.168.1.2][.2753] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53]
+ update: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...111] [ip4][..udp] [....192.168.1.2][.2757] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
update: [....89] [ip4][..udp] [....192.168.1.2][.5060] -> [..200.68.120.81][.4932] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [....91] [ip4][..udp] [....192.168.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
RISK: Unidirectional Traffic
- update: [...102] [ip4][..udp] [.....192.98.1.2][.2752] -> [.....25.168.1.1][...53]
- update: [...103] [ip4][..udp] [....192.169.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [...102] [ip4][..udp] [.....192.98.1.2][.2752] -> [.....25.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ update: [...103] [ip4][..udp] [....192.169.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
new: [...120] [ip4][..udp] [....192.168.1.2][.2761] -> [....192.168.1.1][...53]
detected: [...120] [ip4][..udp] [....192.168.1.2][.2761] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
new: [...121] [ip4][..udp] [....192.168.1.2][.2762] -> [....192.168.1.1][...53]
@@ -767,11 +834,13 @@
RISK: Unidirectional Traffic
idle: [....82] [ip4][..udp] [..192.168.1.170][43690] -> [170.170.170.170][43690]
idle: [....83] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2745] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
- idle: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53]
- update: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53]
+ idle: [....86] [ip4][..udp] [...192.168.1.34][.2746] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...114] [ip4][..udp] [.192.168.37.115][.2758] -> [....128.168.1.1][...53]
- update: [...113] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53]
+ update: [...113] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
ERROR-EVENT: Unknown packet type [3/16]
new: [...122] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2763]
detected: [...122] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2763] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
@@ -786,22 +855,29 @@
RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
detection-update: [...123] [ip4][..udp] [....192.168.1.2][.2764] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Error Code, Unidirectional Traffic
- idle: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53]
- idle: [....84] [ip4][..udp] [....192.168.1.2][.2746] -> [....192.168.1.1][...53]
- idle: [....88] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2747] [DNS][Unknown][Network][Acceptable]
+ idle: [....87] [ip4][..udp] [....192.168.1.2][.2747] -> [.....67.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [....84] [ip4][..udp] [....192.168.1.2][.2746] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [....90] [ip4][..udp] [....192.168.1.2][.2748] -> [....192.168.1.1][...53]
+ idle: [....88] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2747] [DNS][Unknown][Network][Acceptable]
+ idle: [....90] [ip4][..udp] [....192.168.1.2][.2748] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
idle: [....89] [ip4][..udp] [....192.168.1.2][.5060] -> [..200.68.120.81][.4932] [SIP][Unknown][VoIP][Acceptable]
+ update: [...108] [ip4][..udp] [.....14.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...108] [ip4][..udp] [.....14.168.1.2][.2754] -> [....192.168.1.1][...53]
- update: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53]
+ update: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [....97] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2751] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- update: [....98] [ip4][..udp] [....192.168.1.2][.2752] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
+ update: [....98] [ip4][..udp] [....192.168.1.2][.2752] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...109] [ip4][..udp] [....192.168.1.2][.2755] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...110] [ip4][..udp] [....192.168.1.2][.2756] -> [....192.168.1.1][...53]
- update: [...115] [ip4][..udp] [....192.168.1.2][.2758] -> [....192.168.1.1][...53]
- update: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53]
+ update: [...110] [ip4][..udp] [....192.168.1.2][.2756] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...115] [ip4][..udp] [....192.168.1.2][.2758] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
new: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53]
detected: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Unidirectional Traffic
@@ -821,30 +897,33 @@
detected: [...129] [ip4][..udp] [....192.168.1.2][14798] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
idle: [....93] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2733] [DNS][Unknown][Network][Acceptable]
+ idle: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ idle: [....95] [ip4][..udp] [....192.168.1.2][10942] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [....92] [ip4][..udp] [....192.168.1.2][.2749] -> [....192.168.1.1][...53]
- idle: [....95] [ip4][..udp] [....192.168.1.2][10942] -> [....192.168.1.1][...53]
- idle: [....94] [ip4][..udp] [....192.168.1.2][.2750] -> [....192.168.1.1][...53]
+ idle: [....94] [ip4][..udp] [....192.168.1.2][.2750] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [....99] [ip4][..udp] [....192.168.1.2][.4292] -> [..200.68.37.115][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...118] [ip4][..udp] [.....192.22.1.2][.2760] -> [....192.168.1.1][...53]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...105] [ip4][..udp] [.....192.86.1.2][.5060] -> [..200.68.120.99][.5060]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...100] [ip4][..udp] [....192.168.1.2][.4901] -> [..200.68.120.81][29440] [SIP][Unknown][VoIP][Acceptable]
- RISK: Known Proto on Non Std Port, Unidirectional Traffic
- update: [...101] [ip4][..udp] [....192.168.1.2][.2752] -> [....102.168.1.1][...53]
+ RISK: Known Proto on Non Std Port
+ update: [...101] [ip4][..udp] [....192.168.1.2][.2752] -> [....102.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...104] [ip4][..udp] [....192.168.1.2][.2753] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53]
+ update: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...111] [ip4][..udp] [....192.168.1.2][.2757] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
- update: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53]
+ update: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....91] [ip4][..udp] [....192.168.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
RISK: Unidirectional Traffic
- update: [...102] [ip4][..udp] [.....192.98.1.2][.2752] -> [.....25.168.1.1][...53]
- update: [...103] [ip4][..udp] [....192.169.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [...102] [ip4][..udp] [.....192.98.1.2][.2752] -> [.....25.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ update: [...103] [ip4][..udp] [....192.169.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
new: [...130] [ip4][..udp] [....192.168.1.2][.2767] -> [....192.168.1.1][...53]
detected: [...130] [ip4][..udp] [....192.168.1.2][.2767] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Unidirectional Traffic
@@ -860,20 +939,26 @@
detection-update: [...131] [ip4][..udp] [....192.168.1.2][.2768] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Malformed Packet, Unidirectional Traffic
idle: [....99] [ip4][..udp] [....192.168.1.2][.4292] -> [..200.68.37.115][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
idle: [...100] [ip4][..udp] [....192.168.1.2][.4901] -> [..200.68.120.81][29440] [SIP][Unknown][VoIP][Acceptable]
- RISK: Known Proto on Non Std Port, Unidirectional Traffic
- idle: [...101] [ip4][..udp] [....192.168.1.2][.2752] -> [....102.168.1.1][...53]
+ RISK: Known Proto on Non Std Port
+ idle: [...101] [ip4][..udp] [....192.168.1.2][.2752] -> [....102.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
idle: [....97] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2751] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
+ idle: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ idle: [....98] [ip4][..udp] [....192.168.1.2][.2752] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...102] [ip4][..udp] [.....192.98.1.2][.2752] -> [.....25.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- idle: [....96] [ip4][..udp] [...192.168.1.18][.2751] -> [....192.168.1.1][...53]
- idle: [....98] [ip4][..udp] [....192.168.1.2][.2752] -> [....192.168.1.1][...53]
- idle: [...102] [ip4][..udp] [.....192.98.1.2][.2752] -> [.....25.168.1.1][...53]
- update: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53]
update: [...114] [ip4][..udp] [.192.168.37.115][.2758] -> [....128.168.1.1][...53]
update: [...120] [ip4][..udp] [....192.168.1.2][.2761] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...121] [ip4][..udp] [....192.168.1.2][.2762] -> [....192.168.1.1][...53]
- update: [...113] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53]
+ update: [...121] [ip4][..udp] [....192.168.1.2][.2762] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [...113] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...107] [ip4][..118] [....192.168.1.2] -> [..200.68.120.81]
new: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53]
detected: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
@@ -884,10 +969,9 @@
idle: [...105] [ip4][..udp] [.....192.86.1.2][.5060] -> [..200.68.120.99][.5060]
idle: [...104] [ip4][..udp] [....192.168.1.2][.2753] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
idle: [...103] [ip4][..udp] [....192.169.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...124] [ip4][..udp] [....192.168.1.2][43690] -> [170.170.170.170][43690]
update: [...122] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2763] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Unidirectional Traffic
+ RISK: Malformed Packet
update: [...123] [ip4][..udp] [....192.168.1.2][.2764] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Error Code, Unidirectional Traffic
ERROR-EVENT: Unknown packet type [1/16]
@@ -902,27 +986,36 @@
ERROR-EVENT: Unknown packet type [4/16]
detection-update: [...137] [ip4][..udp] [....192.168.1.2][.2770] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Unidirectional Traffic
- idle: [...108] [ip4][..udp] [.....14.168.1.2][.2754] -> [....192.168.1.1][...53]
- idle: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53]
+ idle: [...108] [ip4][..udp] [.....14.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...106] [ip4][..udp] [....192.168.1.2][.2754] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
idle: [....91] [ip4][..udp] [....192.168.1.2][.5060] -> [..200.68.120.81][.5060] [SIP][Unknown][VoIP][Acceptable]
RISK: Unidirectional Traffic
update: [...118] [ip4][..udp] [.....192.22.1.2][.2760] -> [....192.168.1.1][...53]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [...129] [ip4][..udp] [....192.168.1.2][14798] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...129] [ip4][..udp] [....192.168.1.2][14798] -> [....192.168.1.1][...53]
update: [...109] [ip4][..udp] [....192.168.1.2][.2755] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...110] [ip4][..udp] [....192.168.1.2][.2756] -> [....192.168.1.1][...53]
