1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
|
DAEMON-EVENT: init
DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0]
DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0]
new: [.....1] [ip4][..udp] [.192.168.12.114][52119] -> [....91.8.243.35][49432]
detected: [.....1] [ip4][..udp] [.192.168.12.114][52119] -> [....91.8.243.35][49432] [Nintendo][Game][Fun]
new: [.....2] [ip4][..udp] [.192.168.12.114][52119] -> [...134.3.248.25][56955]
detected: [.....2] [ip4][..udp] [.192.168.12.114][52119] -> [...134.3.248.25][56955] [Nintendo][Game][Fun]
new: [.....3] [ip4][..udp] [.192.168.12.114][52119] -> [..109.21.255.11][50251]
detected: [.....3] [ip4][..udp] [.192.168.12.114][52119] -> [..109.21.255.11][50251] [Nintendo][Game][Fun]
new: [.....4] [ip4][..tcp] [..54.187.10.185][..443] -> [.192.168.12.114][48328] [MIDSTREAM]
detected: [.....4] [ip4][..tcp] [..54.187.10.185][..443] -> [.192.168.12.114][48328] [TLS.AmazonAWS][Cloud][Acceptable]
new: [.....5] [ip4][..udp] [.192.168.12.114][52119] -> [...35.158.74.61][33335]
detected: [.....5] [ip4][..udp] [.192.168.12.114][52119] -> [...35.158.74.61][33335] [Nintendo][Game][Fun]
analyse: [.....1] [ip4][..udp] [.192.168.12.114][52119] -> [....91.8.243.35][49432] [Nintendo][Game][Fun]
[min|max|avg|stddev]
[IAT(flow)...: 0.000| 1.730| 0.194| 0.332]
[IAT(c->s)...: 0.000| 0.514| 0.195| 0.208][IAT(s->c)...: 0.000| 1.730| 0.192| 0.416]
[PKTLEN(c->s): 102.000| 230.000| 121.000| 31.100][PKTLEN(s->c): 102.000| 854.000| 213.000| 243.300]
[BINS(c->s)..: 0,7,7,1,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 0,4,8,1,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
new: [.....6] [ip4][..udp] [.192.168.12.114][52119] -> [..52.10.205.177][34343]
new: [.....7] [ip4][..udp] [.192.168.12.114][18874] -> [...192.168.12.1][...53]
detected: [.....7] [ip4][..udp] [.192.168.12.114][18874] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
detection-update: [.....7] [ip4][..udp] [.192.168.12.114][18874] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
new: [.....8] [ip4][..tcp] [.192.168.12.114][41517] -> [..54.192.27.217][..443]
detected: [.....8] [ip4][..tcp] [.192.168.12.114][41517] -> [..54.192.27.217][..443] [TLS.Nintendo][Game][Fun]
RISK: TLS (probably) Not Carrying HTTPS
detection-update: [.....8] [ip4][..tcp] [.192.168.12.114][41517] -> [..54.192.27.217][..443] [TLS.Nintendo][Game][Fun]
RISK: TLS (probably) Not Carrying HTTPS
detection-update: [.....8] [ip4][..tcp] [.192.168.12.114][41517] -> [..54.192.27.217][..443] [TLS.Nintendo][Game][Fun]
RISK: TLS (probably) Not Carrying HTTPS
new: [.....9] [ip4][..tcp] [.192.168.12.114][11534] -> [..54.146.242.74][..443] [MIDSTREAM]
new: [....10] [ip4][..udp] [.192.168.12.114][55915] -> [...35.158.74.61][33334]
new: [....11] [ip4][..udp] [.192.168.12.114][55915] -> [...35.158.74.61][10025]
new: [....12] [ip4][..udp] [.192.168.12.114][55915] -> [...35.158.74.61][33335]
new: [....13] [ip4][..udp] [.192.168.12.114][10184] -> [...192.168.12.1][...53]
detected: [....13] [ip4][..udp] [.192.168.12.114][10184] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
detection-update: [....13] [ip4][..udp] [.192.168.12.114][10184] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
detection-update: [....13] [ip4][..udp] [.192.168.12.114][10184] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
