You are on page 1of 11

Device: Rectoria(FG100ETK18001080) , VDom: root

2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

Summary Report

Threat Analysis
Top Threats
Threat Category Level Score %
cloud. netflix.com urlfilter High 13800 31.9%
Failed Connection Attempt Firewall Control Low 10610 24.5%
Blocked Connection Attempts Firewall Control High 7740 17.9%
ftl. netflix.com urlfilter High 6570 15.2%
analytics. wildtangent.com Games High 1350 3.1%
ichnaea-web. netflix.com urlfilter High 1080 2.5%
click. inplayable.com Malicious Websites High 360 0.8%
www. netflix.com urlfilter High 360 0.8%
urlfilter High 300 0.7%
appboot.netflix.com
tapi. tuser.info Spam URLs High 300 0.7%
track. mob193.com Phishing High 180 0.4%
msg. netflix.com urlfilter High 120 0.3%
appboot. netflix.com urlfilter High 90 0.2%
servicelayer. king.com Games High 90 0.2%
akamai. steamstatic.com Games High 90 0.2%
mycafe-cdn. mgsn.it Games High 60 0.1%
api-global. netflix.com urlfilter High 60 0.1%
b1. 3gmimo.com Malicious Websites High 60 0.1%
mycafe-discovery. mgsn.it Games High 30 0.1%
Total: 43250

Top Viruses
No Data

Top Virus Victims


No Data

Top Attacks
No Data

Top Attack Victims


No Data

Top Spam by Source IP


No Data

Page 1
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

Top Data Leak by Rules


No Data

Top Data Leak by Source


No Data

Page 2
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

Traffic Analysis
Traffic Trend
3,500

3,000

2,500
Traffic (MB)

2,000

1,500

1,000

500

0
00 01 02 03 04 05 06 07 08 09 10 11 12 13 14 15 16 17 18 19 20 21 22 23
2020-02-17 00:00 -- 2020-02-18 00:00

Top Application Categories

14%

13.1%
unscanned = 6.7 GB(28%)
20.4%
collaboration = 4.9 GB(20.4%)

6.1% video/audio = 3.4 GB(14%)

social. media = 3.1 GB(13.1%)

update = 1.5 GB(6.1%)

Other = 4.4 GB(18.3%)


18.3%

28%

Top Applications
Application Traffic(Sent/Received) % Session %
http 113.4 MB / 6.5 GB 27.6% 4781 3.6%
instagram 80.3 MB / 2.7 GB 11.5% 3639 2.7%
skype_video 1.3 GB / 1.4 GB 11.4% 35 0.0%
youtube 44.5 MB / 1.9 GB 8.1% 2314 1.7%
udp 643.5 MB / 692.6 MB 5.4% 43 0.0%
netflix 26.8 MB / 1.2 GB 5.2% 276 0.2%
whatsapp_file.transfer 41.1 MB / 1.1 GB 4.6% 737 0.6%
ms.windows.update 21.4 MB / 1 GB 4.3% 1849 1.4%
https.browser 107.9 MB / 709.3 MB 3.3% 24706 18.5%
google.hangouts_video.call 276.2 MB / 482.7 MB 3.1% 15 0.0%
google.services 505.1 MB / 83.2 MB 2.4% 6630 5.0%
apple.icloud.storage 532.1 MB / 5.6 MB 2.2% 45 0.0%
apple.software.update 3.6 MB / 428.5 MB 1.8% 70 0.1%
facebook 19.3 MB / 243.9 MB 1.1% 4489 3.4%
google.accounts 11.6 MB / 249.4 MB 1.1% 4094 3.1%
gmail 61.9 MB / 91.5 MB 0.6% 1475 1.1%

Page 3
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

facebook_video.play 2.3 MB / 145.4 MB 0.6% 194 0.1%


google.play 123.4 MB / 19.8 MB 0.6% 3049 2.3%
http.browser_chrome 4.2 MB / 98.7 MB 0.4% 1583 1.2%
https 48.2 MB / 53.7 MB 0.4% 14443 10.8%
Other 152.1 MB / 858.7 MB 4.1% 59256 44.3%
Total: 4.1 GB / 19.9 GB Total: 133723

Sent Received

Top Applications Categories and Applications


Application Category % Application % Traffic
unscanned 28.0% http 98.4% 113.4 MB/6.5 GB
https 1.5% 48.1 MB/53.6 MB
dns 0.1% 1.1 MB/4 MB
collaboration 20.4% skype_video 56.0% 1.3 GB/1.4 GB
whatsapp_file.transfer 22.7% 41.1 MB/1.1 GB
google.hangouts_video.call 15.2% 276.2 MB/482.7 MB
skype 1.6% 7.2 MB/73.1 MB
microsoft.portal 1.2% 24.8 MB/33.9 MB
Other 3.3% 53.5 MB/113 MB
video/audio 14.0% youtube 57.8% 44.5 MB/1.9 GB
netflix 37.3% 26.8 MB/1.2 GB
facebook_video.play 4.3% 2.3 MB/145.4 MB
spotify 0.5% 4.3 MB/13 MB
http.video 0.0% 4 KB/352 KB
Other 0.0% 87 KB/199 KB
social.media 13.1% instagram 88.2% 80.3 MB/2.7 GB
facebook 8.2% 19.3 MB/243.9 MB
twitter 2.1% 2.6 MB/65.6 MB
snapchat 0.9% 1 MB/27 MB
linkedin 0.6% 3.1 MB/15.5 MB
Other 0.0% 78 KB/270 KB
update 6.1% ms.windows.update 70.9% 21.4 MB/1 GB
apple.software.update 28.8% 3.6 MB/428.5 MB
sophos.update 0.2% 643 KB/2 MB
root.certificate.url 0.1% 252 KB/1.2 MB
adobe.update 0.0% 30 KB/267 KB
Other 0.0% 38 KB/53 KB
unknown 5.4% udp 99.9% 643.5 MB/692.6 MB
tcp 0.0% 395 KB/84 KB
https 0.0% 120 KB/115 KB
http 0.0% 29 KB/24 KB
vdolive 0.0% 2 KB/1 KB
Other 0.0% 1 KB/1 KB
general.interest 4.7% google.services 51.0% 505.1 MB/83.2 MB
google.accounts 22.6% 11.6 MB/249.4 MB
google.play 12.4% 123.4 MB/19.8 MB
apple.store 4.4% 778 KB/49.6 MB
adobe.web 3.1% 930 KB/34.3 MB
Other 6.5% 12.4 MB/62.6 MB
web.client 3.9% https.browser 84.9% 107.9 MB/709.3 MB
http.browser_chrome 10.7% 4.2 MB/98.7 MB
http.browser_edge 4.1% 1.4 MB/37.7 MB
http.browser 0.3% 439 KB/2.3 MB

Page 4
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

google.data.saver 0.0% 73 KB/177 KB


Other 0.0% 9 KB/13 KB
storage.backup 2.4% apple.icloud.storage 89.9% 532.1 MB/5.6 MB
google.drive 7.3% 2.8 MB/40.7 MB
icloud 2.0% 7.3 MB/4.8 MB
onedrive 0.3% 199 KB/1.5 MB
slideshare 0.2% 72 KB/1.2 MB
Other 0.3% 1 MB/631 KB
email 1.2% gmail 53.1% 61.9 MB/91.5 MB
microsoft.outlook.office.365 22.7% 3.8 MB/61.9 MB
microsoft.outlook 12.7% 7.7 MB/28.9 MB
imaps 11.5% 1 MB/32.3 MB
yahoo.mail 0.0% 19 KB/91 KB
Other 0.0% 5 KB/18 KB
Other 0.7% 100% 13.3 MB/150.6 MB
Total: 4.1 GB/19.9 GB

