SureLog Attack Reports

8

Click here to load reader

description

SureLog Attack Reports

Transcript of SureLog Attack Reports

Page 1: SureLog Attack Reports

Report Title: Attack Reports

Report Generated Time: 01.11.2014 02:07

Page: 1 / 801.11.2014 02.08 Anet Yazılım Ltd. Şti.

Page 2: SureLog Attack Reports

Top Attackers(Attack - Top Attackers)

Host Protocol Hits

1 192.168.1.108 2967/udp 10117

2 192.168.2.106 2967/udp 7761

3 192.168.1.229 2967/udp 7582

4 192.168.2.36 2967/udp 6840

5 192.168.2.17 isi-gl 6727

6 192.168.2.40 mumps 6378

7 192.168.2.133 videotex 6225

8 192.168.2.180 2967/udp 6220

9 192.168.2.64 acp 6204

10 192.168.1.75 2967/udp 6158

Page: 2 / 801.11.2014 02.08 Anet Yazılım Ltd. Şti.

Page 3: SureLog Attack Reports

Top Targets(Attack - Top Targets)

Destination Protocol Hits

1 188.95.146.32 mailq 8877

2 85.111.27.227 2967/udp 6989

3 193.140.192.146 2967/udp 6124

4 85.111.27.127 2967/udp 6104

5 23.72.102.137 2967/udp 6028

6 23.72.102.209 entrust-sps 6013

7 85.111.27.89 2967/udp 6012

8 193.140.192.19 2967/udp 6012

9 188.95.146.103 2967/udp 6006

10 83.66.162.202 2967/udp 5841

Page: 3 / 801.11.2014 02.08 Anet Yazılım Ltd. Şti.

Page 4: SureLog Attack Reports

Top Protocols Used By Attacks(Attack - Top Protocols Used By Attacks)

Attack Protocol Hits

1 anomaly: udp_dst_session xvttp 284988

2 anomaly: TCP Handshake zannet 179968

3 anomaly: TCP Hhake 2967/udp 2

4 anomaly: TCP Handshashake 2967/udp 2

5 anomally: TCP Handshake 2967/udp 2

6 anomalaly: TCP Handshake 2967/udp 2

7 anommaly: TCP Handshake vpp 2

8 anomay: TCP Handshake 2967/udp 2

9 anomaly: TCPP Handshake xns-courier 2

10 anomaly: TCP HP Handshake 2967/udp 2

Page: 4 / 801.11.2014 02.08 Anet Yazılım Ltd. Şti.

Page 5: SureLog Attack Reports

Top Attacks By Priority(Attack - Top Attacks By Priority)

Attack Priority Hits

1 anomaly: udp_dst_session, 5110 > thresho alert 284940

2 anomaly: TCP Handshake alert 179968

3 anomally: udp_dst_session, 5110 > thresh alert 3

4 anomaly: udp_dst_sssion, 5110 > threshol alert 3

5 anomaly: udp_dst_ssion, 5110 > threshold alert 3

6 anomaly: udp_dst_sessision, 5110 > thres alert 3

7 anomaaly: udp_dst_session, 5110 > thresh alert 3

8 anomaly: udp_dst_sessioon, 5110 > thresh alert 3

9 anoma udp_dst_session, 5110 > threshold alert 3

10 anomaly: udp_dst_sessionon, 5110 > thres alert 3

Page: 5 / 801.11.2014 02.08 Anet Yazılım Ltd. Şti.

Page 6: SureLog Attack Reports

Top Attacks With Status(Attack - Top Attacks with Status)

Status Attack Hits

1 detected anomaly: udp_dst_session, 5110 > thresho 284940

2 us=detected anomaly: TCP Handshake 179968

3 detected anomally: udp_dst_session, 5110 > thresh 3

4 detected anomaly: udp_dst_sssion, 5110 > threshol 3

5 detected anomaly: udp_dst_ssion, 5110 > threshold 3

6 detected anomaly: udp_dst_sessision, 5110 > thres 3

7 detected anomaaly: udp_dst_session, 5110 > thresh 3

8 detected anomaly: udp_dst_sessioon, 5110 > thresh 3

9 detected anoma udp_dst_session, 5110 > threshold 3

10 detected anomaly: udp_dst_sessionon, 5110 > thres 3

Page: 6 / 801.11.2014 02.08 Anet Yazılım Ltd. Şti.

Page 7: SureLog Attack Reports

Page: 7 / 801.11.2014 02.08 Anet Yazılım Ltd. Şti.

Page 8: SureLog Attack Reports

Page: 8 / 801.11.2014 02.08 Anet Yazılım Ltd. Şti.