diff options
Diffstat (limited to 'test/results/flow-info/default/websocket-chisel-ssh.pcap.out')
-rw-r--r-- | test/results/flow-info/default/websocket-chisel-ssh.pcap.out | 4 |
1 files changed, 1 insertions, 3 deletions
diff --git a/test/results/flow-info/default/websocket-chisel-ssh.pcap.out b/test/results/flow-info/default/websocket-chisel-ssh.pcap.out index 903014f48..490839869 100644 --- a/test/results/flow-info/default/websocket-chisel-ssh.pcap.out +++ b/test/results/flow-info/default/websocket-chisel-ssh.pcap.out @@ -7,10 +7,8 @@ new: [.....2] [ip4][..tcp] [..172.18.82.243][...80] -> [..172.18.82.242][51634] [MIDSTREAM] detected: [.....2] [ip4][..tcp] [..172.18.82.243][...80] -> [..172.18.82.242][51634] [HTTP.WebSocket][Unknown][Web][Acceptable][] RISK: HTTP Susp User-Agent - detection-update: [.....2] [ip4][..tcp] [..172.18.82.243][...80] -> [..172.18.82.242][51634] [HTTP.WebSocket][Unknown][Web][Acceptable][] - RISK: HTTP Susp User-Agent, Unidirectional Traffic idle: [.....1] [ip4][..tcp] [..172.18.82.242][41986] -> [..172.18.82.243][...80] [HTTP.WebSocket][Unknown][Web][Acceptable][something1.tld] RISK: Obfuscated Traffic idle: [.....2] [ip4][..tcp] [..172.18.82.243][...80] -> [..172.18.82.242][51634] [HTTP.WebSocket][Unknown][Web][Acceptable] - RISK: HTTP Susp User-Agent, Unidirectional Traffic + RISK: HTTP Susp User-Agent DAEMON-EVENT: shutdown |