Sent Received

Top Source
Source Traffic(Sent/Received) % Session %
2 GB / 2.3 GB 17.7% 5436 4.1%
10.0.1.31-arianny.benitez
80.2 MB / 1.6 GB 6.8% 5695 4.3%
10.0.1.119-gildania.grullon
10.0.1.22-gildania.grullon-iphone 555.5 MB / 982.6 MB 6.3% 1556 1.2%
39.8 MB / 1.3 GB 5.6% 3969 3.0%
10.0.1.28-yiskeidy.perez
20.2 MB / 1.2 GB 5.1% 309 0.2%
10.0.3.174
23.3 MB / 1.2 GB 5.0% 558 0.4%
10.0.3.48
418.3 MB / 789.5 MB 4.9% 6592 4.9%
10.0.1.58-mariano.soto
10.0.1.80-Deysi.sanchez-samsung galaxy 25.2 MB / 1 GB 4.4% 1842 1.4%
10.0.1.88-dionicio.sepulveda-iphone 34.5 MB / 760.9 MB 3.2% 4284 3.2%
13.7 MB / 749.9 MB 3.1% 777 0.6%
10.0.3.67
21.9 MB / 688.7 MB 2.9% 1969 1.5%
10.0.1.105-Francis.merino
10.0.1.93-dany.montero-windows 10 / 2016 26.2 MB / 607.6 MB 2.6% 7181 5.4%
29.7 MB / 542.8 MB 2.3% 2094 1.6%
10.0.1.72-vanesa.rodriguez
479.5 MB / 64.2 MB 2.2% 1091 0.8%
10.0.1.140-ariel.payano
5.2 MB / 461.5 MB 1.9% 106 0.1%
10.0.3.94
10.0.3.89 8.2 MB / 453.2 MB 1.9% 102 0.1%
50.3 MB / 320.5 MB 1.5% 7760 5.8%
10.0.1.69-michael.grullon
38.4 MB / 307.7 MB 1.4% 6185 4.6%
10.0.1.127-sabrina.rivas
39.5 MB / 266.7 MB 1.2% 8804 6.6%
10.0.1.65-diana.feliz
6.2 MB / 288.6 MB 1.2% 935 0.7%
10.0.1.48-juan.lopez
Other 236.3 MB / 4.2 GB 18.6% 66478 49.7%
Total: 4.1 GB / 19.9 GB Total: 133723

Sent Received

Top Sources and Applications


Source % Application % Traffic

Page 5
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

17.7% skype_video 64.4%


10.0.1.31-arianny.benitez 1.3 GB/1.4 GB
udp 30.7% 643.5 MB/692.6 MB
skype 1.7% 4.1 MB/70.7 MB
netflix 1.6% 2.8 MB/66.7 MB
https.browser 0.3% 4 MB/9.7 MB
Other 1.3% 12.6 MB/42.1 MB
6.9% youtube 47.8%
10.0.1.119-gildania.grullon 15.8 MB/792.2 MB
ms.windows.update 38.2% 13.1 MB/632.7 MB
whatsapp_file.transfer 4.4% 1.8 MB/72.4 MB
https.browser 3.7% 21.1 MB/42.2 MB
gmail 1.6% 21.1 MB/5.4 MB
Other 4.2% 7.6 MB/63.7 MB
10.0.1.22-gildania.grullon-iphone 6.3% apple.icloud.storage 34.0% 517.2 MB/5.4 MB
apple.software.update 27.9% 3.5 MB/425.3 MB
youtube 23.6% 7.9 MB/354.3 MB
instagram 11.1% 4.1 MB/166.6 MB
whatsapp_file.transfer 2.2% 10.1 MB/24.1 MB
Other 1.3% 12.7 MB/6.8 MB
5.6% instagram 90.5%
10.0.1.28-yiskeidy.perez 30 MB/1.2 GB
facebook 6.6% 3.7 MB/87.1 MB
whatsapp_file.transfer 1.4% 2.5 MB/16.4 MB
snapchat 0.8% 589 KB/10.4 MB
facebook_video.play 0.2% 56 KB/2.3 MB
Other 0.5% 3 MB/4 MB
5.1% http 100%
10.0.3.174 20.2 MB/1.2 GB
5.0% http 100%
10.0.3.48 23.3 MB/1.2 GB
4.9% google.hangouts_video.call 62.8%
10.0.1.58-mariano.soto 276.2 MB/482.7 MB
google.accounts 9.0% 3.2 MB/106 MB
https.browser 8.7% 12.9 MB/92.6 MB
google.play 8.3% 98.4 MB/2 MB
youtube 2.7% 1 MB/31.5 MB
Other 8.4% 26.6 MB/74.7 MB
10.0.1.80-Deysi.sanchez-samsung galaxy 4.4% netflix 91.9% 21 MB/976.9 MB
facebook_video.play 3.7% 656 KB/39.2 MB
facebook 1.0% 790 KB/10.4 MB
instagram 1.0% 320 KB/10.6 MB
whatsapp_file.transfer 1.0% 341 KB/10.4 MB
Other 1.4% 2.5 MB/12.9 MB
10.0.1.88-dionicio.sepulveda-iphone 3.2% instagram 84.2% 19.7 MB/649.8 MB
twitter 6.2% 1 MB/48.5 MB
whatsapp_file.transfer 4.4% 705 KB/34.4 MB
whatsapp 1.0% 6.4 MB/1.3 MB
snapchat 0.9% 168 KB/7.1 MB
Other 3.3% 6.5 MB/19.8 MB
3.1% http 100%
10.0.3.67 13.7 MB/749.9 MB
Other 37.8% 100% 941.3 MB/8.1 GB
Total: 4.1 GB/19.9 GB

