1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 | Packet profile dump:
IP ver Proto cnt min max avg tot %%
------ ----- ---------- ------------ ------------ ----------- ----------- ---
IPv4 1 1062 136285912 7743199852 5851165450 6213.9b 2.22
IPv4 6 47687 4292412 7752811116 5742432422 273839.4b 97.78
Note: Protocol 256 tracks pseudo/tunnel packets.
Per Thread module stats:
Thread Module IP ver Proto cnt min max avg tot %%
------------------------ ------ ----- ---------- ------------ ------------ ----------- ----------- ---
TMM_FLOWWORKER IPv4 1 1062 114822 3214580 153659 163.2m 1.02
TMM_FLOWWORKER IPv4 6 47687 113592 31113594 317063 15.1b 94.76
TMM_RECEIVEPCAPFILE IPv4 1 1062 4422 30086 4699 5.0m 0.03
TMM_RECEIVEPCAPFILE IPv4 6 47510 4406 19661880 5414 257.3m 1.61
TMM_DECODEPCAPFILE IPv4 1 1062 4532 5007518 24122 25.6m 0.16
TMM_DECODEPCAPFILE IPv4 6 47510 4538 5306064 8092 384.5m 2.41
Flow Worker IP ver Proto cnt min max avg
-------------------- ------ ----- ---------- ------------ ------------ -----------
flow IPv4 1 473 4744 31410 6620 3.1m 0.02
flow IPv4 6 47510 4596 30414694 7288 346.3m 2.47
stream IPv4 6 47687 4574 6718192 6692 319.1m 2.28
detect IPv4 1 1062 96132 3186520 138022 146.6m 1.05
detect IPv4 6 47687 76586 18262786 271624 13.0b 92.54
tcp-prune IPv4 6 47687 4420 2132378 4819 229.8m 1.64
Note: stream includes app-layer for TCP
Per App layer parser stats:
App Layer IP ver Proto cnt min max avg
-------------------- ------ ----- ---------- ------------ ------------ -----------
http IPv4 6 4 9488 34162 17481 69.9k 100.00
Proto detect IPv4 6 151 4556 423622 12199 1.8m
Log Thread Module IP ver Proto cnt min max avg tot %%
------------------------ ------ ----- ---------- ------------ ------------ ----------- ----------- ---
Logger/output stats:
Logger IP ver Proto cnt min max avg tot
------------------------ ------ ----- ---------- ------------ ------------ ----------- -----------
LOGGER_ALERT_FAST IPv4 1 1 107098 107098 107098 107.1k 0.31
LOGGER_ALERT_FAST IPv4 6 7 74776 156692 93312 653.2k 1.86
LOGGER_UNIFIED2 IPv4 1 1 47048 47048 47048 47.0k 0.13
LOGGER_UNIFIED2 IPv4 6 7 46786 151488 70272 491.9k 1.40
LOGGER_JSON_ALERT IPv4 1 1 106018 106018 106018 106.0k 0.30
LOGGER_JSON_ALERT IPv4 6 7 89410 24899216 3653635 25.6m 72.90
LOGGER_JSON_HTTP IPv4 6 42 61016 568996 137931 5.8m 16.51
LOGGER_JSON_FILE IPv4 6 42 37756 224470 54936 2.3m 6.58
Prefilter IP ver Proto cnt min max avg tot %%
-------------------- ------ ----- ---------- ------------ ------------ ----------- --------- ---
payload IPv4 1 1062 4806 107570 10336 11.0m 13.39
payload IPv4 6 582 4422 408650 51072 29.7m 36.26
stream IPv4 6 582 4432 1039328 29148 17.0m 20.69
http_uri IPv4 6 42 11536 441586 33674 1.4m 1.73
http_request_line IPv4 6 42 7190 36622 13458 565.3k 0.69
http_client_body IPv4 6 42 6266 517740 76488 3.2m 3.92
http_header (request) IPv4 6 42 17160 591868 78854 3.3m 4.04
http_header (request trailer) IPv4 6 41 4518 26778 9642 395.3k 0.48
http_header_names (request) IPv4 6 42 10532 33450 15818 664.4k 0.81
http_accept (request) IPv4 6 42 5594 28652 10749 451.5k 0.55
http_referer (request) IPv4 6 42 5194 13074 9381 394.0k 0.48
http_content_len (request) IPv4 6 42 5578 30130 11171 469.2k 0.57
http_content_type (request) IPv4 6 42 5518 28636 10250 430.5k 0.53
http_protocol (request) IPv4 6 42 6634 27696 10597 445.1k 0.54
http_start (request) IPv4 6 42 12280 434796 29036 1.2m 1.49
http_raw_header (request) IPv4 6 42 13070 53868 26474 1.1m 1.36
http_method IPv4 6 42 6746 433398 32421 1.4m 1.66
http_cookie (request) IPv4 6 42 5314 14218 9609 403.6k 0.49
http_raw_uri IPv4 6 42 5968 22406 11258 472.9k 0.58
http_user_agent IPv4 6 42 9098 28742 11498 482.9k 0.59
http_host IPv4 6 42 4556 21912 9385 394.2k 0.48
http_response_line IPv4 6 3 9396 14384 12471 37.4k 0.05
http_header (response) IPv4 6 3 43234 68688 52497 157.5k 0.19
http_header (response trailer) IPv4 6 1 5116 5116 5116 5.1k 0.01
http_content_type (response) IPv4 6 3 9050 15372 12168 36.5k 0.04
http_raw_header (response) IPv4 6 44 6204 22282 7550 332.2k 0.41
http_cookie (response) IPv4 6 3 5004 5794 5320 16.0k 0.02
http_stat_code IPv4 6 3 6184 6478 6356 19.1k 0.02
file_data (http response) IPv4 6 43 4464 1640670 151280 6.5m 7.94
Total IPv4 3084 26580 82.0m
