1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
|
DAEMON-EVENT: init
DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0]
DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0]
new: [.....1] [ip4][..udp] [...192.168.56.1][34229] -> [.192.168.56.198][.4443]
detected: [.....1] [ip4][..udp] [...192.168.56.1][34229] -> [.192.168.56.198][.4443] [QUIC][Web][Acceptable]
RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
analyse: [.....1] [ip4][..udp] [...192.168.56.1][34229] -> [.192.168.56.198][.4443] [QUIC][Web][Acceptable]
min| max| avg| stddev| variance| entropy
[IAT.........: 0.000| 0.003| 0.000| 0.001| 0.343| 3.200]
[PKTLEN......: 83.000| 1468.000| 1031.900| 592.800| 351417.000| 4.700]
[BINS(c->s)..: 0,4,0,0,0,2,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,1,0,0]
[BINS(s->c)..: 0,2,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,18,0,0]
[DIRECTIONS..: 0,1,1,1,0,0,0,1,0,1,0,1,0,1,1,1,1,1,1,1,1,0,1,1,1,1,1,1,1,1,0,1]
[IATS(ms)....: 2.2,0.0,0.1,2.6,0.0,0.2,0.5,0.1,0.1,0.4,0.5,0.3,0.4,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.3,0.2,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.4,0.3]
[PKTLENS.....: 1280,1280,752,1468,431,1468,211,83,83,467,83,83,211,1468,1468,1468,1468,1468,1468,1468,1468,83,1468,1468,1468,1468,1468,1468,1468,1468,83,1468]
[ENTROPIES...: 7.9,7.8,7.7,7.9,7.5,7.9,7.0,5.9,6.0,7.6,6.1,5.9,7.0,7.9,7.9,7.9,7.9,7.9,7.9,7.8,7.8,5.8,7.9,7.9,7.9,7.9,7.9,7.8,7.9,7.9,5.9,7.9]
idle: [.....1] [ip4][..udp] [...192.168.56.1][34229] -> [.192.168.56.198][.4443] [QUIC][Web][Acceptable]
RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
DAEMON-EVENT: shutdown
|