aboutsummaryrefslogtreecommitdiff
path: root/test/results/flow-info/default/imap.pcap.out
blob: f0e65a64dd1eab95966523d243ece66c42b27813 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
     DAEMON-EVENT: init
     DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0]
     DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0]
              new: [.....1] [ip4][..tcp] [......10.40.4.2][46045] -> [......10.40.3.2][..143]
         detected: [.....1] [ip4][..tcp] [......10.40.4.2][46045] -> [......10.40.3.2][..143] [IMAP][Unknown][Email][Unsafe]
                   RISK: Unsafe Protocol, Clear-Text Credentials
          analyse: [.....1] [ip4][..tcp] [......10.40.4.2][46045] -> [......10.40.3.2][..143] [IMAP][Unknown][Email][Unsafe]
                                         min|       max|       avg|    stddev|         variance|  entropy
                   [IAT.........: <    0.001|     4.331|     0.295|     1.060|      1123749.069|    1.400]
                   [PKTLEN......:     52.000|   748.000|   101.900|   125.900|        15857.500|    4.400]
                   [BINS(c->s)..: 18,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
                   [BINS(s->c)..: 5,4,1,1,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
                   [DIRECTIONS..: 0,1,0,1,0,0,1,0,1,0,0,1,0,0,1,0,1,0,0,1,0,1,0,0,1,0,1,0,0,1,0,1]
                   [IATS(ms)....: 0.1,0.1,12.9,12.9,0.2,0.4,36.9,36.8,0.1,4330.0,4331.4,1.4,16.8,17.3,39.9,39.5,0.1,0.2,0.6,39.7,39.4,0.1,0.9,1.3,39.0,38.7,0.1,0.1,10.8,47.8,37.2]
                   [PKTLENS.....: 60,60,52,94,52,71,117,52,84,52,78,79,52,72,73,52,109,52,72,73,52,109,52,73,64,52,311,52,125,164,52,748]
                   [ENTROPIES...: 4.5,5.0,4.9,5.5,4.9,5.2,5.6,4.8,5.5,4.9,5.4,5.5,5.0,5.2,5.3,4.9,5.6,4.9,5.2,5.3,5.0,5.6,5.0,5.4,5.2,5.0,5.6,4.9,5.6,5.8,4.9,5.5]
             idle: [.....1] [ip4][..tcp] [......10.40.4.2][46045] -> [......10.40.3.2][..143] [IMAP][Unknown][Email][Unsafe]
                   RISK: Unsafe Protocol, Clear-Text Credentials
     DAEMON-EVENT: shutdown