diff options
Diffstat (limited to 'test/results/flow-info/ultrasurf.pcap.out')
-rw-r--r-- | test/results/flow-info/ultrasurf.pcap.out | 30 |
1 files changed, 18 insertions, 12 deletions
diff --git a/test/results/flow-info/ultrasurf.pcap.out b/test/results/flow-info/ultrasurf.pcap.out index c36c73051..7e5ca73bb 100644 --- a/test/results/flow-info/ultrasurf.pcap.out +++ b/test/results/flow-info/ultrasurf.pcap.out @@ -4,36 +4,42 @@ new: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [MIDSTREAM] detected: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [UltraSurf][VPN][Acceptable] analyse: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [UltraSurf][VPN][Acceptable] - [min|max|avg|stddev] - [IAT(flow)...: 0.000| 0.150| 0.021| 0.036] - [IAT(c->s)...: 0.000| 0.150| 0.017| 0.031][IAT(s->c)...: 0.000| 0.142| 0.029| 0.042] - [PKTLEN(c->s): 1350.000|2646.000|1943.100| 641.700][PKTLEN(s->c): 98.000| 98.000| 98.000| 0.000] + [min|max|avg|stddev|variance|entropy] + [IAT.........: 0.000| 0.150| 0.021| 0.036| 1271.455| 0.000] + [PKTLEN......: 98.000| 2646.000| 1366.500| 1007.200|1014474.800| 4.500] [BINS(c->s)..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,12,0,0,0,0,0,0,10] [BINS(s->c)..: 10,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] + [DIRECTIONS..: 0,0,0,0,0,0,1,1,0,0,0,1,0,0,0,0,1,1,1,1,0,1,0,0,0,1,1,0,0,0,0,0] + [IATS........: 7,21335,5,10969,29128,61453,2,10832,4,9189,30801,10791,6,19965,5,29291,5,3,3,9324,30618,150485,11,11883,141836,4,17858,20033,9,20018,10094,0] + [PKTLENS.....: 2646,2646,1358,1358,2646,2646,98,98,1358,1358,2646,98,1358,1358,1350,2646,98,98,98,98,1358,98,1358,1358,2646,98,98,2646,1358,1358,2646,2646] new: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] detected: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe] RISK: Known Proto on Non Std Port, Missing SNI TLS Extn detection-update: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe] RISK: Known Proto on Non Std Port, Missing SNI TLS Extn analyse: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe] - [min|max|avg|stddev] - [IAT(flow)...: 0.000| 0.271| 0.063| 0.099] - [IAT(c->s)...: 0.000| 0.260| 0.063| 0.099][IAT(s->c)...: 0.000| 0.271| 0.062| 0.100] - [PKTLEN(c->s): 70.000|1418.000| 404.300| 430.600][PKTLEN(s->c): 70.000|1358.000| 334.600| 463.300] + [min|max|avg|stddev|variance|entropy] + [IAT.........: 0.000| 0.271| 0.063| 0.099| 9897.855| 0.000] + [PKTLEN......: 70.000| 1418.000| 367.300| 449.600|202163.000| 4.100] [BINS(c->s)..: 7,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,1,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,1,0,0,0,0,0] [BINS(s->c)..: 4,8,0,0,1,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,2,0,0,0,0,0,0,0] + [DIRECTIONS..: 0,1,0,0,1,1,1,1,0,0,0,0,0,0,1,1,1,1,0,0,1,0,1,0,0,0,1,1,1,1,1,1] + [IATS........: 211168,260384,4,269572,5,10096,9894,260379,4,20013,20030,10943,4,270784,9694,4,10276,229481,5,19977,40078,29866,14,10092,29929,210869,5,2,9,9396,4,0] + [PKTLENS.....: 78,78,70,587,70,1358,1358,1274,70,70,70,134,156,708,125,105,101,126,101,70,112,1418,104,1166,698,668,70,105,262,205,105,131] new: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] detected: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe] RISK: Known Proto on Non Std Port, Missing SNI TLS Extn detection-update: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe] RISK: Known Proto on Non Std Port, Missing SNI TLS Extn analyse: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe] - [min|max|avg|stddev] - [IAT(flow)...: 0.000| 0.269| 0.059| 0.101] - [IAT(c->s)...: 0.000| 0.261| 0.053| 0.096][IAT(s->c)...: 0.000| 0.269| 0.064| 0.105] - [PKTLEN(c->s): 70.000|1418.000| 371.000| 429.700][PKTLEN(s->c): 70.000|1358.000| 436.200| 523.000] + [min|max|avg|stddev|variance|entropy] + [IAT.........: 0.000| 0.269| 0.059| 0.101|10170.351| 0.000] + [PKTLEN......: 70.000| 1418.000| 403.600| 479.700|230117.000| 4.200] [BINS(c->s)..: 7,0,1,0,0,1,1,0,0,1,0,1,0,1,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0,0,0,0] [BINS(s->c)..: 3,5,1,0,2,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,3,0,0,0,0,0,0,0] + [DIRECTIONS..: 0,1,0,0,1,1,1,1,0,0,0,0,0,1,1,1,0,0,0,0,0,0,0,0,1,1,1,1,1,1,1,1] + [IATS........: 209494,239714,10,251051,6,11439,12,260675,5,9589,20029,20030,269120,19987,5,231024,5,19971,10,4,3,3,2,249606,8,2,3,3,10064,10,3,0] + [PKTLENS.....: 78,78,70,587,70,1358,1358,1274,70,70,70,134,386,125,105,157,70,101,1418,446,1418,498,268,252,70,105,131,218,262,105,205,1358] end: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [UltraSurf][VPN][Acceptable] end: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe] RISK: Known Proto on Non Std Port, Missing SNI TLS Extn |