aboutsummaryrefslogtreecommitdiff
path: root/test/results/flow-captured/enable_payload_stat/1kxun.pcap.out
blob: e68307bbcee54b930dcffba0b736568ea0afe87d (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
Flow 37 risky: tcp 192.168.115.8:49606 -> 106.185.35.110:80
Flow 41 risky: tcp 192.168.115.8:49609 -> 42.120.51.152:8080
Flow 14 risky: udp 192.168.115.8:51024 -> 8.8.8.8:53
Flow 20 risky: udp 192.168.3.95:58779 -> 224.0.0.252:5355
Flow 19 risky: udp fe80::e98f:bae2:19f7:6b0f:58779 -> ff02::1:3:5355
Flow 24 risky: udp 192.168.115.8:52723 -> 168.95.1.1:53
Flow 16 risky: udp 192.168.115.8:52723 -> 8.8.8.8:53
Flow 35 risky: udp 192.168.5.67:138 -> 192.168.255.255:138
Flow 34 risky: udp 192.168.3.95:54888 -> 224.0.0.252:5355
Flow 39 risky: udp 192.168.115.8:54420 -> 8.8.8.8:53
Flow 26 risky: udp 192.168.115.8:60724 -> 8.8.8.8:53
Flow 33 risky: udp fe80::e98f:bae2:19f7:6b0f:54888 -> ff02::1:3:5355
Flow 77 not-detected: udp 192.168.2.186:32768 -> 255.255.255.255:1947
Flow 66 not-detected: udp 2001:b020:6::c2a0:bbff:fe73:eb57:62976 -> ff02::1:62976
Flow 23 not-detected: udp 2001:b030:214:100:c2a0:bbff:fe73:eb47:62976 -> ff02::1:62976
Flow 97 risky: udp fe80::e98f:bae2:19f7:6b0f:51451 -> ff02::1:3:5355
Flow 94 not-detected: udp 192.168.119.2:43786 -> 255.255.255.255:5678
Flow 70 risky: udp 192.168.5.45:138 -> 192.168.255.255:138
Flow 38 risky: tcp 192.168.115.8:49607 -> 218.244.135.170:9099
Flow 42 not-detected: udp 192.168.10.110:60480 -> 255.255.255.255:62976
Flow 56 not-detected: udp 59.120.208.218:50151 -> 255.255.255.255:1947
Flow 59 risky: tcp 192.168.5.16:53624 -> 68.233.253.133:80
Flow 36 risky: tcp 192.168.115.8:49605 -> 106.185.35.110:80
Flow 45 risky: tcp 192.168.5.16:53623 -> 192.168.115.75:443
Flow 87 risky: tcp 192.168.5.16:53625 -> 192.168.115.75:443
Flow 107 risky: tcp 192.168.5.16:53626 -> 192.168.115.75:443
Flow 117 risky: tcp 192.168.5.16:53629 -> 192.168.115.75:443
Flow 65 not-detected: udp 192.168.140.140:62976 -> 255.255.255.255:62976
Flow 71 not-detected: udp 192.168.10.7:62976 -> 255.255.255.255:62976
Flow 22 not-detected: udp 192.168.125.30:62976 -> 255.255.255.255:62976
Flow 88 not-detected: udp 192.168.119.1:56861 -> 255.255.255.255:5678
Flow 79 not-detected: udp 192.168.0.100:50925 -> 255.255.255.255:5678
Flow 46 risky: tcp 192.168.115.8:49612 -> 183.131.48.145:80
Flow 49 risky: tcp 192.168.115.8:49613 -> 183.131.48.144:80
Flow 89 not-detected: udp fe80::4e5e:cff:feea:365:5678 -> ff02::1:5678
Flow 60 not-detected: udp fe80::4e5e:cff:fe9a:ec54:5678 -> ff02::1:5678
Flow 98 risky: udp 192.168.3.95:51451 -> 224.0.0.252:5355
Flow 86 not-detected: udp 59.120.208.212:32768 -> 255.255.255.255:1947
Flow 142 midstream: tcp 192.168.2.126:46170 -> 172.105.121.82:80
Flow 146 midstream: tcp 192.168.2.126:45380 -> 161.117.13.29:80
Flow 160 midstream: tcp 192.168.2.126:49380 -> 14.136.136.108:80
Flow 158 midstream: tcp 192.168.2.126:49372 -> 14.136.136.108:80
Flow 150 midstream: tcp 192.168.2.126:45416 -> 161.117.13.29:80
Flow 147 midstream: tcp 192.168.2.126:45388 -> 161.117.13.29:80
Flow 148 midstream: tcp 192.168.2.126:45398 -> 161.117.13.29:80
Flow 163 risky: tcp 192.168.2.126:44368 -> 172.217.18.98:80
Flow 163 midstream: tcp 192.168.2.126:44368 -> 172.217.18.98:80
Flow 178 risky: tcp 192.168.2.126:56826 -> 8.209.97.107:80
Flow 178 midstream: tcp 192.168.2.126:56826 -> 8.209.97.107:80
Flow 149 midstream: tcp 192.168.2.126:45414 -> 161.117.13.29:80
Flow 151 midstream: tcp 192.168.2.126:45422 -> 161.117.13.29:80
Flow 152 midstream: tcp 192.168.2.126:45424 -> 161.117.13.29:80
Flow 192 midstream: tcp 192.168.2.126:54810 -> 18.233.123.55:80
Flow 184 midstream: tcp 192.168.2.126:36636 -> 18.64.103.30:80
Flow 185 midstream: tcp 192.168.2.126:36640 -> 18.64.103.30:80