General detection engine stats:
Detection phase IP ver Proto cnt min max avg tot
------------------------ ------ ----- ---------- ------------ ------------ ----------- -----------
PROF_DETECT_IPONLY IPv4 1 1045 5060 132078 20716 21.6m 0.20
PROF_DETECT_IPONLY IPv4 6 46211 5078 15985930 48864 2.3b 20.53
PROF_DETECT_RULES IPv4 1 1062 4406 57014 7405 7.9m 0.07
PROF_DETECT_RULES IPv4 6 47687 4406 15575186 120442 5.7b 52.21
PROF_DETECT_STATEFUL_START IPv4 6 78 8910 12678460 363585 28.4m 0.26
PROF_DETECT_STATEFUL_CONT IPv4 1 1062 4386 3057786 7834 8.3m 0.08
PROF_DETECT_STATEFUL_CONT IPv4 6 47687 4380 7243146 5120 244.2m 2.22
PROF_DETECT_STATEFUL_UPDATE IPv4 6 163 4458 18770 4884 796.3k 0.01
PROF_DETECT_PREFILTER IPv4 1 1062 31780 135312 39702 42.2m 0.38
PROF_DETECT_PREFILTER IPv4 6 47687 13380 13682962 19807 944.6m 8.59
PROF_DETECT_PF_PAYLOAD IPv4 1 1062 13728 116444 19796 21.0m 0.19
PROF_DETECT_PF_PAYLOAD IPv4 6 582 22198 1170598 94495 55.0m 0.50
PROF_DETECT_PF_TX IPv4 6 163 4478 13582422 294244 48.0m 0.44
PROF_DETECT_PF_SORT1 IPv4 1 13 4512 40518 7814 101.6k 0.00
PROF_DETECT_PF_SORT1 IPv4 6 333 4444 21976 5811 1.9m 0.02
PROF_DETECT_PF_SORT2 IPv4 1 1062 4396 36788 4866 5.2m 0.05
PROF_DETECT_PF_SORT2 IPv4 6 47687 4384 1798990 4901 233.8m 2.13
PROF_DETECT_NONMPMLIST IPv4 1 1062 4402 107528 5142 5.5m 0.05
PROF_DETECT_NONMPMLIST IPv4 6 47687 4398 7226578 5363 255.8m 2.33
PROF_DETECT_ALERT IPv4 1 1062 4406 27202 4726 5.0m 0.05
PROF_DETECT_ALERT IPv4 6 47687 4400 4425860 4918 234.5m 2.13
PROF_DETECT_CLEANUP IPv4 1 1062 4406 62676 4833 5.1m 0.05
PROF_DETECT_CLEANUP IPv4 6 47687 4442 13959912 6215 296.4m 2.69
PROF_DETECT_GETSGH IPv4 1 1062 4438 29594 4917 5.2m 0.05
PROF_DETECT_GETSGH IPv4 6 47687 4420 6971062 11076 528.2m 4.80
|
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 | ------------------------------------------------------------------------------------
Date: 9/23/2019 -- 11:17:10 (uptime: 0d, 00h 00m 08s)
------------------------------------------------------------------------------------
Counter | TM Name | Value
------------------------------------------------------------------------------------
decoder.pkts | Total | 48577
decoder.bytes | Total | 3159002
decoder.ipv4 | Total | 48572
decoder.ethernet | Total | 48577
decoder.tcp | Total | 47510
decoder.icmpv4 | Total | 1062
decoder.avg_pkt_size | Total | 65
decoder.max_pkt_size | Total | 1153
flow.tcp | Total | 37544
tcp.sessions | Total | 37544
tcp.syn | Total | 37553
tcp.synack | Total | 223
tcp.rst | Total | 1265
tcp.overlap | Total | 113
detect.alert | Total | 6
detect.nonmpm_list | Total | 15
detect.fnonmpm_list | Total | 11
detect.match_list | Total | 11
app_layer.flow.http | Total | 1
app_layer.tx.http | Total | 7
app_layer.flow.failed_tcp | Total | 23
flow.spare | Total | 9991
flow_mgr.flows_checked | Total | 1
flow_mgr.flows_notimeout | Total | 1
flow_mgr.rows_checked | Total | 65536
flow_mgr.rows_skipped | Total | 65535
flow_mgr.rows_maxlen | Total | 1
tcp.memuse | Total | 12483816
tcp.reassembly_memuse | Total | 323584
http.memuse | Total | 712196
flow.memuse | Total | 17034784
------------------------------------------------------------------------------------
Date: 9/23/2019 -- 11:17:10 (uptime: 0d, 00h 00m 08s)
------------------------------------------------------------------------------------
Counter | TM Name | Value
------------------------------------------------------------------------------------
decoder.pkts | Total | 48577
decoder.bytes | Total | 3159002
decoder.ipv4 | Total | 48572
decoder.ethernet | Total | 48577
decoder.tcp | Total | 47510
decoder.icmpv4 | Total | 1062
decoder.avg_pkt_size | Total | 65
decoder.max_pkt_size | Total | 1153
flow.tcp | Total | 44585
tcp.sessions | Total | 44585
tcp.syn | Total | 44601
tcp.synack | Total | 257
tcp.rst | Total | 1508
tcp.overlap | Total | 147
detect.alert | Total | 8
detect.nonmpm_list | Total | 15
detect.fnonmpm_list | Total | 11
detect.match_list | Total | 11
app_layer.flow.http | Total | 3
app_layer.tx.http | Total | 82
app_layer.flow.failed_tcp | Total | 30
flow.spare | Total | 9991
flow_mgr.flows_checked | Total | 1
flow_mgr.flows_notimeout | Total | 1
flow_mgr.rows_checked | Total | 65536
flow_mgr.rows_skipped | Total | 65535
flow_mgr.rows_maxlen | Total | 1
