Advertisement
Guest User

Untitled

a guest
Apr 22nd, 2018
72
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.30 KB | None | 0 0
  1. Log entry:{"ts":"2018-04-22T18:18:24.792425Z","uid":"CunG2l1DrOZcJyN4n","id.orig_h":"192.168.1.1","id.orig_p":27032,"id.resp_h":"24.135.238.64","id.resp_p":63718,"proto":"udp","duration":0.201776,"orig_bytes":104,"resp_bytes":501,"conn_state":"SF","local_orig":true,"local_resp":false,"missed_bytes":0,"history":"Dd","orig_pkts":1,"orig_ip_bytes":132,"resp_pkts":1,"resp_ip_bytes":529,"tunnel_parents":[],"resp_cc":"RS","sensorname":"so-eth0"}
  2. Sensor Name: so-eth0
  3. Timestamp: 2018-04-22 18:18:24
  4. Connection ID: CLI
  5. Src IP: 24.135.238.64
  6. Dst IP: 192.168.1.5
  7. Src Port: 63718
  8. Dst Port: 27032
  9.  
  10. DST: Bro UDP output from SRC:
  11. DST: d1:ad2:id20:)e\xfc<6>\x1d\xfb\xe7\xe2\x8fd\xacfu:Nz\xd4\x149:info_hash20:\xcbV\xa0\xfa2\xfco\x0c:s\x9a\x80E\xda\x1f`\x91\xa0@\xcae1:q9:get_peers1:t2:\xba_1:v4:LT\x01\x001:y1:qe
  12. DST:
  13. SRC: Bro UDP output from DST:
  14. SRC: d1:rd2:id20:\xcbV\xc8R\x986\x82a|\x0blZ\x82t\x82\x18.\xed\xc1\x0e2:ip4:Dl\xbe\xd15:nodes208:\xcbV\xa1\xd1\x9d[mC\xcc\x85\x11:\x89\xac\xbf\x00\x03\x15>\xe3\x0e#\xed%B\x1e\xcbV\xb0yx\xacc\x1f58\xd3~\xe1aFq\x92\x9f\xa1\xadR\xd0d\xea\x90\xd7\xcbV\xb4\x94\x8e\xfbU\x1c\x86\x03Va\x89\x89\x94\xba$\x85g\x1d\6b=\x1a\xe1\xcbV\xb7\x0e\xd5\xb4m\xd4Au\xe6\xfe\x94\xc6\xc3\x8b\xca\x09\x1b\x9aT P[!\xad\xcbV\xb7\x05\x1d\x8e~o+^5\xe3\x97g\xa5 \x9bB\x94\xf5\xc2\x87\x98\xb4Q1\xcbV\xbb\xf8\xf8\x19\x83\xe7\xff\x10\x80\xf5<m\xfb)\xf2\x87j\xaf\xca\x01\xa3\xafQ\xa9\xcbV\x99=3\xc9\xf2o\xfcD\x89\x88;\xb7\xb5&\xb2\xce\xc9\xf4%\x15L\x8b\xd9\x84\xcbV\x9d\xa1\x81H1l\xcd\xa4\x9e\xde\x81\xa3\x8c\x98\x10\xff\x9a\x9e\xbc\x18\x83\xa7j\xe55:token20:\xacn\xf5]\xcd\xd5\xbbJ\x85\x92\xd5\xb6q\x99g\x08\xf1\x17b\xba6:valuesl6:}\x80\x12\xed\xa8\xea6:Ns]Wi\x986:H\x86\x826i\x986:Y\xe8v\xeai\x986:M\xdeh\x0ei\x986:\x91\xec\xb0*i\x986:O\x9e9\i\x986:Y\xdf/\xdai\x986:aW}%i\x986:N\xa8\x03\xc5i\x986:m\xf8R\xffi\x986:\x1f\xcd\x08\x87i\x986:_\x00\xce>i\x986:C\xfa\xd1mi\x986:\xb2$\xc2$i\x986:S*\xbe\xdei\x986:\x05SL_i\x986:\xb9+\xae\xbci\x986:\xd3\xd3>\x97i\x986:\x17x\xba4i\x986:Y\xac\x96\x18i\x9b6:\xb9\xca\xd4\x0ei\x98ee1:t2:\xba_1:v4:UTj\x1f1:y1:re
  15. SRC:
  16.  
  17. DEBUG: Using archived data: /nsm/server_data/so/archive/2018-04-22/so-eth0/24.135.238.64:63718_192.168.1.1:27032-17.raw
  18. QUERY: SELECT sid FROM sensor WHERE hostname='so-eth0' AND agent_type='pcap' LIMIT 1CAPME: Processed transcript in 3.10 seconds: 0.60 1.67 0.00 0.83 0.00
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement