Built with blockbuilder.org
Last active
November 8, 2016 18:25
-
-
Save daanraman/74b3ca0581c57b335284d52273172148 to your computer and use it in GitHub Desktop.
fresh block
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
license: mit |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
<!DOCTYPE html> | |
<meta charset="utf-8"> | |
<head> | |
<link rel="stylesheet" type="text/css" href="style.css"> | |
</head> | |
<div class="searchcontainer"> | |
<input id="search"> | |
<button type="button" id="searchbutton">Search</button> | |
<button type="button" id="dnsbutton">DNS</button> | |
<button type="button" id="httpbutton">HTTP</button> | |
</div> | |
<div id="container" class="svg-container"> | |
<svg width="1680" height="700"></svg> | |
</div> | |
<script type='text/javascript' src="https://cdnjs.cloudflare.com/ajax/libs/d3/4.3.0/d3.js"></script> | |
<script type='text/javascript' src="https://cdnjs.cloudflare.com/ajax/libs/jquery/3.1.1/jquery.min.js"></script> | |
<script type='text/javascript' src="https://cdnjs.cloudflare.com/ajax/libs/jqueryui/1.12.1/jquery-ui.js"></script> | |
<script type='text/javascript' src="https://cdnjs.cloudflare.com/ajax/libs/d3-tip/0.7.1/d3-tip.min.js"></script> | |
<script> | |
// Data processing | |
// =============== | |
d3.json("network.json", function (error, graph) { | |
console.log("Number of nodes at start: " + graph.nodes.length) | |
if (error) throw error; | |
// Prepare all data structures | |
var linksUpdate, linksEnter, linksMerge, linksExit, nodesUpdate, nodesEnter, nodesMerge, nodesExit, g_links, g_nodes, filteredNodes; | |
// Define color palet to use for nodes | |
var color = d3.scaleOrdinal(d3.schemeCategory10); | |
// Tooltips | |
var tool_tip = d3 | |
.tip() | |
.attr("class", "d3-tip") | |
.offset([0, 0]) | |
.html(function (d) { | |
return "IP: " + d.id + "<br/>" + "Links: " + d.value; | |
}); | |
// The SVG element already exists, get a reference to it | |
var svg = d3 | |
.select("svg") | |
.classed("svg-content", true) | |
svg.call(tool_tip); | |
g_links = svg.append("g").attr("class", "links") | |
g_nodes = svg.append("g").attr("class", "nodes") | |
// Describe zoom behavior | |
var zoom = d3.zoom() | |
.scaleExtent([1 / 10, 4]) | |
.on("zoom", zoomed); | |
function zoomed() { | |
var transform = d3.event.transform; | |
g_nodes.attr("transform", d3.event.transform); | |
g_links.attr("transform", d3.event.transform); | |
} | |
// Describe forces to be used for the simulation | |
var simulation = d3.forceSimulation() | |
.force("link", d3.forceLink().id(function (d) { | |
return d.id; | |
})) | |
.force("center", d3.forceCenter(svg.attr("width") / 2, svg.attr("height") / 2)) | |
.force("charge", d3.forceManyBody().strength(function (d) { | |
return Math.log(d.value) * -4 | |
})); | |
svg | |
.style("fill", "none") | |
.style("pointer-events", "all") | |
.call(zoom); | |
function dragsubject() { | |
searchRadius = 40; | |
return simulation.find(d3.event.x - svg.attr("height"), d3.event.y - svg.attr("height") / 2, searchRadius); | |
} | |
function dragstarted(d) { | |
if (!d3.event.active) simulation.alphaTarget(0.3).restart(); | |
d.fx = d.x; | |
d.fy = d.y; | |
} | |
function dragged(d) { | |
d.fx = d3.event.x; | |
d.fy = d3.event.y; | |
} | |
function dragended(d) { | |
if (!d3.event.active) simulation.alphaTarget(0); | |
d.fx = null; | |
d.fy = null; | |
} | |
// Search | |
var optArray = []; | |
for (var i = 0; i < svg.nodes.length - 1; i++) { | |
optArray.push(svg.nodes[i].id); | |
} | |
optArray = optArray.sort(); | |
$(function () { | |
$("#search").autocomplete({ | |
source: optArray | |
}); | |
}); | |
function searchNode() { | |
console.log("search clicked") | |
} | |
// Bind onclick | |
$('#searchbutton').click(function () { | |
searchNode(); | |
}); | |
// Bind onclick | |
$('#dnsbutton').click(function () { | |
filter("DNS"); | |
}); | |
// Bind onclick | |
$('#httpbutton').click(function () { | |
filter("HTTP"); | |
}); | |
function filter(filter) { | |
// Reload all original data | |
d3.json("network.json", function (error, originalgraph) { | |
graph.nodes = originalgraph.nodes; | |
graph.links = originalgraph.links; | |
}); | |
console.log("Number of elements after restoring data: " + graph.nodes.length) | |
if (filter == "DNS") { | |
filteredLinks = graph.links.filter(function (i, n) { | |
return i.proto == "DNS"; | |
}); | |
} | |
if (filter == "HTTP") { | |
filteredLinks = graph.links.filter(function (i, n) { | |
return i.proto == "HTTP"; | |
}); | |
} | |
// Update links | |
graph.links = filteredLinks; | |
// Remove all nodes without links | |
removeOrphanedNodes(); | |
console.log("Filtered links set: " + graph.links.length); | |
console.log("Filtered nodes set: " + graph.nodes.length); | |
redraw(); | |
console.log("Number of elements after filtering data: " + graph.nodes.length) | |
} | |
function removeOrphanedNodes() { | |
var ip_arr = []; | |
filteredNodes = []; | |
// Iterate all IPs | |
for (var link in graph.links) { | |
ip_arr.push(graph.links[link]["source"]["id"]); | |
ip_arr.push(graph.links[link]["target"]["id"]); | |
} | |
ip_arr = unique(ip_arr); | |
for (var node in graph.nodes) { | |
for (ip in ip_arr) { | |
if (ip_arr[ip] == (graph.nodes[node]["id"])) { | |
filteredNodes.push(graph.nodes[node]); | |
} | |
} | |
} | |
graph.nodes = filteredNodes; | |
} | |
function redraw() { | |
linksUpdate = g_links | |
.selectAll("line") | |
.data(graph.links, function (d) { | |
return d.id; | |
}); | |
linksEnter = linksUpdate.enter() | |
.append("line") | |
.style("opacity", 1) | |
.attr("stroke-width", function (d) { | |
return 0.3 | |
}); | |
linksMerge = linksUpdate.merge(linksEnter); | |
linksExit = linksUpdate.exit().transition() | |
.style("opacity", 0) | |
.duration(500) | |
.remove(); | |
nodesUpdate = g_nodes | |
.selectAll("circle") | |
.data(graph.nodes, function (d) { | |
return d.id; | |
}); | |
nodesEnter = nodesUpdate.enter() | |
.append("circle") | |
.style("opacity", 1) | |
.attr("r", function (d) { | |
return Math.log(d.value); | |
}) | |
.attr("fill", function (d) { | |
return color(d.group); | |
}) | |
.attr("stroke-opacity", 0.4) | |
.attr("stroke-width", 1) | |
.call(d3.drag() | |
.on("start", dragstarted) | |
.on("drag", dragged) | |
.on("end", dragended)) | |
.on('mouseover', tool_tip.show) //Added | |
.on('mouseout', tool_tip.hide); //Added | |
nodesMerge = nodesUpdate.merge(nodesEnter); | |
nodesExit = nodesUpdate.exit().transition() | |
.style("opacity", 0) | |
.duration(500) | |
.remove(); | |
nodesMerge.append("title") | |
.attr("dx", 12) | |
.attr("dy", ".35em") | |
.text(function (d) { | |
return d.has_ip_layer | |
}); | |
simulation | |
.nodes(graph.nodes) | |
.on("tick", ticked) | |
.force("link") | |
.links(graph.links); | |
} | |
function ticked() { | |
linksMerge | |
.attr("x1", function (d) { | |
return d.source.x; | |
}) | |
.attr("y1", function (d) { | |
return d.source.y; | |
}) | |
.attr("x2", function (d) { | |
return d.target.x; | |
}) | |
.attr("y2", function (d) { | |
return d.target.y; | |
}); | |
nodesMerge | |
.attr("cx", function (d) { | |
return d.x; | |
}) | |
.attr("cy", function (d) { | |
return d.y; | |
}); | |
} | |
function unique(list) { | |
var result = []; | |
$.each(list, function (i, e) { | |
if ($.inArray(e, result) == -1) result.push(e); | |
}); | |
return result; | |
} | |
// Draw the graph | |
redraw(); | |
}) | |
; | |
</script> |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
{ | |
"links": [ | |
{ | |
"dst_ip": "224.0.0.251", | |
"has_ip_layer": true, | |
"id": 7305425879113283811, | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "224.0.0.251", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55036, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 7146695997512563356, | |
"proto": "HTTP", | |
"source": "192.30.253.125", | |
"src_ip": "192.30.253.125", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.30.253.125", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -8921263208419100980, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55036, | |
"target": "192.30.253.125", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "169.55.74.57", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -3527160081197048952, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 54264, | |
"target": "169.55.74.57", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 54264, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7550309633865091376, | |
"proto": "HTTP", | |
"source": "169.55.74.57", | |
"src_ip": "169.55.74.57", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.234.9.122", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -8755959640902317227, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 54271, | |
"target": "54.234.9.122", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 54271, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5669484486967588413, | |
"proto": "HTTP", | |
"source": "54.234.9.122", | |
"src_ip": "54.234.9.122", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "91.198.174.208", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -2790411138268044752, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55227, | |
"target": "91.198.174.208", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55227, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -230930505292676736, | |
"proto": "HTTP", | |
