DumpFile: 2018-03-20_win8.pcap FileSize: 166.95MB Id: 197001010100 StartTime: Thu Jan 1 01:00:12 1970 EndTime: Sun Feb 1 19:11:34 1970 TotalTime: 2743882.15 seconds TotalCapSize: 140.13MB CapLen: 1514 bytes # of packets: 1757954 (140.13MB) AvgRate: 2.14Kbps stddev:1.35K PeakRate: 498.16Kbps ### IP flow (unique src/dst pair) Information ### # of flows: 140 (avg. 12556.81 pkts/flow) Top 10 big flow size (bytes/total in %): 2.2% 1.2% 1.1% 0.9% 0.9% 0.8% 0.8% 0.8% 0.8% 0.6% ### IP address Information ### # of IPv4 addresses: 60 Top 10 bandwidth usage (bytes/total in %): 30.4% 23.0% 20.0% 18.3% 17.9% 15.2% 11.9% 10.0% 8.2% 8.0% ### Packet Size Distribution (including MAC headers) ### <<<< [ 32- 63]: 452100 [ 64- 127]: 1220271 [ 128- 255]: 66209 [ 256- 511]: 15945 [ 512- 1023]: 3301 [ 1024- 2047]: 128 >>>> ### Protocol Breakdown ### <<<< protocol packets bytes bytes/pkt ------------------------------------------------------------------------ [0] total 1757954 (100.00%) 146936446 (100.00%) 83.58 [1] ip 140911 ( 8.02%) 21906485 ( 14.91%) 155.46 [2] tcp 2362 ( 0.13%) 309973 ( 0.21%) 131.23 [3] ftpdata 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] ftp 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] ssh 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] telnet 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] smtp 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] name 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] dns 11 ( 0.00%) 1552 ( 0.00%) 141.09 [3] http(s) 166 ( 0.01%) 137728 ( 0.09%) 829.69 [3] http(c) 141 ( 0.01%) 31686 ( 0.02%) 224.72 [3] kerb5 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] pop3 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] sunrpc 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] ident 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] nntp 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] epmap 4 ( 0.00%) 280 ( 0.00%) 70.00 [3] netb-se 4 ( 0.00%) 280 ( 0.00%) 70.00 [3] imap 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] bgp 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] ldap 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] https 34 ( 0.00%) 10175 ( 0.01%) 299.26 [3] ms-ds 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] rlogin 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] rtsp 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] ldaps 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] socks 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] mssql-s 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] squid 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] ms-gc 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] ms-gcs 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] mysql 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] realaud 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] icecast 4 ( 0.00%) 280 ( 0.00%) 70.00 [3] gnu6346 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] irc6666 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] irc6667 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] irc6668 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] irc6669 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] napster 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] irc7000 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] http-a 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] http-tw 2 ( 0.00%) 128 ( 0.00%) 64.00 [3] other 1930 ( 0.11%) 123640 ( 0.08%) 64.06 [2] udp 105288 ( 5.99%) 19732934 ( 13.43%) 187.42 [3] dns 6 ( 0.00%) 789 ( 0.00%) 131.50 [3] sunrpc 1 ( 0.00%) 98 ( 0.00%) 98.00 [3] netb-ns 5854 ( 0.33%) 546216 ( 0.37%) 93.31 [3] netb-se 233 ( 0.01%) 54692 ( 0.04%) 234.73 [3] mcast 49006 ( 2.79%) 10679773 ( 7.27%) 217.93 [3] other 50188 ( 2.85%) 8451366 ( 5.75%) 168.39 [2] icmp 6 ( 0.00%) 816 ( 0.00%) 136.00 [2] igmp 33253 ( 1.89%) 1862626 ( 1.27%) 56.01 [2] pim 2 ( 0.00%) 136 ( 0.00%) 68.00 >>>>