+ update: [...110] [ip4][..udp] [....192.168.1.2][.2756] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...111] [ip4][..udp] [....192.168.1.2][.2757] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
- update: [...115] [ip4][..udp] [....192.168.1.2][.2758] -> [....192.168.1.1][...53]
- update: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53]
- update: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53]
- update: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53]
+ update: [...115] [ip4][..udp] [....192.168.1.2][.2758] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...126] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2765] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Unidirectional Traffic
- update: [...127] [ip4][..udp] [..192.168.1.172][.2766] -> [....192.168.1.1][...53]
- update: [...128] [ip4][..udp] [....192.168.1.2][.2766] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet
+ update: [...127] [ip4][..udp] [..192.168.1.172][.2766] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...128] [ip4][..udp] [....192.168.1.2][.2766] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [....37] [ip4][..170] [170.170.170.170] -> [170.170.170.170]
new: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53]
detected: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
@@ -937,7 +1030,8 @@
idle: [...109] [ip4][..udp] [....192.168.1.2][.2755] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
update: [....58] [ip4][..120] [....192.168.1.2] -> [..212.242.33.35]
update: [...130] [ip4][..udp] [....192.168.1.2][.2767] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...131] [ip4][..udp] [....192.168.1.2][.2768] -> [....192.168.1.1][...53]
+ update: [...131] [ip4][..udp] [....192.168.1.2][.2768] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
new: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53]
detected: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
@@ -950,46 +1044,61 @@
RISK: Unidirectional Traffic
detection-update: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- idle: [...110] [ip4][..udp] [....192.168.1.2][.2756] -> [....192.168.1.1][...53]
+ idle: [...110] [ip4][..udp] [....192.168.1.2][.2756] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...124] [ip4][..udp] [....192.168.1.2][43690] -> [170.170.170.170][43690]
update: [...133] [ip4][..udp] [.....94.168.1.2][.2768] -> [....192.168.1.1][....4]
- update: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53]
+ update: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...114] [ip4][..udp] [.192.168.37.115][.2758] -> [....128.168.1.1][...53]
update: [...120] [ip4][..udp] [....192.168.1.2][.2761] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...121] [ip4][..udp] [....192.168.1.2][.2762] -> [....192.168.1.1][...53]
- update: [...122] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2763] [DNS][Unknown][Network][Acceptable]
+ update: [...121] [ip4][..udp] [....192.168.1.2][.2762] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Unidirectional Traffic
+ update: [...122] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2763] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet
update: [...123] [ip4][..udp] [....192.168.1.2][.2764] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Error Code, Unidirectional Traffic
- update: [...132] [ip4][..udp] [....192.168.1.2][35536] -> [....192.168.1.1][...53]
- update: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53]
- update: [...113] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53]
+ update: [...132] [ip4][..udp] [....192.168.1.2][35536] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...113] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...135] [ip4][..udp] [....192.168.1.1][..117] -> [....192.168.1.2][.2769]
new: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53]
detected: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.il-addr.arpa]
RISK: Unidirectional Traffic
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [1/16]
- idle: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53]
+ idle: [...112] [ip4][..udp] [....192.168.1.2][.2640] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
idle: [...111] [ip4][..udp] [....192.168.1.2][.2757] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
- idle: [...113] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53]
+ idle: [...113] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...117] [ip4][...37] [....192.168.1.1] -> [....192.168.1.2]
update: [...138] [ip4][..udp] [....192.168.1.2][..137] -> [..120.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....85] [ip4][..240] [....192.168.1.2] -> [....192.168.1.1]
update: [...118] [ip4][..udp] [.....192.22.1.2][.2760] -> [....192.168.1.1][...53]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [...129] [ip4][..udp] [....192.168.1.2][14798] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...115] [ip4][..udp] [....192.168.1.2][.2758] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...129] [ip4][..udp] [....192.168.1.2][14798] -> [....192.168.1.1][...53]
- update: [...115] [ip4][..udp] [....192.168.1.2][.2758] -> [....192.168.1.1][...53]
- update: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53]
- update: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53]
- update: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53]
update: [...126] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2765] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet
+ update: [...127] [ip4][..udp] [..192.168.1.172][.2766] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...128] [ip4][..udp] [....192.168.1.2][.2766] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...137] [ip4][..udp] [....192.168.1.2][.2770] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Unidirectional Traffic
- update: [...127] [ip4][..udp] [..192.168.1.172][.2766] -> [....192.168.1.1][...53]
- update: [...128] [ip4][..udp] [....192.168.1.2][.2766] -> [....192.168.1.1][...53]
- update: [...137] [ip4][..udp] [....192.168.1.2][.2770] -> [....192.168.1.1][...53]
new: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53]
detected: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Unidirectional Traffic
@@ -1005,21 +1114,25 @@
guessed: [...114] [ip4][..udp] [.192.168.37.115][.2758] -> [....128.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Unidirectional Traffic
idle: [...114] [ip4][..udp] [.192.168.37.115][.2758] -> [....128.168.1.1][...53]
- idle: [...115] [ip4][..udp] [....192.168.1.2][.2758] -> [....192.168.1.1][...53]
+ idle: [...115] [ip4][..udp] [....192.168.1.2][.2758] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...141] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
RISK: Unsafe Protocol
update: [...130] [ip4][..udp] [....192.168.1.2][.2767] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...131] [ip4][..udp] [....192.168.1.2][.2768] -> [....192.168.1.1][...53]
- update: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53]
- update: [...140] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2771] [DNS][Unknown][Network][Acceptable]
+ update: [...131] [ip4][..udp] [....192.168.1.2][.2768] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
+ update: [...140] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2771] [DNS][Unknown][Network][Acceptable]
new: [...147] [ip4][..udp] [....192.168.1.2][.2775] -> [....192.168.1.1][...53]
detected: [...147] [ip4][..udp] [....192.168.1.2][.2775] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-aqd?.arpa]
RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
detection-update: [...147] [ip4][..udp] [....192.168.1.2][.2775] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Non-Printable/Invalid Chars Detected
- idle: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53]
- update: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53]
+ idle: [...116] [ip4][..udp] [....192.168.1.2][.2759] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
new: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53]
detected: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
@@ -1031,19 +1144,25 @@
guessed: [...118] [ip4][..udp] [.....192.22.1.2][.2760] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Unidirectional Traffic
idle: [...118] [ip4][..udp] [.....192.22.1.2][.2760] -> [....192.168.1.1][...53]
- idle: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53]
+ idle: [...119] [ip4][..udp] [....192.168.1.2][.2760] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...124] [ip4][..udp] [....192.168.1.2][43690] -> [170.170.170.170][43690]
update: [...133] [ip4][..udp] [.....94.168.1.2][.2768] -> [....192.168.1.1][....4]
update: [...120] [ip4][..udp] [....192.168.1.2][.2761] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...121] [ip4][..udp] [....192.168.1.2][.2762] -> [....192.168.1.1][...53]
- update: [...122] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2763] [DNS][Unknown][Network][Acceptable]
+ update: [...121] [ip4][..udp] [....192.168.1.2][.2762] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Unidirectional Traffic
+ update: [...122] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2763] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet
update: [...123] [ip4][..udp] [....192.168.1.2][.2764] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Error Code, Unidirectional Traffic
- update: [...132] [ip4][..udp] [....192.168.1.2][35536] -> [....192.168.1.1][...53]
- update: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53]
- update: [...143] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.184.1.1][...53]
- update: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53]
+ update: [...132] [ip4][..udp] [....192.168.1.2][35536] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...143] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.184.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...135] [ip4][..udp] [....192.168.1.1][..117] -> [....192.168.1.2][.2769]
new: [...149] [ip4][....0] [....192.168.1.2] -> [..192.168.1.255]
new: [...150] [ip4][..udp] [...192.168.33.2][.2782] -> [....192.168.1.1][...53]
@@ -1055,19 +1174,25 @@
new: [...152] [ip4][..udp] [....192.168.1.6][.5060] -> [..212.242.33.35][.5060]
ERROR-EVENT: Unknown packet type [1/16]
idle: [...120] [ip4][..udp] [....192.168.1.2][.2761] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- idle: [...121] [ip4][..udp] [....192.168.1.2][.2762] -> [....192.168.1.1][...53]
+ idle: [...121] [ip4][..udp] [....192.168.1.2][.2762] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...138] [ip4][..udp] [....192.168.1.2][..137] -> [..120.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [...129] [ip4][..udp] [....192.168.1.2][14798] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...129] [ip4][..udp] [....192.168.1.2][14798] -> [....192.168.1.1][...53]
- update: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53]
update: [...126] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2765] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet
+ update: [...127] [ip4][..udp] [..192.168.1.172][.2766] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...128] [ip4][..udp] [....192.168.1.2][.2766] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...137] [ip4][..udp] [....192.168.1.2][.2770] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Unidirectional Traffic