tcp.memuse | Total | 573440
tcp.reassembly_memuse | Total | 81920
flow.memuse | Total | 17034784
|
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 | {"timestamp":"2019-09-19T08:07:12.685917+0000","flow_id":855884828794989,"pcap_cnt":21,"event_type":"alert","src_ip":"192.168.122.105","src_port":53098,"dest_ip":"192.236.178.80","dest_port":80,"proto":"TCP","tx_id":0,"alert":{"action":"allowed","gid":1,"signature_id":2025125,"rev":1,"signature":"ET INFO ARM7 File Download Request from IP Address","category":"Potentially Bad Traffic","severity":2},"app_proto":"http"}
{"timestamp":"2019-09-19T08:07:12.781794+0000","flow_id":855884828794989,"pcap_cnt":59,"event_type":"alert","src_ip":"192.236.178.80","src_port":80,"dest_ip":"192.168.122.105","dest_port":53098,"proto":"TCP","tx_id":0,"alert":{"action":"allowed","gid":1,"signature_id":2019240,"rev":14,"signature":"ET POLICY Executable and linking format (ELF) file download Over HTTP","category":"Potential Corporate Privacy Violation","severity":1},"app_proto":"http"}
{"timestamp":"2019-09-19T08:07:12.804318+0000","flow_id":855884828794989,"pcap_cnt":84,"event_type":"http","src_ip":"192.168.122.105","src_port":53098,"dest_ip":"192.236.178.80","dest_port":80,"proto":"TCP","tx_id":0,"http":{"hostname":"192.236.178.80","url":"\/dark_bins\/dark.arm7","http_user_agent":"Wget\/1.19.4 (linux-gnueabihf)","http_content_type":"text\/plain"}}
{"timestamp":"2019-09-19T08:07:12.835888+0000","flow_id":855884828794989,"pcap_cnt":85,"event_type":"fileinfo","src_ip":"192.236.178.80","src_port":80,"dest_ip":"192.168.122.105","dest_port":53098,"proto":"TCP","http":{"hostname":"192.236.178.80","url":"\/dark_bins\/dark.arm7","http_user_agent":"Wget\/1.19.4 (linux-gnueabihf)","http_content_type":"text\/plain","http_method":"GET","protocol":"HTTP\/1.1","status":200,"length":54888},"app_proto":"http","fileinfo":{"filename":"\/dark_bins\/dark.arm7","gaps":false,"state":"CLOSED","stored":false,"size":54888,"tx_id":0}}
{"timestamp":"2019-09-19T08:07:13.416654+0000","flow_id":969731527009741,"pcap_cnt":1320,"event_type":"alert","src_ip":"5.157.42.154","src_port":52869,"dest_ip":"192.168.122.105","dest_port":53291,"proto":"TCP","alert":{"action":"allowed","gid":1,"signature_id":2400000,"rev":2652,"signature":"ET DROP Spamhaus DROP Listed Traffic Inbound group 1","category":"Misc Attack","severity":2}}
{"timestamp":"2019-09-19T08:07:23.820889+0000","flow_id":1825130099201547,"pcap_cnt":7878,"event_type":"http","src_ip":"192.168.122.105","src_port":49346,"dest_ip":"197.246.34.89","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:07:23.820889+0000","flow_id":1825130099201547,"pcap_cnt":7878,"event_type":"http","src_ip":"192.168.122.105","src_port":49346,"dest_ip":"197.246.34.89","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:07:23.820889+0000","flow_id":1825130099201547,"pcap_cnt":7878,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":49346,"dest_ip":"197.246.34.89","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:07:23.994926+0000","flow_id":1055789787374910,"pcap_cnt":7912,"event_type":"http","src_ip":"192.168.122.105","src_port":39650,"dest_ip":"197.246.202.89","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:07:23.994926+0000","flow_id":1055789787374910,"pcap_cnt":7912,"event_type":"http","src_ip":"192.168.122.105","src_port":39650,"dest_ip":"197.246.202.89","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:07:23.994926+0000","flow_id":1055789787374910,"pcap_cnt":7912,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":39650,"dest_ip":"197.246.202.89","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:07:38.336714+0000","flow_id":313363889028149,"pcap_cnt":18364,"event_type":"alert","src_ip":"161.0.7.66","src_port":52869,"dest_ip":"192.168.122.105","dest_port":53291,"proto":"TCP","alert":{"action":"allowed","gid":1,"signature_id":2400012,"rev":2652,"signature":"ET DROP Spamhaus DROP Listed Traffic Inbound group 13","category":"Misc Attack","severity":2}}
{"timestamp":"2019-09-19T08:07:45.920773+0000","flow_id":194099090107508,"pcap_cnt":24003,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":59454,"dest_ip":"60.184.170.69","dest_port":52869,"proto":"TCP","http":{"url":"\/picsdesc.xml","http_user_agent":"Hello-World","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/picsdesc.xml","gaps":false,"state":"CLOSED","stored":false,"size":630,"tx_id":0}}