Flow 186 midstream: tcp 192.168.2.126:36654 -> 18.64.103.30:80
Flow 180 midstream: tcp 192.168.2.126:58758 -> 202.153.196.53:80
Flow 181 midstream: tcp 192.168.2.126:58760 -> 202.153.196.53:80
Flow 170 midstream: tcp 192.168.2.126:38314 -> 172.105.121.82:80
Flow 171 midstream: tcp 192.168.2.126:38316 -> 172.105.121.82:80
Flow 169 midstream: tcp 192.168.2.126:38326 -> 172.105.121.82:80
Flow 193 midstream: tcp 192.168.2.126:40204 -> 18.235.204.9:80
Flow 155 midstream: tcp 192.168.2.126:38354 -> 142.250.186.34:80
Flow 157 midstream: tcp 192.168.2.126:49354 -> 14.136.136.108:80
Flow 159 midstream: tcp 192.168.2.126:49370 -> 14.136.136.108:80
Flow 162 midstream: tcp 192.168.2.126:49396 -> 14.136.136.108:80
Flow 140 risky: tcp 192.168.2.126:49242 -> 172.104.119.80:80
Flow 140 midstream: tcp 192.168.2.126:49242 -> 172.104.119.80:80
Flow 161 midstream: tcp 192.168.2.126:49412 -> 14.136.136.108:80
Flow 179 midstream: tcp 192.168.2.126:43272 -> 18.64.79.58:80
Flow 164 midstream: tcp 192.168.2.126:50140 -> 161.117.13.29:80
Flow 165 midstream: tcp 192.168.2.126:50148 -> 161.117.13.29:80
Flow 166 midstream: tcp 192.168.2.126:50164 -> 161.117.13.29:80
Flow 167 midstream: tcp 192.168.2.126:50166 -> 161.117.13.29:80
Flow 168 midstream: tcp 192.168.2.126:50176 -> 161.117.13.29:80
Flow 153 risky: tcp 192.168.2.126:41390 -> 18.64.79.37:80
Flow 153 midstream: tcp 192.168.2.126:41390 -> 18.64.79.37:80
Flow 197 midstream: tcp 192.168.2.126:51686 -> 18.64.79.64:80
Flow 156 midstream: tcp 192.168.2.126:36732 -> 142.250.186.174:80
Flow 194 risky: tcp 192.168.2.126:53416 -> 172.217.16.142:80
Flow 194 midstream: tcp 192.168.2.126:53416 -> 172.217.16.142:80
Flow 189 midstream: tcp 192.168.2.126:42554 -> 35.156.44.13:80
Flow 190 risky: tcp 192.168.2.126:42566 -> 35.156.44.13:80
Flow 190 midstream: tcp 192.168.2.126:42566 -> 35.156.44.13:80
Flow 195 midstream: tcp 192.168.2.126:33042 -> 3.122.190.70:80
Flow 173 midstream: tcp 192.168.2.126:56094 -> 3.72.69.158:80
Flow 175 midstream: tcp 192.168.2.126:56096 -> 3.72.69.158:80
Flow 174 midstream: tcp 192.168.2.126:56098 -> 3.72.69.158:80
Flow 176 midstream: tcp 192.168.2.126:56104 -> 3.72.69.158:80
Flow 134 midstream: tcp 192.168.2.126:41134 -> 129.226.107.77:80
Flow 130 risky: tcp 192.168.2.126:60962 -> 172.104.93.92:1234
Flow 130 midstream: tcp 192.168.2.126:60962 -> 172.104.93.92:1234
Flow 131 risky: tcp 192.168.2.126:60972 -> 172.104.93.92:1234
Flow 131 midstream: tcp 192.168.2.126:60972 -> 172.104.93.92:1234
Flow 132 risky: tcp 192.168.2.126:60984 -> 172.104.93.92:1234
Flow 132 midstream: tcp 192.168.2.126:60984 -> 172.104.93.92:1234
Flow 196 risky: tcp 192.168.2.126:35426 -> 8.209.112.118:80
Flow 196 midstream: tcp 192.168.2.126:35426 -> 8.209.112.118:80
Flow 191 midstream: tcp 192.168.2.126:41940 -> 18.64.79.50:80
Flow 139 midstream: tcp 192.168.2.126:60148 -> 172.105.121.82:80
Flow 172 midstream: tcp 192.168.2.126:59324 -> 104.117.221.10:80
Flow 138 risky: tcp 192.168.2.126:38834 -> 119.45.78.184:80
Flow 138 midstream: tcp 192.168.2.126:38834 -> 119.45.78.184:80
Flow 182 midstream: tcp 192.168.2.126:35664 -> 18.66.2.90:80
Flow 141 midstream: tcp 192.168.2.126:46184 -> 172.105.121.82:80
Flow 133 risky: tcp 192.168.2.126:47230 -> 161.117.13.29:80
Flow 133 midstream: tcp 192.168.2.126:47230 -> 161.117.13.29:80
Flow 188 risky: tcp 192.168.2.126:37100 -> 52.29.177.177:80
Flow 188 midstream: tcp 192.168.2.126:37100 -> 52.29.177.177:80
Flow 143 midstream: tcp 192.168.2.126:46200 -> 172.105.121.82:80
Flow 135 midstream: tcp 192.168.2.126:47246 -> 161.117.13.29:80
Flow 144 midstream: tcp 192.168.2.126:46212 -> 172.105.121.82:80
Flow 136 midstream: tcp 192.168.2.126:47262 -> 161.117.13.29:80
Flow 137 midstream: tcp 192.168.2.126:47272 -> 161.117.13.29:80
Flow 145 midstream: tcp 192.168.2.126:35200 -> 103.29.71.30:80