aboutsummaryrefslogtreecommitdiff
path: root/test/results/flow-info/default/vk.pcapng.out
blob: d4065b1cf22023aa01a5c6c8bbadd2095cbcacb6 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
     DAEMON-EVENT: init
     DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0]
     DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0]
              new: [.....1] [ip4][..tcp] [..192.168.1.249][33904] -> [.87.240.129.131][..443] [MIDSTREAM] 
         detected: [.....1] [ip4][..tcp] [..192.168.1.249][33904] -> [.87.240.129.131][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
              new: [.....2] [ip4][..tcp] [..192.168.1.249][40344] -> [.87.240.129.140][..443] [MIDSTREAM] 
         detected: [.....2] [ip4][..tcp] [..192.168.1.249][40344] -> [.87.240.129.140][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
              new: [.....3] [ip4][..tcp] [..192.168.1.249][60436] -> [..87.240.132.78][..443] [MIDSTREAM] 
         detected: [.....3] [ip4][..tcp] [..192.168.1.249][60436] -> [..87.240.132.78][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
          analyse: [.....3] [ip4][..tcp] [..192.168.1.249][60436] -> [..87.240.132.78][..443] [TLS][VK][Web][Safe]
                                        min|      max|      avg|   stddev|       variance| entropy
                   [IAT.........:     0.000|    1.010|    0.043|    0.181|      32751.438|   1.300]
                   [PKTLEN......:    52.000|  758.000|  125.300|  191.100|      36507.600|   4.000]
                   [BINS(c->s)..: 28,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,1,1,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
                   [BINS(s->c)..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
                   [DIRECTIONS..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
                   [IATS(ms)....: 1010.0,14.6,15.3,1.7,16.3,0.0,0.0,0.0,0.0,15.1,0.0,227.7,0.0,0.0,0.0,2.7,0.0,12.8,0.0,1.5,0.0,0.0,1.5,1.1,1.6,11.1,2.5,1.5,0.0,0.8,1.2]
                   [PKTLENS.....: 638,758,52,596,501,52,52,52,52,52,52,52,52,52,52,52,52,52,52,52,52,64,64,64,64,64,52,52,52,52,52,52]
                   [ENTROPIES...: 7.7,7.8,5.2,7.6,7.6,5.2,5.2,5.2,5.3,5.3,5.2,5.2,5.2,5.3,5.2,5.1,5.3,5.2,5.2,5.2,5.2,5.3,5.3,5.2,5.3,5.3,5.2,5.3,5.2,5.2,5.2,5.2]
 detection-update: [.....3] [ip4][..tcp] [..192.168.1.249][60436] -> [..87.240.132.78][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
              new: [.....4] [ip4][..tcp] [..192.168.1.249][59154] -> [.87.240.185.137][..443] 
              new: [.....5] [ip4][..tcp] [..192.168.1.249][32990] -> [..87.240.169.10][..443] 
         detected: [.....4] [ip4][..tcp] [..192.168.1.249][59154] -> [.87.240.185.137][..443] [TLS.VK][VK][SocialNetwork][Fun][sun9-10.userapi.com]
                   RISK: Unidirectional Traffic
         detected: [.....5] [ip4][..tcp] [..192.168.1.249][32990] -> [..87.240.169.10][..443] [TLS.VK][VK][SocialNetwork][Fun][sun9-87.userapi.com]
                   RISK: Unidirectional Traffic
              new: [.....6] [ip4][..tcp] [..192.168.1.249][56504] -> [.87.240.129.135][..443] [MIDSTREAM] 
         detected: [.....6] [ip4][..tcp] [..192.168.1.249][56504] -> [.87.240.129.135][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
          analyse: [.....2] [ip4][..tcp] [..192.168.1.249][40344] -> [.87.240.129.140][..443] [TLS][VK][Web][Safe]
                                        min|      max|      avg|   stddev|       variance| entropy
                   [IAT.........:     0.000|    2.007|    0.151|    0.451|     203470.717|   2.100]
                   [PKTLEN......:    52.000| 1017.000|  241.000|  249.500|      62251.300|   4.300]
