aboutsummaryrefslogtreecommitdiff
path: root/test/results/flow-info/stun_signal.pcapng.out
diff options
context:
space:
mode:
Diffstat (limited to 'test/results/flow-info/stun_signal.pcapng.out')
-rw-r--r--test/results/flow-info/stun_signal.pcapng.out30
1 files changed, 18 insertions, 12 deletions
diff --git a/test/results/flow-info/stun_signal.pcapng.out b/test/results/flow-info/stun_signal.pcapng.out
index 1ac98e2a4..3ab39e963 100644
--- a/test/results/flow-info/stun_signal.pcapng.out
+++ b/test/results/flow-info/stun_signal.pcapng.out
@@ -33,24 +33,28 @@
detected: [....14] [ip4][..udp] [.192.168.12.169][43068] -> [.18.195.131.143][61156] [STUN.AmazonAWS][Cloud][Acceptable]
RISK: Known Proto on Non Std Port
analyse: [....14] [ip4][..udp] [.192.168.12.169][43068] -> [.18.195.131.143][61156] [STUN.AmazonAWS][Cloud][Acceptable]
- [min|max|avg|stddev]
- [IAT(flow)...: 0.000| 0.679| 0.149| 0.201]
- [IAT(c->s)...: 0.000| 0.601| 0.154| 0.181][IAT(s->c)...: 0.000| 0.679| 0.145| 0.217]
- [PKTLEN(c->s): 70.000| 146.000| 106.500| 27.000][PKTLEN(s->c): 70.000| 138.000| 105.200| 22.700]
+ [min|max|avg|stddev|variance|entropy]
+ [IAT.........: 0.000| 0.679| 0.149| 0.201|40331.911| 0.000]
+ [PKTLEN......: 70.000| 146.000| 105.900| 24.900| 621.500| 5.000]
[BINS(c->s)..: 4,3,4,5,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 3,4,5,4,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
+ [DIRECTIONS..: 0,1,1,0,0,0,1,1,0,1,1,0,0,0,1,1,0,1,0,1,1,0,0,1,1,1,0,0,1,0,0,1]
+ [IATS........: 83894,37,92476,7793,46066,91419,25,37867,39955,9097,41868,367689,125,441001,43,600796,610250,117949,49918,49758,64212,212886,679364,8747,45,503798,102888,200994,101814,9344,62177,0]
+ [PKTLENS.....: 138,106,138,106,146,146,106,138,106,106,138,106,98,70,98,70,138,106,98,98,138,106,70,98,70,70,70,138,106,98,70,98]
update: [.....7] [ip4][.icmp] [.35.158.183.167] -> [.192.168.12.169] [ICMP][Network][Acceptable]
detected: [....10] [ip4][..udp] [.192.168.12.169][43068] -> [172.253.121.127][19302] [STUN.AmazonAWS][Cloud][Acceptable]
RISK: Known Proto on Non Std Port
detected: [....11] [ip4][..udp] [.192.168.12.169][39950] -> [172.253.121.127][19302] [STUN.GoogleHangoutDuo][VoIP][Acceptable]
RISK: Known Proto on Non Std Port
analyse: [.....7] [ip4][.icmp] [.35.158.183.167] -> [.192.168.12.169] [ICMP][Network][Acceptable]
- [min|max|avg|stddev]
- [IAT(flow)...: 0.000| 17.079| 1.597| 3.547]
- [IAT(c->s)...: 0.000| 17.079| 1.540| 3.605][IAT(s->c)...: 0.000| 4.842| 2.421| 2.421]
- [PKTLEN(c->s): 90.000| 98.000| 92.700| 3.800][PKTLEN(s->c): 138.000| 138.000| 138.000| 0.000]
+ [min|max|avg|stddev|variance|entropy]
+ [IAT.........: 0.000| 17.079| 1.597| 3.547|12584568.750| 0.000]
+ [PKTLEN......: 90.000| 138.000| 95.500| 11.600| 133.800| 5.000]
[BINS(c->s)..: 0,20,10,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 0,0,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
+ [DIRECTIONS..: 0,0,0,0,0,0,0,0,0,1,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
+ [IATS........: 4084,63003,42,180775,3510,1499231,2002773,15,4841966,76,17079364,30045,28084,9989,178591,30710,1472432,2000483,30998,3968781,29896,37348,7808,7927339,28492,35381,6539,7931223,29238,34577,5065,0]
+ [PKTLENS.....: 90,90,98,98,90,90,90,90,90,138,138,90,90,98,98,90,90,90,90,90,90,90,98,98,90,90,98,98,90,90,98,98]
update: [.....3] [ip4][..udp] [.192.168.12.169][47204] -> [.35.158.183.167][..443] [STUN.AmazonAWS][Cloud][Acceptable]
RISK: Known Proto on Non Std Port
update: [.....2] [ip4][..udp] [.192.168.12.169][47204] -> [172.253.121.127][19302]
@@ -85,12 +89,14 @@
detected: [....23] [ip4][..udp] [.192.168.12.169][47767] -> [.18.195.131.143][61498] [STUN.SignalVoip][VoIP][Acceptable]
RISK: Known Proto on Non Std Port
analyse: [....23] [ip4][..udp] [.192.168.12.169][47767] -> [.18.195.131.143][61498] [STUN.SignalVoip][VoIP][Acceptable]
- [min|max|avg|stddev]
- [IAT(flow)...: 0.000| 0.665| 0.153| 0.189]
- [IAT(c->s)...: 0.000| 0.665| 0.158| 0.186][IAT(s->c)...: 0.000| 0.631| 0.148| 0.192]
- [PKTLEN(c->s): 70.000| 146.000| 108.800| 25.300][PKTLEN(s->c): 70.000| 138.000| 107.800| 23.900]
+ [min|max|avg|stddev|variance|entropy]
+ [IAT.........: 0.000| 0.665| 0.153| 0.189|35784.253| 0.000]
+ [PKTLEN......: 70.000| 146.000| 108.200| 24.600| 605.900| 5.000]
[BINS(c->s)..: 3,3,5,5,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 3,3,5,5,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
+ [DIRECTIONS..: 0,1,1,0,0,0,1,1,0,1,1,0,0,0,1,1,0,1,1,0,0,1,1,0,1,1,0,0,0,1,1,0]
+ [IATS........: 68482,50,70303,29273,44732,113365,45,43187,26522,8477,31033,313588,306,410657,43,665020,630540,122450,190474,61616,378076,7868,325508,42160,76005,424878,96788,5410,434339,47676,66176,0]
+ [PKTLENS.....: 138,106,138,106,146,146,106,138,106,106,138,106,98,70,98,70,138,106,138,106,98,98,70,70,70,98,138,98,70,106,138,106]
update: [....13] [ip4][..udp] [.192.168.12.169][39950] -> [.35.158.183.167][.3478] [STUN.SignalVoip][VoIP][Acceptable]
update: [.....9] [ip4][..udp] [.192.168.12.169][43068] -> [.35.158.183.167][..443] [STUN.AmazonAWS][Cloud][Acceptable]
RISK: Known Proto on Non Std Port