detection-update: [....13] [ip4][..udp] [.192.168.12.114][10184] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
new: [....14] [ip4][..udp] [.192.168.12.114][55915] -> [..52.10.205.177][34343]
new: [....15] [ip4][..udp] [.192.168.12.114][51035] -> [...192.168.12.1][...53]
detected: [....15] [ip4][..udp] [.192.168.12.114][51035] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
detection-update: [....15] [ip4][..udp] [.192.168.12.114][51035] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
new: [....16] [ip4][..tcp] [.192.168.12.114][31329] -> [....54.192.27.8][..443]
detected: [....16] [ip4][..tcp] [.192.168.12.114][31329] -> [....54.192.27.8][..443] [TLS.Nintendo][Game][Fun]
RISK: TLS (probably) Not Carrying HTTPS
detection-update: [....16] [ip4][..tcp] [.192.168.12.114][31329] -> [....54.192.27.8][..443] [TLS.Nintendo][Game][Fun]
RISK: TLS (probably) Not Carrying HTTPS
detection-update: [....16] [ip4][..tcp] [.192.168.12.114][31329] -> [....54.192.27.8][..443] [TLS.Nintendo][Game][Fun]
RISK: TLS (probably) Not Carrying HTTPS
analyse: [.....4] [ip4][..tcp] [..54.187.10.185][..443] -> [.192.168.12.114][48328] [TLS.AmazonAWS][Cloud][Acceptable]
[min|max|avg|stddev]
[IAT(flow)...: 0.000| 14.019| 1.263| 3.443]
[IAT(c->s)...: 0.000| 14.019| 1.087| 3.232][IAT(s->c)...: 0.004| 13.944| 1.507| 3.702]
[PKTLEN(c->s): 66.000| 400.000| 123.400| 76.900][PKTLEN(s->c): 66.000| 471.000| 150.200| 121.500]
[BINS(c->s)..: 8,5,0,5,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 4,6,1,0,0,0,0,0,0,1,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
new: [....17] [ip4][..udp] [.192.168.12.114][55915] -> [.185.118.169.65][27520]
detected: [....17] [ip4][..udp] [.192.168.12.114][55915] -> [.185.118.169.65][27520] [Nintendo][Game][Fun]
new: [....18] [ip4][.icmp] [..151.6.184.100] -> [.192.168.12.114]
detected: [....18] [ip4][.icmp] [..151.6.184.100] -> [.192.168.12.114] [ICMP][Network][Acceptable]
new: [....19] [ip4][..udp] [.192.168.12.114][55915] -> [.93.237.131.235][56066]
detected: [....19] [ip4][..udp] [.192.168.12.114][55915] -> [.93.237.131.235][56066] [Nintendo][Game][Fun]
new: [....20] [ip4][..udp] [.192.168.12.114][55915] -> [..81.61.158.138][51769]
detected: [....20] [ip4][..udp] [.192.168.12.114][55915] -> [..81.61.158.138][51769] [Nintendo][Game][Fun]
new: [....21] [ip4][.icmp] [...151.6.184.98] -> [.192.168.12.114]
detected: [....21] [ip4][.icmp] [...151.6.184.98] -> [.192.168.12.114] [ICMP][Network][Acceptable]
analyse: [....17] [ip4][..udp] [.192.168.12.114][55915] -> [.185.118.169.65][27520] [Nintendo][Game][Fun]
[min|max|avg|stddev]
[IAT(flow)...: 0.000| 0.754| 0.078| 0.153]
[IAT(c->s)...: 0.000| 0.312| 0.055| 0.096][IAT(s->c)...: 0.000| 0.754| 0.127| 0.222]
[PKTLEN(c->s): 102.000| 886.000| 154.400| 160.300][PKTLEN(s->c): 102.000| 886.000| 198.000| 230.300]
[BINS(c->s)..: 0,2,18,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 0,2,6,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
analyse: [....19] [ip4][..udp] [.192.168.12.114][55915] -> [.93.237.131.235][56066] [Nintendo][Game][Fun]
[min|max|avg|stddev]
[IAT(flow)...: 0.000| 0.758| 0.106| 0.188]
[IAT(c->s)...: 0.000| 0.607| 0.080| 0.147][IAT(s->c)...: 0.000| 0.758| 0.161| 0.245]
[PKTLEN(c->s): 102.000| 886.000| 231.500| 231.800][PKTLEN(s->c): 102.000| 886.000| 198.000| 230.300]