                   [BINS(c->s)..: 17,0,0,0,0,2,2,0,3,0,1,1,0,0,0,2,2,0,0,0,0,0,1,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
                   [BINS(s->c)..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
                   [DIRECTIONS..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
                   [IATS(ms)....: 0.0,14.3,23.0,2006.6,0.0,0.8,13.5,98.2,1614.5,0.3,0.1,0.3,0.3,13.2,1.2,18.4,1.7,0.9,6.9,22.6,0.0,179.8,0.0,14.1,67.4,0.0,0.0,579.5,0.0,1.0,13.7]
                   [PKTLENS.....: 247,332,52,52,240,776,565,52,52,385,563,339,564,1017,52,52,52,52,52,52,52,52,243,316,52,52,52,52,250,563,429,52]
                   [ENTROPIES...: 7.2,7.4,5.2,5.2,7.0,7.7,7.6,5.1,5.2,7.4,7.6,7.3,7.6,7.8,5.1,5.1,5.1,5.1,5.1,5.1,5.1,5.1,7.1,7.3,5.1,5.1,5.2,5.1,7.2,7.6,7.5,5.1]
 detection-update: [.....2] [ip4][..tcp] [..192.168.1.249][40344] -> [.87.240.129.140][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
              new: [.....7] [ip4][..tcp] [..192.168.1.249][47934] -> [...87.240.169.3][..443] 
              new: [.....8] [ip4][..tcp] [..192.168.1.249][59722] -> [..87.240.169.11][..443] 
         detected: [.....7] [ip4][..tcp] [..192.168.1.249][47934] -> [...87.240.169.3][..443] [TLS.VK][VK][SocialNetwork][Fun][sun9-80.userapi.com]
                   RISK: Unidirectional Traffic
         detected: [.....8] [ip4][..tcp] [..192.168.1.249][59722] -> [..87.240.169.11][..443] [TLS.VK][VK][SocialNetwork][Fun][sun9-88.userapi.com]
                   RISK: Unidirectional Traffic
              new: [.....9] [ip4][..tcp] [..192.168.1.249][43938] -> [.87.240.129.135][..443] [MIDSTREAM] 
         detected: [.....9] [ip4][..tcp] [..192.168.1.249][43938] -> [.87.240.129.135][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
              new: [....10] [ip4][..tcp] [..192.168.1.249][43644] -> [..87.240.132.67][..443] [MIDSTREAM] 
         detected: [....10] [ip4][..tcp] [..192.168.1.249][43644] -> [..87.240.132.67][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
             idle: [.....2] [ip4][..tcp] [..192.168.1.249][40344] -> [.87.240.129.140][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
             idle: [.....4] [ip4][..tcp] [..192.168.1.249][59154] -> [.87.240.185.137][..443] [TLS.VK][VK][SocialNetwork][Fun]
                   RISK: Unidirectional Traffic
             idle: [.....5] [ip4][..tcp] [..192.168.1.249][32990] -> [..87.240.169.10][..443] [TLS.VK][VK][SocialNetwork][Fun]
                   RISK: Unidirectional Traffic
             idle: [.....8] [ip4][..tcp] [..192.168.1.249][59722] -> [..87.240.169.11][..443] [TLS.VK][VK][SocialNetwork][Fun]
                   RISK: Unidirectional Traffic
             idle: [....10] [ip4][..tcp] [..192.168.1.249][43644] -> [..87.240.132.67][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
             idle: [.....7] [ip4][..tcp] [..192.168.1.249][47934] -> [...87.240.169.3][..443] [TLS.VK][VK][SocialNetwork][Fun]
                   RISK: Unidirectional Traffic
             idle: [.....9] [ip4][..tcp] [..192.168.1.249][43938] -> [.87.240.129.135][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
             idle: [.....3] [ip4][..tcp] [..192.168.1.249][60436] -> [..87.240.132.78][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
             idle: [.....1] [ip4][..tcp] [..192.168.1.249][33904] -> [.87.240.129.131][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
             idle: [.....6] [ip4][..tcp] [..192.168.1.249][56504] -> [.87.240.129.135][..443] [TLS][VK][Web][Safe]
                   RISK: Unidirectional Traffic
     DAEMON-EVENT: shutdown