1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
|
DAEMON-EVENT: init
DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0]
DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0]
new: [.....1] [ip4][..udp] [...192.168.0.73][54598] -> [...24.105.56.13][.3724]
detected: [.....1] [ip4][..udp] [...192.168.0.73][54598] -> [...24.105.56.13][.3724] [Heroes_of_the_Storm][Starcraft][Game][Fun]
RISK: Unidirectional Traffic
analyse: [.....1] [ip4][..udp] [...192.168.0.73][54598] -> [...24.105.56.13][.3724] [Heroes_of_the_Storm][Starcraft][Game][Fun]
min| max| avg| stddev| variance| entropy
[IAT.........: 0.004| 91.418| 2.995| 16.144| 260622725.939| 0.200]
[PKTLEN......: 48.000| 60.000| 54.900| 5.000| 25.200| 5.000]
[BINS(c->s)..: 14,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 3,15,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[DIRECTIONS..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1]
[IATS(ms)....: 39.9,24.4,63.7,66.2,61.9,34.4,30.8,61.1,3.6,33.3,62.9,57.4,6.9,91418.3,63.4,62.5,36.6,26.4,63.2,62.9,63.1,62.9,63.5,62.7,63.2,32.4,30.2,63.0,62.9,26.1,37.0]
[PKTLENS.....: 52,48,52,52,52,52,48,52,48,52,52,52,48,52,60,60,60,48,60,60,60,60,60,60,60,60,48,60,60,60,48,60]
[ENTROPIES...: 4.9,4.8,4.8,4.9,4.9,4.9,4.8,4.9,4.8,4.9,4.9,4.9,4.8,4.9,4.4,4.4,4.4,3.7,4.4,4.4,4.3,4.4,4.2,4.3,4.3,4.4,3.7,4.4,4.4,4.4,3.7,4.4]
update: [.....1] [ip4][..udp] [...192.168.0.73][54598] -> [...24.105.56.13][.3724] [Heroes_of_the_Storm][Starcraft][Game][Fun]
RISK: Unidirectional Traffic
DAEMON-EVENT: [Processed: 35 pkts][ZLib][compressions: 0|diff: 0 / 0]
DAEMON-EVENT: [Flows][active: 1 / 1|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 1]
new: [.....2] [ip4][..udp] [..24.105.57.183][.1119] -> [...192.168.0.73][50609]
detected: [.....2] [ip4][..udp] [..24.105.57.183][.1119] -> [...192.168.0.73][50609] [Heroes_of_the_Storm][Starcraft][Game][Fun]
RISK: Unidirectional Traffic
idle: [.....1] [ip4][..udp] [...192.168.0.73][54598] -> [...24.105.56.13][.3724] [Heroes_of_the_Storm][Starcraft][Game][Fun]
RISK: Unidirectional Traffic
DAEMON-EVENT: [Processed: 60 pkts][ZLib][compressions: 0|diff: 0 / 0]
DAEMON-EVENT: [Flows][active: 1 / 2|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 1]
new: [.....3] [ip4][..udp] [...24.105.57.16][.3724] -> [...192.168.0.73][50609]
detected: [.....3] [ip4][..udp] [...24.105.57.16][.3724] -> [...192.168.0.73][50609] [Heroes_of_the_Storm][Starcraft][Game][Fun]
RISK: Unidirectional Traffic
analyse: [.....3] [ip4][..udp] [...24.105.57.16][.3724] -> [...192.168.0.73][50609] [Heroes_of_the_Storm][Starcraft][Game][Fun]
min| max| avg| stddev| variance| entropy
[IAT.........: 0.001| 0.063| 0.033| 0.019| 353.907| 4.700]
[PKTLEN......: 48.000| 150.000| 105.500| 33.500| 1124.400| 4.900]
[BINS(c->s)..: 7,0,16,9,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[DIRECTIONS..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[IATS(ms)....: 31.8,14.7,16.3,4.7,58.4,5.0,58.2,42.4,20.5,62.8,16.3,47.0,45.2,18.0,62.8,27.1,19.2,16.4,50.2,13.1,1.1,62.3,31.6,31.0,31.9,30.7,13.2,50.3,34.1,29.3,62.1]
[PKTLENS.....: 111,111,48,132,132,103,103,121,121,103,109,109,103,48,150,109,109,48,109,48,150,150,146,48,129,48,138,138,121,48,123,109]
[ENTROPIES...: 5.7,5.7,3.7,6.0,6.0,5.4,5.4,5.9,5.9,5.6,5.7,5.7,5.5,3.7,6.2,5.8,5.8,3.7,5.7,3.7,6.3,6.3,6.3,3.7,6.0,3.7,6.0,6.1,5.9,3.7,6.0,5.7]
idle: [.....2] [ip4][..udp] [..24.105.57.183][.1119] -> [...192.168.0.73][50609] [Heroes_of_the_Storm][Starcraft][Game][Fun]
RISK: Unidirectional Traffic
idle: [.....3] [ip4][..udp] [...24.105.57.16][.3724] -> [...192.168.0.73][50609] [Heroes_of_the_Storm][Starcraft][Game][Fun]
RISK: Unidirectional Traffic
DAEMON-EVENT: shutdown
|