{"timestamp":"2019-09-19T08:07:52.717056+0000","flow_id":142651824822169,"pcap_cnt":28528,"event_type":"alert","src_ip":"181.177.97.189","src_port":52869,"dest_ip":"192.168.122.105","dest_port":53291,"proto":"TCP","alert":{"action":"allowed","gid":1,"signature_id":2400015,"rev":2652,"signature":"ET DROP Spamhaus DROP Listed Traffic Inbound group 16","category":"Misc Attack","severity":2}}
{"timestamp":"2019-09-19T08:08:05.373812+0000","flow_id":1043604967876021,"pcap_cnt":36831,"event_type":"alert","src_ip":"160.124.224.70","dest_ip":"192.168.122.105","proto":"ICMP","icmp_type":3,"icmp_code":10,"alert":{"action":"allowed","gid":1,"signature_id":2400012,"rev":2652,"signature":"ET DROP Spamhaus DROP Listed Traffic Inbound group 13","category":"Misc Attack","severity":2}}
{"timestamp":"2019-09-19T08:08:14.165663+0000","flow_id":337140830330017,"pcap_cnt":44149,"event_type":"alert","src_ip":"107.182.246.15","src_port":52869,"dest_ip":"192.168.122.105","dest_port":53291,"proto":"TCP","alert":{"action":"allowed","gid":1,"signature_id":2400005,"rev":2652,"signature":"ET DROP Spamhaus DROP Listed Traffic Inbound group 6","category":"Misc Attack","severity":2}}
{"timestamp":"2019-09-19T08:08:18.021446+0000","flow_id":1087529599189631,"pcap_cnt":47387,"event_type":"alert","src_ip":"160.124.82.153","src_port":52869,"dest_ip":"192.168.122.105","dest_port":53291,"proto":"TCP","alert":{"action":"allowed","gid":1,"signature_id":2400012,"rev":2652,"signature":"ET DROP Spamhaus DROP Listed Traffic Inbound group 13","category":"Misc Attack","severity":2}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1127298848529354,"event_type":"http","src_ip":"192.168.122.105","src_port":41374,"dest_ip":"156.238.44.17","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1127298848529354,"event_type":"http","src_ip":"192.168.122.105","src_port":41374,"dest_ip":"156.238.44.17","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1127298848529354,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":41374,"dest_ip":"156.238.44.17","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1973078840453593,"event_type":"http","src_ip":"192.168.122.105","src_port":37808,"dest_ip":"156.238.62.190","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1973078840453593,"event_type":"http","src_ip":"192.168.122.105","src_port":37808,"dest_ip":"156.238.62.190","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1973078840453593,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":37808,"dest_ip":"156.238.62.190","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1002347510443363,"event_type":"http","src_ip":"192.168.122.105","src_port":39890,"dest_ip":"197.234.46.162","dest_port":52869,"proto":"TCP","tx_id":0,"http":{"url":"\/picsdesc.xml","http_user_agent":"Hello-World"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1002347510443363,"event_type":"http","src_ip":"192.168.122.105","src_port":39890,"dest_ip":"197.234.46.162","dest_port":52869,"proto":"TCP","tx_id":1,"http":{}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1002347510443363,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":39890,"dest_ip":"197.234.46.162","dest_port":52869,"proto":"TCP","http":{"url":"\/picsdesc.xml","http_user_agent":"Hello-World","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/picsdesc.xml","gaps":false,"state":"CLOSED","stored":false,"size":630,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1992805625803464,"event_type":"http","src_ip":"192.168.122.105","src_port":55670,"dest_ip":"103.37.249.11","dest_port":52869,"proto":"TCP","tx_id":0,"http":{"url":"\/picsdesc.xml","http_user_agent":"Hello-World"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1992805625803464,"event_type":"http","src_ip":"192.168.122.105","src_port":55670,"dest_ip":"103.37.249.11","dest_port":52869,"proto":"TCP","tx_id":1,"http":{}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1992805625803464,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":55670,"dest_ip":"103.37.249.11","dest_port":52869,"proto":"TCP","http":{"url":"\/picsdesc.xml","http_user_agent":"Hello-World","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