- update: [...127] [ip4][..udp] [..192.168.1.172][.2766] -> [....192.168.1.1][...53]
- update: [...128] [ip4][..udp] [....192.168.1.2][.2766] -> [....192.168.1.1][...53]
- update: [...137] [ip4][..udp] [....192.168.1.2][.2770] -> [....192.168.1.1][...53]
- update: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53]
+ update: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
new: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53]
detected: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
@@ -1083,18 +1208,21 @@
RISK: Unidirectional Traffic
idle: [...124] [ip4][..udp] [....192.168.1.2][43690] -> [170.170.170.170][43690]
idle: [...122] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2763] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Unidirectional Traffic
+ RISK: Malformed Packet
idle: [...123] [ip4][..udp] [....192.168.1.2][.2764] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Error Code, Unidirectional Traffic
update: [...141] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
RISK: Unsafe Protocol
update: [...130] [ip4][..udp] [....192.168.1.2][.2767] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...131] [ip4][..udp] [....192.168.1.2][.2768] -> [....192.168.1.1][...53]
- update: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53]
+ update: [...131] [ip4][..udp] [....192.168.1.2][.2768] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...140] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2771] [DNS][Unknown][Network][Acceptable]
+ update: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...146] [ip4][..udp] [....192.168.9.2][.2774] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53]
- update: [...146] [ip4][..udp] [....192.168.9.2][.2774] -> [....192.168.1.1][...53]
update: [...147] [ip4][..udp] [....192.168.1.2][.2775] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
new: [...155] [ip4][..udp] [....192.168.1.2][.2784] -> [....192.168.1.1][...53]
@@ -1104,18 +1232,27 @@
detected: [...156] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.5.2][.2784] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.aspa]
RISK: Unidirectional Traffic
ERROR-EVENT: Unknown packet type [1/16]
- idle: [...129] [ip4][..udp] [....192.168.1.2][14798] -> [....192.168.1.1][...53]
+ idle: [...129] [ip4][..udp] [....192.168.1.2][14798] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
idle: [...126] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2765] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Unidirectional Traffic
- idle: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53]
- idle: [...128] [ip4][..udp] [....192.168.1.2][.2766] -> [....192.168.1.1][...53]
- idle: [...127] [ip4][..udp] [..192.168.1.172][.2766] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet
+ idle: [...125] [ip4][..udp] [..192.168.1.110][.2765] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...128] [ip4][..udp] [....192.168.1.2][.2766] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...127] [ip4][..udp] [..192.168.1.172][.2766] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...133] [ip4][..udp] [.....94.168.1.2][.2768] -> [....192.168.1.1][....4]
- update: [...132] [ip4][..udp] [....192.168.1.2][35536] -> [....192.168.1.1][...53]
- update: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53]
- update: [...143] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.184.1.1][...53]
- update: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53]
- update: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53]
+ update: [...132] [ip4][..udp] [....192.168.1.2][35536] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...143] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.184.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...135] [ip4][..udp] [....192.168.1.1][..117] -> [....192.168.1.2][.2769]
update: [...107] [ip4][..118] [....192.168.1.2] -> [..200.68.120.81]
new: [...157] [ip4][...19] [....192.168.1.2] -> [....192.168.1.1]
@@ -1133,13 +1270,14 @@
update: [...138] [ip4][..udp] [....192.168.1.2][..137] -> [..120.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...152] [ip4][..udp] [....192.168.1.6][.5060] -> [..212.242.33.35][.5060]
- update: [...137] [ip4][..udp] [....192.168.1.2][.2770] -> [....192.168.1.1][...53]
- update: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53]
- update: [...150] [ip4][..udp] [...192.168.33.2][.2782] -> [....192.168.1.1][...53]
+ update: [...137] [ip4][..udp] [....192.168.1.2][.2770] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...150] [ip4][..udp] [...192.168.33.2][.2782] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...151] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2782] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
new: [...161] [ip4][..udp] [....192.168.1.2][.2786] -> [....192.168.1.3][...53]
detected: [...161] [ip4][..udp] [....192.168.1.2][.2786] -> [....192.168.1.3][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-ad?r.arpa]
RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
@@ -1158,15 +1296,20 @@
not-detected: [...133] [ip4][..udp] [.....94.168.1.2][.2768] -> [....192.168.1.1][....4] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [...133] [ip4][..udp] [.....94.168.1.2][.2768] -> [....192.168.1.1][....4]
- idle: [...132] [ip4][..udp] [....192.168.1.2][35536] -> [....192.168.1.1][...53]
- idle: [...131] [ip4][..udp] [....192.168.1.2][.2768] -> [....192.168.1.1][...53]
- idle: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53]
+ idle: [...132] [ip4][..udp] [....192.168.1.2][35536] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...131] [ip4][..udp] [....192.168.1.2][.2768] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ idle: [...134] [ip4][..udp] [....192.168.1.2][.2769] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
not-detected: [...135] [ip4][..udp] [....192.168.1.1][..117] -> [....192.168.1.2][.2769] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [...135] [ip4][..udp] [....192.168.1.1][..117] -> [....192.168.1.2][.2769]
update: [...136] [ip4][..127] [....192.168.1.2] -> [....192.168.1.1]
- update: [...154] [ip4][..udp] [......0.168.1.2][.2783] -> [....192.168.1.1][...53]
- update: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53]
+ update: [...154] [ip4][..udp] [......0.168.1.2][.2783] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [....37] [ip4][..170] [170.170.170.170] -> [170.170.170.170]
new: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53]
detected: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
@@ -1195,16 +1338,18 @@
RISK: Malformed Packet, Unidirectional Traffic
update: [...141] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
RISK: Unsafe Protocol
- update: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53]
+ update: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...140] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2771] [DNS][Unknown][Network][Acceptable]
+ update: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...146] [ip4][..udp] [....192.168.9.2][.2774] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53]
- update: [...146] [ip4][..udp] [....192.168.9.2][.2774] -> [....192.168.1.1][...53]
update: [...147] [ip4][..udp] [....192.168.1.2][.2775] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- update: [...155] [ip4][..udp] [....192.168.1.2][.2784] -> [....192.168.1.1][...53]
+ update: [...155] [ip4][..udp] [....192.168.1.2][.2784] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...156] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.5.2][.2784] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
new: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53]
detected: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Unidirectional Traffic
@@ -1227,23 +1372,29 @@
idle: [...138] [ip4][..udp] [....192.168.1.2][..137] -> [..120.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
idle: [...141] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
RISK: Unsafe Protocol
- idle: [...137] [ip4][..udp] [....192.168.1.2][.2770] -> [....192.168.1.1][...53]
+ idle: [...137] [ip4][..udp] [....192.168.1.2][.2770] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
idle: [...140] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2771] [DNS][Unknown][Network][Acceptable]
+ idle: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [...139] [ip4][..udp] [...192.168.1.57][.2771] -> [....192.168.1.1][...53]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...152] [ip4][..udp] [....192.168.1.6][.5060] -> [..212.242.33.35][.5060]
- update: [...143] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.184.1.1][...53]
- update: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53]
- update: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53]
- update: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53]
- update: [...150] [ip4][..udp] [...192.168.33.2][.2782] -> [....192.168.1.1][...53]
+ update: [...143] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.184.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...150] [ip4][..udp] [...192.168.33.2][.2782] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...151] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2782] [DNS][Unknown][Network][Acceptable]
+ update: [...160] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...158] [ip4][..udp] [....200.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...160] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53]
- update: [...158] [ip4][..udp] [....200.168.1.2][.2785] -> [....192.168.1.1][...53]
update: [...159] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][35721]
new: [...175] [ip4][..udp] [....192.168.1.2][.2791] -> [...192.168.67.1][...53]
detected: [...175] [ip4][..udp] [....192.168.1.2][.2791] -> [...192.168.67.1][...53] [DNS][Unknown][Network][Acceptable][]
@@ -1258,40 +1409,58 @@
update: [...117] [ip4][...37] [....192.168.1.1] -> [....192.168.1.2]
update: [...162] [ip4][..udp] [..212.242.33.35][.9587] -> [....192.168.1.2][..196]
update: [....85] [ip4][..240] [....192.168.1.2] -> [....192.168.1.1]
- update: [...161] [ip4][..udp] [....192.168.1.2][.2786] -> [....192.168.1.3][...53]
- update: [...163] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.3.1][...53]
- update: [...164] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.1.1][...53]
- idle: [...143] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.184.1.1][...53]
- idle: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53]
- idle: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53]
- idle: [...146] [ip4][..udp] [....192.168.9.2][.2774] -> [....192.168.1.1][...53]
