Professional Documents
Culture Documents
Summary Report
Threat Analysis
Top Threats
Threat Category Level Score %
play.google.com Freeware and Software Downloads High 42330 25.1%
Failed Connection Attempt Firewall Control Low 33490 19.9%
edge-mqtt.facebook.com Social Networking High 9660 5.7%
data.mob.com Meaningless Content High 9570 5.7%
graph.facebook.com Social Networking High 8130 4.8%
facebook.com Social Networking High 7110 4.2%
lh3.googleusercontent.com Content Servers High 6870 4.1%
mqtt-mini.facebook.com Social Networking High 6810 4.0%
connect.facebook.net Social Networking High 6690 4.0%
cdnjs.cloudflare.com Content Servers High 5130 3.0%
secure.skypeassets.com Content Servers High 4140 2.5%
www.facebook.com Social Networking High 3750 2.2%
fna.fbcdn.net Social Networking High 3690 2.2%
graph.instagram.com Social Networking High 3330 2.0%
wg.spotify.com Internet Radio and TV High 3180 1.9%
csi.gstatic.com Content Servers High 3000 1.8%
musicimage.xboxlive.com Games High 3000 1.8%
157.240.14.15 Social Networking High 2850 1.7%
settings-ssl.xboxlive.com Games High 2820 1.7%
lithium.facebook.com Social Networking High 2790 1.7%
Total: 168340
Top Viruses
Virus Incidents %
W32/GenKryptik.CZCX!tr 1 100.0%
Total: 1
Top Attacks
No Data
Page 1
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
No Data
Page 2
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
Traffic Analysis
Traffic Trend
20,000,000
18,000,000
16,000,000
14,000,000
Traffic (MB)
12,000,000
10,000,000
8,000,000
6,000,000
4,000,000
2,000,000
0
00 01 02 03 04 05 06 07 08 09 10 11 12 13 14 15 16 17 18 19 20 21 22 23
2019-02-19 00:00 -- 2019-02-20 00:00
100%
update = 1 GB(0%)
Top Applications
Application Traffic(Sent/Received) % Session %
nfs 403.5 TB / 9.3 TB 99.4% 689 0.1%
tcp 57.3 GB / 2.2 TB 0.5% 49877 8.7%
https 7.8 GB / 49.9 GB 0.0% 311438 54.4%
rdp 4.7 GB / 13.1 GB 0.0% 57038 10.0%
dns 428.3 MB / 5.3 GB 0.0% 80791 14.1%
ssh 2.8 GB / 39.3 MB 0.0% 21 0.0%
http 644.5 MB / 1.3 GB 0.0% 15821 2.8%
udp 579.9 MB / 814 MB 0.0% 6459 1.1%
ms.windows.update 19 MB / 843.1 MB 0.0% 364 0.1%
smtp 464 MB / 19.7 MB 0.0% 21738 3.8%
imaps 300 MB / 138.8 MB 0.0% 619 0.1%
http.browser_chrome 11.1 MB / 189.9 MB 0.0% 2533 0.4%
microsoft.office.update 3.1 MB / 144.1 MB 0.0% 119 0.0%
siesacrm-produccion 9 MB / 100.9 MB 0.0% 1558 0.3%
microsoft.office.365.portal 1.8 MB / 93.2 MB 0.0% 101 0.0%
Page 3
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
Sent Received
Page 4
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
Sent Received
Top Source
Source Traffic(Sent/Received) % Session %
192.168.99.11 403.5 TB / 9.3 TB 99.4% 18268 3.2%
190.147.82.105 52.6 GB / 2.2 TB 0.5% 6650 1.2%
192.168.0.121 2.1 GB / 33.1 GB 0.0% 2094 0.4%
192.168.0.241-Administrador 2.9 GB / 6.2 GB 0.0% 3230 0.6%
192.168.40.5 4.2 GB / 1.4 GB 0.0% 1092 0.2%
186.147.44.166 153.6 MB / 4.1 GB 0.0% 78 0.0%
181.56.252.125 1.1 GB / 2.1 GB 0.0% 495 0.1%