Sent Received

Top Destination
Destination Traffic(Sent/Received) % Session %

Page 6
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

104.40.27.4 1.9 GB / 2.1 GB 17.2% 51 0.1%


13.107.4.50 23 MB / 1.8 GB 7.9% 849 1.0%
190.166.228.97 29.4 MB / 1.4 GB 6.0% 3261 3.8%
190.166.228.32 26.9 MB / 1.2 GB 5.3% 3203 3.8%
72.21.81.240 11.8 MB / 955.4 MB 4.0% 567 0.7%
74.125.250.21 276.2 MB / 482.7 MB 3.1% 15 0.0%
205.185.216.42 11.6 MB / 700.7 MB 3.0% 198 0.2%
205.185.216.10 8.6 MB / 523.7 MB 2.2% 193 0.2%
190.166.228.33 12.9 MB / 517.2 MB 2.2% 275 0.3%
173.194.29.108 7.2 MB / 330.2 MB 1.4% 14 0.0%
209.121.139.153 6.5 MB / 323.9 MB 1.4% 144 0.2%
17.253.15.205 2.5 MB / 308.6 MB 1.3% 33 0.0%
190.167.204.169 7.8 MB / 300.8 MB 1.3% 10 0.0%
17.132.9.11 254.7 MB / 2.6 MB 1.1% 16 0.0%
209.121.139.152 4.9 MB / 250.7 MB 1.1% 110 0.1%
190.167.241.239 3.8 MB / 247.4 MB 1.0% 173 0.2%
190.167.241.238 3.5 MB / 242.9 MB 1.0% 104 0.1%
190.167.231.148 4 MB / 232.4 MB 1.0% 7 0.0%
31.13.92.52 10.9 MB / 205 MB 0.9% 136 0.2%
207.224.234.120 1.9 MB / 213 MB 0.9% 13 0.0%
Other 1.3 GB / 7.4 GB 36.9% 75370 88.9%
Total: 4 GB / 19.6 GB Total: 84742

Sent Received

Traffic by To Country

83.1% Internal Network = 19.9 GB(83.1%)

United States = 3.1 GB(13.1%)

Netherlands Antilles = 359.8 MB(1.5%)

France = 171.6 MB(0.7%)

Japan = 146.2 MB(0.6%)


13.1% Other = 270.5 MB(1.1%)

Page 7
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

Web Activities
Most Visited Web Categories

91.5%

urlfilter = 746(91.5%)