+ update: [...161] [ip4][..udp] [....192.168.1.2][.2786] -> [....192.168.1.3][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...163] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.3.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...164] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [...143] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.184.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...142] [ip4][..udp] [....192.168.1.2][.2772] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [...144] [ip4][..udp] [....192.168.1.2][.2773] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...146] [ip4][..udp] [....192.168.9.2][.2774] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...169] [ip4][..udp] [..212.242.33.35][.5060] -> [...192.37.115.0][.5060] [SIP][Unknown][VoIP][Acceptable]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...173] [ip4][..udp] [170.170.170.170][43690] -> [170.170.170.170][43690]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...152] [ip4][..udp] [....192.168.1.6][.5060] -> [..212.242.33.35][.5060]
- update: [...154] [ip4][..udp] [......0.168.1.2][.2783] -> [....192.168.1.1][...53]
- update: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53]
+ update: [...154] [ip4][..udp] [......0.168.1.2][.2783] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...147] [ip4][..udp] [....192.168.1.2][.2775] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- update: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53]
+ update: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...172] [ip4][..udp] [....192.168.1.2][..137] -> [..192.194.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
- update: [...150] [ip4][..udp] [...192.168.33.2][.2782] -> [....192.168.1.1][...53]
+ update: [...150] [ip4][..udp] [...192.168.33.2][.2782] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...151] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2782] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
- update: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53]
- update: [...155] [ip4][..udp] [....192.168.1.2][.2784] -> [....192.168.1.1][...53]
+ update: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [...155] [ip4][..udp] [....192.168.1.2][.2784] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...156] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.5.2][.2784] [DNS][Unknown][Network][Acceptable]
+ update: [...160] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...167] [ip4][..udp] [....192.168.1.2][.2789] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...170] [ip4][..udp] [...192.168.79.2][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...174] [ip4][..udp] [....192.168.1.2][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...171] [ip4][..udp] [...192.168.1.53][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...158] [ip4][..udp] [....200.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...160] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53]
- update: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53]
- update: [...167] [ip4][..udp] [....192.168.1.2][.2789] -> [....192.168.1.1][...53]
- update: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53]
- update: [...170] [ip4][..udp] [...192.168.79.2][.2791] -> [....192.168.1.1][...53]
- update: [...174] [ip4][..udp] [....192.168.1.2][.2791] -> [....192.168.1.1][...53]
- update: [...171] [ip4][..udp] [...192.168.1.53][.2791] -> [....192.168.1.1][...53]
- update: [...158] [ip4][..udp] [....200.168.1.2][.2785] -> [....192.168.1.1][...53]
update: [...159] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][35721]
new: [...178] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.112][..137]
detected: [...178] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.112][..137] [NetBIOS][Unknown][System][Acceptable][eci_domain]
@@ -1301,39 +1470,55 @@
guessed: [...152] [ip4][..udp] [....192.168.1.6][.5060] -> [..212.242.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
RISK: Unidirectional Traffic
idle: [...152] [ip4][..udp] [....192.168.1.6][.5060] -> [..212.242.33.35][.5060]
- idle: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53]
+ idle: [...145] [ip4][..udp] [....192.168.1.2][.2774] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
idle: [...147] [ip4][..udp] [....192.168.1.2][.2775] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- idle: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53]
+ idle: [...148] [ip4][..udp] [....192.168.1.2][.2776] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
idle: [...151] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2782] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
- idle: [...150] [ip4][..udp] [...192.168.33.2][.2782] -> [....192.168.1.1][...53]
+ idle: [...150] [ip4][..udp] [...192.168.33.2][.2782] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...169] [ip4][..udp] [..212.242.33.35][.5060] -> [...192.37.115.0][.5060] [SIP][Unknown][VoIP][Acceptable]
update: [...149] [ip4][....0] [....192.168.1.2] -> [..192.168.1.255]
update: [...162] [ip4][..udp] [..212.242.33.35][.9587] -> [....192.168.1.2][..196]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...173] [ip4][..udp] [170.170.170.170][43690] -> [170.170.170.170][43690]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [...154] [ip4][..udp] [......0.168.1.2][.2783] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...154] [ip4][..udp] [......0.168.1.2][.2783] -> [....192.168.1.1][...53]
update: [...172] [ip4][..udp] [....192.168.1.2][..137] -> [..192.194.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
- update: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53]
- update: [...155] [ip4][..udp] [....192.168.1.2][.2784] -> [....192.168.1.1][...53]
+ update: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [...155] [ip4][..udp] [....192.168.1.2][.2784] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...156] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.5.2][.2784] [DNS][Unknown][Network][Acceptable]
+ update: [...160] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...161] [ip4][..udp] [....192.168.1.2][.2786] -> [....192.168.1.3][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...163] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.3.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...164] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...167] [ip4][..udp] [....192.168.1.2][.2789] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...170] [ip4][..udp] [...192.168.79.2][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...174] [ip4][..udp] [....192.168.1.2][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...175] [ip4][..udp] [....192.168.1.2][.2791] -> [...192.168.67.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...171] [ip4][..udp] [...192.168.1.53][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...176] [ip4][..udp] [....192.168.1.2][.2792] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...158] [ip4][..udp] [....200.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...160] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53]
- update: [...161] [ip4][..udp] [....192.168.1.2][.2786] -> [....192.168.1.3][...53]
- update: [...163] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.3.1][...53]
- update: [...164] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.1.1][...53]
- update: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53]
- update: [...167] [ip4][..udp] [....192.168.1.2][.2789] -> [....192.168.1.1][...53]
- update: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53]
- update: [...170] [ip4][..udp] [...192.168.79.2][.2791] -> [....192.168.1.1][...53]
- update: [...174] [ip4][..udp] [....192.168.1.2][.2791] -> [....192.168.1.1][...53]
- update: [...175] [ip4][..udp] [....192.168.1.2][.2791] -> [...192.168.67.1][...53]
- update: [...171] [ip4][..udp] [...192.168.1.53][.2791] -> [....192.168.1.1][...53]
- update: [...176] [ip4][..udp] [....192.168.1.2][.2792] -> [....192.168.1.1][...53]
- update: [...158] [ip4][..udp] [....200.168.1.2][.2785] -> [....192.168.1.1][...53]
update: [...177] [ip4][..udp] [....192.168.1.1][...53] -> [....240.168.1.2][.2792] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
update: [...159] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][35721]
@@ -1345,15 +1530,21 @@
not-detected: [....85] [ip4][..240] [....192.168.1.2] -> [....192.168.1.1] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [....85] [ip4][..240] [....192.168.1.2] -> [....192.168.1.1]
- idle: [...154] [ip4][..udp] [......0.168.1.2][.2783] -> [....192.168.1.1][...53]
- idle: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53]
+ idle: [...154] [ip4][..udp] [......0.168.1.2][.2783] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...153] [ip4][..udp] [....192.168.1.2][.2783] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
idle: [...156] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.5.2][.2784] [DNS][Unknown][Network][Acceptable]
+ idle: [...155] [ip4][..udp] [....192.168.1.2][.2784] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ idle: [...160] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...161] [ip4][..udp] [....192.168.1.2][.2786] -> [....192.168.1.3][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [...163] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.3.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...158] [ip4][..udp] [....200.168.1.2][.2785] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [...155] [ip4][..udp] [....192.168.1.2][.2784] -> [....192.168.1.1][...53]
- idle: [...160] [ip4][..udp] [....192.168.1.2][.2785] -> [....192.168.1.1][...53]
- idle: [...161] [ip4][..udp] [....192.168.1.2][.2786] -> [....192.168.1.3][...53]
- idle: [...163] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.3.1][...53]
- idle: [...158] [ip4][..udp] [....200.168.1.2][.2785] -> [....192.168.1.1][...53]
guessed: [...159] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][35721] [NetBIOS][Unknown][System][Acceptable][]
idle: [...159] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][35721]
update: [...169] [ip4][..udp] [..212.242.33.35][.5060] -> [...192.37.115.0][.5060] [SIP][Unknown][VoIP][Acceptable]
@@ -1363,20 +1554,27 @@
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...179] [ip4][..udp] [....192.136.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...178] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.112][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
update: [...173] [ip4][..udp] [170.170.170.170][43690] -> [170.170.170.170][43690]
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...172] [ip4][..udp] [....192.168.1.2][..137] -> [..192.194.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
- update: [...164] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.1.1][...53]
- update: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53]
- update: [...167] [ip4][..udp] [....192.168.1.2][.2789] -> [....192.168.1.1][...53]
- update: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53]
- update: [...170] [ip4][..udp] [...192.168.79.2][.2791] -> [....192.168.1.1][...53]
- update: [...174] [ip4][..udp] [....192.168.1.2][.2791] -> [....192.168.1.1][...53]
- update: [...175] [ip4][..udp] [....192.168.1.2][.2791] -> [...192.168.67.1][...53]
- update: [...171] [ip4][..udp] [...192.168.1.53][.2791] -> [....192.168.1.1][...53]
- update: [...176] [ip4][..udp] [....192.168.1.2][.2792] -> [....192.168.1.1][...53]