/picsdesc.xml","gaps":false,"state":"CLOSED","stored":false,"size":630,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1571482218889850,"event_type":"http","src_ip":"192.168.122.105","src_port":48248,"dest_ip":"156.226.77.103","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1571482218889850,"event_type":"http","src_ip":"192.168.122.105","src_port":48248,"dest_ip":"156.226.77.103","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1571482218889850,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":48248,"dest_ip":"156.226.77.103","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":305057421013190,"event_type":"http","src_ip":"192.168.122.105","src_port":48638,"dest_ip":"156.224.3.224","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":305057421013190,"event_type":"http","src_ip":"192.168.122.105","src_port":48638,"dest_ip":"156.224.3.224","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":305057421013190,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":48638,"dest_ip":"156.224.3.224","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":307786875136975,"event_type":"http","src_ip":"192.168.122.105","src_port":52332,"dest_ip":"156.224.225.80","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":307786875136975,"event_type":"http","src_ip":"192.168.122.105","src_port":52332,"dest_ip":"156.224.225.80","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":307786875136975,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":52332,"dest_ip":"156.224.225.80","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":873545735915503,"event_type":"http","src_ip":"192.168.122.105","src_port":41304,"dest_ip":"156.224.144.211","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":873545735915503,"event_type":"http","src_ip":"192.168.122.105","src_port":41304,"dest_ip":"156.224.144.211","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":873545735915503,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":41304,"dest_ip":"156.224.144.211","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1018522357801610,"event_type":"http","src_ip":"192.168.122.105","src_port":57628,"dest_ip":"156.227.240.156","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1018522357801610,"event_type":"http","src_ip":"192.168.122.105","src_port":57628,"dest_ip":"156.227.240.156","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1018522357801610,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":57628,"dest_ip":"156.227.240.156","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1443790692724091,"event_type":"http","src_ip":"192.168.122.105","src_port":37460,"dest_ip":"156.241.113.204","dest_port":37215,"proto":"TCP","tx_id":0,"http":{"url":"\/ctrlt\/DeviceUpgrade_1"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1443790692724091,"event_type":"http","src_ip":"192.168.122.105","src_port":37460,"dest_ip":"156.241.113.204","dest_port":37215,"proto":"TCP","tx_id":1,"http":{"url":"HUAWEIUPNP)<\/NewDownloadURL><\/u:Upgrade><\/s:Body><\/s:Envelope>"}}
{"timestamp":"2019-09-19T08:08:20.755667+0000","flow_id":1443790692724091,"event_type":"fileinfo","src_ip":"192.168.122.105","src_port":37460,"dest_ip":"156.241.113.204","dest_port":37215,"proto":"TCP","http":{"url":"\/ctrlt\/DeviceUpgrade_1","http_method":"POST","protocol":"HTTP\/1.1","length":0},"app_proto":"http","fileinfo":{"filename":"\/ctrlt\/DeviceUpgrade_1","gaps":false,"state":"CLOSED","stored":false,"size":430,"tx_id":0}}
{"timestamp":"2019-09-19T08:08:20.7
|
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 | --------------------------------------------------------------------------------------------------------------------------------
Date: 9/23/2019 -- 11:17:10
--------------------------------------------------------------------------------------------------------------------------------
Stats for: total
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
flow 5776742 600 600 2220814 9627.00 9627.00 0.00
threshold 100016 6 6 25578 16669.00 16669.00 0.00
content 9426096 1242 188 431378 7589.00 6720.00 7744.00
pcre 1030144 16 4 749392 64384.00 35506.00 74009.00
byte_test 138130 23 8 36242 6005.00 4503.00 6807.00
flowbits 346036 61 17 22004 5672.00 7853.00 4830.00