"source": "91.198.174.208", | |
"src_ip": "91.198.174.208", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "204.154.94.81", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 4387034738228830293, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55175, | |
"target": "204.154.94.81", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55175, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 6831251227419135093, | |
"proto": "HTTP", | |
"source": "204.154.94.81", | |
"src_ip": "204.154.94.81", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -5127598603726339778, | |
"proto": "DNS", | |
"query": "b'apis.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 7891985076675357476, | |
"proto": "DNS", | |
"query": "b'clients5.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 2566138839919068743, | |
"proto": "DNS", | |
"query": "b'lh3.googleusercontent.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -1593093932157549922, | |
"proto": "DNS", | |
"query": "b'apis.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -5689684340720315043, | |
"proto": "DNS", | |
"query": "b'plus.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 8367373772152546173, | |
"proto": "DNS", | |
"query": "b'plus.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8253283099169133436, | |
"proto": "DNS", | |
"query": "b'clients5.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -5762436113113499916, | |
"proto": "DNS", | |
"query": "b'ssl.gstatic.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -3755433280469468152, | |
"proto": "DNS", | |
"query": "b'www.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -6451515296378985369, | |
"proto": "DNS", | |
"query": "b'lh3.googleusercontent.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 3081782514304975444, | |
"proto": "DNS", | |
"query": "b'ssl.gstatic.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 4854968124944322728, | |
"proto": "DNS", | |
"query": "b'www.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "172.217.17.67", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6924970809815702163, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55095, | |
"target": "172.217.17.67", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55095, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 2948449999367393589, | |
"proto": "HTTP", | |
"source": "172.217.17.67", | |
"src_ip": "172.217.17.67", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "172.217.17.110", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 327844102424683545, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55067, | |
"target": "172.217.17.110", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55067, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5995184188868650321, | |
"proto": "HTTP", | |
"source": "172.217.17.110", | |
"src_ip": "172.217.17.110", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -1813827077199531578, | |
"proto": "DNS", | |
"query": "b'www.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 2065339753655482854, | |
"proto": "DNS", | |
"query": "b'www.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.172.82.211", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -8599147518701837133, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 54285, | |
"target": "54.172.82.211", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 54285, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 1928060018651825323, | |
"proto": "HTTP", | |
"source": "54.172.82.211", | |
"src_ip": "54.172.82.211", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 902728183146139098, | |
"proto": "DNS", | |
"query": "b'b.scorecardresearch.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 8417734549345874095, | |
"proto": "DNS", | |
"query": "b'beacon.krxd.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 7009162891688174516, | |
"proto": "DNS", | |
"query": "b'cdn.krxd.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -1466844123825202886, | |
"proto": "DNS", | |
"query": "b'b.scorecardresearch.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 5577720413404890258, | |
"proto": "DNS", | |
"query": "b'pagead2.googlesyndication.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "62.4.254.174", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 1350027120419782203, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55270, | |
"target": "62.4.254.174", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "62.4.254.174", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -3071899596700605404, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55271, | |
"target": "62.4.254.174", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "62.4.254.174", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 8143849400648709369, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55272, | |
"target": "62.4.254.174", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -3155570533241606449, | |
"proto": "DNS", | |
"query": "b'beacon.krxd.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 3480861224484762041, | |
"proto": "DNS", | |
"query": "b'ping.chartbeat.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.217.209.77", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 3384223418259819634, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55273, | |
"target": "54.217.209.77", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.217.209.77", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -760469441556367521, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55274, | |
"target": "54.217.209.77", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.217.209.77", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -9062739619024176248, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55275, | |
"target": "54.217.209.77", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -4507491355723246188, | |
"proto": "DNS", | |
"query": "b'cdn.krxd.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 6913547676406005032, | |
"proto": "DNS", | |
"query": "b'static.chartbeat.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55270, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -4988995213752071005, | |
"proto": "HTTP", | |
"source": "62.4.254.174", | |
"src_ip": "62.4.254.174", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55271, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -4526843271352926468, | |
"proto": "HTTP", | |
"source": "62.4.254.174", | |
"src_ip": "62.4.254.174", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55272, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -1344682598662537631, | |
"proto": "HTTP", | |
"source": "62.4.254.174", | |
"src_ip": "62.4.254.174", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "151.101.36.175", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 4918047515623825117, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55276, | |
"target": "151.101.36.175", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "151.101.36.175", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -2604072431843785602, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55277, | |
"target": "151.101.36.175", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "151.101.36.175", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 587984601867627835, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55278, | |
"target": "151.101.36.175", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6175099142543994034, | |
"proto": "DNS", | |
"query": "b'pagead2.googlesyndication.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 6325645901912571583, | |
"proto": "DNS", | |
"query": "b'static1.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55276, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -2918953709679568507, | |
"proto": "HTTP", | |
"source": "151.101.36.175", | |
"src_ip": "151.101.36.175", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55277, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -8806405026292084506, | |
"proto": "HTTP", | |
"source": "151.101.36.175", | |
"src_ip": "151.101.36.175", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55278, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 9147927700690348603, | |
"proto": "HTTP", | |
"source": "151.101.36.175", | |
"src_ip": "151.101.36.175", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55274, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6392581591395266537, | |
"proto": "HTTP", | |
"source": "54.217.209.77", | |
"src_ip": "54.217.209.77", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -6124992688869734823, | |
"proto": "DNS", | |
"query": "b'ping.chartbeat.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 6428675324445288187, | |
"proto": "DNS", | |
"query": "b'static2.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55273, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5878063222985767698, | |
"proto": "HTTP", | |
"source": "54.217.209.77", | |
"src_ip": "54.217.209.77", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55275, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -4694549554378613440, | |
"proto": "HTTP", | |
"source": "54.217.209.77", | |
"src_ip": "54.217.209.77", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.243.122.10", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 246509456654517647, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55282, | |