+ update: [...164] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...167] [ip4][..udp] [....192.168.1.2][.2789] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ update: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...170] [ip4][..udp] [...192.168.79.2][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...174] [ip4][..udp] [....192.168.1.2][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...175] [ip4][..udp] [....192.168.1.2][.2791] -> [...192.168.67.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...171] [ip4][..udp] [...192.168.1.53][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...176] [ip4][..udp] [....192.168.1.2][.2792] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...177] [ip4][..udp] [....192.168.1.1][...53] -> [....240.168.1.2][.2792] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
update: [....37] [ip4][..170] [170.170.170.170] -> [170.170.170.170]
@@ -1392,17 +1590,23 @@
new: [...184] [ip4][..udp] [.....115.0.1.41][..137] -> [..192.168.1.255][..137]
detected: [...184] [ip4][..udp] [.....115.0.1.41][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable][workgroup]
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [1/16]
- idle: [...164] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.1.1][...53]
- idle: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53]
- idle: [...167] [ip4][..udp] [....192.168.1.2][.2789] -> [....192.168.1.1][...53]
+ idle: [...164] [ip4][..udp] [....192.168.1.2][.2787] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [...165] [ip4][..udp] [....192.168.1.2][.2788] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...167] [ip4][..udp] [....192.168.1.2][.2789] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...117] [ip4][...37] [....192.168.1.1] -> [....192.168.1.2]
new: [...185] [ip4][..udp] [...192.168.1.41][..137] -> [.192.168.37.115][..137]
detected: [...185] [ip4][..udp] [...192.168.1.41][..137] -> [.192.168.37.115][..137] [NetBIOS][Unknown][System][Acceptable][workgroup]
RISK: Unidirectional Traffic
idle: [...169] [ip4][..udp] [..212.242.33.35][.5060] -> [...192.37.115.0][.5060] [SIP][Unknown][VoIP][Acceptable]
- idle: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53]
- idle: [...171] [ip4][..udp] [...192.168.1.53][.2791] -> [....192.168.1.1][...53]
- idle: [...170] [ip4][..udp] [...192.168.79.2][.2791] -> [....192.168.1.1][...53]
+ idle: [...168] [ip4][..udp] [....192.168.1.2][.2790] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...171] [ip4][..udp] [...192.168.1.53][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...170] [ip4][..udp] [...192.168.79.2][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
new: [...186] [ip4][..udp] [....192.168.1.2][43690] -> [192.168.170.170][43690]
new: [...187] [ip4][..udp] [....192.168.1.2][..137] -> [..200.168.1.255][..137]
detected: [...187] [ip4][..udp] [....192.168.1.2][..137] -> [..200.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable][eci_domain]
@@ -1410,15 +1614,16 @@
RISK: Unidirectional Traffic
idle: [...173] [ip4][..udp] [170.170.170.170][43690] -> [170.170.170.170][43690]
idle: [...172] [ip4][..udp] [....192.168.1.2][..137] -> [..192.194.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
- idle: [...175] [ip4][..udp] [....192.168.1.2][.2791] -> [...192.168.67.1][...53]
- idle: [...174] [ip4][..udp] [....192.168.1.2][.2791] -> [....192.168.1.1][...53]
+ idle: [...175] [ip4][..udp] [....192.168.1.2][.2791] -> [...192.168.67.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [...174] [ip4][..udp] [....192.168.1.2][.2791] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...179] [ip4][..udp] [....192.136.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...178] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.112][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
update: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ update: [...176] [ip4][..udp] [....192.168.1.2][.2792] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...176] [ip4][..udp] [....192.168.1.2][.2792] -> [....192.168.1.1][...53]
update: [...177] [ip4][..udp] [....192.168.1.1][...53] -> [....240.168.1.2][.2792] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
new: [...188] [ip4][..udp] [....192.168.1.2][...68] -> [....192.168.1.1][...67]
@@ -1426,8 +1631,8 @@
RISK: Unidirectional Traffic
new: [...189] [ip4][..udp] [...192.168.1.41][..138] -> [..192.168.1.255][..394]
idle: [....12] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
+ idle: [...176] [ip4][..udp] [....192.168.1.2][.2792] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [...176] [ip4][..udp] [....192.168.1.2][.2792] -> [....192.168.1.1][...53]
idle: [...177] [ip4][..udp] [....192.168.1.1][...53] -> [....240.168.1.2][.2792] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
not-detected: [...107] [ip4][..118] [....192.168.1.2] -> [..200.68.120.81] [Unknown][Unknown][Unrated]
@@ -1438,13 +1643,11 @@
update: [...181] [ip4][..udp] [.192.184.189.41][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...182] [ip4][..udp] [...192.168.1.41][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...185] [ip4][..udp] [...192.168.1.41][..137] -> [.192.168.37.115][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
update: [...180] [ip4][..udp] [...192.168.1.41][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
RISK: Unsafe Protocol
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...179] [ip4][..udp] [....192.136.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...178] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.112][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
update: [...187] [ip4][..udp] [....192.168.1.2][..137] -> [..200.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...186] [ip4][..udp] [....192.168.1.2][43690] -> [192.168.170.170][43690]
DAEMON-EVENT: [Processed: 409 pkts][ZLib][compressions: 0|diff: 0 / 0]
@@ -1461,15 +1664,12 @@
detected: [...191] [ip4][..udp] [....192.168.1.2][.2794] -> [..192.168.108.1][...53] [DNS][Unknown][Network][Acceptable][sip.cybercity.dk]
RISK: Unidirectional Traffic
idle: [...178] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.112][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
idle: [...179] [ip4][..udp] [....192.136.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...149] [ip4][....0] [....192.168.1.2] -> [..192.168.1.255]
update: [...188] [ip4][..udp] [....192.168.1.2][...68] -> [....192.168.1.1][...67] [DHCP][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
update: [...183] [ip4][..udp] [...192.168.1.41][..137] -> [..107.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...184] [ip4][..udp] [.....115.0.1.41][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...185] [ip4][..udp] [...192.168.1.41][..137] -> [.192.168.37.115][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
update: [...181] [ip4][..udp] [.192.184.189.41][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...182] [ip4][..udp] [...192.168.1.41][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...180] [ip4][..udp] [...192.168.1.41][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
@@ -1531,11 +1731,9 @@
ERROR-EVENT: Unknown packet type [1/16]
update: [...117] [ip4][...37] [....192.168.1.1] -> [....192.168.1.2]
update: [...188] [ip4][..udp] [....192.168.1.2][...68] -> [....192.168.1.1][...67] [DHCP][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
update: [...183] [ip4][..udp] [...192.168.1.41][..137] -> [..107.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...184] [ip4][..udp] [.....115.0.1.41][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...185] [ip4][..udp] [...192.168.1.41][..137] -> [.192.168.37.115][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
update: [...181] [ip4][..udp] [.192.184.189.41][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...182] [ip4][..udp] [...192.168.1.41][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...180] [ip4][..udp] [...192.168.1.41][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
@@ -1543,7 +1741,8 @@
update: [...189] [ip4][..udp] [...192.168.1.41][..138] -> [..192.168.1.255][..394]
update: [...190] [ip4][..udp] [....192.168.1.2][.2793] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- update: [...191] [ip4][..udp] [....192.168.1.2][.2794] -> [..192.168.108.1][...53]
+ update: [...191] [ip4][..udp] [....192.168.1.2][.2794] -> [..192.168.108.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
new: [...204] [ip4][..udp] [....192.168.1.2][.2801] -> [....192.168.1.1][...53]
detected: [...204] [ip4][..udp] [....192.168.1.2][.2801] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Unidirectional Traffic
@@ -1564,8 +1763,10 @@
update: [...187] [ip4][..udp] [....192.168.1.2][..137] -> [..200.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...193] [ip4][..udp] [....192.168.1.2][.2794] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
update: [...192] [ip4][..udp] [....192.168.1.2][.2795] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...194] [ip4][..udp] [....192.168.1.2][.2796] -> [....192.168.1.1][...53]
- update: [...196] [ip4][..udp] [....192.168.1.2][.2796] -> [..192.168.1.129][...53]
+ update: [...194] [ip4][..udp] [....192.168.1.2][.2796] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...196] [ip4][..udp] [....192.168.1.2][.2796] -> [..192.168.1.129][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...186] [ip4][..udp] [....192.168.1.2][43690] -> [192.168.170.170][43690]
new: [...209] [ip4][..udp] [....192.168.1.2][.2803] -> [....192.168.1.1][...53]
detected: [...209] [ip4][..udp] [....192.168.1.2][.2803] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
@@ -1583,16 +1784,15 @@
idle: [...180] [ip4][..udp] [...192.168.1.41][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
RISK: Unsafe Protocol
update: [...198] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...197] [ip4][..udp] [....192.168.1.2][.2797] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- update: [...199] [ip4][..udp] [....192.168.1.2][.2798] -> [....192.168.1.1][...53]
+ update: [...199] [ip4][..udp] [....192.168.1.2][.2798] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
detection-update: [...210] [ip4][..udp] [....192.168.1.2][.2804] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
ERROR-EVENT: Unknown packet type [2/16]
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [3/16]
idle: [...185] [ip4][..udp] [...192.168.1.41][..137] -> [.192.168.37.115][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
new: [...211] [ip4][..udp] [....192.168.1.2][.2805] -> [....192.168.1.1][...51]
new: [...212] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2805]
detected: [...212] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2805] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
@@ -1614,16 +1814,17 @@
RISK: Unidirectional Traffic
idle: [...186] [ip4][..udp] [....192.168.1.2][43690] -> [192.168.170.170][43690]
update: [...188] [ip4][..udp] [....192.168.1.2][...68] -> [....192.168.1.1][...67] [DHCP][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
update: [...189] [ip4][..udp] [...192.168.1.41][..138] -> [..192.168.1.255][..394]
update: [...203] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...21]
update: [...190] [ip4][..udp] [....192.168.1.2][.2793] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- update: [...191] [ip4][..udp] [....192.168.1.2][.2794] -> [..192.168.108.1][...53]
