aboutsummaryrefslogtreecommitdiff
path: root/test/results/flow-info/ultrasurf.pcap.out
diff options
context:
space:
mode:
Diffstat (limited to 'test/results/flow-info/ultrasurf.pcap.out')
-rw-r--r--test/results/flow-info/ultrasurf.pcap.out30
1 files changed, 18 insertions, 12 deletions
diff --git a/test/results/flow-info/ultrasurf.pcap.out b/test/results/flow-info/ultrasurf.pcap.out
index c36c73051..7e5ca73bb 100644
--- a/test/results/flow-info/ultrasurf.pcap.out
+++ b/test/results/flow-info/ultrasurf.pcap.out
@@ -4,36 +4,42 @@
new: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [MIDSTREAM]
detected: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [UltraSurf][VPN][Acceptable]
analyse: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [UltraSurf][VPN][Acceptable]
- [min|max|avg|stddev]
- [IAT(flow)...: 0.000| 0.150| 0.021| 0.036]
- [IAT(c->s)...: 0.000| 0.150| 0.017| 0.031][IAT(s->c)...: 0.000| 0.142| 0.029| 0.042]
- [PKTLEN(c->s): 1350.000|2646.000|1943.100| 641.700][PKTLEN(s->c): 98.000| 98.000| 98.000| 0.000]
+ [min|max|avg|stddev|variance|entropy]
+ [IAT.........: 0.000| 0.150| 0.021| 0.036| 1271.455| 0.000]
+ [PKTLEN......: 98.000| 2646.000| 1366.500| 1007.200|1014474.800| 4.500]
[BINS(c->s)..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,12,0,0,0,0,0,0,10]
[BINS(s->c)..: 10,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
+ [DIRECTIONS..: 0,0,0,0,0,0,1,1,0,0,0,1,0,0,0,0,1,1,1,1,0,1,0,0,0,1,1,0,0,0,0,0]
+ [IATS........: 7,21335,5,10969,29128,61453,2,10832,4,9189,30801,10791,6,19965,5,29291,5,3,3,9324,30618,150485,11,11883,141836,4,17858,20033,9,20018,10094,0]
+ [PKTLENS.....: 2646,2646,1358,1358,2646,2646,98,98,1358,1358,2646,98,1358,1358,1350,2646,98,98,98,98,1358,98,1358,1358,2646,98,98,2646,1358,1358,2646,2646]
new: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053]
detected: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe]
RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
detection-update: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe]
RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
analyse: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe]
- [min|max|avg|stddev]
- [IAT(flow)...: 0.000| 0.271| 0.063| 0.099]
- [IAT(c->s)...: 0.000| 0.260| 0.063| 0.099][IAT(s->c)...: 0.000| 0.271| 0.062| 0.100]
- [PKTLEN(c->s): 70.000|1418.000| 404.300| 430.600][PKTLEN(s->c): 70.000|1358.000| 334.600| 463.300]
+ [min|max|avg|stddev|variance|entropy]
+ [IAT.........: 0.000| 0.271| 0.063| 0.099| 9897.855| 0.000]
+ [PKTLEN......: 70.000| 1418.000| 367.300| 449.600|202163.000| 4.100]
[BINS(c->s)..: 7,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,1,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,1,0,0,0,0,0]
[BINS(s->c)..: 4,8,0,0,1,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,2,0,0,0,0,0,0,0]
+ [DIRECTIONS..: 0,1,0,0,1,1,1,1,0,0,0,0,0,0,1,1,1,1,0,0,1,0,1,0,0,0,1,1,1,1,1,1]
+ [IATS........: 211168,260384,4,269572,5,10096,9894,260379,4,20013,20030,10943,4,270784,9694,4,10276,229481,5,19977,40078,29866,14,10092,29929,210869,5,2,9,9396,4,0]
+ [PKTLENS.....: 78,78,70,587,70,1358,1358,1274,70,70,70,134,156,708,125,105,101,126,101,70,112,1418,104,1166,698,668,70,105,262,205,105,131]
new: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053]
detected: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe]
RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
detection-update: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe]
RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
analyse: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe]
- [min|max|avg|stddev]
- [IAT(flow)...: 0.000| 0.269| 0.059| 0.101]
- [IAT(c->s)...: 0.000| 0.261| 0.053| 0.096][IAT(s->c)...: 0.000| 0.269| 0.064| 0.105]
- [PKTLEN(c->s): 70.000|1418.000| 371.000| 429.700][PKTLEN(s->c): 70.000|1358.000| 436.200| 523.000]
+ [min|max|avg|stddev|variance|entropy]
+ [IAT.........: 0.000| 0.269| 0.059| 0.101|10170.351| 0.000]
+ [PKTLEN......: 70.000| 1418.000| 403.600| 479.700|230117.000| 4.200]
[BINS(c->s)..: 7,0,1,0,0,1,1,0,0,1,0,1,0,1,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0,0,0,0]
[BINS(s->c)..: 3,5,1,0,2,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,3,0,0,0,0,0,0,0]
+ [DIRECTIONS..: 0,1,0,0,1,1,1,1,0,0,0,0,0,1,1,1,0,0,0,0,0,0,0,0,1,1,1,1,1,1,1,1]
+ [IATS........: 209494,239714,10,251051,6,11439,12,260675,5,9589,20029,20030,269120,19987,5,231024,5,19971,10,4,3,3,2,249606,8,2,3,3,10064,10,3,0]
+ [PKTLENS.....: 78,78,70,587,70,1358,1358,1274,70,70,70,134,386,125,105,157,70,101,1418,446,1418,498,268,252,70,105,131,218,262,105,205,1358]
end: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [UltraSurf][VPN][Acceptable]
end: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe]
RISK: Known Proto on Non Std Port, Missing SNI TLS Extn