[BINS(c->s)..: 0,3,13,0,1,0,0,0,0,1,0,0,0,2,0,0,0,0,0,0,0,0,0,0,0,1,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 0,2,6,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
analyse: [....20] [ip4][..udp] [.192.168.12.114][55915] -> [..81.61.158.138][51769] [Nintendo][Game][Fun]
[min|max|avg|stddev]
[IAT(flow)...: 0.000| 0.649| 0.099| 0.184]
[IAT(c->s)...: 0.000| 0.649| 0.081| 0.162][IAT(s->c)...: 0.000| 0.629| 0.128| 0.211]
[PKTLEN(c->s): 102.000| 886.000| 157.200| 167.900][PKTLEN(s->c): 102.000| 886.000| 184.700| 212.300]
[BINS(c->s)..: 0,3,15,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 0,2,8,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
guessed: [....11] [ip4][..udp] [.192.168.12.114][55915] -> [...35.158.74.61][10025] [AmazonAWS][Cloud][Acceptable]
idle: [....11] [ip4][..udp] [.192.168.12.114][55915] -> [...35.158.74.61][10025]
idle: [....15] [ip4][..udp] [.192.168.12.114][51035] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
idle: [....13] [ip4][..udp] [.192.168.12.114][10184] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
guessed: [.....9] [ip4][..tcp] [.192.168.12.114][11534] -> [..54.146.242.74][..443] [TLS.AmazonAWS][Cloud][Acceptable]
idle: [.....9] [ip4][..tcp] [.192.168.12.114][11534] -> [..54.146.242.74][..443]
idle: [.....4] [ip4][..tcp] [..54.187.10.185][..443] -> [.192.168.12.114][48328] [TLS.AmazonAWS][Cloud][Acceptable]
idle: [....20] [ip4][..udp] [.192.168.12.114][55915] -> [..81.61.158.138][51769] [Nintendo][Game][Fun]
idle: [.....7] [ip4][..udp] [.192.168.12.114][18874] -> [...192.168.12.1][...53] [DNS.Nintendo][Game][Fun]
guessed: [....10] [ip4][..udp] [.192.168.12.114][55915] -> [...35.158.74.61][33334] [AmazonAWS][Cloud][Acceptable]
idle: [....10] [ip4][..udp] [.192.168.12.114][55915] -> [...35.158.74.61][33334]
guessed: [....12] [ip4][..udp] [.192.168.12.114][55915] -> [...35.158.74.61][33335] [AmazonAWS][Cloud][Acceptable]
idle: [....12] [ip4][..udp] [.192.168.12.114][55915] -> [...35.158.74.61][33335]
guessed: [....14] [ip4][..udp] [.192.168.12.114][55915] -> [..52.10.205.177][34343] [AmazonAWS][Cloud][Acceptable]
idle: [....14] [ip4][..udp] [.192.168.12.114][55915] -> [..52.10.205.177][34343]
idle: [....19] [ip4][..udp] [.192.168.12.114][55915] -> [.93.237.131.235][56066] [Nintendo][Game][Fun]
idle: [.....5] [ip4][..udp] [.192.168.12.114][52119] -> [...35.158.74.61][33335] [Nintendo][Game][Fun]
guessed: [.....6] [ip4][..udp] [.192.168.12.114][52119] -> [..52.10.205.177][34343] [AmazonAWS][Cloud][Acceptable]
idle: [.....6] [ip4][..udp] [.192.168.12.114][52119] -> [..52.10.205.177][34343]
end: [.....8] [ip4][..tcp] [.192.168.12.114][41517] -> [..54.192.27.217][..443]
end: [....16] [ip4][..tcp] [.192.168.12.114][31329] -> [....54.192.27.8][..443]
idle: [....17] [ip4][..udp] [.192.168.12.114][55915] -> [.185.118.169.65][27520] [Nintendo][Game][Fun]
idle: [.....1] [ip4][..udp] [.192.168.12.114][52119] -> [....91.8.243.35][49432] [Nintendo][Game][Fun]
idle: [.....3] [ip4][..udp] [.192.168.12.114][52119] -> [..109.21.255.11][50251] [Nintendo][Game][Fun]
idle: [.....2] [ip4][..udp] [.192.168.12.114][52119] -> [...134.3.248.25][56955] [Nintendo][Game][Fun]
idle: [....21] [ip4][.icmp] [...151.6.184.98] -> [.192.168.12.114] [ICMP][Network][Acceptable]
idle: [....18] [ip4][.icmp] [..151.6.184.100] -> [.192.168.12.114] [ICMP][Network][Acceptable]
DAEMON-EVENT: shutdown
|