- update: [...200] [ip4][..udp] [....192.168.1.2][.2799] -> [....192.168.1.1][...53]
- update: [...201] [ip4][..udp] [....192.168.1.1][...53] -> [..192.168.119.2][.2799] [DNS][Unknown][Network][Acceptable]
+ update: [...191] [ip4][..udp] [....192.168.1.2][.2794] -> [..192.168.108.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...202] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...53]
+ update: [...200] [ip4][..udp] [....192.168.1.2][.2799] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...201] [ip4][..udp] [....192.168.1.1][...53] -> [..192.168.119.2][.2799] [DNS][Unknown][Network][Acceptable]
+ update: [...202] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
ERROR-EVENT: Unknown packet type [1/16]
new: [...214] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2807]
detected: [...214] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2807] [DNS][Unknown][Network][Acceptable][]
@@ -1634,17 +1835,22 @@
RISK: Unidirectional Traffic
detection-update: [...216] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
- update: [...208] [ip4][..udp] [....192.168.1.2][18162] -> [....192.168.1.1][...53]
+ update: [...208] [ip4][..udp] [....192.168.1.2][18162] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...195] [ip4][..udp] [192.168.170.170][43690] -> [170.170.170.170][43690]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
- update: [...206] [ip4][..udp] [....192.168.1.2][.2568] -> [....192.168.1.1][...53]
+ update: [...206] [ip4][..udp] [....192.168.1.2][.2568] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...193] [ip4][..udp] [....192.168.1.2][.2794] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
update: [...192] [ip4][..udp] [....192.168.1.2][.2795] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...194] [ip4][..udp] [....192.168.1.2][.2796] -> [....192.168.1.1][...53]
- update: [...196] [ip4][..udp] [....192.168.1.2][.2796] -> [..192.168.1.129][...53]
+ update: [...194] [ip4][..udp] [....192.168.1.2][.2796] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...196] [ip4][..udp] [....192.168.1.2][.2796] -> [..192.168.1.129][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...204] [ip4][..udp] [....192.168.1.2][.2801] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
- update: [...207] [ip4][..udp] [....192.168.1.2][.2802] -> [....192.168.1.1][...53]
+ update: [...207] [ip4][..udp] [....192.168.1.2][.2802] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
ERROR-EVENT: Unknown packet type [2/16]
new: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53]
detected: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
@@ -1669,16 +1875,16 @@
RISK: Unidirectional Traffic
idle: [...136] [ip4][..127] [....192.168.1.2] -> [....192.168.1.1]
idle: [...188] [ip4][..udp] [....192.168.1.2][...68] -> [....192.168.1.1][...67] [DHCP][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
guessed: [...189] [ip4][..udp] [...192.168.1.41][..138] -> [..192.168.1.255][..394] [NetBIOS][Unknown][System][Acceptable][]
idle: [...189] [ip4][..udp] [...192.168.1.41][..138] -> [..192.168.1.255][..394]
update: [...198] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...197] [ip4][..udp] [....192.168.1.2][.2797] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- update: [...199] [ip4][..udp] [....192.168.1.2][.2798] -> [....192.168.1.1][...53]
+ update: [...199] [ip4][..udp] [....192.168.1.2][.2798] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...209] [ip4][..udp] [....192.168.1.2][.2803] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...210] [ip4][..udp] [....192.168.1.2][.2804] -> [....192.168.1.1][...53]
+ update: [...210] [ip4][..udp] [....192.168.1.2][.2804] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
new: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53]
detected: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Unidirectional Traffic
@@ -1692,15 +1898,17 @@
update: [...203] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...21]
update: [...190] [ip4][..udp] [....192.168.1.2][.2793] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- update: [...191] [ip4][..udp] [....192.168.1.2][.2794] -> [..192.168.108.1][...53]
- update: [...200] [ip4][..udp] [....192.168.1.2][.2799] -> [....192.168.1.1][...53]
- update: [...201] [ip4][..udp] [....192.168.1.1][...53] -> [..192.168.119.2][.2799] [DNS][Unknown][Network][Acceptable]
+ update: [...191] [ip4][..udp] [....192.168.1.2][.2794] -> [..192.168.108.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...202] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...53]
+ update: [...200] [ip4][..udp] [....192.168.1.2][.2799] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...201] [ip4][..udp] [....192.168.1.1][...53] -> [..192.168.119.2][.2799] [DNS][Unknown][Network][Acceptable]
+ update: [...202] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...211] [ip4][..udp] [....192.168.1.2][.2805] -> [....192.168.1.1][...51]
update: [...212] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2805] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
- update: [...213] [ip4][..udp] [....192.168.1.2][.2806] -> [....192.168.1.1][...53]
+ update: [...213] [ip4][..udp] [....192.168.1.2][.2806] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
new: [...226] [ip4][..udp] [....192.168.1.2][.2812] -> [....192.168.1.1][...53]
detected: [...226] [ip4][..udp] [....192.168.1.2][.2812] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cyaercity.dk]
RISK: Unidirectional Traffic
@@ -1709,38 +1917,49 @@
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [1/16]
idle: [...190] [ip4][..udp] [....192.168.1.2][.2793] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- idle: [...191] [ip4][..udp] [....192.168.1.2][.2794] -> [..192.168.108.1][...53]
- update: [...208] [ip4][..udp] [....192.168.1.2][18162] -> [....192.168.1.1][...53]
+ idle: [...191] [ip4][..udp] [....192.168.1.2][.2794] -> [..192.168.108.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...208] [ip4][..udp] [....192.168.1.2][18162] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...195] [ip4][..udp] [192.168.170.170][43690] -> [170.170.170.170][43690]
update: [...166] [ip4][....0] [....192.168.1.1] -> [....192.168.1.2]
update: [...157] [ip4][...19] [....192.168.1.2] -> [....192.168.1.1]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...198] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...215] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][38709]
- update: [...206] [ip4][..udp] [....192.168.1.2][.2568] -> [....192.168.1.1][...53]
+ update: [...206] [ip4][..udp] [....192.168.1.2][.2568] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...222] [ip4][..udp] [....128.168.1.2][.2810] -> [....192.168.1.1][...53]
update: [...193] [ip4][..udp] [....192.168.1.2][.2794] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
update: [...192] [ip4][..udp] [....192.168.1.2][.2795] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...194] [ip4][..udp] [....192.168.1.2][.2796] -> [....192.168.1.1][...53]
- update: [...196] [ip4][..udp] [....192.168.1.2][.2796] -> [..192.168.1.129][...53]
+ update: [...194] [ip4][..udp] [....192.168.1.2][.2796] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...196] [ip4][..udp] [....192.168.1.2][.2796] -> [..192.168.1.129][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...197] [ip4][..udp] [....192.168.1.2][.2797] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- update: [...199] [ip4][..udp] [....192.168.1.2][.2798] -> [....192.168.1.1][...53]
+ update: [...199] [ip4][..udp] [....192.168.1.2][.2798] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...204] [ip4][..udp] [....192.168.1.2][.2801] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
- update: [...207] [ip4][..udp] [....192.168.1.2][.2802] -> [....192.168.1.1][...53]
+ update: [...207] [ip4][..udp] [....192.168.1.2][.2802] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...209] [ip4][..udp] [....192.168.1.2][.2803] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...210] [ip4][..udp] [....192.168.1.2][.2804] -> [....192.168.1.1][...53]
+ update: [...210] [ip4][..udp] [....192.168.1.2][.2804] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...214] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2807] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- update: [...216] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][...53]
- update: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
+ update: [...216] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...218] [ip4][..udp] [....192.168.1.2][.2809] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...221] [ip4][..udp] [....192.168.1.2][.2810] -> [....192.168.1.1][...53]
+ update: [...221] [ip4][..udp] [....192.168.1.2][.2810] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...219] [ip4][..udp] [....192.168.1.2][.5060] -> [..212.242.33.35][17860]
update: [....37] [ip4][..170] [170.170.170.170] -> [170.170.170.170]
- update: [...220] [ip4][..udp] [....192.170.1.2][.2810] -> [....192.168.1.1][...53]
+ update: [...220] [ip4][..udp] [....192.170.1.2][.2810] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
new: [...227] [ip4][..udp] [....192.168.1.2][.2813] -> [....192.168.1.1][...53]
detected: [...227] [ip4][..udp] [....192.168.1.2][.2813] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127?in-ad_r?arpa???]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
@@ -1763,21 +1982,24 @@
idle: [...195] [ip4][..udp] [192.168.170.170][43690] -> [170.170.170.170][43690]
idle: [...193] [ip4][..udp] [....192.168.1.2][.2794] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
idle: [...192] [ip4][..udp] [....192.168.1.2][.2795] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- idle: [...196] [ip4][..udp] [....192.168.1.2][.2796] -> [..192.168.1.129][...53]
- idle: [...194] [ip4][..udp] [....192.168.1.2][.2796] -> [....192.168.1.1][...53]
+ idle: [...196] [ip4][..udp] [....192.168.1.2][.2796] -> [..192.168.1.129][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ idle: [...194] [ip4][..udp] [....192.168.1.2][.2796] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...117] [ip4][...37] [....192.168.1.1] -> [....192.168.1.2]
update: [...203] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...21]
- update: [...200] [ip4][..udp] [....192.168.1.2][.2799] -> [....192.168.1.1][...53]
- update: [...201] [ip4][..udp] [....192.168.1.1][...53] -> [..192.168.119.2][.2799] [DNS][Unknown][Network][Acceptable]
+ update: [...200] [ip4][..udp] [....192.168.1.2][.2799] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- update: [...202] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...53]
+ update: [...201] [ip4][..udp] [....192.168.1.1][...53] -> [..192.168.119.2][.2799] [DNS][Unknown][Network][Acceptable]
+ update: [...202] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...211] [ip4][..udp] [....192.168.1.2][.2805] -> [....192.168.1.1][...51]
update: [...212] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2805] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
- update: [...213] [ip4][..udp] [....192.168.1.2][.2806] -> [....192.168.1.1][...53]
- update: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53]