"target": "54.243.122.10", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.243.122.10", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 2840414906127175416, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55283, | |
"target": "54.243.122.10", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.243.122.10", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 6969757507265550877, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55284, | |
"target": "54.243.122.10", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -7470464401700565368, | |
"proto": "DNS", | |
"query": "b'static.chartbeat.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 7614147613665173642, | |
"proto": "DNS", | |
"query": "b'static3.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "151.101.36.249", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -158560060901012850, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55285, | |
"target": "151.101.36.249", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "151.101.36.249", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5139953659270643419, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55286, | |
"target": "151.101.36.249", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "151.101.36.249", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -5764246959628013532, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55287, | |
"target": "151.101.36.249", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6290365764412496415, | |
"proto": "DNS", | |
"query": "b'static1.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55285, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 898107138989358286, | |
"proto": "HTTP", | |
"source": "151.101.36.249", | |
"src_ip": "151.101.36.249", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55286, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 4796109061895891267, | |
"proto": "HTTP", | |
"source": "151.101.36.249", | |
"src_ip": "151.101.36.249", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55287, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -2787651121829706116, | |
"proto": "HTTP", | |
"source": "151.101.36.249", | |
"src_ip": "151.101.36.249", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 4537951340516222235, | |
"proto": "DNS", | |
"query": "b'static2.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 8461394961313762282, | |
"proto": "DNS", | |
"query": "b'static3.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55282, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 179701767753324639, | |
"proto": "HTTP", | |
"source": "54.243.122.10", | |
"src_ip": "54.243.122.10", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55284, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5068972340078916925, | |
"proto": "HTTP", | |
"source": "54.243.122.10", | |
"src_ip": "54.243.122.10", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55283, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 3070736269636933224, | |
"proto": "HTTP", | |
"source": "54.243.122.10", | |
"src_ip": "54.243.122.10", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -3164335583619524858, | |
"proto": "DNS", | |
"query": "b'stats.persgroep.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1571356599235127249, | |
"proto": "DNS", | |
"query": "b'static0.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1805763746868295779, | |
"proto": "DNS", | |
"query": "b'platform.twitter.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 2265167465213187494, | |
"proto": "DNS", | |
"query": "b'stats.persgroep.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "146.185.55.70", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6662120728532828801, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55306, | |
"target": "146.185.55.70", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -113116334234694543, | |
"proto": "DNS", | |
"query": "b'static0.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 7038529136806283843, | |
"proto": "DNS", | |
"query": "b'platform.twitter.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "93.184.220.66", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -1226545543789984875, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55308, | |
"target": "93.184.220.66", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55306, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -3650625104584567913, | |
"proto": "HTTP", | |
"source": "146.185.55.70", | |
"src_ip": "146.185.55.70", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55308, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -5246600097143751211, | |
"proto": "HTTP", | |
"source": "93.184.220.66", | |
"src_ip": "93.184.220.66", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "93.184.220.66", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -1187731488431508746, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55309, | |
"target": "93.184.220.66", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55309, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -1928353832534461322, | |
"proto": "HTTP", | |
"source": "93.184.220.66", | |
"src_ip": "93.184.220.66", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 5083712583838972447, | |
"proto": "DNS", | |
"query": "b'www.googletagservices.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -7177067847218356545, | |
"proto": "DNS", | |
"query": "b'www.googletagservices.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -8667157679978582090, | |
"proto": "DNS", | |
"query": "b'securepubads.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 4138760080008786449, | |
"proto": "DNS", | |
"query": "b'mab.chartbeat.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 4246548449774420374, | |
"proto": "DNS", | |
"query": "b'securepubads.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "172.217.17.130", | |
"has_ip_layer": true, | |
"id": 794906793122348811, | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "172.217.17.130", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "172.217.17.130", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 4835000024261071188, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55316, | |
"target": "172.217.17.130", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -4803907721024136655, | |
"proto": "DNS", | |
"query": "b'mab.chartbeat.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "151.101.36.249", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -2727674154958841618, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55317, | |
"target": "151.101.36.249", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55316, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 2107937612452716180, | |
"proto": "HTTP", | |
"source": "172.217.17.130", | |
"src_ip": "172.217.17.130", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -2895290904555859109, | |
"source": "172.217.17.130", | |
"src_ip": "172.217.17.130", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55317, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 1885872926002841454, | |
"proto": "HTTP", | |
"source": "151.101.36.249", | |
"src_ip": "151.101.36.249", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1242774536582056560, | |
"proto": "DNS", | |
"query": "b'www.googletagmanager.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 3264899520301970930, | |
"proto": "DNS", | |
"query": "b'connect.facebook.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 8753891265571204048, | |
"proto": "DNS", | |
"query": "b'www.googletagmanager.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 3730288452483761396, | |
"proto": "DNS", | |
"query": "b'ls.hit.gemius.pl.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -5372770324360591534, | |
"proto": "DNS", | |
"query": "b'connect.facebook.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6792080122955317332, | |
"proto": "DNS", | |
"query": "b'ls.hit.gemius.pl.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "85.232.230.228", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 4746267239066192242, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55321, | |
"target": "85.232.230.228", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "85.232.230.228", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 2348048257649218655, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55322, | |
"target": "85.232.230.228", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -1827055475664400243, | |
"proto": "DNS", | |
"query": "b'gabe.hit.gemius.pl.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 6103233338430540890, | |
"proto": "DNS", | |
"query": "b'www.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -3957176823703805459, | |
"proto": "DNS", | |
"query": "b'gabe.hit.gemius.pl.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "178.32.203.38", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 2969056234774497296, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55323, | |
"target": "178.32.203.38", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55322, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 1510409293071130999, | |
"proto": "HTTP", | |
"source": "85.232.230.228", | |
"src_ip": "85.232.230.228", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55321, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -4040589978754118670, | |
"proto": "HTTP", | |