urilen 162472 30 10 20242 5415.00 5092.00 5577.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: packet
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
flow 5776742 600 600 2220814 9627.00 9627.00 0.00
flowbits 217550 45 1 7254 4834.00 5024.00 4830.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: packet/stream payload
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 3254598 494 8 75812 6588.00 25078.00 6283.00
byte_test 138130 23 8 36242 6005.00 4503.00 6807.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: post-match
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
flowbits 128486 16 16 22004 8030.00 8030.00 0.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: threshold
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
threshold 100016 6 6 25578 16669.00 16669.00 0.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_uri
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 1045280 200 31 20542 5226.00 5238.00 5224.00
pcre 916638 11 1 749392 83330.00 71088.00 84555.00
urilen 162472 30 10 20242 5415.00 5092.00 5577.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_client_body
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 1878610 195 0 431378 9633.00 0.00 9633.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_response_line
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 5830 1 0 5830 5830.00 0.00 5830.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: file_data
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 1085998 48 1 292908 22624.00 6650.00 22964.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_header
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 1496988 187 98 425420 8005.00 6218.00 9972.00
pcre 99104 4 2 30796 24776.00 28268.00 21284.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_header_names
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 393660 70 14 21350 5623.00 5920.00 5549.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_content_len
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 168566 30 30 7176 5618.00 5618.00 0.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_method
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 11054 2 2 5916 5527.00 5527.00 0.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_user_agent
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 74840 13 2 15724 5756.00 5560.00 5792.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_host
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
pcre 14402 1 1 14402 14402.00 14402.00 0.00
--------------------------------------------------------------------------------------------------------------------------------
Stats for: http_stat_code
--------------------------------------------------------------------------------------------------------------------------------
Keyword Ticks Checks Matches Max Ticks Avg Avg Match Avg No Match
---------------- --------------- --------------- --------------- --------------- --------------- --------------- ---------------
content 10672 2 2 5700 5336.00 5336.00 0.00
|
1 2 3 4 5 6 7 8 | 09/19/2019-08:07:12.685917 [**] [1:2025125:1] ET INFO ARM7 File Download Request from IP Address [**] [Classification: Potentially Bad Traffic] [Priority: 2] {TCP} 192.168.122.105:53098 -> 192.236.178.80:80
09/19/2019-08:07:12.781794 [**] [1:2019240:14] ET POLICY Executable and linking format (ELF) file download Over HTTP [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 192.236.178.80:80 -> 192.168.122.105:53098
09/19/2019-08:07:13.416654 [**] [1:2400000:2652] ET DROP Spamhaus DROP Listed Traffic Inbound group 1 [**] [Classification: Misc Attack] [Priority: 2] {TCP} 5.157.42.154:52869 -> 192.168.122.105:53291
09/19/2019-08:07:38.336714 [**] [1:2400012:2652] ET DROP Spamhaus DROP Listed Traffic Inbound group 13 [**] [Classification: Misc Attack] [Priority: 2] {TCP} 161.0.7.66:52869 -> 192.168.122.105:53291
09/19/2019-08:07:52.717056 [**] [1:2400015:2652] ET DROP Spamhaus DROP Listed Traffic Inbound group 16 [**] [Classification: Misc Attack] [Priority: 2] {TCP} 181.177.97.189:52869 -> 192.168.122.105:53291
09/19/2019-08:08:05.373812 [**] [1:2400012:2652] ET DROP Spamhaus DROP Listed Traffic Inbound group 13 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 160.124.224.70:3 -> 192.168.122.105:10