+ update: [...213] [ip4][..udp] [....192.168.1.2][.2806] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...224] [ip4][..udp] [..192.168.233.1][...53] -> [....192.168.1.2][.2811] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
update: [...225] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..905]
new: [...230] [ip4][..udp] [....192.168.1.2][.2815] -> [....192.168.1.1][...53]
detected: [...230] [ip4][..udp] [....192.168.1.2][.2815] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
@@ -1803,7 +2025,8 @@
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [3/16]
idle: [...197] [ip4][..udp] [....192.168.1.2][.2797] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- idle: [...199] [ip4][..udp] [....192.168.1.2][.2798] -> [....192.168.1.1][...53]
+ idle: [...199] [ip4][..udp] [....192.168.1.2][.2798] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...205] [ip4][....0] [....192.168.1.2] -> [..212.242.33.35]
new: [...238] [ip4][..udp] [....192.168.1.2][.2822] -> [....192.168.1.1][...53]
detected: [...238] [ip4][..udp] [....192.168.1.2][.2822] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.1?7.in-addr.arpa]
@@ -1815,6 +2038,8 @@
new: [...240] [ip4][..udp] [....192.168.1.2][.2823] -> [....192.168.1.1][...53]
detected: [...240] [ip4][..udp] [....192.168.1.2][.2823] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
+ detection-update: [...240] [ip4][..udp] [....192.168.1.2][.2823] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [2/16]
detection-update: [...240] [ip4][..udp] [....192.168.1.2][.2823] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
@@ -1826,30 +2051,39 @@
RISK: Unidirectional Traffic
idle: [...203] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...21]
idle: [...201] [ip4][..udp] [....192.168.1.1][...53] -> [..192.168.119.2][.2799] [DNS][Unknown][Network][Acceptable]
+ idle: [...200] [ip4][..udp] [....192.168.1.2][.2799] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...202] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...208] [ip4][..udp] [....192.168.1.2][18162] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [...200] [ip4][..udp] [....192.168.1.2][.2799] -> [....192.168.1.1][...53]
- idle: [...202] [ip4][..udp] [....192.168.1.2][.2800] -> [....192.168.1.1][...53]
- update: [...208] [ip4][..udp] [....192.168.1.2][18162] -> [....192.168.1.1][...53]
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...198] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...215] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][38709]
- update: [...206] [ip4][..udp] [....192.168.1.2][.2568] -> [....192.168.1.1][...53]
+ update: [...206] [ip4][..udp] [....192.168.1.2][.2568] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...222] [ip4][..udp] [....128.168.1.2][.2810] -> [....192.168.1.1][...53]
update: [...204] [ip4][..udp] [....192.168.1.2][.2801] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
- update: [...207] [ip4][..udp] [....192.168.1.2][.2802] -> [....192.168.1.1][...53]
+ update: [...207] [ip4][..udp] [....192.168.1.2][.2802] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...209] [ip4][..udp] [....192.168.1.2][.2803] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...210] [ip4][..udp] [....192.168.1.2][.2804] -> [....192.168.1.1][...53]
+ update: [...210] [ip4][..udp] [....192.168.1.2][.2804] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...214] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2807] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- update: [...216] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][...53]
- update: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
+ update: [...216] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...218] [ip4][..udp] [....192.168.1.2][.2809] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...221] [ip4][..udp] [....192.168.1.2][.2810] -> [....192.168.1.1][...53]
- update: [...226] [ip4][..udp] [....192.168.1.2][.2812] -> [....192.168.1.1][...53]
+ update: [...221] [ip4][..udp] [....192.168.1.2][.2810] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...226] [ip4][..udp] [....192.168.1.2][.2812] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...219] [ip4][..udp] [....192.168.1.2][.5060] -> [..212.242.33.35][17860]
- update: [...220] [ip4][..udp] [....192.170.1.2][.2810] -> [....192.168.1.1][...53]
+ update: [...220] [ip4][..udp] [....192.170.1.2][.2810] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
new: [...241] [ip4][..udp] [....192.168.1.2][.2824] -> [....192.168.1.1][...53]
detected: [...241] [ip4][..udp] [....192.168.1.2][.2824] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Unidirectional Traffic
@@ -1860,24 +2094,30 @@
RISK: Unidirectional Traffic
detection-update: [...242] [ip4][..udp] [....192.168.1.2][.2825] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Unidirectional Traffic
+ detection-update: [...242] [ip4][..udp] [....192.168.1.2][.2825] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
detection-update: [...242] [ip4][..udp] [....192.168.1.2][.2825] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- idle: [...208] [ip4][..udp] [....192.168.1.2][18162] -> [....192.168.1.1][...53]
- idle: [...206] [ip4][..udp] [....192.168.1.2][.2568] -> [....192.168.1.1][...53]
+ idle: [...208] [ip4][..udp] [....192.168.1.2][18162] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...206] [ip4][..udp] [....192.168.1.2][.2568] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
idle: [...204] [ip4][..udp] [....192.168.1.2][.2801] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
- idle: [...207] [ip4][..udp] [....192.168.1.2][.2802] -> [....192.168.1.1][...53]
+ idle: [...207] [ip4][..udp] [....192.168.1.2][.2802] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...211] [ip4][..udp] [....192.168.1.2][.2805] -> [....192.168.1.1][...51]
update: [...212] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2805] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
- update: [...213] [ip4][..udp] [....192.168.1.2][.2806] -> [....192.168.1.1][...53]
- update: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53]
+ update: [...213] [ip4][..udp] [....192.168.1.2][.2806] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...224] [ip4][..udp] [..192.168.233.1][...53] -> [....192.168.1.2][.2811] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
- update: [...227] [ip4][..udp] [....192.168.1.2][.2813] -> [....192.168.1.1][...53]
- update: [...228] [ip4][..udp] [....192.168.1.2][.2814] -> [....192.168.1.1][...53]
+ update: [...227] [ip4][..udp] [....192.168.1.2][.2813] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...228] [ip4][..udp] [....192.168.1.2][.2814] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...229] [ip4][..udp] [....192.168.1.2][29440] -> [...192.168.1.37][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
update: [...225] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..905]
new: [...243] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.255][..138]
detected: [...243] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous][d00]
@@ -1888,12 +2128,13 @@
detection-update: [...244] [ip4][..udp] [....192.168.1.2][.2826] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Non-Printable/Invalid Chars Detected
idle: [...209] [ip4][..udp] [....192.168.1.2][.2803] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- idle: [...210] [ip4][..udp] [....192.168.1.2][.2804] -> [....192.168.1.1][...53]
+ idle: [...210] [ip4][..udp] [....192.168.1.2][.2804] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...232] [ip4][..udp] [....192.168.1.2][.5060] -> [.212.242.33.201][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...230] [ip4][..udp] [....192.168.1.2][.2815] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Error Code, Unidirectional Traffic
- update: [...231] [ip4][..udp] [....192.168.1.2][.2816] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet, Error Code
+ update: [...231] [ip4][..udp] [....192.168.1.2][.2816] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...237] [ip4][..udp] [.....81.168.1.2][30000] -> [..212.242.33.36][40392]
update: [...233] [ip4][..udp] [....192.168.1.3][30000] -> [..212.242.33.36][40392]
update: [...235] [ip4][..udp] [....192.168.1.2][30000] -> [..212.242.33.36][40392] [RTP][Unknown][Media][Acceptable]
@@ -1919,11 +2160,11 @@
RISK: Unidirectional Traffic
idle: [...211] [ip4][..udp] [....192.168.1.2][.2805] -> [....192.168.1.1][...51]
idle: [...212] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2805] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
update: [...239] [ip4][..udp] [....192.168.1.2][.5060] -> [..212.234.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
- update: [...238] [ip4][..udp] [....192.168.1.2][.2822] -> [....192.168.1.1][...53]
- update: [...240] [ip4][..udp] [....192.168.1.2][.2823] -> [....192.168.1.1][...53]
+ update: [...238] [ip4][..udp] [....192.168.1.2][.2822] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...240] [ip4][..udp] [....192.168.1.2][.2823] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
new: [...248] [ip4][..udp] [....192.168.1.2][.2828] -> [....192.168.1.1][...53]
detected: [...248] [ip4][..udp] [....192.168.1.2][.2828] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][1.0.0.127.in-addr.arpa]
RISK: Unidirectional Traffic
@@ -1937,22 +2178,28 @@
not-detected: [...215] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][38709] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [...215] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][38709]
- idle: [...213] [ip4][..udp] [....192.168.1.2][.2806] -> [....192.168.1.1][...53]
+ idle: [...213] [ip4][..udp] [....192.168.1.2][.2806] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
idle: [...214] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2807] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
- idle: [...216] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected
+ idle: [...216] [ip4][..udp] [....192.168.1.2][.2808] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [.....1] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..137] [NetBIOS][Unknown][System][Acceptable]
update: [...198] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
update: [...222] [ip4][..udp] [....128.168.1.2][.2810] -> [....192.168.1.1][...53]
- update: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53]
+ update: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...218] [ip4][..udp] [....192.168.1.2][.2809] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...221] [ip4][..udp] [....192.168.1.2][.2810] -> [....192.168.1.1][...53]
- update: [...226] [ip4][..udp] [....192.168.1.2][.2812] -> [....192.168.1.1][...53]
+ update: [...221] [ip4][..udp] [....192.168.1.2][.2810] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...226] [ip4][..udp] [....192.168.1.2][.2812] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
update: [...241] [ip4][..udp] [....192.168.1.2][.2824] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- update: [...242] [ip4][..udp] [....192.168.1.2][.2825] -> [....192.168.1.1][...53]
+ update: [...242] [ip4][..udp] [....192.168.1.2][.2825] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...219] [ip4][..udp] [....192.168.1.2][.5060] -> [..212.242.33.35][17860]