Games = 54(6.6%)

Malicious Websites = 7(0.9%)

Spam URLs = 5(0.6%)

Phishing = 3(0.4%)

6.6%

Most Visited Websites


Web Site Visits % Estimated Browsing Time %
cloud. netflix.com 460 56.4% 00h 00m 00s N/A
ftl. netflix.com 219 26.9% 00h 00m 00s N/A
analytics. wildtangent.com 45 5.5% 00h 00m 00s N/A
ichnaea-web. netflix.com 36 4.4% 00h 00m 00s N/A
www. netflix.com 12 1.5% 00h 00m 00s N/A
10 1.2% 00h 00m 00s N/A
appboot.netflix.com
click. inplayable.com 6 0.7% 00h 00m 00s N/A
tapi. tuser.info 5 0.6% 00h 00m 00s N/A
msg. netflix.com 4 0.5% 00h 00m 00s N/A
track. mob193.com 3 0.4% 00h 00m 00s N/A
servicelayer. king.com 3 0.4% 00h 00m 00s N/A
appboot. netflix.com 3 0.4% 00h 00m 00s N/A
akamai. steamstatic.com 3 0.4% 00h 00m 00s N/A
mycafe-cdn. mgsn.it 2 0.2% 00h 00m 00s N/A
api-global. netflix.com 2 0.2% 00h 00m 00s N/A
mycafe-discovery. mgsn.it 1 0.1% 00h 00m 00s N/A
b1. 3gmimo.com 1 0.1% 00h 00m 00s N/A
Total: 815 Total: 00h 00m 00s

Most Active Web Users


User Visits % Estimated Browsing Time %
<N/A> 761 93.4% 00h 00m 00s N/A
walber.serrano 45 5.5% 00h 00m 00s N/A
ariel.payano 3 0.4% 00h 00m 00s N/A
reyes.caminero 3 0.4% 00h 00m 00s N/A
Deysi.sanchez 3 0.4% 00h 00m 00s N/A
Total: 815 Total: 00h 00m 00s

Most Visited Web Sites by Most Active Users

Page 8
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

User % Web Site % Visits Estimated Browsing


Time
<N/A> 93.4% cloud. netflix.com 60.4% 460 00h 00m 00s
ftl. netflix.com 28.8% 219 00h 00m 00s
ichnaea-web. netflix.com 4.7% 36 00h 00m 00s
www. netflix.com 1.6% 12 00h 00m 00s
android-appboot. netflix.com 1.3% 10 00h 00m 00s
Other 3.2% 24 00h 00m 00s
walber.serrano 5.5% analytics. wildtangent.com 100% 45 00h 00m 00s
ariel.payano 0.4% akamai. steamstatic.com 100% 3 00h 00m 00s
reyes.caminero 0.4% servicelayer. king.com 100% 3 00h 00m 00s
Deysi.sanchez 0.4% mycafe-cdn. mgsn.it 66.7% 2 00h 00m 00s
mycafe-discovery. mgsn.it 33.3% 1 00h 00m 00s
Total: 815

Visits

Page 9
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

VPN Analysis
VPN Bandwidth Usage Trend
100

90

80

70
Traffic (MB)

60

50

40

30

20

10

0
00 01 02 03 04 05 06 07 08 09 10 11 12 13 14 15 16 17 18 19 20 21 22 23
2020-02-17 00:00 -- 2020-02-18 00:00

Top Site to Site Tunnels by Bandwidth Usage


VPN Tunnel Traffic
isfodosu-vpn 0 KB

Sent Received

Top SSL and Dialup Users by Bandwidth Usage


No Data

Page 10
Device: Rectoria(FG100ETK18001080) , VDom: root
2020-02-17 00:00 - 2020-02-18 00:00 Canada/Atlantic

System Activity
Admin Session Summary
# User Login Interface Total # of Admin Total # of Config Total Duration
Sessions Changes
1 Rectoria https(172.25.4.201) 1 0 1h 58m 47s

Failed Admin Login Summary


No Data

Page 11

You might also like