09/19/2019-08:08:14.165663 [**] [1:2400005:2652] ET DROP Spamhaus DROP Listed Traffic Inbound group 6 [**] [Classification: Misc Attack] [Priority: 2] {TCP} 107.182.246.15:52869 -> 192.168.122.105:53291
09/19/2019-08:08:18.021446 [**] [1:2400012:2652] ET DROP Spamhaus DROP Listed Traffic Inbound group 13 [**] [Classification: Misc Attack] [Priority: 2] {TCP} 160.124.82.153:52869 -> 192.168.122.105:53291
|
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 | --------------------------------------------------------------------------
Date: 9/23/2019 -- 11:17:10. Sorted by: max ticks.
--------------------------------------------------------------------------
Num Rule Gid Rev Ticks % Checks Matches Max Ticks Avg Ticks Avg Match Avg No Match
-------- ------------ -------- -------- ------------ ------ -------- -------- ----------- ----------- ----------- --------------
1 2003068 1 7 188441078 6.75 33640 0 15419818 5601.70 0.00 5601.70
2 2010938 1 3 178835764 6.41 33640 0 12771154 5316.16 0.00 5316.16
3 2024228 1 3 12972760 0.46 4 0 12669282 3243190.00 0.00 3243190.00
4 2002992 1 7 169175786 6.06 33640 0 10807166 5029.01 0.00 5029.01
5 2102523 1 8 166907892 5.98 33897 0 7329838 4923.97 0.00 4923.97
6 2002994 1 7 172266256 6.17 33640 0 7244224 5120.88 0.00 5120.88
7 2010939 1 3 169391954 6.07 33640 0 7121258 5035.43 0.00 5035.43
8 2002993 1 7 171861394 6.16 33640 0 6864106 5108.84 0.00 5108.84
9 2001580 1 15 164663772 5.90 33640 0 6729932 4894.88 0.00 4894.88
10 2013506 1 1 166403494 5.96 33640 0 6727608 4946.60 0.00 4946.60
11 2102523 1 8 215783956 7.73 44857 0 2524096 4810.49 0.00 4810.49
12 2024909 1 2 2451018 0.09 7 0 2251948 350145.43 0.00 350145.43
13 2025441 1 2 1289002 0.05 10 0 808030 128900.20 0.00 128900.20
14 2007880 1 7 828346 0.03 11 0 467634 75304.18 0.00 75304.18
15 2825905 1 2 1541706 0.06 31 0 466416 49732.45 0.00 49732.45
16 2015872 1 6 2299024 0.08 31 0 462716 74162.06 0.00 74162.06
17 2017552 1 6 2860526 0.10 67 0 460284 42694.42 0.00 42694.42
18 2016537 1 2 2142688 0.08 56 0 455910 38262.29 0.00 38262.29
19 2816454 1 2 2334556 0.08 41 0 454978 56940.39 0.00 56940.39
20 2022502 1 4 1903574 0.07 42 0 452790 45323.19 0.00 45323.19
21 2020936 1 3 1845960 0.07 41 0 451350 45023.41 0.00 45023.41
22 2807559 1 2 3883750 0.14 171 0 444050 22711.99 0.00 22711.99
23 2001582 1 15 159765084 5.72 33640 0 438700 4749.26 0.00 4749.26
24 2001219 1 20 158189528 5.67 33640 0 433428 4702.42 0.00 4702.42
25 2809816 1 2 634204 0.02 41 0 424782 15468.39 0.00 15468.39
26 2103072 1 3 578208 0.02 31 0 424068 18651.87 0.00 18651.87
27 2016683 1 2 675446 0.02 40 0 422470 16886.15 0.00 16886.15
28 2013926 1 8 644508 0.02 41 0 420594 15719.71 0.00 15719.71
29 2820157 1 2 323740 0.01 1 0 323740 323740.00 0.00 323740.00
30 2820158 1 2 321960 0.01 1 0 321960 321960.00 0.00 321960.00
31 2806561 1 5 162877216 5.84 33640 0 320760 4841.77 0.00 4841.77
32 2804911 1 3 293896 0.01 1 0 293896 293896.00 0.00 293896.00
33 2815174 1 3 1588086 0.06 41 0 230152 38733.80 0.00 38733.80
34 2002995 1 10 159546454 5.72 33640 0 190728 4742.76 0.00 4742.76
35 2024240 1 2 164576 0.01 1 1 164576 164576.00 164576.00 0.00
36 2002910 1 6 157881316 5.66 33640 0 121426 4693.26 0.00 4693.26
37 2816356 1 2 2357880 0.08 42 0 117904 56140.00 0.00 56140.00
38 2828803 1 2 90702 0.00 1 0 90702 90702.00 0.00 90702.00
39 2804927 1 2 86848 0.00 1 0 86848 86848.00 0.00 86848.00
40 2808314 1 4 649996 0.02 10 0 82364 64999.60 0.00 64999.60
41 2021067 1 2 82266 0.00 1 1 82266 82266.00 82266.00 0.00
42 2822979 1 3 79592 0.00 1 0 79592 79592.00 0.00 79592.00
43 2002911 1 6 158113798 5.66 33640 0 77786 4700.17 0.00 4700.17
44 2025178 1 2 619822 0.02 10 0 77030 61982.20 0.00 61982.20
45 2025119 1 3 600924 0.02 10 0 71986 60092.40 0.00 60092.40
46 2024771 1 1 425302 0.02 44 0 70654 9665.95 0.00 9665.95
47 2825235 1 2 65722 0.00 1 0 65722 65722.00 0.00 65722.00
48 2025125 1 1 64986 0.00 1 1 64986 64986.00 64986.00 0.00
49 2802987 1 5 63876 0.00 1 0 63876 63876.00 0.00 63876.00
50 2020295 1 6 478666 0.02 10 0 62654 47866.60 0.00 47866.60
51 2801929 1 7 62640 0.00 1 0 62640 62640.00 0.00 62640.00
52 2815254 1 7 519788 0.02 10 0 62450 51978.80 0.00 51978.80
53 2802991 1 5 119694 0.00 2 0 61766 59847.00 0.00 59847.00
54 2019240 1 14 59816 0.00 1 1 59816 59816.00 59816.00 0.00