"source": "85.232.230.228", | |
"src_ip": "85.232.230.228", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -1532419388146627142, | |
"proto": "DNS", | |
"query": "b'www.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55323, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -5526895901302044800, | |
"proto": "HTTP", | |
"source": "178.32.203.38", | |
"src_ip": "178.32.203.38", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -1749205292905064078, | |
"proto": "DNS", | |
"query": "b'staticxx.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -6152045736706071342, | |
"proto": "DNS", | |
"query": "b'staticxx.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 4229981731378606313, | |
"proto": "DNS", | |
"query": "b'dnn506yrbagrg.cloudfront.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -3117908827465541431, | |
"proto": "DNS", | |
"query": "b'dnn506yrbagrg.cloudfront.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.192.129.237", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 7939917397986245019, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55326, | |
"target": "54.192.129.237", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "216.58.212.142", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 4049806815732724266, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55114, | |
"target": "216.58.212.142", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55326, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -9127440408207484165, | |
"proto": "HTTP", | |
"source": "54.192.129.237", | |
"src_ip": "54.192.129.237", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55114, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 6093884409695536618, | |
"proto": "HTTP", | |
"source": "216.58.212.142", | |
"src_ip": "216.58.212.142", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -8579924527480856470, | |
"proto": "DNS", | |
"query": "b'stats.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 1467860144995267850, | |
"proto": "DNS", | |
"query": "b'stats.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -6832901508324305876, | |
"proto": "DNS", | |
"query": "b'ad.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 2833132583601400908, | |
"proto": "DNS", | |
"query": "b'ad.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "216.58.212.134", | |
"has_ip_layer": true, | |
"id": -102735038075911613, | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "216.58.212.134", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "216.58.212.134", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -2138912543306758584, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55328, | |
"target": "216.58.212.134", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -3046648916901741621, | |
"source": "216.58.212.134", | |
"src_ip": "216.58.212.134", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55328, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7564674333951281768, | |
"proto": "HTTP", | |
"source": "216.58.212.134", | |
"src_ip": "216.58.212.134", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -6522204292187894309, | |
"proto": "DNS", | |
"query": "b'abonnement.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -5402547728563715749, | |
"proto": "DNS", | |
"query": "b'krant.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -5527148082595850266, | |
"proto": "DNS", | |
"query": "b'twitter.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 2137114158387621691, | |
"proto": "DNS", | |
"query": "b'abonnement.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 2113197090353504955, | |
"proto": "DNS", | |
"query": "b'krant.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8402628672246784058, | |
"proto": "DNS", | |
"query": "b'twitter.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -3545228050006493417, | |
"proto": "DNS", | |
"query": "b'code.createjs.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -9168965613382442221, | |
"proto": "DNS", | |
"query": "b's0.2mdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1128449726930231119, | |
"proto": "DNS", | |
"query": "b'googleads4.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 3079794633119037687, | |
"proto": "DNS", | |
"query": "b'code.createjs.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -603476360887226061, | |
"proto": "DNS", | |
"query": "b's0.2mdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -7810206636746332369, | |
"proto": "DNS", | |
"query": "b'googleads4.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "172.217.17.34", | |
"has_ip_layer": true, | |
"id": -7032076786843456445, | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "172.217.17.34", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "172.217.17.34", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -8775285405093950937, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55329, | |
"target": "172.217.17.34", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 3786196320950696664, | |
"proto": "DNS", | |
"query": "b'adclick.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 2908334927886099479, | |
"proto": "DNS", | |
"query": "b's.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6415632926146975659, | |
"source": "172.217.17.34", | |
"src_ip": "172.217.17.34", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -1383355362948560045, | |
"proto": "DNS", | |
"query": "b'a.scorecardresearch.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -4195905941861577672, | |
"proto": "DNS", | |
"query": "b'adclick.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55329, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -481246957641225321, | |
"proto": "HTTP", | |
"source": "172.217.17.34", | |
"src_ip": "172.217.17.34", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 9093875269604150263, | |
"proto": "DNS", | |
"query": "b's.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8956929183833182221, | |
"proto": "DNS", | |
"query": "b'a.scorecardresearch.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "4.16.75.48", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 8567563243277471095, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55330, | |
"target": "4.16.75.48", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 5725766675301663942, | |
"proto": "DNS", | |
"query": "b'ads-colruytgroup.adhese.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 956957751551128294, | |
"proto": "DNS", | |
"query": "b'ads-colruytgroup.adhese.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "37.72.160.15", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 7792844110086750328, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55331, | |
"target": "37.72.160.15", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55331, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5144100644613628968, | |
"proto": "HTTP", | |
"source": "37.72.160.15", | |
"src_ip": "37.72.160.15", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55330, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -50070650187986289, | |
"proto": "HTTP", | |
"source": "4.16.75.48", | |
"src_ip": "4.16.75.48", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -34597043007036585, | |
"proto": "DNS", | |
"query": "b'hln.ipaperassets.persgroep.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -4892243536509496044, | |
"proto": "DNS", | |
"query": "b'ims.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8187260137576962889, | |
"proto": "DNS", | |
"query": "b'hln.ipaperassets.persgroep.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8534046553640354508, | |
"proto": "DNS", | |
"query": "b'ims.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 8972666947927025616, | |
"proto": "DNS", | |
"query": "b'clicks-colruytgroup.adhese.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 7087312031784515184, | |
"proto": "DNS", | |
"query": "b'clicks-colruytgroup.adhese.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -2665699843004223561, | |
"proto": "DNS", | |
"query": "b'happy-fall.goedgevoel.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 295166311920972887, | |
"proto": "DNS", | |
"query": "b'happy-fall.goedgevoel.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 8231297559847307103, | |
"proto": "DNS", | |
"query": "b'ads.persgroep.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -8166527248164903489, | |
"proto": "DNS", | |
"query": "b'fonts.googleapis.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 7827240254163243892, | |
"proto": "DNS", | |
"query": "b'bam.nr-data.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8885083761330911873, | |
"proto": "DNS", | |
"query": "b'ads.persgroep.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -2458099154627905878, | |
"proto": "DNS", | |
"query": "b'js-agent.newrelic.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.230.128.122", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -5561437204883150064, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55040, | |
"target": "54.230.128.122", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6447810422558287647, | |
"proto": "DNS", | |
"query": "b'fonts.googleapis.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 8211616583856560815, | |
"proto": "DNS", | |
"query": "b'realocdn.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 2870351502497677012, | |
"proto": "DNS", | |
