summaryrefslogtreecommitdiff
path: root/test/results/flow-info/default/stun_google_meet.pcapng.out
diff options
context:
space:
mode:
Diffstat (limited to 'test/results/flow-info/default/stun_google_meet.pcapng.out')
-rw-r--r--test/results/flow-info/default/stun_google_meet.pcapng.out24
1 files changed, 15 insertions, 9 deletions
diff --git a/test/results/flow-info/default/stun_google_meet.pcapng.out b/test/results/flow-info/default/stun_google_meet.pcapng.out
index 44cf02787..7e0434b56 100644
--- a/test/results/flow-info/default/stun_google_meet.pcapng.out
+++ b/test/results/flow-info/default/stun_google_meet.pcapng.out
@@ -2,13 +2,17 @@
DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0]
DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0]
new: [.....1] [ip4][..udp] [.192.168.12.156][38152] -> [.74.125.128.127][19302]
+ detected: [.....1] [ip4][..udp] [.192.168.12.156][38152] -> [.74.125.128.127][19302] [STUN][Google][Network][Acceptable][]
+ RISK: Known Proto on Non Std Port, Unidirectional Traffic
new: [.....2] [ip4][..udp] [.192.168.12.156][45400] -> [.74.125.128.127][19302]
+ detected: [.....2] [ip4][..udp] [.192.168.12.156][45400] -> [.74.125.128.127][19302] [STUN][Google][Network][Acceptable][]
+ RISK: Known Proto on Non Std Port, Unidirectional Traffic
new: [.....3] [ip4][..udp] [.192.168.12.156][38152] -> [..142.250.82.76][19305]
- new: [.....4] [ip4][..udp] [.192.168.12.156][45400] -> [..142.250.82.76][19305]
detected: [.....3] [ip4][..udp] [.192.168.12.156][38152] -> [..142.250.82.76][19305] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable][]
- RISK: Known Proto on Non Std Port
+ RISK: Known Proto on Non Std Port, Unidirectional Traffic
+ new: [.....4] [ip4][..udp] [.192.168.12.156][45400] -> [..142.250.82.76][19305]
detected: [.....4] [ip4][..udp] [.192.168.12.156][45400] -> [..142.250.82.76][19305] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable][]
- RISK: Known Proto on Non Std Port
+ RISK: Known Proto on Non Std Port, Unidirectional Traffic
analyse: [.....3] [ip4][..udp] [.192.168.12.156][38152] -> [..142.250.82.76][19305] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable]
min| max| avg| stddev| variance| entropy
[IAT.........: 0.000| 0.164| 0.015| 0.039| 1549.851| 2.400]
@@ -24,6 +28,7 @@
RISK: Unidirectional Traffic
new: [.....6] [ip4][..udp] [.192.168.12.156][45400] -> [..142.250.82.76][.3478]
detected: [.....6] [ip4][..udp] [.192.168.12.156][45400] -> [..142.250.82.76][.3478] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable][]
+ RISK: Unidirectional Traffic
analyse: [.....5] [ip4][..udp] [.192.168.12.156][38152] -> [..142.250.82.76][.3478] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable]
min| max| avg| stddev| variance| entropy
[IAT.........: 0.000| 1.000| 0.179| 0.232| 53990.769| 4.000]
@@ -34,9 +39,9 @@
[IATS(ms)....: 28.7,31.6,20.7,57.3,57.1,114.9,326.7,7.6,0.3,359.3,399.5,20.9,399.5,20.8,60.3,761.6,238.3,310.5,33.1,16.7,106.5,1.4,298.5,11.7,401.0,18.9,1000.0,80.4,40.3,278.6,42.3]
[PKTLENS.....: 152,92,148,92,148,92,565,91,73,93,68,107,73,91,73,148,92,68,80,91,73,80,80,107,73,91,73,68,148,92,128,91]
[ENTROPIES...: 6.0,5.6,6.0,5.7,6.0,5.7,7.6,6.0,5.5,5.6,5.5,5.7,5.7,5.9,5.5,6.0,5.6,5.3,5.8,6.1,5.6,5.7,5.8,5.8,5.5,5.9,5.6,5.3,5.9,5.6,6.3,6.0]
- detected: [.....1] [ip4][..udp] [.192.168.12.156][38152] -> [.74.125.128.127][19302] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable][]
+ detection-update: [.....1] [ip4][..udp] [.192.168.12.156][38152] -> [.74.125.128.127][19302] [STUN.GoogleHangoutDuo][Google][Network][Acceptable][]
RISK: Known Proto on Non Std Port
- detected: [.....2] [ip4][..udp] [.192.168.12.156][45400] -> [.74.125.128.127][19302] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable][]
+ detection-update: [.....2] [ip4][..udp] [.192.168.12.156][45400] -> [.74.125.128.127][19302] [STUN.GoogleHangoutDuo][Google][Network][Acceptable][]
RISK: Known Proto on Non Std Port
analyse: [.....6] [ip4][..udp] [.192.168.12.156][45400] -> [..142.250.82.76][.3478] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable]
min| max| avg| stddev| variance| entropy
@@ -49,14 +54,15 @@
[PKTLENS.....: 152,92,144,92,144,92,144,92,144,92,144,92,144,92,144,92,144,92,144,92,144,92,144,92,144,92,144,92,144,92,144,92]
[ENTROPIES...: 6.0,5.6,6.1,5.6,6.0,5.5,6.0,5.6,6.1,5.7,5.9,5.8,6.1,5.6,6.0,5.6,6.1,5.6,6.0,5.6,6.0,5.6,6.0,5.6,6.1,5.6,6.0,5.7,6.0,5.7,6.0,5.7]
idle: [.....4] [ip4][..udp] [.192.168.12.156][45400] -> [..142.250.82.76][19305] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable]
- RISK: Known Proto on Non Std Port
+ RISK: Known Proto on Non Std Port, Unidirectional Traffic
idle: [.....6] [ip4][..udp] [.192.168.12.156][45400] -> [..142.250.82.76][.3478] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable]
- idle: [.....2] [ip4][..udp] [.192.168.12.156][45400] -> [.74.125.128.127][19302] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable]
+ RISK: Unidirectional Traffic
+ idle: [.....2] [ip4][..udp] [.192.168.12.156][45400] -> [.74.125.128.127][19302] [STUN.GoogleHangoutDuo][Google][Network][Acceptable]
RISK: Known Proto on Non Std Port
idle: [.....3] [ip4][..udp] [.192.168.12.156][38152] -> [..142.250.82.76][19305] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable]
- RISK: Known Proto on Non Std Port
+ RISK: Known Proto on Non Std Port, Unidirectional Traffic
idle: [.....5] [ip4][..udp] [.192.168.12.156][38152] -> [..142.250.82.76][.3478] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable]
RISK: Unidirectional Traffic
- idle: [.....1] [ip4][..udp] [.192.168.12.156][38152] -> [.74.125.128.127][19302] [STUN.GoogleHangoutDuo][Google][VoIP][Acceptable]
+ idle: [.....1] [ip4][..udp] [.192.168.12.156][38152] -> [.74.125.128.127][19302] [STUN.GoogleHangoutDuo][Google][Network][Acceptable]
RISK: Known Proto on Non Std Port
DAEMON-EVENT: shutdown