#
LOG PREFIX
SRC HOST
PORT
DST HOST
PORT
IN
OUT
PROTO
FLAGS
LENGHT
FRAG
SRC MAC
DST MAC
ICMP TYPE
ICMP CODE
HOUR
HITS
1
UDP DNS:
161.148.1.8
1032
172.16.10.5
53
eth0
-
UDP
-
42
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
00:02:02
1
2
TCP Trojan Port:
200.187.173.250
2583
192.168.65.12
110
eth0
-
TCP
SYN,URGP=0
48
DF
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
00:18:04
1
3
Police Default Reached:
211.143.237.238
1058
192.168.66.15
1433
eth0
-
TCP
SYN,URGP=0
48
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
00:22:40
1
4
UDP DNS:
161.148.1.8
1032
172.16.10.5
53
eth0
-
UDP
-
40
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
00:30:46
1
5
Police Default Reached:
198.88.216.96
35085
172.16.10.24
25
eth0
-
TCP
SYN,URGP=0
60
DF
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
00:40:41
1
6
UDP Trojan Port:
200.161.30.118
3024
172.16.10.6
53
eth0
-
UDP
-
55
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
00:41:27
1
7
Police Default Reached:
200.206.240.135
2968
192.168.66.48
1433
eth0
-
TCP
SYN,URGP=0
48
DF
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
01:04:40
1
8
Police Default Reached:
60.2.71.10
4822
172.16.10.22
1433
eth0
-
TCP
SYN,URGP=0
64
DF
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
01:10:40
1
9
UDP Trojan Port:
207.30.96.7
2583
172.16.10.5
53
eth0
-
UDP
-
52
DF
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
01:13:57
1
10
Police Default Reached:
193.138.232.60
64544
192.168.64.129
1080
eth0
-
TCP
SYN,URGP=0
48
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
01:16:40
1
11
Police Default Reached:
200.167.0.9
-
200.213.239.130
-
eth0
-
TCP
-
40
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
11
0
01:22:40
1
12
UDP DNS:
161.148.1.8
1032
172.16.10.24
53
eth0
-
UDP
-
39
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
01:26:49
1
13
UDP DNS:
161.148.1.8
1032
172.16.10.6
53
eth0
-
UDP
-
42
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
01:26:49
1
14
Police Default Reached:
61.185.8.16
1061
192.168.66.215
1434
eth0
-
UDP
-
384
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
01:28:40
1
15
UDP DNS:
161.148.1.8
1032
172.16.10.5
53
eth0
-
UDP
-
39
-
00:0c:f1:80:7a:65
00:b0:4a:00:08:00
-
-
01:35:29
1
 
Page 0