"query": "b'bam.nr-data.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55040, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7370836668216037608, | |
"proto": "HTTP", | |
"source": "54.230.128.122", | |
"src_ip": "54.230.128.122", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -8255757657438524705, | |
"proto": "DNS", | |
"query": "b'widget.realo.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -6538072270765596982, | |
"proto": "DNS", | |
"query": "b'js-agent.newrelic.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "162.247.242.20", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6686377957182619421, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55342, | |
"target": "162.247.242.20", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "162.247.242.20", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 7852266559689637740, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55343, | |
"target": "162.247.242.20", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1521995097242743518, | |
"proto": "DNS", | |
"query": "b'api.trackuity.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "151.101.36.207", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -392813273584343439, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55344, | |
"target": "151.101.36.207", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "151.101.36.207", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 8958365933083623826, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55345, | |
"target": "151.101.36.207", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 8760603667251361999, | |
"proto": "DNS", | |
"query": "b'realocdn.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1933071529223380645, | |
"proto": "DNS", | |
"query": "b'antwerpen.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "104.25.33.15", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 7688529039965487306, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55346, | |
"target": "104.25.33.15", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55344, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6624115745905139719, | |
"proto": "HTTP", | |
"source": "151.101.36.207", | |
"src_ip": "151.101.36.207", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -2123391614482177281, | |
"proto": "DNS", | |
"query": "b'widget.realo.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -8812692122347724655, | |
"proto": "DNS", | |
"query": "b'm.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55345, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 3761051641426963914, | |
"proto": "HTTP", | |
"source": "151.101.36.207", | |
"src_ip": "151.101.36.207", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.246.198.243", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -9120005074761576784, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55347, | |
"target": "54.246.198.243", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.246.198.243", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7827989793551262555, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55348, | |
"target": "54.246.198.243", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.246.198.243", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 7265758378156727110, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55349, | |
"target": "54.246.198.243", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 8277956421331144958, | |
"proto": "DNS", | |
"query": "b'api.trackuity.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -8710286983847915848, | |
"proto": "DNS", | |
"query": "b'oost-vlaanderen.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55346, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 3401709333125129234, | |
"proto": "HTTP", | |
"source": "104.25.33.15", | |
"src_ip": "104.25.33.15", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "104.155.92.178", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -8316181414994674378, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55350, | |
"target": "104.155.92.178", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "104.155.92.178", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -8450340712416526979, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55351, | |
"target": "104.155.92.178", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 4907229566523609093, | |
"proto": "DNS", | |
"query": "b'antwerpen.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -4760988619066096053, | |
"proto": "DNS", | |
"query": "b'regiojobs.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -1709974474705903951, | |
"proto": "DNS", | |
"query": "b'm.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -1445859267074991258, | |
"proto": "DNS", | |
"query": "b'googleads.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55349, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -187660183352863186, | |
"proto": "HTTP", | |
"source": "54.246.198.243", | |
"src_ip": "54.246.198.243", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55347, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 2670325608250149208, | |
"proto": "HTTP", | |
"source": "54.246.198.243", | |
"src_ip": "54.246.198.243", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55348, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -949377567869919283, | |
"proto": "HTTP", | |
"source": "54.246.198.243", | |
"src_ip": "54.246.198.243", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -6340888792206507176, | |
"proto": "DNS", | |
"query": "b'oost-vlaanderen.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -8778694358917091119, | |
"proto": "DNS", | |
"query": "b's1.adformdsp.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55351, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -4450196428509135163, | |
"proto": "HTTP", | |
"source": "104.155.92.178", | |
"src_ip": "104.155.92.178", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55350, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -4617904502110463954, | |
"proto": "HTTP", | |
"source": "104.155.92.178", | |
"src_ip": "104.155.92.178", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -3163014472242603989, | |
"proto": "DNS", | |
"query": "b'regiojobs.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 490866372981798707, | |
"proto": "DNS", | |
"query": "b'server.adformdsp.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -6884331099313910657, | |
"proto": "DNS", | |
"query": "b't.co.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 9198241866879737158, | |
"proto": "DNS", | |
"query": "b'googleads.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 3029239110213728775, | |
"proto": "DNS", | |
"query": "b'd2lv4zbk7v5f93.cloudfront.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 1907001998871957361, | |
"proto": "DNS", | |
"query": "b's1.adformdsp.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "37.157.2.30", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5430544720154868738, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55354, | |
"target": "37.157.2.30", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "37.157.2.30", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -467159388375554695, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55355, | |
"target": "37.157.2.30", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "37.157.2.30", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 4503041696082702388, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55356, | |
"target": "37.157.2.30", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 4205748710976465171, | |
"proto": "DNS", | |
"query": "b'server.adformdsp.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1735285469571448614, | |
"proto": "DNS", | |
"query": "b'bid.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 3437611416635962463, | |
"proto": "DNS", | |
"query": "b't.co.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -5894708498031672909, | |
"proto": "DNS", | |
"query": "b'cm.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "199.16.156.11", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7918231832790498410, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55357, | |
"target": "199.16.156.11", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55342, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -4640975786226443573, | |
"proto": "HTTP", | |
"source": "162.247.242.20", | |
"src_ip": "162.247.242.20", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55343, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -5712242102041455164, | |
"proto": "HTTP", | |
"source": "162.247.242.20", | |
"src_ip": "162.247.242.20", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55354, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -3104300124814028806, | |
"proto": "HTTP", | |
"source": "37.157.2.30", | |
"src_ip": "37.157.2.30", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55355, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 7925783335720089969, | |
"proto": "HTTP", | |
"source": "37.157.2.30", | |
"src_ip": "37.157.2.30", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55356, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6167932950238738580, | |
"proto": "HTTP", | |
"source": "37.157.2.30", | |