- update: [...220] [ip4][..udp] [....192.170.1.2][.2810] -> [....192.168.1.1][...53]
+ update: [...220] [ip4][..udp] [....192.170.1.2][.2810] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
new: [...252] [ip4][..udp] [....192.168.1.2][.2829] -> [....192.168.1.1][...53]
detected: [...252] [ip4][..udp] [....192.168.1.2][.2829] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
RISK: Unidirectional Traffic
@@ -1971,29 +2218,33 @@
not-detected: [...166] [ip4][....0] [....192.168.1.1] -> [....192.168.1.2] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [...166] [ip4][....0] [....192.168.1.1] -> [....192.168.1.2]
- idle: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53]
+ idle: [...217] [ip4][..udp] [....192.168.1.2][19192] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
idle: [...218] [ip4][..udp] [....192.168.1.2][.2809] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- idle: [...221] [ip4][..udp] [....192.168.1.2][.2810] -> [....192.168.1.1][...53]
+ idle: [...221] [ip4][..udp] [....192.168.1.2][.2810] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
guessed: [...219] [ip4][..udp] [....192.168.1.2][.5060] -> [..212.242.33.35][17860] [SIP][Unknown][VoIP][Acceptable]
RISK: Unidirectional Traffic
idle: [...219] [ip4][..udp] [....192.168.1.2][.5060] -> [..212.242.33.35][17860]
- idle: [...220] [ip4][..udp] [....192.170.1.2][.2810] -> [....192.168.1.1][...53]
+ idle: [...220] [ip4][..udp] [....192.170.1.2][.2810] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...243] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
RISK: Unsafe Protocol
update: [...232] [ip4][..udp] [....192.168.1.2][.5060] -> [.212.242.33.201][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
- update: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53]
+ update: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...224] [ip4][..udp] [..192.168.233.1][...53] -> [....192.168.1.2][.2811] [DNS][Unknown][Network][Acceptable]
- RISK: Unidirectional Traffic
- update: [...227] [ip4][..udp] [....192.168.1.2][.2813] -> [....192.168.1.1][...53]
- update: [...228] [ip4][..udp] [....192.168.1.2][.2814] -> [....192.168.1.1][...53]
+ update: [...227] [ip4][..udp] [....192.168.1.2][.2813] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ update: [...228] [ip4][..udp] [....192.168.1.2][.2814] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
update: [...230] [ip4][..udp] [....192.168.1.2][.2815] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Error Code, Unidirectional Traffic
- update: [...231] [ip4][..udp] [....192.168.1.2][.2816] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet, Error Code
+ update: [...231] [ip4][..udp] [....192.168.1.2][.2816] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
update: [...244] [ip4][..udp] [....192.168.1.2][.2826] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
update: [...229] [ip4][..udp] [....192.168.1.2][29440] -> [...192.168.1.37][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
update: [...225] [ip4][..udp] [....192.168.1.2][..137] -> [..192.168.1.255][..905]
update: [...237] [ip4][..udp] [.....81.168.1.2][30000] -> [..212.242.33.36][40392]
update: [...233] [ip4][..udp] [....192.168.1.3][30000] -> [..212.242.33.36][40392]
@@ -2008,8 +2259,10 @@
guessed: [...222] [ip4][..udp] [....128.168.1.2][.2810] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][]
RISK: Malformed Packet, Unidirectional Traffic
idle: [...222] [ip4][..udp] [....128.168.1.2][.2810] -> [....192.168.1.1][...53]
- update: [...245] [ip4][..udp] [....192.168.1.2][.2827] -> [..192.168.1.114][...53]
- update: [...246] [ip4][..udp] [....192.168.1.2][.2827] -> [....192.168.1.1][...53]
+ update: [...245] [ip4][..udp] [....192.168.1.2][.2827] -> [..192.168.1.114][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ update: [...246] [ip4][..udp] [....192.168.1.2][.2827] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
ERROR-EVENT: nDPI IPv4/L4 payload detection failed [1/16]
new: [...257] [ip4][..udp] [....192.168.1.2][.2832] -> [....192.168.1.1][...53]
detected: [...257] [ip4][..udp] [....192.168.1.2][.2832] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable][_sip._udp.sip.cybercity.dk]
@@ -2035,16 +2288,13 @@
idle: [...243] [ip4][..udp] [....192.168.1.2][..138] -> [..192.168.1.255][..138] [NetBIOS.SMBv1][Unknown][System][Dangerous]
RISK: Unsafe Protocol
idle: [...232] [ip4][..udp] [....192.168.1.2][.5060] -> [.212.242.33.201][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
idle: [...239] [ip4][..udp] [....192.168.1.2][.5060] -> [..212.234.33.35][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
idle: [...198] [ip4][..udp] [..212.242.33.35][.5060] -> [....192.168.1.2][.5060] [SIP][Unknown][VoIP][Acceptable]
- RISK: Unidirectional Traffic
not-detected: [...205] [ip4][....0] [....192.168.1.2] -> [..212.242.33.35] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [...205] [ip4][....0] [....192.168.1.2] -> [..212.242.33.35]
idle: [...249] [ip4][..udp] [....192.168.1.1][...53] -> [....192.168.1.2][.2572] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Unidirectional Traffic
+ RISK: Malformed Packet
guessed: [....31] [ip4][..tcp] [..147.234.1.253][...21] -> [....192.168.1.2][.2208] [FTP_CONTROL][Unknown][Download][Unsafe]
RISK: Unsafe Protocol, Unidirectional Traffic
idle: [....31] [ip4][..tcp] [..147.234.1.253][...21] -> [....192.168.1.2][.2208]
@@ -2054,35 +2304,48 @@
not-detected: [....39] [ip4][..tcp] [....192.168.1.6][.2721] -> [..147.234.1.253][58999] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [....39] [ip4][..tcp] [....192.168.1.6][.2721] -> [..147.234.1.253][58999]
- idle: [...255] [ip4][..udp] [....116.168.1.2][.2829] -> [....192.168.1.1][...53]
+ idle: [...255] [ip4][..udp] [....116.168.1.2][.2829] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
idle: [...224] [ip4][..udp] [..192.168.233.1][...53] -> [....192.168.1.2][.2811] [DNS][Unknown][Network][Acceptable]
+ idle: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ idle: [...226] [ip4][..udp] [....192.168.1.2][.2812] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Unidirectional Traffic
- idle: [...223] [ip4][..udp] [....192.168.1.2][.2811] -> [....192.168.1.1][...53]
- idle: [...226] [ip4][..udp] [....192.168.1.2][.2812] -> [....192.168.1.1][...53]
- idle: [...227] [ip4][..udp] [....192.168.1.2][.2813] -> [....192.168.1.1][...53]
- idle: [...228] [ip4][..udp] [....192.168.1.2][.2814] -> [....192.168.1.1][...53]
+ idle: [...227] [ip4][..udp] [....192.168.1.2][.2813] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [...228] [ip4][..udp] [....192.168.1.2][.2814] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
idle: [...230] [ip4][..udp] [....192.168.1.2][.2815] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- RISK: Malformed Packet, Error Code, Unidirectional Traffic
- idle: [...231] [ip4][..udp] [....192.168.1.2][.2816] -> [....192.168.1.1][...53]
- idle: [...238] [ip4][..udp] [....192.168.1.2][.2822] -> [....192.168.1.1][...53]
- idle: [...240] [ip4][..udp] [....192.168.1.2][.2823] -> [....192.168.1.1][...53]
+ RISK: Malformed Packet, Error Code
+ idle: [...231] [ip4][..udp] [....192.168.1.2][.2816] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [...238] [ip4][..udp] [....192.168.1.2][.2822] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [...240] [ip4][..udp] [....192.168.1.2][.2823] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
idle: [...241] [ip4][..udp] [....192.168.1.2][.2824] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- idle: [...242] [ip4][..udp] [....192.168.1.2][.2825] -> [....192.168.1.1][...53]
+ idle: [...242] [ip4][..udp] [....192.168.1.2][.2825] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Non-Printable/Invalid Chars Detected, Unidirectional Traffic
idle: [...244] [ip4][..udp] [....192.168.1.2][.2826] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
RISK: Non-Printable/Invalid Chars Detected
- idle: [...246] [ip4][..udp] [....192.168.1.2][.2827] -> [....192.168.1.1][...53]
- idle: [...245] [ip4][..udp] [....192.168.1.2][.2827] -> [..192.168.1.114][...53]
- idle: [...248] [ip4][..udp] [....192.168.1.2][.2828] -> [....192.168.1.1][...53]
- idle: [...253] [ip4][..udp] [...192.168.54.2][.2829] -> [....192.168.1.1][...53]
- idle: [...252] [ip4][..udp] [....192.168.1.2][.2829] -> [....192.168.1.1][...53]
+ idle: [...246] [ip4][..udp] [....192.168.1.2][.2827] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
+ idle: [...245] [ip4][..udp] [....192.168.1.2][.2827] -> [..192.168.1.114][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...248] [ip4][..udp] [....192.168.1.2][.2828] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [...253] [ip4][..udp] [...192.168.54.2][.2829] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Malformed Packet, Unidirectional Traffic
+ idle: [...252] [ip4][..udp] [....192.168.1.2][.2829] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
idle: [...254] [ip4][..udp] [....192.168.1.2][.2830] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
idle: [...256] [ip4][..udp] [....192.168.1.2][.2831] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
- idle: [...257] [ip4][..udp] [....192.168.1.2][.2832] -> [....192.168.1.1][...53]
+ idle: [...257] [ip4][..udp] [....192.168.1.2][.2832] -> [....192.168.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Unidirectional Traffic
not-detected: [....40] [ip4][..tcp] [...37.115.0.253][58999] -> [....192.168.1.2][.2721] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [....40] [ip4][..tcp] [...37.115.0.253][58999] -> [....192.168.1.2][.2721]
idle: [...229] [ip4][..udp] [....192.168.1.2][29440] -> [...192.168.1.37][..137] [NetBIOS][Unknown][System][Acceptable]
- RISK: Unidirectional Traffic
guessed: [....20] [ip4][..tcp] [...192.168.1.71][.2718] -> [.147.137.21.122][..139] [NetBIOS][Unknown][System][Acceptable][]
RISK: Unidirectional Traffic
idle: [....20] [ip4][..tcp] [...192.168.1.71][.2718] -> [.147.137.21.122][..139]
@@ -2113,7 +2376,6 @@
RISK: Unsafe Protocol, Unidirectional Traffic
idle: [....34] [ip4][..tcp] [..147.234.1.253][...21] -> [...192.168.65.2][.2720]
idle: [....32] [ip4][..tcp] [..147.234.1.253][...21] -> [....192.168.1.2][.2732] [Protobuf][Unknown][Network][Safe]
- RISK: Unidirectional Traffic
not-detected: [...237] [ip4][..udp] [.....81.168.1.2][30000] -> [..212.242.33.36][40392] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [...237] [ip4][..udp] [.....81.168.1.2][30000] -> [..212.242.33.36][40392]
@@ -2130,7 +2392,8 @@
guessed: [....18] [ip4][..tcp] [....192.168.1.2][.2717] -> [..147.137.21.94][..445] [SMBv23][Unknown][System][Acceptable]
RISK: Unidirectional Traffic
idle: [....18] [ip4][..tcp] [....192.168.1.2][.2717] -> [..147.137.21.94][..445]
- idle: [...247] [ip4][..udp] [....192.168.1.2][.2827] -> [....192.170.1.1][...53]
+ idle: [...247] [ip4][..udp] [....192.168.1.2][.2827] -> [....192.170.1.1][...53] [DNS][Unknown][Network][Acceptable]
+ RISK: Non-Printable/Invalid Chars Detected, Unidirectional Traffic
not-detected: [...234] [ip4][..udp] [....192.168.1.2][30000] -> [....37.115.0.36][40392] [Unknown][Unknown][Unrated]
RISK: Unidirectional Traffic
idle: [...234] [ip4][..udp] [....192.168.1.2][30000] -> [....37.115.0.36][40392]