55 2804907 1 3 59628 0.00 1 0 59628 59628.00 0.00 59628.00
56 2801930 1 7 58854 0.00 1 0 58854 58854.00 0.00 58854.00
57 2830124 1 1 58602 0.00 1 0 58602 58602.00 0.00 58602.00
58 2816492 1 3 1454778 0.05 41 0 56806 35482.39 0.00 35482.39
59 2014519 1 7 52478 0.00 1 0 52478 52478.00 0.00 52478.00
60 2821615 1 2 48730 0.00 1 0 48730 48730.00 0.00 48730.00
61 2816619 1 2 366826 0.01 42 0 48580 8733.95 0.00 8733.95
62 2823166 1 3 47722 0.00 1 0 47722 47722.00 0.00 47722.00
63 2829644 1 1 47496 0.00 1 0 47496 47496.00 0.00 47496.00
64 2820972 1 2 46836 0.00 1 1 46836 46836.00 46836.00 0.00
65 2827279 1 5 102198 0.00 11 0 46490 9290.73 0.00 9290.73
66 2013186 1 19 46216 0.00 1 0 46216 46216.00 0.00 46216.00
67 2025162 1 2 46174 0.00 1 0 46174 46174.00 0.00 46174.00
68 2828008 1 2 95342 0.00 11 0 45050 8667.45 0.00 8667.45
69 2828876 1 1 1986586 0.07 385 0 43640 5159.96 0.00 5159.96
70 2814886 1 1 4188846 0.15 229 0 42946 18291.90 0.00 18291.90
71 2816165 1 5 42606 0.00 1 0 42606 42606.00 0.00 42606.00
72 2012707 1 5 41712 0.00 1 0 41712 41712.00 0.00 41712.00
73 2019345 1 2 251154 0.01 10 0 41444 25115.40 0.00 25115.40
74 2025124 1 1 39302 0.00 1 0 39302 39302.00 0.00 39302.00
75 2810793 1 5 1016854 0.04 189 0 38578 5380.18 0.00 5380.18
76 2020557 1 2 37156 0.00 1 0 37156 37156.00 0.00 37156.00
77 2013382 1 3 36978 0.00 1 0 36978 36978.00 0.00 36978.00
78 2014956 1 1 64656 0.00 2 0 36822 32328.00 0.00 32328.00
79 2830035 1 2 36494 0.00 1 0 36494 36494.00 0.00 36494.00
80 2826256 1 2 36338 0.00 1 0 36338 36338.00 0.00 36338.00
81 2809267 1 8 35970 0.00 1 0 35970 35970.00 0.00 35970.00
82 2809231 1 1 921018 0.03 171 0 35782 5386.07 0.00 5386.07
83 2810481 1 4 35470 0.00 1 0 35470 35470.00 0.00 35470.00
84 2022197 1 3 35438 0.00 1 0 35438 35438.00 0.00 35438.00
85 2829579 1 1 209656 0.01 31 0 35392 6763.10 0.00 6763.10
86 2829607 1 1 35172 0.00 1 0 35172 35172.00 0.00 35172.00
87 2024829 1 2 100664 0.00 3 0 34626 33554.67 0.00 33554.67
88 2806802 1 2 226470 0.01 7 0 34620 32352.86 0.00 32352.86
89 2016502 1 2 195228 0.01 8 0 27898 24403.50 0.00 24403.50
90 2016143 1 3 50178 0.00 2 0 27094 25089.00 0.00 25089.00
91 2100540 1 12 68066 0.00 6 0 26338 11344.33 0.00 11344.33
92 2016948 1 2 26096 0.00 1 0 26096 26096.00 0.00 26096.00
93 2806857 1 2 169310 0.01 31 0 26032 5461.61 0.00 5461.61
94 2022331 1 3 487376 0.02 97 0 25750 5024.49 0.00 5024.49
95 2807130 1 4 24944 0.00 1 0 24944 24944.00 0.00 24944.00
96 2819694 1 2 24748 0.00 1 0 24748 24748.00 0.00 24748.00
97 2014958 1 1 40656 0.00 2 0 24736 20328.00 0.00 20328.00
98 2820003 1 2 24642 0.00 1 0 24642 24642.00 0.00 24642.00
99 2024650 1 1 48844 0.00 2 0 24604 24422.00 0.00 24422.00
100 2809306 1 4 47450 0.00 2 0 24440 23725.00 0.00 23725.00
101 2024929 1 1 24340 0.00 1 0 24340 24340.00 0.00 24340.00
102 2828966 1 1 93086 0.00 4 0 24190 23271.50 0.00 23271.50
103 2017748 1 6 24162 0.00 1 0 24162 24162.00 0.00 24162.00
104 2014473 1 5 24086 0.00 1 0 24086 24086.00 0.00 24086.00
105 2016503 1 2 182724 0.01 8 0 23944 22840.50 0.00 22840.50
106 2023510 1 2 863484 0.03 171 0 22492 5049.61 0.00 5049.61
107 2804587 1 2 216778 0.01 41 0 21716 5287.27 0.00 5287.27
108 2811445 1 4 226274 0.01 41 0 21142 5518.88 0.00 5518.88
109 2023016 1 1 196492 0.01 32 0 20718 6140.38 0.00 6140.38
110 2828877 1 1 314868 0.01 58 0 20516 5428.76 0.00 5428.76
111 2100474 1 5 287522 0.01 56 0 20242 5134.32 0.00 5134.32
112 2014380 1 4 1202050 0.04 229 0 20134 5249.13 0.00 5249.13
113 2008420 1 4 1170616 0.04 223 0 19994 5249.40 0.00 5249.40
114 2001330 1 8 464398 0.02 92 0 18160 5047.80 0.00 5047.80
115 2102330 1 3 160400 0.01 31 0 11560 5174.19 0.00 5174.19
116 2016364 1 1 302994 0.01 58 0 10046 5224.03 0.00 5224.03
117 2810792 1 5 887664 0.03 189 0 9396 4696.63 0.00 4696.63
118 2100719 1 8 31938 0.00 5 0 8712 6387.60 0.00 6387.60
119 2002823 1 11 8004 0.00 1 0 8004 8004.00 0.00 8004.00
120 2025132 1 2 57540 0.00 10 0 7888 5754.00 0.00 5754.00
121 2020661 1 3 13718 0.00 2 0 7796 6859.00 0.00 6859.00
122 2809481 1 1 200650 0.01 40 0 7560 5016.25 0.00 5016.25
123 2022330 1 2 456524 0.02 93 0 7040 4908.86 0.00 4908.86
124 2024287 1 2 152742 0.01 31 0 6880 4927.16 0.00 4927.16
125 2827580 1 7 2
|
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 |
|