"src_ip": "37.157.2.30", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "152.115.75.218", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -4098900730205562226, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55358, | |
"target": "152.115.75.218", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "152.115.75.218", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5889668579221068949, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55359, | |
"target": "152.115.75.218", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "152.115.75.218", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -3474801678798670736, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55360, | |
"target": "152.115.75.218", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "152.115.75.218", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6774923685034117089, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55361, | |
"target": "152.115.75.218", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 1490171479627237543, | |
"proto": "DNS", | |
"query": "b'd2lv4zbk7v5f93.cloudfront.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1281664048363087753, | |
"proto": "DNS", | |
"query": "b'tpc.googlesyndication.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.192.129.18", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -505973695238093657, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55362, | |
"target": "54.192.129.18", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8207365884179816314, | |
"proto": "DNS", | |
"query": "b'bid.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 2728544676301146856, | |
"proto": "DNS", | |
"query": "b'tags.bluekai.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "74.125.143.154", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -1089729109685259439, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55363, | |
"target": "74.125.143.154", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55362, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 8068184117493778255, | |
"proto": "HTTP", | |
"source": "54.192.129.18", | |
"src_ip": "54.192.129.18", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -3381099200143230573, | |
"proto": "DNS", | |
"query": "b'cm.g.doubleclick.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -5156435737817243945, | |
"proto": "DNS", | |
"query": "b'vlaams-brabant.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55358, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -789700470173259578, | |
"proto": "HTTP", | |
"source": "152.115.75.218", | |
"src_ip": "152.115.75.218", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55359, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5543314810535751933, | |
"proto": "HTTP", | |
"source": "152.115.75.218", | |
"src_ip": "152.115.75.218", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55360, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -1720474820514146360, | |
"proto": "HTTP", | |
"source": "152.115.75.218", | |
"src_ip": "152.115.75.218", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55361, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5693115651855205031, | |
"proto": "HTTP", | |
"source": "152.115.75.218", | |
"src_ip": "152.115.75.218", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "104.155.92.178", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6700053316335772540, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55364, | |
"target": "104.155.92.178", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55363, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -3035214724371492455, | |
"proto": "HTTP", | |
"source": "74.125.143.154", | |
"src_ip": "74.125.143.154", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -1886125354691045847, | |
"proto": "DNS", | |
"query": "b'tpc.googlesyndication.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -684371863675261399, | |
"proto": "DNS", | |
"query": "b'1-edge-chat.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55364, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 2970850057656137556, | |
"proto": "HTTP", | |
"source": "104.155.92.178", | |
"src_ip": "104.155.92.178", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -1829968406097388344, | |
"proto": "DNS", | |
"query": "b'tags.bluekai.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -3735383172846332005, | |
"proto": "DNS", | |
"query": "b'4-edge-chat.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "169.47.30.64", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -5541148327505427989, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55366, | |
"target": "169.47.30.64", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "169.47.30.64", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6446769455293051596, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55367, | |
"target": "169.47.30.64", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8842007203225621961, | |
"proto": "DNS", | |
"query": "b'vlaams-brabant.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1996719159793671105, | |
"proto": "DNS", | |
"query": "b'external-bru2-1.xx.fbcdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -2444466493726044279, | |
"proto": "DNS", | |
"query": "b'1-edge-chat.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 7554387860771403629, | |
"proto": "DNS", | |
"query": "b'analytics.twitter.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -2887689676312471173, | |
"proto": "DNS", | |
"query": "b'4-edge-chat.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55357, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -723972036338903978, | |
"proto": "HTTP", | |
"source": "199.16.156.11", | |
"src_ip": "199.16.156.11", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -7593406389070061888, | |
"proto": "DNS", | |
"query": "b'pixel.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 3117165085819788577, | |
"proto": "DNS", | |
"query": "b'external-bru2-1.xx.fbcdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -3834026040593752681, | |
"proto": "DNS", | |
"query": "b'scontent-bru2-1.xx.fbcdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 1278262547507100685, | |
"proto": "DNS", | |
"query": "b'analytics.twitter.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 5380037707308074438, | |
"proto": "DNS", | |
"query": "b'video-bru2-1.xx.fbcdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -214707483921866889, | |
"proto": "DNS", | |
"query": "b'scontent-bru2-1.xx.fbcdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "199.16.156.105", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7973171257146498495, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55371, | |
"target": "199.16.156.105", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -9030891246841308271, | |
"proto": "DNS", | |
"query": "b'scontent-ams3-1.xx.fbcdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -4101429823231291360, | |
"proto": "DNS", | |
"query": "b'pixel.facebook.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -9157309718827572034, | |
"proto": "DNS", | |
"query": "b'ajax.googleapis.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -5433822377902699034, | |
"proto": "DNS", | |
"query": "b'video-bru2-1.xx.fbcdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -3079108684881508850, | |
"proto": "DNS", | |
"query": "b'cdn.trackuity.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 4617108424465392561, | |
"proto": "DNS", | |
"query": "b'scontent-ams3-1.xx.fbcdn.net.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 7378037593089382904, | |
"proto": "DNS", | |
"query": "b'hcdn.trackuity.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8671523446138685922, | |
"proto": "DNS", | |
"query": "b'ajax.googleapis.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -2734468843345100178, | |
"proto": "DNS", | |
"query": "b'static.trackuity.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -7494565150475716754, | |
"proto": "DNS", | |
"query": "b'cdn.trackuity.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -3450887774091159986, | |
"proto": "DNS", | |
"query": "b'widget.spaargids.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6974482066694223896, | |
"proto": "DNS", | |
"query": "b'hcdn.trackuity.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55367, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7063633488579818964, | |
"proto": "HTTP", | |
"source": "169.47.30.64", | |
"src_ip": "169.47.30.64", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55366, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 4513186383137192499, | |
"proto": "HTTP", | |
"source": "169.47.30.64", | |
"src_ip": "169.47.30.64", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 4348326072206411534, | |
"proto": "DNS", | |
"query": "b'static.trackuity.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 8965020514709342713, | |
"proto": "DNS", | |
"query": "b'west-vlaanderen.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -2612647372619494037, | |
"proto": "DNS", | |
"query": "b'www.goedgevoel.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8091764774447186386, | |
"proto": "DNS", | |
"query": "b'widget.spaargids.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1226592791252487720, | |
"proto": "DNS", | |
"query": "b'fonts.gstatic.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "104.155.68.238", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 6628221823770114210, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55385, | |