192.168.0.155 690.2 MB / 2.1 GB 0.0% 4574 0.8%
192.168.0.139-jefe.compras 196.7 MB / 2.4 GB 0.0% 3204 0.6%
192.168.40.19-jefe.logistica 738.7 MB / 1.5 GB 0.0% 7695 1.4%
192.168.0.135-asistente.comercial 1.2 GB / 997.9 MB 0.0% 1319 0.2%
186.81.116.236 798.2 MB / 1.4 GB 0.0% 382 0.1%
192.168.0.239 605.4 MB / 1.5 GB 0.0% 5187 0.9%
192.168.35.2-suc.pradov 554.4 MB / 1.3 GB 0.0% 2736 0.5%
192.168.0.173-jefe.comercial 420.1 MB / 653.5 MB 0.0% 1941 0.3%
192.168.40.23 328.6 MB / 540.5 MB 0.0% 3467 0.6%
192.168.0.187 68.5 MB / 763.4 MB 0.0% 7267 1.3%
192.168.0.109 24.5 MB / 804.5 MB 0.0% 1406 0.2%
192.168.0.191-jefe.tesoreria 221.2 MB / 589.7 MB 0.0% 2833 0.5%
192.168.0.160-jefe.sistemas 393.1 MB / 408.5 MB 0.0% 6304 1.1%
Other 5.8 GB / 12.9 GB 0.0% 484333 85.8%
Total: 403.6 TB / 11.6 TB Total: 564555
Sent Received
Page 5
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
Sent Received
Top Destination
Destination Traffic(Sent/Received) % Session %
192.168.0.3 403.5 TB / 9.3 TB 99.4% 18244 4.0%
186.154.234.245 52.6 GB / 2.2 TB 0.5% 6503 1.4%
95.174.67.98 1.4 GB / 21.5 GB 0.0% 102 0.0%
186.154.234.242 4.7 GB / 13.3 GB 0.0% 73151 16.2%
13.249.87.129 90.8 MB / 6 GB 0.0% 27 0.0%
192.168.99.8 2.7 GB / 3.2 GB 0.0% 19343 4.3%
159.203.36.50 419.2 MB / 5.3 GB 0.0% 65 0.0%
178.79.173.113 272.2 MB / 5.4 GB 0.0% 53 0.0%
Page 6
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
Sent Received
Traffic by To Country
99.4%
Page 7
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
Web Activities
Most Visited Web Categories
Games = 231(3.4%)
Other = 1(0%)
Page 8
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
Page 9
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
aep.mxptint.net 10.4% 20
c.amazon-adsystem.com 8.3% 16
csi.gstatic.com 8.3% 16
Other 49.2% 95
asistente2.publicida 2.7% play.google.com 28.6% 52
csi.gstatic.com 18.1% 33
connect.facebook.net 11.0% 20
t4.ftcdn.net 9.9% 18
t3.ftcdn.net 4.9% 9
Other 27.5% 50
jefe.logistica 1.7% maxcdn.bootstrapcdn.com 19.7% 23
connect.facebook.net 16.2% 19
cdnjs.cloudflare.com 8.5% 10
platform.twitter.com 6.0% 7
doc-0k-a4-docs.googleusercontent.com 4.3% 5
Other 45.3% 53
suc.pradov 1.1% connect.facebook.net 16.2% 12
csi.gstatic.com 13.5% 10
s.ytimg.com 12.2% 9
s0.2mdn.net 10.8% 8
dsp.theadtech.com 8.1% 6
Other 39.2% 29
Other 0.8% 100% 52
Total: 6833
Visits
Page 10
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
VPN Analysis
VPN Bandwidth Usage Trend
100
90
80
70
Traffic (MB)
60
50
40
30
20
10
0
00 01 02 03 04 05 06 07 08 09 10 11 12 13 14 15 16 17 18 19 20 21 22 23
2019-02-19 00:00 -- 2019-02-20 00:00
Page 11
Device: PROPARTES (FG100D3G15814343), VDom: root
2019-02-19 00:00 - 2019-02-20 00:00
System Activity
Admin Session Summary
# User Login Interface Total # of Admin Total # of Config Total Duration
Sessions Changes
1 admin https(186.147.44.166) 2 2 1h 09m 58s
2 admin https(192.168.0.148) 1 0 20m 14s
Page 12