"target": "104.155.68.238", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "104.155.68.238", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -1867142455117592241, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55386, | |
"target": "104.155.68.238", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "104.155.68.238", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -8338913180524526024, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55387, | |
"target": "104.155.68.238", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6844046733523243545, | |
"proto": "DNS", | |
"query": "b'west-vlaanderen.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 8200533762150308375, | |
"proto": "DNS", | |
"query": "b'caps.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -5239129877808983541, | |
"proto": "DNS", | |
"query": "b'www.goedgevoel.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 924136209806038934, | |
"proto": "DNS", | |
"query": "b'maps.gstatic.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55371, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7876017156982336287, | |
"proto": "HTTP", | |
"source": "199.16.156.105", | |
"src_ip": "199.16.156.105", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 3382193327581321608, | |
"proto": "DNS", | |
"query": "b'fonts.gstatic.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -3781873809154408794, | |
"proto": "DNS", | |
"query": "b'www.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55386, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -437813967136596297, | |
"proto": "HTTP", | |
"source": "104.155.68.238", | |
"src_ip": "104.155.68.238", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55385, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -364545864386539982, | |
"proto": "HTTP", | |
"source": "104.155.68.238", | |
"src_ip": "104.155.68.238", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55387, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 8665493148751372864, | |
"proto": "HTTP", | |
"source": "104.155.68.238", | |
"src_ip": "104.155.68.238", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 1418890295630324215, | |
"proto": "DNS", | |
"query": "b'caps.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 859523401035416324, | |
"proto": "DNS", | |
"query": "b'www.joepie.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 3293865190219167158, | |
"proto": "DNS", | |
"query": "b'maps.gstatic.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -8434668411808942209, | |
"proto": "DNS", | |
"query": "b'www.nina.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 480957552102242822, | |
"proto": "DNS", | |
"query": "b'www.goestingmagazine.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -2719874511315788696, | |
"proto": "DNS", | |
"query": "b'www.realo.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -7234285557920505436, | |
"proto": "DNS", | |
"query": "b'www.joepie.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 5728095371666619955, | |
"proto": "DNS", | |
"query": "b'www.budgetedbauer.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "216.58.212.134", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5682461454762386482, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55393, | |
"target": "216.58.212.134", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 2667800776324598111, | |
"proto": "DNS", | |
"query": "b'www.nina.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1753918086037032890, | |
"proto": "DNS", | |
"query": "b'www.vacature.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55393, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7702916000500170710, | |
"proto": "HTTP", | |
"source": "216.58.212.134", | |
"src_ip": "216.58.212.134", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -6846456040171363256, | |
"proto": "DNS", | |
"query": "b'www.realo.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 825706620973097371, | |
"proto": "DNS", | |
"query": "b'itunes.apple.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 3234500590586992147, | |
"proto": "DNS", | |
"query": "b'www.budgetedbauer.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 368013143539586803, | |
"proto": "DNS", | |
"query": "b'netto.tijd.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "52.29.181.203", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6160474903797721385, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55394, | |
"target": "52.29.181.203", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 4728660897861140058, | |
"proto": "DNS", | |
"query": "b'www.vacature.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 1505217588567212923, | |
"proto": "DNS", | |
"query": "b'itunes.apple.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -6470629661046143246, | |
"proto": "DNS", | |
"query": "b'play.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 517030657141223501, | |
"proto": "DNS", | |
"query": "b'www.7sur7.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55394, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 5310625651874764207, | |
"proto": "HTTP", | |
"source": "52.29.181.203", | |
"src_ip": "52.29.181.203", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -8240491023634393005, | |
"proto": "DNS", | |
"query": "b'netto.tijd.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -4923972881734108639, | |
"proto": "DNS", | |
"query": "b'www.ad.nl.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6518746965911994962, | |
"proto": "DNS", | |
"query": "b'play.google.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 8308962019628602401, | |
"proto": "DNS", | |
"query": "b'www.cim.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -3245441356571344339, | |
"proto": "DNS", | |
"query": "b'www.7sur7.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -688635995007598911, | |
"proto": "DNS", | |
"query": "b'www.ad.nl.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -4072894354808799228, | |
"proto": "DNS", | |
"query": "b'www.co2stats.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 8364919682094602433, | |
"proto": "DNS", | |
"query": "b'www.cim.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 4794706631416313788, | |
"proto": "DNS", | |
"query": "b'www.persgroep.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -6586054761906271581, | |
"proto": "DNS", | |
"query": "b'www.firstpharma.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6305233679224333476, | |
"proto": "DNS", | |
"query": "b'www.co2stats.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 7172201307362145884, | |
"proto": "DNS", | |
"query": "b'www.persgroep.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -3508301629063685117, | |
"proto": "DNS", | |
"query": "b'www.firstpharma.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 5450385266943075660, | |
"proto": "DNS", | |
"query": "b'www.fallingfalcon.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -121392304635627732, | |
"proto": "DNS", | |
"query": "b'www.fallingfalcon.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "52.33.219.196", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -78725731521784512, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55395, | |
"target": "52.33.219.196", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55395, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -3443584494404548904, | |
"proto": "HTTP", | |
"source": "52.33.219.196", | |
"src_ip": "52.33.219.196", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "224.0.0.1", | |
"has_ip_layer": true, | |
"id": 5283001171724394427, | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "224.0.0.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 2840933411370881518, | |
"proto": "DNS", | |
"query": "b'syndication.twitter.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 5531810672001562254, | |
"proto": "DNS", | |
"query": "b'syndication.twitter.com.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "199.16.156.52", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -7557866855636130840, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55400, | |
"target": "199.16.156.52", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -4367357527712347800, | |
"proto": "DNS", | |
"query": "b'uts.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 3747378117999045448, | |
"proto": "DNS", | |
"query": "b'uts.hln.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "146.185.53.42", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 1774911549937007599, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55401, | |
"target": "146.185.53.42", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55082, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 6728717640619785002, | |
"proto": "HTTP", | |
"source": "172.217.17.78", | |
"src_ip": "172.217.17.78", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "172.217.17.78", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -9103810312414805006, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55082, | |
"target": "172.217.17.78", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55401, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 6734934928426759375, | |
"proto": "HTTP", | |
"source": "146.185.53.42", | |
"src_ip": "146.185.53.42", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 1523604633623433933, | |
"proto": "DNS", | |
"query": "b'www.spaargids.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": -6927914143400297488, | |
"proto": "DNS", | |
"query": "b'www.topics.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 2362100862421894317, | |
"proto": "DNS", | |
"query": "b'www.spaargids.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": -1529028858963186352, | |
"proto": "DNS", | |
"query": "b'www.topics.be.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55400, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -2490917369363421056, | |
"proto": "HTTP", | |
"source": "199.16.156.52", | |
"src_ip": "199.16.156.52", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "224.0.0.251", | |
"has_ip_layer": true, | |
"id": -8955255266979224093, | |
"source": "192.168.1.8", | |
"src_ip": "192.168.1.8", | |
"target": "224.0.0.251", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.217.209.77", | |
"dst_port": 80, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -9078201489538597921, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55402, | |
"target": "54.217.209.77", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55402, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 1741042993753781143, | |
"proto": "HTTP", | |
"source": "54.217.209.77", | |
"src_ip": "54.217.209.77", | |
"src_port": 80, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "239.255.255.250", | |
"has_ip_layer": true, | |
"id": 7272474773247015651, | |
"source": "192.168.1.4", | |
"src_ip": "192.168.1.4", | |
"target": "239.255.255.250", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.1", | |
"has_ip_layer": true, | |
"id": 8554194096617605375, | |
"proto": "DNS", | |
"query": "b'lb._dns-sd._udp.home.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.1", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 6505955535424458975, | |
"proto": "DNS", | |
"query": "b'lb._dns-sd._udp.home.'", | |
"querytype": "DNSQR (Question Record)", | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "239.255.255.250", | |
"has_ip_layer": true, | |
"id": 3670820572260645859, | |
"source": "192.168.1.1", | |
"src_ip": "192.168.1.1", | |
"target": "239.255.255.250", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "54.247.160.73", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 703216998551858240, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55088, | |
"target": "54.247.160.73", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55088, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -8710101120930907032, | |
"proto": "HTTP", | |
"source": "54.247.160.73", | |
"src_ip": "54.247.160.73", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "173.194.79.189", | |
"has_ip_layer": true, | |
"id": -5182207329354825189, | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "173.194.79.189", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"has_ip_layer": true, | |
"id": 8495891450495848075, | |
"source": "173.194.79.189", | |
"src_ip": "173.194.79.189", | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "216.58.212.238", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -3075111412014146649, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 54337, | |
"target": "216.58.212.238", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 54337, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 6985265931420837079, | |
"proto": "HTTP", | |
"source": "216.58.212.238", | |
"src_ip": "216.58.212.238", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "255.255.255.255", | |
"has_ip_layer": true, | |
"id": 995844938391844259, | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "255.255.255.255", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.255", | |
"has_ip_layer": true, | |
"id": -3329417966712551941, | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "192.168.1.255", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "10.25.252.128", | |
"has_ip_layer": true, | |
"id": 1287706446252488043, | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"target": "10.25.252.128", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55115, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 1672635935008257825, | |
"proto": "HTTP", | |
"source": "104.18.32.186", | |
"src_ip": "104.18.32.186", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "104.18.32.186", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -4413757340425984079, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55115, | |
"target": "104.18.32.186", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "172.217.17.110", | |
"dst_port": 443, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": 2580361575301837313, | |
"proto": "HTTP", | |
"source": "192.168.1.5", | |
"src_ip": "192.168.1.5", | |
"src_port": 55155, | |
"target": "172.217.17.110", | |
"value": 1 | |
}, | |
{ | |
"dst_ip": "192.168.1.5", | |
"dst_port": 55155, | |
"has_ip_layer": true, | |
"has_tcp_layer": true, | |
"id": -6974431455323997495, | |
"proto": "HTTP", | |
"source": "172.217.17.110", | |
"src_ip": "172.217.17.110", | |
"src_port": 443, | |
"target": "192.168.1.5", | |
"value": 1 | |
} | |
], | |
"nodes": [ | |
{ | |
"group": 1, | |
"id": "192.168.1.5", | |
"value": 1931 | |
}, | |
{ | |
"group": 2, | |
"id": "224.0.0.251", | |
"value": 3 | |
}, | |
{ | |
"group": 2, | |
"id": "192.30.253.125", | |
"value": 4 | |
}, | |
{ | |
"group": 2, | |
"id": "169.55.74.57", | |
"value": 6 | |
}, | |
{ | |
"group": 2, | |
"id": "54.234.9.122", | |
"value": 12 | |
}, | |
{ | |
"group": 2, | |
"id": "91.198.174.208", | |
"value": 2 | |
}, | |
{ | |
"group": 2, | |
"id": "204.154.94.81", | |
"value": 5 | |
}, | |
{ | |
"group": 1, | |
"id": "192.168.1.1", | |
"value": 424 | |
}, | |
{ | |
"group": 2, | |
"id": "172.217.17.67", | |
"value": 308 | |
}, | |
{ | |
"group": 2, | |
"id": "172.217.17.110", | |
"value": 20 | |
}, | |
{ | |
"group": 2, | |
"id": "54.172.82.211", | |
"value": 28 | |
}, | |
{ | |
"group": 2, | |
"id": "62.4.254.174", | |
"value": 34 | |
}, | |
{ | |
"group": 2, | |
"id": "54.217.209.77", | |
"value": 40 | |
}, | |
{ | |
"group": 2, | |
"id": "151.101.36.175", | |
"value": 16 | |
}, | |
{ | |
"group": 2, | |
"id": "54.243.122.10", | |
"value": 13 | |
}, | |
{ | |
"group": 2, | |
"id": "151.101.36.249", | |
"value": 16 | |
}, | |
{ | |
"group": 2, | |
"id": "146.185.55.70", | |
"value": 11 | |
}, | |
{ | |
"group": 2, | |
"id": "93.184.220.66", | |
"value": 15 | |
}, | |
{ | |
"group": 2, | |
"id": "172.217.17.130", | |
"value": 58 | |
}, | |
{ | |
"group": 2, | |
"id": "85.232.230.228", | |
"value": 8 | |
}, | |
{ | |
"group": 2, | |
"id": "178.32.203.38", | |
"value": 10 | |
}, | |
{ | |
"group": 2, | |
"id": "54.192.129.237", | |
"value": 7 | |
}, | |
{ | |
"group": 2, | |
"id": "216.58.212.142", | |
"value": 44 | |
}, | |
{ | |
"group": 2, | |
"id": "216.58.212.134", | |
"value": 49 | |
}, | |
{ | |
"group": 2, | |
"id": "172.217.17.34", | |
"value": 33 | |
}, | |
{ | |
"group": 2, | |
"id": "4.16.75.48", | |
"value": 7 | |
}, | |
{ | |
"group": 2, | |
"id": "37.72.160.15", | |
"value": 14 | |
}, | |
{ | |
"group": 2, | |
"id": "54.230.128.122", | |
"value": 14 | |
}, | |
{ | |
"group": 2, | |
"id": "162.247.242.20", | |
"value": 10 | |
}, | |
{ | |
"group": 2, | |
"id": "151.101.36.207", | |
"value": 10 | |
}, | |
{ | |
"group": 2, | |
"id": "104.25.33.15", | |
"value": 271 | |
}, | |
{ | |
"group": 2, | |
"id": "54.246.198.243", | |
"value": 30 | |
}, | |
{ | |
"group": 2, | |
"id": "104.155.92.178", | |
"value": 55 | |
}, | |
{ | |
"group": 2, | |
"id": "37.157.2.30", | |
"value": 39 | |
}, | |
{ | |
"group": 2, | |
"id": "199.16.156.11", | |
"value": 9 | |
}, | |
{ | |
"group": 2, | |
"id": "152.115.75.218", | |
"value": 52 | |
}, | |
{ | |
"group": 2, | |
"id": "54.192.129.18", | |
"value": 7 | |
}, | |
{ | |
"group": 2, | |
"id": "74.125.143.154", | |
"value": 32 | |
}, | |
{ | |
"group": 2, | |
"id": "169.47.30.64", | |
"value": 47 | |
}, | |
{ | |
"group": 2, | |
"id": "199.16.156.105", | |
"value": 23 | |
}, | |
{ | |
"group": 2, | |
"id": "104.155.68.238", | |
"value": 34 | |
}, | |
{ | |
"group": 2, | |
"id": "52.29.181.203", | |
"value": 11 | |
}, | |
{ | |
"group": 2, | |
"id": "52.33.219.196", | |
"value": 11 | |
}, | |
{ | |
"group": 2, | |
"id": "224.0.0.1", | |
"value": 1 | |
}, | |
{ | |
"group": 2, | |
"id": "199.16.156.52", | |
"value": 23 | |
}, | |
{ | |
"group": 2, | |
"id": "146.185.53.42", | |
"value": 16 | |
}, | |
{ | |
"group": 2, | |
"id": "172.217.17.78", | |
"value": 7 | |
}, | |
{ | |
"group": 1, | |
"id": "192.168.1.8", | |
"value": 1 | |
}, | |
{ | |
"group": 1, | |
"id": "192.168.1.4", | |
"value": 1 | |
}, | |
{ | |
"group": 2, | |
"id": "239.255.255.250", | |
"value": 6 | |
}, | |
{ | |
"group": 2, | |
"id": "54.247.160.73", | |
"value": 6 | |
}, | |
{ | |
"group": 2, | |
"id": "173.194.79.189", | |
"value": 2 | |
}, | |
{ | |
"group": 2, | |
"id": "216.58.212.238", | |
"value": 19 | |
}, | |
{ | |
"group": 2, | |
"id": "255.255.255.255", | |
"value": 1 | |
}, | |
{ | |
"group": 1, | |
"id": "192.168.1.255", | |
"value": 2 | |
}, | |
{ | |
"group": 2, | |
"id": "10.25.252.128", | |
"value": 2 | |
}, | |
{ | |
"group": 2, | |
"id": "104.18.32.186", | |
"value": 18 | |
} | |
] | |
} |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment