Project

General

Profile

Support #1534 ยป fast.log

Ravin Goyal, 08/26/2015 07:32 AM

 
08/24/2015-10:10:02.819991 [**] [1:2522400:2313] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 201 [**] [Classification: Misc Attack] [Priority: 2] {TCP} 178.63.101.197:443 -> 10.1.1.101:47690
08/24/2015-10:21:53.277293 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42419
08/24/2015-10:21:53.348216 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:54.864256 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:54.953312 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:54.958431 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:54.963908 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:54.968826 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:55.196195 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:55.206364 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:55.243589 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:55.261226 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:21:55.263709 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:42418
08/24/2015-10:24:21.609724 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:24:25.911561 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:36bb:26ff:fe73:0944:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:25:00.316569 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:25:01.956286 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:a617:31ff:fef2:52db:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:25:05.442248 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:a617:31ff:fef2:52db:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:32:15.445666 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 74.125.215.81:443 -> 10.1.1.101:56942
08/24/2015-10:33:18.711952 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 74.125.214.112:443 -> 10.1.1.101:42125
08/24/2015-10:33:19.861401 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 74.125.214.112:443 -> 10.1.1.101:42134
08/24/2015-10:33:19.861323 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 74.125.214.112:443 -> 10.1.1.101:42132
08/24/2015-10:33:19.835816 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 74.125.214.112:443 -> 10.1.1.101:42131
08/24/2015-10:33:19.861382 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 74.125.214.112:443 -> 10.1.1.101:42133
08/24/2015-10:33:22.244237 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 74.125.214.112:443 -> 10.1.1.101:42138
08/24/2015-10:34:21.642331 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:34934 -> 216.58.220.2:443
08/24/2015-10:34:21.642313 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:34932 -> 216.58.220.2:443
08/24/2015-10:34:24.234978 [**] [1:2210044:1] SURICATA STREAM Packet with invalid timestamp [**] [Classification: (null)] [Priority: 3] {TCP} 74.125.214.112:443 -> 10.1.1.101:42123
08/24/2015-10:35:39.391151 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:35:39.400779 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:35:39.403876 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:35:39.411412 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:35:39.412646 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:35:49.219945 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:35:51.575135 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:35:53.315707 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:35:55.672166 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:35:57.309111 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:35.812619 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:36.119080 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:38.678484 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:41.238673 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:41.852734 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:58.033002 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:58.034363 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:58.036778 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:58.040286 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:36:58.545885 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:37:21.482866 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:37:21.685944 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ecf:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:37:21.688442 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ecf:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:37:21.890771 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ecf:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:37:21.893429 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ecf:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:37:24.041502 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:37:25.884686 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:37:34.690655 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:40:44.893077 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:34987 -> 216.58.196.174:443
08/24/2015-10:42:06.255058 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:06.257506 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:06.362219 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:06.663589 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:06.666061 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:06.868857 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:09.222542 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:09.838017 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:10.862024 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:a617:31ff:fef0:31ad:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:10.964475 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:a617:31ff:fef0:31ad:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:10.966931 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:a617:31ff:fef0:31ad:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:10.968327 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:a617:31ff:fef0:31ad:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-10:42:16.723588 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:53809 -> 173.194.33.79:443
08/24/2015-10:42:26.246037 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 173.194.14.86:443 -> 10.1.1.101:41500
08/24/2015-11:52:41.836039 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 141.101.114.59:80 -> 10.1.1.101:57009
08/24/2015-11:55:08.115062 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.120927 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.120999 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.127224 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.133188 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.193430 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.467476 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.473364 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.474949 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.506749 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.515840 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.524665 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.529151 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.568418 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.574163 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.715200 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.993839 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.999959 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:09.005903 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:09.063784 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.11:443 -> 10.1.1.101:51386
08/24/2015-11:55:08.976501 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:09.456437 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.057882 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.063719 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.070331 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.075532 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.081379 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.134101 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.139889 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.145736 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.151623 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.157354 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.275367 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.281733 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.288168 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.294167 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.299758 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.329599 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.336059 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.341951 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.350720 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:10.356674 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.173:443 -> 10.1.1.101:34426
08/24/2015-11:55:57.053886 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.83:443 -> 10.1.1.101:50068
08/24/2015-11:55:57.475066 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:443 -> 10.1.1.101:60318
08/24/2015-11:56:55.625499 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 216.58.220.4:443 -> 10.1.1.101:51185
08/24/2015-11:58:13.980140 [**] [1:2013504:4] ET POLICY GNU/Linux APT User-Agent Outbound likely related to package management [**] [Classification: Not Suspicious Traffic] [Priority: 3] {TCP} 10.1.1.101:33140 -> 128.61.240.89:80
08/24/2015-11:58:15.768310 [**] [1:2013504:4] ET POLICY GNU/Linux APT User-Agent Outbound likely related to package management [**] [Classification: Not Suspicious Traffic] [Priority: 3] {TCP} 10.1.1.101:33140 -> 128.61.240.89:80
08/24/2015-12:08:49.560419 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:08:50.686789 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:09:50.692666 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:09:54.071854 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:161a:a3ff:fe87:fb69:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:19:37.541921 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:19:37.544367 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:19:37.547445 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:19:37.549645 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:19:37.952442 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:33:26.874397 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:523c:c4ff:feb2:ce1f:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:36:49.725132 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:36:51.875518 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:36:52.182550 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:36:54.232108 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:37:01.398308 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:37:58.025003 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:37:58.027403 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:37:58.029761 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:37:58.033281 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:37:58.435716 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:43:06.349683 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:43:06.351946 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:43:06.355222 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:43:06.357719 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:43:06.861713 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:44:11.781714 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:44:13.113479 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:0273:8dff:fe6b:198e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:50:27.587276 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:50:37.212956 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:522e:5cff:fec1:a475:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:52:07.937456 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:52:12.341512 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3e43:8eff:fefb:20ae:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:54:26.791850 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:55:17.785345 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-12:56:02.840944 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:0273:8dff:fe6b:198e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:00:46.703640 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:44880 -> 216.58.220.14:443
08/24/2015-13:01:47.824355 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:01:53.250561 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:522e:5cff:fec1:a475:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:02:46.396050 [**] [1:2012887:3] ET POLICY Http Client Body contains pass= in cleartext [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54307 -> 107.182.173.10:80
08/24/2015-13:05:27.384727 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:60077 -> 216.58.196.3:443
08/24/2015-13:17:27.500106 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:34487 -> 216.58.220.46:443
08/24/2015-13:20:07.589463 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:20:07.591858 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:20:07.595054 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:20:07.597320 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:20:07.999962 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:26:42.030633 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:26:47.560192 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:36bb:26ff:fe73:0944:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:37:19.465098 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:37:22.741836 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:37:24.892267 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:37:29.909493 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:38:27.969894 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:38:27.972360 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:38:27.974782 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:38:27.978135 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:38:28.388084 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:39:01.724235 [**] [1:2210024:1] SURICATA STREAM ESTABLISHED SYNACK resend with different seq [**] [Classification: (null)] [Priority: 3] {TCP} 52.25.100.23:443 -> 10.1.1.101:56706
08/24/2015-13:39:11.223118 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.252.226.96:443 -> 10.1.1.101:37293
08/24/2015-13:39:11.248456 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.252.226.96:443 -> 10.1.1.101:37293
08/24/2015-13:39:11.509789 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.252.226.96:443 -> 10.1.1.101:37293
08/24/2015-13:39:12.870984 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:12.908750 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:12.921952 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:13.024507 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:13.031540 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:13.036023 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:13.046008 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:13.052266 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:13.058634 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:13.063555 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:13.072070 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:39:13.072133 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.19:443 -> 10.1.1.101:44191
08/24/2015-13:41:40.479326 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:45270 -> 216.58.220.14:443
08/24/2015-13:43:06.562162 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.568030 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.568079 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.574245 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.580106 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.586005 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.591896 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.598217 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.603450 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.609744 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:06.615848 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.17:80 -> 10.1.1.101:45856
08/24/2015-13:43:36.395643 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:43:36.398139 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:43:36.707168 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:43:36.709611 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:43:36.908734 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:44:00.766753 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:44:04.043389 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:44:06.194919 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:44:15.614406 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:ee88:92ff:fe77:a865:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:46:24.433866 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:d2e1:40ff:fe9d:d32e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:46:26.379511 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:d2e1:40ff:fe9d:d32e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:46:47.369887 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:46:47.472275 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:46:49.110629 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:2e81:58ff:feff:0a05:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:46:49.113143 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:2e81:58ff:feff:0a05:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:46:50.037655 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:2e81:58ff:feff:0a05:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:46:50.134642 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:2e81:58ff:feff:0a05:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:47:58.982884 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:47:59.991140 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:48:00.984586 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:48:01.984437 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:48:02.977551 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:48:03.986452 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:48:05.001953 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:48:05.987842 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:48:06.982262 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:48:07.982691 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:48:52.603897 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:48:57.826227 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:283e:68ff:fe12:63e0:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:50:13.908886 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:d2e1:40ff:fe9d:d32e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:50:14.936218 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:d2e1:40ff:fe9d:d32e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:50:49.952612 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:50:50.948665 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:50:51.957127 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:50:52.951681 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:50:53.951882 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:50:54.970262 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:50:55.954318 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:50:57.091318 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:50:57.990204 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:50:59.046101 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-13:56:28.996415 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-13:56:30.533499 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:0273:8dff:fe43:ad17:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:16:55.839855 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:17:03.519775 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:0273:8dff:fe6b:198e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:19:36.504042 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:19:45.617527 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:0273:8dff:fe43:872e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:20:37.636299 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:20:37.638573 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:20:37.641559 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:20:37.645052 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:20:37.947887 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:26:43.017719 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:26:44.020555 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:26:45.035105 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:26:46.112675 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:26:47.037552 [**] [1:99999998:4] ALERT test ICMP ping from 192.168.2.106 [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:04.756570 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:05.759572 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:06.770102 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:07.758310 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:08.783026 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:09.760777 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:10.762244 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:11.782495 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:12.766823 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:13.782148 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:14.763728 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:15.764357 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:16.764937 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:17.784633 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:29:18.786663 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.211.46:0 -> 10.1.1.101:0
08/24/2015-14:31:52.261479 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:31:53.264463 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:31:54.264079 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:31:55.265560 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:31:56.269015 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:31:57.268524 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:31:58.272979 [**] [1:99999998:4] ALERT test ICMP LLLLLL [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:32:26.173038 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:32:27.174931 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:32:28.174574 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:32:29.175695 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:32:30.177111 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:32:31.179420 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:32:32.179932 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:03.953573 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:04.948576 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:05.949583 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:06.949938 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:07.951801 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:08.950012 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:09.950376 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:10.951423 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:11.952891 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:12.951884 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:13.959713 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:14.963104 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:15.954228 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:16.953736 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:17.953930 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:18.956920 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:19.962936 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:20.956161 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:21.957623 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:22.960113 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:23.956545 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:24.957556 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:25.957423 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:26.958459 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:27.958142 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:28.961461 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:30.130821 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:30.959975 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:31.962061 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:33.209347 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:34.102235 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:36:35.024167 [**] [1:99999998:4] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 216.58.220.14:0 -> 10.1.1.101:0
08/24/2015-14:37:50.126746 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:37:53.505906 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:37:55.553877 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:38:02.311895 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:38:57.914593 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:38:57.916894 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:38:57.919214 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:38:57.922578 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:38:58.325277 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:40:00.173995 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:45370 -> 216.58.220.14:443
08/24/2015-14:40:57.254100 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:50348 -> 216.58.196.14:443
08/24/2015-14:41:24.857345 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:41:28.953299 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:161a:a3ff:fe87:fb69:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:44:06.340742 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:44:06.343134 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:44:06.652152 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:44:06.654446 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:44:06.853778 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3808:ce0c:2662:dfa7:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:44:25.796575 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:44:34.910097 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:522e:5cff:fec1:a475:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:44.161309 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:44.162747 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:44.167920 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:44.668123 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:45.277010 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:45.278304 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:45.587215 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:45.589429 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:45.686483 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:48.859951 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:48:58.075821 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:0273:8dff:fe43:ad17:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:53:03.014911 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:53:03.017176 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:53:03.424264 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:10a6:a17c:e84a:a048:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:53:04.448268 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:10a6:a17c:e84a:a048:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:53:05.984084 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:10a6:a17c:e84a:a048:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:53:06.803306 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:10a6:a17c:e84a:a048:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:55:44.293185 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-14:55:52.587508 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:36bb:26ff:fe76:fbed:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:04:25.058248 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:26.060357 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:27.062688 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:28.063665 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:29.065405 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:30.066063 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:31.069952 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:32.069345 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:33.070154 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:34.071952 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:35.072490 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:04:36.074777 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:21.754958 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:22.756723 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:23.758130 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:24.760440 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:25.761800 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:26.762622 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:27.767378 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:28.768678 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:29.770618 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:30.769421 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:31.773674 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:32.772933 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:33.774497 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:34.776516 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:35.778607 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:36.780289 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:37.783604 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:38.784319 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:39.784696 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:40.786168 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:41.786866 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:42.788091 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:10:43.792284 [**] [1:99999998:5] ALERT test ICMP BC [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.228:8 -> 10.1.1.101:0
08/24/2015-15:13:25.766854 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:25.766854 [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:26.767769 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:26.767769 [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:27.768685 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:27.768685 [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:28.853964 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:28.853964 [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:29.770768 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:29.770768 [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:30.771868 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:30.771868 [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:31.772974 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:31.772974 [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:32.774036 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:32.774036 [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.220.14:0
08/24/2015-15:13:42.284110 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:13:43.285035 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:13:44.286034 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:13:45.287028 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:13:46.288118 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:13:47.289191 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:13:48.290259 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:13:49.291222 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:13:50.291718 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:13:51.292812 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:14:24.744019 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:14:33.959982 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:36bb:26ff:fe76:fbed:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:14:57.191518 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:14:58.192116 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:14:59.192573 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:00.193284 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:01.194116 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:02.194906 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:03.195785 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:04.196906 [**] [1:99:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:29.597768 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:30.598421 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:31.598587 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:32.598756 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:33.599145 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:34.599569 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:35.599939 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:36.600694 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:37.601762 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:38.602856 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:15:39.603981 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:16:55.805479 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:16:56.806562 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:16:57.807432 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:16:58.808481 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:16:59.809604 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:17:00.810724 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:17:01.811840 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:17:02.812903 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:17:03.813267 [**] [1:99:5] ALERT test ICMP BCE [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 216.58.196.14:0
08/24/2015-15:17:41.469728 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:17:42.470860 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:17:43.471964 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:17:44.472135 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:17:45.473256 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:17:46.474318 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:17:47.475259 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:17:48.476396 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:17:49.477518 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:17:50.478673 [wDrop] [**] [1:999:5] ALERT test ICMP BCEH [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:16.473169 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:18:35.782113 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:36.783265 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:37.784418 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:38.785574 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:39.002679 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:0273:8dff:fe6b:198e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:18:39.785810 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:40.786703 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:41.787831 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:42.788917 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:43.790049 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:18:44.790943 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:27:17.736880 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 192.229.237.25:443 -> 10.1.1.101:51062
08/24/2015-15:38:14.705951 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.44.111:443 -> 10.1.1.101:43664
08/24/2015-15:38:14.698204 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.44.111:443 -> 10.1.1.101:43665
08/24/2015-15:38:14.811792 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.44.111:443 -> 10.1.1.101:43666
08/24/2015-15:38:19.764759 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:38:21.095960 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:38:25.294348 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:38:32.461922 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3640:b5ff:fe87:8ed3:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:39:27.859901 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:39:27.862258 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:39:27.864790 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:39:27.868263 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:43:28.092535 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:29.170067 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:30.094339 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:31.095394 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:32.096459 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:33.097568 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:34.098707 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:35.098929 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:36.100052 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:37.100503 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:43:38.101432 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:05.841993 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:06.842623 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:07.843306 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:08.843959 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:09.844461 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:10.845167 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:11.846164 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:12.846687 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:13.846997 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:14.847264 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:15.847883 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:16.848184 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:17.848497 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:18.848746 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:19.848959 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:20.849352 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:21.849671 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:22.849966 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:23.850156 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:47:24.850335 [wDrop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-15:48:57.313530 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 190.93.247.58:80 -> 10.1.1.101:60518
08/24/2015-15:48:57.338556 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 190.93.247.58:80 -> 10.1.1.101:60518
08/24/2015-15:49:00.928109 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 190.93.247.58:80 -> 10.1.1.101:60518
08/24/2015-15:49:00.933725 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 190.93.247.58:80 -> 10.1.1.101:60518
08/24/2015-15:49:00.941163 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 190.93.247.58:80 -> 10.1.1.101:60518
08/24/2015-15:49:03.570622 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 190.93.247.58:80 -> 10.1.1.101:60518
08/24/2015-15:49:03.578537 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 190.93.247.58:80 -> 10.1.1.101:60518
08/24/2015-15:49:14.197972 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:49:14.200213 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:49:14.508482 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:49:14.510793 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:49:14.607532 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:b578:99f8:a8f7:4379:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:49:28.720702 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 199.16.158.186:443 -> 10.1.1.101:44933
08/24/2015-15:50:27.220358 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 199.16.158.186:443 -> 10.1.1.101:44929
08/24/2015-15:55:15.153760 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:47.005742 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:47.824975 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:49.668116 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:50.999338 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:52.644853 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:55.716633 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3154:8d61:6183:f577:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:56.123930 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3154:8d61:6183:f577:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:56.221659 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3154:8d61:6183:f577:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:56.426502 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:161a:a3ff:fe87:fb69:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:56.632976 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3154:8d61:6183:f577:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:57.246645 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3154:8d61:6183:f577:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:57.248870 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3154:8d61:6183:f577:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:56:57.553899 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:3154:8d61:6183:f577:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:57:36.055543 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:d2e1:40ff:fe9d:d32e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:57:38.103248 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:d2e1:40ff:fe9d:d32e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:58:07.085238 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:58:07.087851 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:58:07.090211 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:58:07.093607 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:58:07.595237 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:59d4:bffd:493f:212c:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:59:50.914943 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-15:59:58.696857 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:36bb:26ff:fe76:fbed:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-16:03:29.923030 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.44.111:443 -> 10.1.1.101:44021
08/24/2015-16:03:29.939707 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.44.121:443 -> 10.1.1.101:38240
08/24/2015-16:03:29.933704 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.44.121:443 -> 10.1.1.101:38242
08/24/2015-16:04:23.686085 [**] [1:2210042:1] SURICATA STREAM TIMEWAIT ACK with wrong seq [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:46409 -> 216.58.220.14:443
08/24/2015-16:20:11.615738 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-16:20:13.356621 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:0273:8dff:fe6b:198e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-16:20:28.921283 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-16:20:36.703688 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:36bb:26ff:fe76:fbed:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-16:20:54.214221 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-16:20:56.160696 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-16:27:44.423622 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:0273:8dff:fe43:872e:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/24/2015-17:05:46.348564 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:47.349619 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:48.350532 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:49.351583 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:50.352644 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:51.353267 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:52.354300 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:53.587555 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:54.356125 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:55.357192 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:56.358070 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:57.359183 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:58.360266 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:05:59.361338 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:00.362418 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:01.363487 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:02.364163 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:03.365322 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:04.366381 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:05.367492 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:06.368012 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:07.368394 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:08.369460 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:09.370550 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:10.371658 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:11.372203 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:12.373080 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:13.374190 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:14.375059 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:15.376153 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:16.377230 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:17.378282 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:18.379263 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:19.397624 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:20.381369 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:21.381875 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:22.382101 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:23.383141 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:24.384223 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:25.385309 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:26.386360 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:27.386907 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:28.387155 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:29.388208 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:30.389290 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:31.390393 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:32.391453 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:33.392523 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:34.393653 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:35.394753 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:36.395800 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:37.396203 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/24/2015-17:06:38.397253 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:27.227581 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:28.228675 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:29.229875 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:30.230964 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:31.232057 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:32.233206 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:33.234368 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:34.235516 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:35.236666 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:36.237826 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:37.238889 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:38.240107 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:39.241249 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:40.242358 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:41.243490 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:42.244677 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:07:43.245825 [Drop] [**] [1:999:5] ALERT test ICMP DROP [**] [Classification: Misc activity] [Priority: 3] {ICMP} 10.1.1.101:8 -> 8.8.8.8:0
08/25/2015-10:15:49.260144 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 216.58.220.14:443 -> 10.1.1.101:57045
08/25/2015-10:21:52.404481 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.338478 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.510495 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.513181 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.811179 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.864508 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.885613 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.924683 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.929716 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.934456 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.944482 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:21:53.946451 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:54806
08/25/2015-10:40:03.512177 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 216.58.220.1:80 -> 10.1.1.101:46600
08/25/2015-10:47:54.352726 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 96.17.182.48:80 -> 10.1.1.101:38897
08/25/2015-11:30:53.682383 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.155.11.149:443 -> 10.1.1.101:60158
08/25/2015-11:46:44.569593 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 199.16.158.175:443 -> 10.1.1.101:44839
08/25/2015-12:07:17.496846 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 173.194.126.12:443 -> 10.1.1.101:47536
08/25/2015-12:07:46.199015 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 216.58.196.14:443 -> 10.1.1.101:43982
08/25/2015-12:11:41.841602 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 216.58.220.35:443 -> 10.1.1.101:33774
08/25/2015-13:01:37.197806 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/25/2015-13:01:37.199435 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} 0000:0000:0000:0000:0000:0000:0000:0000:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/25/2015-13:01:38.219934 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:144c:760e:7dc2:2c08:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/25/2015-13:01:39.245661 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:144c:760e:7dc2:2c08:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/25/2015-13:01:40.166410 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:144c:760e:7dc2:2c08:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/25/2015-13:01:41.190596 [**] [1:2200029:1] SURICATA ICMPv6 unknown type [**] [Classification: (null)] [Priority: 3] {IPv6-ICMP} fe80:0000:0000:0000:144c:760e:7dc2:2c08:143 -> ff02:0000:0000:0000:0000:0000:0000:0016:0
08/25/2015-13:01:51.895761 [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 151.66.174.243:45682
08/25/2015-13:02:17.588031 [**] [1:2210044:1] SURICATA STREAM Packet with invalid timestamp [**] [Classification: (null)] [Priority: 3] {TCP} 115.124.41.34:26044 -> 10.1.1.101:44006
08/25/2015-13:04:17.697773 [**] [1:2210044:1] SURICATA STREAM Packet with invalid timestamp [**] [Classification: (null)] [Priority: 3] {TCP} 115.124.41.34:26044 -> 10.1.1.101:39785
08/25/2015-13:06:02.964934 [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 95.25.51.110:61295
08/25/2015-13:06:37.274634 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 89.34.237.92:80 -> 10.1.1.101:34452
08/25/2015-13:07:00.005425 [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34476 -> 89.34.237.92:80
08/25/2015-13:07:00.350522 [**] [1:2014734:2] ET P2P BitTorrent - Torrent File Downloaded [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 89.34.237.92:80 -> 10.1.1.101:34476
08/25/2015-13:07:20.759767 [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 185.90.63.2:1337
08/25/2015-13:07:21.279968 [**] [1:2003286:7] ET MALWARE SOCKSv5 UDP Proxy Inbound Connect Request (Windows Source) [**] [Classification: Generic Protocol Command Decode] [Priority: 3] {UDP} 185.90.63.2:1337 -> 10.1.1.101:65019
08/25/2015-13:07:30.125342 [**] [1:2008585:4] ET P2P BitTorrent DHT announce_peers request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 27.147.164.53:64729
08/25/2015-13:07:35.169818 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53513 -> 122.161.126.222:64659
08/25/2015-13:07:42.714224 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 122.161.126.222:64659 -> 10.1.1.101:53513
08/25/2015-13:07:48.351464 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33837 -> 125.237.42.171:24148
08/25/2015-13:07:54.513317 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60566 -> 189.5.174.229:13740
08/25/2015-13:07:57.334553 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43755 -> 117.245.74.229:42325
08/25/2015-13:08:02.261038 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.237.42.171:24148 -> 10.1.1.101:33837
08/25/2015-13:08:08.011390 [**] [1:2522440:2313] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 221 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 188.165.213.156:6881 -> 10.1.1.101:65019
08/25/2015-13:08:11.548642 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.237.42.171:24148 -> 10.1.1.101:33837
08/25/2015-13:08:11.734856 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.237.42.171:24148 -> 10.1.1.101:33837
08/25/2015-13:08:11.740886 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.237.42.171:24148 -> 10.1.1.101:33837
08/25/2015-13:08:11.748215 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.237.42.171:24148 -> 10.1.1.101:33837
08/25/2015-13:08:12.579268 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.237.42.171:24148 -> 10.1.1.101:33837
08/25/2015-13:08:35.056679 [**] [1:2520092:2313] ET TOR Known Tor Exit Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:08:35.056679 [**] [1:2522092:2313] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:09:14.826423 [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 190.179.210.203:13730
08/25/2015-13:09:16.652499 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39085 -> 24.0.131.191:41217
08/25/2015-13:09:22.804618 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59468 -> 89.234.156.205:80
08/25/2015-13:09:22.804618 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59468 -> 89.234.156.205:80
08/25/2015-13:09:22.847720 [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 37.187.96.78:6969
08/25/2015-13:09:22.992520 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36192 -> 104.28.7.98:80
08/25/2015-13:09:22.992520 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36192 -> 104.28.7.98:80
08/25/2015-13:09:23.236749 [**] [1:2003286:7] ET MALWARE SOCKSv5 UDP Proxy Inbound Connect Request (Windows Source) [**] [Classification: Generic Protocol Command Decode] [Priority: 3] {UDP} 185.37.101.229:2710 -> 10.1.1.101:65019
08/25/2015-13:09:23.423974 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45210 -> 78.89.189.116:8085
08/25/2015-13:09:23.721300 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56904 -> 194.106.216.222:80
08/25/2015-13:09:23.721300 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56904 -> 194.106.216.222:80
08/25/2015-13:09:23.733519 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56906 -> 194.106.216.222:80
08/25/2015-13:09:23.733519 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56906 -> 194.106.216.222:80
08/25/2015-13:09:23.860180 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35614 -> 201.31.162.69:8085
08/25/2015-13:09:24.835793 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59604 -> 185.53.177.20:80
08/25/2015-13:09:24.835793 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59604 -> 185.53.177.20:80
08/25/2015-13:09:24.938807 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56536 -> 62.210.169.212:2710
08/25/2015-13:09:25.106572 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33706 -> 89.188.127.134:80
08/25/2015-13:09:25.106572 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33706 -> 89.188.127.134:80
08/25/2015-13:09:25.195943 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53667 -> 201.31.162.70:8085
08/25/2015-13:09:25.225423 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32960 -> 59.36.96.76:6969
08/25/2015-13:09:25.225423 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32960 -> 59.36.96.76:6969
08/25/2015-13:09:25.247118 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51295 -> 85.25.208.201:6969
08/25/2015-13:09:25.247118 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51295 -> 85.25.208.201:6969
08/25/2015-13:09:25.306076 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51296 -> 85.25.208.201:6969
08/25/2015-13:09:25.306076 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51296 -> 85.25.208.201:6969
08/25/2015-13:09:25.316490 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33707 -> 89.188.127.134:80
08/25/2015-13:09:25.316490 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33707 -> 89.188.127.134:80
08/25/2015-13:09:25.346779 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37584 -> 85.195.119.215:80
08/25/2015-13:09:25.346779 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37584 -> 85.195.119.215:80
08/25/2015-13:09:25.346816 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37583 -> 85.195.119.215:80
08/25/2015-13:09:25.346816 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37583 -> 85.195.119.215:80
08/25/2015-13:09:25.518045 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51295 -> 85.25.208.201:6969
08/25/2015-13:09:25.518648 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51295 -> 85.25.208.201:6969
08/25/2015-13:09:25.533584 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51296 -> 85.25.208.201:6969
08/25/2015-13:09:25.534213 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51296 -> 85.25.208.201:6969
08/25/2015-13:09:25.623048 [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54718 -> 5.35.170.5:80
08/25/2015-13:09:25.623048 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54718 -> 5.35.170.5:80
08/25/2015-13:09:25.699522 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32960 -> 59.36.96.76:6969
08/25/2015-13:09:25.699745 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32960 -> 59.36.96.76:6969
08/25/2015-13:09:25.702590 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51295 -> 85.25.208.201:6969
08/25/2015-13:09:25.767917 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51296 -> 85.25.208.201:6969
08/25/2015-13:09:26.194281 [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32960 -> 59.36.96.76:6969
08/25/2015-13:09:33.842146 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60566 -> 189.5.174.229:13740
08/25/2015-13:09:42.706429 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44966 -> 167.114.109.236:2710
08/25/2015-13:09:47.726146 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 24.0.131.191:41217 -> 10.1.1.101:39085
08/25/2015-13:09:50.821674 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 24.0.131.191:41217 -> 10.1.1.101:39085
08/25/2015-13:09:54.357211 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47094 -> 80.189.106.86:22355
08/25/2015-13:09:57.058775 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51774 -> 68.146.209.88:31363
08/25/2015-13:10:13.408352 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 24.0.131.191:41217 -> 10.1.1.101:39085
08/25/2015-13:10:13.571176 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35498 -> 190.179.210.203:36170
08/25/2015-13:10:13.743865 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60359 -> 2.101.203.224:30722
08/25/2015-13:10:16.973921 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37479 -> 105.224.56.42:10977
08/25/2015-13:10:55.261383 [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45018 -> 167.114.109.236:2710
08/25/2015-13:11:01.705254 [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43364 -> 114.76.194.106:6882
08/25/2015-13:11:01.952399 [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43364 -> 114.76.194.106:6882
08/25/2015-13:11:10.001215 [**] [1:2008585:4] ET P2P BitTorrent DHT announce_peers request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 37.151.32.178:49001
08/25/2015-13:11:23.221339 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46635 -> 96.244.126.170:48313
08/25/2015-13:11:24.922601 [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43537 -> 123.203.245.44:56487
08/25/2015-13:11:27.743858 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 96.244.126.170:48313 -> 10.1.1.101:46635
08/25/2015-13:11:27.749400 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 96.244.126.170:48313 -> 10.1.1.101:46635
08/25/2015-13:11:27.754917 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 96.244.126.170:48313 -> 10.1.1.101:46635
08/25/2015-13:11:27.760500 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 96.244.126.170:48313 -> 10.1.1.101:46635
08/25/2015-13:11:27.887324 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 96.244.126.170:48313 -> 10.1.1.101:46635
08/25/2015-13:11:28.058844 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 96.244.126.170:48313 -> 10.1.1.101:46635
08/25/2015-13:11:36.339803 [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 37.187.96.78:6969
08/25/2015-13:23:23.468776 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 80.60.226.86:12074
08/25/2015-13:23:40.231483 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54503 -> 24.222.252.111:52843
08/25/2015-13:24:17.737777 [**] [1:2520092:2313] ET TOR Known Tor Exit Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:24:17.737777 [**] [1:2522092:2313] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:24:29.925323 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45768 -> 185.21.216.144:56254
08/25/2015-13:24:30.525699 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37736 -> 101.161.133.13:6881
08/25/2015-13:24:35.425111 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34691 -> 110.32.131.99:25569
08/25/2015-13:24:47.834359 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 185.90.63.2:1337
08/25/2015-13:24:50.439470 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52687 -> 121.54.54.131:6881
08/25/2015-13:24:52.440468 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54366 -> 121.54.54.129:6881
08/25/2015-13:24:54.341017 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38381 -> 121.54.54.60:6881
08/25/2015-13:24:57.343395 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59488 -> 121.54.54.33:6881
08/25/2015-13:25:22.361370 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39361 -> 101.191.112.60:35897
08/25/2015-13:25:32.256680 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38669 -> 46.246.54.159:30611
08/25/2015-13:25:51.714456 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59148 -> 96.48.205.94:47369
08/25/2015-13:26:08.042668 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47621 -> 67.230.69.37:36312
08/25/2015-13:26:19.686414 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60216 -> 121.150.239.251:54626
08/25/2015-13:26:42.216460 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42834 -> 67.185.55.230:19086
08/25/2015-13:26:53.023724 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49338 -> 77.101.58.115:61412
08/25/2015-13:27:04.845428 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38196 -> 121.211.163.237:18329
08/25/2015-13:27:15.666856 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35209 -> 85.250.214.248:12758
08/25/2015-13:27:37.451757 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:50499 -> 41.237.81.196:13240
08/25/2015-13:27:49.866042 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48461 -> 78.147.191.219:9130
08/25/2015-13:28:23.640301 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 81.39.96.139:40340
08/25/2015-13:28:33.927562 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:28:40.092131 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54503 -> 24.222.252.111:52843
08/25/2015-13:28:42.677445 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34964 -> 190.176.238.205:26438
08/25/2015-13:28:42.995175 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44152 -> 142.196.34.105:46573
08/25/2015-13:28:47.695853 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45491 -> 41.45.98.170:11028
08/25/2015-13:28:51.203068 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58168 -> 175.139.67.252:27541
08/25/2015-13:28:58.605584 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59312 -> 202.44.242.175:55451
08/25/2015-13:29:04.713649 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:29:11.576629 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58917 -> 105.229.9.252:45682
08/25/2015-13:29:18.315609 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:29:18.532897 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57619 -> 68.146.209.88:31363
08/25/2015-13:29:23.321618 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40994 -> 110.23.26.58:22324
08/25/2015-13:29:28.412165 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 112.81.41.79:10349 -> 10.1.1.101:54485
08/25/2015-13:29:34.228332 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44310 -> 31.214.72.74:44974
08/25/2015-13:29:42.233957 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60714 -> 125.27.98.88:23450
08/25/2015-13:29:53.840305 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34175 -> 59.178.142.220:17417
08/25/2015-13:30:04.085851 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:04.119264 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:04.202851 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43856 -> 105.210.134.22:45682
08/25/2015-13:30:05.485685 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43163 -> 125.212.124.244:59000
08/25/2015-13:30:05.858666 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:05.962672 [**] [1:2520092:2313] ET TOR Known Tor Exit Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:30:05.962672 [**] [1:2522092:2313] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:30:06.680494 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:06.736808 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:06.742147 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:12.673730 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:18.757377 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37097 -> 190.6.226.137:21977
08/25/2015-13:30:18.757395 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56039 -> 176.40.179.90:18368
08/25/2015-13:30:23.059728 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38539 -> 101.99.129.62:27251
08/25/2015-13:30:24.437077 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40554 -> 110.32.131.99:25569
08/25/2015-13:30:25.470092 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47226 -> 149.241.33.55:49628
08/25/2015-13:30:30.564112 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38792 -> 82.28.177.45:28175
08/25/2015-13:30:34.314710 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:42.444036 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:42.468922 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:30:47.374230 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57762 -> 223.166.62.154:48770
08/25/2015-13:30:56.361629 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:31:08.025355 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41799 -> 96.48.205.94:47369
08/25/2015-13:31:19.095496 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47765 -> 114.76.194.106:6882
08/25/2015-13:31:29.301362 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55668 -> 71.195.42.205:45186
08/25/2015-13:31:43.509041 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:00.222844 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45329 -> 121.54.54.129:6881
08/25/2015-13:32:02.502377 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:02.543178 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40053 -> 5.54.20.107:49989
08/25/2015-13:32:02.568040 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:04.225271 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42868 -> 121.54.54.33:6881
08/25/2015-13:32:06.726948 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59821 -> 121.54.54.60:6881
08/25/2015-13:32:17.502975 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:17.930204 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:22.592831 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:25.681109 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:36.192087 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:39.577218 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:40.450418 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38911 -> 185.21.216.144:56254
08/25/2015-13:32:41.280679 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34686 -> 94.98.189.59:46445
08/25/2015-13:32:45.018613 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:49.948104 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42834 -> 67.185.55.230:19086
08/25/2015-13:32:50.898677 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:52.371226 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:52.510660 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:53.716516 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:32:55.212039 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42437 -> 49.145.65.146:26014
08/25/2015-13:33:01.166337 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55919 -> 67.230.69.37:36312
08/25/2015-13:33:03.589812 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:33:03.668295 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56080 -> 125.237.42.171:24148
08/25/2015-13:33:19.764053 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:33:20.127268 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:33:20.881233 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53856 -> 123.203.245.44:56487
08/25/2015-13:33:21.981690 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:33:23.083081 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 75.71.56.116:46256
08/25/2015-13:33:34.894440 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42649 -> 101.161.133.13:6881
08/25/2015-13:33:43.534884 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:00.927767 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:01.267534 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:01.613127 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49756 -> 69.249.221.252:24296
08/25/2015-13:34:18.088762 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:22.080526 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:29.227594 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:31.468626 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:32.339890 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:34.247266 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:34.252938 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:34.258117 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:43.612031 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58168 -> 175.139.67.252:27541
08/25/2015-13:34:48.741932 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:53.607552 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:53.652150 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:53.663196 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:53.675065 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:56.130709 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:56.147422 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:34:58.524126 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54482 -> 125.27.98.88:23450
08/25/2015-13:35:23.740068 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53427 -> 59.178.142.220:17417
08/25/2015-13:35:30.125139 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 37.208.147.6:49417 -> 10.1.1.101:52564
08/25/2015-13:35:33.231524 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:35:35.615112 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52564 -> 37.208.147.6:49417
08/25/2015-13:35:36.484716 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43911 -> 61.0.212.144:31494
08/25/2015-13:35:40.692140 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:35:44.720615 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:35:50.240086 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 59.178.142.220:17417 -> 10.1.1.101:53427
08/25/2015-13:36:07.372891 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:36:14.619180 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57695 -> 31.214.72.74:44974
08/25/2015-13:36:16.520383 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42194 -> 142.196.34.105:46573
08/25/2015-13:36:18.775979 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:36:19.694359 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:36:22.038996 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:36:22.480145 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:36:22.864287 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:36:24.627096 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:36:28.850865 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.35.141.237:22022 -> 10.1.1.101:48875
08/25/2015-13:36:29.117280 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 37.187.96.78:6969
08/25/2015-13:38:27.988464 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 190.179.210.203:13730
08/25/2015-13:41:00.252278 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45087 -> 167.114.109.236:2710
08/25/2015-13:41:02.688184 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58768 -> 121.54.54.155:6881
08/25/2015-13:41:05.539745 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44831 -> 114.76.194.106:6882
08/25/2015-13:41:12.698068 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55540 -> 121.54.54.129:6881
08/25/2015-13:41:13.198215 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37110 -> 61.85.232.109:17261
08/25/2015-13:41:13.486402 [**] [1:2520092:2313] ET TOR Known Tor Exit Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:41:13.486402 [**] [1:2522092:2313] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:41:13.599101 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47825 -> 121.54.54.33:6881
08/25/2015-13:41:17.482703 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43666 -> 75.159.255.71:50698
08/25/2015-13:41:17.681813 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44868 -> 85.250.214.248:12758
08/25/2015-13:41:21.304549 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58038 -> 121.54.54.60:6881
08/25/2015-13:41:24.745336 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58345 -> 185.21.216.144:56254
08/25/2015-13:41:28.225523 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 101.99.129.62:27251 -> 10.1.1.101:37604
08/25/2015-13:41:28.309269 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49395 -> 182.253.250.111:10400
08/25/2015-13:41:31.362351 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 101.99.129.62:27251 -> 10.1.1.101:37604
08/25/2015-13:41:33.212601 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38784 -> 71.7.164.136:51339
08/25/2015-13:41:33.913054 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39803 -> 123.203.245.44:56487
08/25/2015-13:41:41.331225 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 147.47.241.119:58830 -> 10.1.1.101:38672
08/25/2015-13:41:43.859763 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 147.47.241.119:58830 -> 10.1.1.101:38672
08/25/2015-13:41:47.021304 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42758 -> 69.249.221.252:24296
08/25/2015-13:41:57.089785 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55042 -> 142.196.34.105:46573
08/25/2015-13:41:58.309076 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47838 -> 175.139.67.252:27541
08/25/2015-13:41:58.981490 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 37.187.96.78:6969
08/25/2015-13:42:00.406725 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43913 -> 67.185.55.230:19086
08/25/2015-13:42:02.532047 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53652 -> 71.195.42.205:45186
08/25/2015-13:42:38.981768 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 94.242.222.113:80
08/25/2015-13:42:39.851251 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 118.101.43.2:37537
08/25/2015-13:42:40.769146 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49110 -> 101.161.133.13:6881
08/25/2015-13:42:42.960401 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49213 -> 59.178.142.220:17417
08/25/2015-13:42:47.047873 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46188 -> 77.101.58.115:61412
08/25/2015-13:42:47.634351 [**] [1:2520092:2313] ET TOR Known Tor Exit Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:42:47.634351 [**] [1:2522092:2313] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 47 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65019
08/25/2015-13:42:51.420056 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53652 -> 71.195.42.205:45186
08/25/2015-13:42:55.432720 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43637 -> 175.145.226.60:20368
08/25/2015-13:42:58.332013 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47838 -> 175.139.67.252:27541
08/25/2015-13:43:07.978365 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58345 -> 185.21.216.144:56254
08/25/2015-13:43:12.284012 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43913 -> 67.185.55.230:19086
08/25/2015-13:43:18.812108 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42758 -> 69.249.221.252:24296
08/25/2015-13:43:20.220069 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49395 -> 182.253.250.111:10400
08/25/2015-13:43:21.158004 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 222.155.68.222:41446 -> 10.1.1.101:45207
08/25/2015-13:43:39.420065 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43666 -> 75.159.255.71:50698
08/25/2015-13:43:39.724034 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51611 -> 49.145.65.146:26014
08/25/2015-13:43:40.807907 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45207 -> 222.155.68.222:41446
08/25/2015-13:43:50.879057 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58664 -> 123.203.245.44:56487
08/25/2015-13:44:25.728936 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55940 -> 114.76.194.106:6882
08/25/2015-13:44:29.743524 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46992 -> 121.54.54.155:6881
08/25/2015-13:44:45.763489 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41810 -> 149.241.33.55:49628
08/25/2015-13:44:51.847526 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45846 -> 121.54.54.129:6881
08/25/2015-13:44:54.849514 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42518 -> 31.214.72.74:44974
08/25/2015-13:44:57.851614 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:50792 -> 121.54.54.33:6881
08/25/2015-13:45:09.327913 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51513 -> 68.146.209.88:31363
08/25/2015-13:45:30.473341 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56164 -> 121.54.54.60:6881
08/25/2015-13:45:39.297442 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 222.155.68.222:41446 -> 10.1.1.101:45207
08/25/2015-13:45:51.012351 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 222.155.68.222:41446 -> 10.1.1.101:45207
08/25/2015-13:45:59.789183 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55871 -> 82.28.177.45:28175
08/25/2015-13:46:12.589400 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35493 -> 61.85.232.109:17261
08/25/2015-13:46:12.798440 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40024 -> 89.210.161.33:15922
08/25/2015-13:46:46.525241 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49808 -> 101.161.133.13:6881
08/25/2015-13:47:39.768689 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 189.174.41.215:34096
08/25/2015-13:47:40.858064 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60719 -> 114.76.194.106:6882
08/25/2015-13:47:42.959348 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57971 -> 121.54.54.155:6881
08/25/2015-13:47:48.263638 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42683 -> 36.68.97.166:51637
08/25/2015-13:47:58.748056 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47838 -> 175.139.67.252:27541
08/25/2015-13:48:02.975284 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51646 -> 121.54.54.129:6881
08/25/2015-13:48:03.356088 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49213 -> 59.178.142.220:17417
08/25/2015-13:48:16.668055 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58345 -> 185.21.216.144:56254
08/25/2015-13:48:16.985845 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35386 -> 121.54.54.33:6881
08/25/2015-13:48:24.860043 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43913 -> 67.185.55.230:19086
08/25/2015-13:48:38.500751 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60207 -> 41.237.81.196:13240
08/25/2015-13:48:45.005202 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39818 -> 121.54.54.60:6881
08/25/2015-13:48:50.972071 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42758 -> 69.249.221.252:24296
08/25/2015-13:49:00.916254 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33017 -> 123.203.245.44:56487
08/25/2015-13:49:08.380128 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46188 -> 77.101.58.115:61412
08/25/2015-13:49:12.476111 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49395 -> 182.253.250.111:10400
08/25/2015-13:49:20.668099 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53652 -> 71.195.42.205:45186
08/25/2015-13:49:38.141661 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:50882 -> 49.145.65.146:26014
08/25/2015-13:49:46.648901 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57468 -> 85.250.214.248:12758
08/25/2015-13:49:48.648583 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60352 -> 101.161.133.13:6881
08/25/2015-13:49:54.252518 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60172 -> 149.241.33.55:49628
08/25/2015-13:50:26.507627 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34364 -> 96.48.205.94:47369
08/25/2015-13:50:47.894497 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:50832 -> 27.252.112.122:45160
08/25/2015-13:50:52.998984 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47573 -> 114.76.194.106:6882
08/25/2015-13:50:53.098491 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47519 -> 121.54.54.155:6881
08/25/2015-13:51:12.112746 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52999 -> 121.54.54.129:6881
08/25/2015-13:51:41.968324 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65019 -> 67.215.246.10:6881
08/25/2015-13:54:45.659642 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 162.159.241.240:80 -> 10.1.1.101:54272
08/25/2015-14:45:18.247313 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 54.231.65.57:80 -> 10.1.1.101:37345
08/25/2015-16:48:07.931479 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 1.9.97.170:27468
08/25/2015-16:48:10.700867 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 185.90.63.2:1337
08/25/2015-16:48:14.837230 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47441 -> 121.54.54.155:6881
08/25/2015-16:48:14.982754 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58657 -> 71.195.42.205:45186
08/25/2015-16:48:15.838169 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36227 -> 121.54.54.129:6881
08/25/2015-16:48:15.938244 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58341 -> 121.54.54.60:6881
08/25/2015-16:48:15.938259 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41744 -> 121.54.54.33:6881
08/25/2015-16:48:24.839947 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34765 -> 209.89.241.49:28510
08/25/2015-16:49:17.979907 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 79.97.79.65:37233
08/25/2015-16:49:18.725196 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56158 -> 114.76.194.106:6882
08/25/2015-16:49:23.805659 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37861 -> 121.54.54.55:6881
08/25/2015-16:49:25.386203 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33809 -> 58.178.108.31:29136
08/25/2015-16:49:25.508207 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 104.197.66.165:6969
08/25/2015-16:49:25.686375 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58339 -> 82.3.200.241:52300
08/25/2015-16:49:25.976619 [Drop] [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37658 -> 167.114.109.235:6969
08/25/2015-16:49:25.976619 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37658 -> 167.114.109.235:6969
08/25/2015-16:49:26.572108 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38240 -> 104.28.7.98:80
08/25/2015-16:49:26.572108 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38240 -> 104.28.7.98:80
08/25/2015-16:49:26.639076 [Drop] [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34999 -> 59.36.96.76:6969
08/25/2015-16:49:26.639076 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34999 -> 59.36.96.76:6969
08/25/2015-16:49:26.854751 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46999 -> 167.114.109.236:2710
08/25/2015-16:49:29.505580 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33415 -> 185.53.177.20:80
08/25/2015-16:49:29.505580 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33415 -> 185.53.177.20:80
08/25/2015-16:49:30.416720 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47261 -> 78.89.189.116:8085
08/25/2015-16:49:30.483113 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55711 -> 201.31.162.70:8085
08/25/2015-16:49:30.766569 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35750 -> 89.188.127.134:80
08/25/2015-16:49:30.766569 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35750 -> 89.188.127.134:80
08/25/2015-16:49:30.933948 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37665 -> 201.31.162.69:8085
08/25/2015-16:49:31.320273 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35752 -> 89.188.127.134:80
08/25/2015-16:49:31.320273 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35752 -> 89.188.127.134:80
08/25/2015-16:49:31.478105 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40263 -> 91.216.110.47:80
08/25/2015-16:49:31.478105 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40263 -> 91.216.110.47:80
08/25/2015-16:49:31.891883 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41858 -> 121.54.54.57:6881
08/25/2015-16:49:32.102571 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54200 -> 194.58.88.171:2710
08/25/2015-16:49:32.295895 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39628 -> 85.195.119.215:80
08/25/2015-16:49:32.295895 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39628 -> 85.195.119.215:80
08/25/2015-16:49:34.493685 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60938 -> 117.241.120.153:6881
08/25/2015-16:49:34.682974 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39629 -> 85.195.119.215:80
08/25/2015-16:49:34.682974 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39629 -> 85.195.119.215:80
08/25/2015-16:49:34.880788 [Drop] [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53344 -> 85.25.208.201:6969
08/25/2015-16:49:34.880788 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53344 -> 85.25.208.201:6969
08/25/2015-16:49:35.124323 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58963 -> 194.106.216.222:80
08/25/2015-16:49:35.124323 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58963 -> 194.106.216.222:80
08/25/2015-16:49:35.149738 [Drop] [**] [1:2000369:6] ET P2P BitTorrent Announce [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53346 -> 85.25.208.201:6969
08/25/2015-16:49:35.149738 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53346 -> 85.25.208.201:6969
08/25/2015-16:49:35.265653 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58965 -> 194.106.216.222:80
08/25/2015-16:49:35.265653 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58965 -> 194.106.216.222:80
08/25/2015-16:49:48.618220 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33927 -> 117.247.218.135:10804
08/25/2015-16:49:51.421513 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53996 -> 112.95.42.89:57896
08/25/2015-16:50:15.527133 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:50679 -> 71.7.164.136:51339
08/25/2015-16:50:22.669000 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41427 -> 122.58.113.170:56265
08/25/2015-16:50:36.008401 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40114 -> 119.94.92.101:51905
08/25/2015-16:50:44.797990 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:50:45.245804 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:50:45.634863 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:50:47.549976 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:50:47.950610 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55180 -> 24.110.66.53:51283
08/25/2015-16:50:52.296019 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:51:00.860382 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42227 -> 94.224.216.40:6881
08/25/2015-16:51:07.398190 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:51:09.812922 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39889 -> 93.107.108.231:53375
08/25/2015-16:51:11.455847 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:11.737949 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:11.752843 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:13.049589 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:13.298677 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:51:24.978836 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42752 -> 121.54.54.143:6881
08/25/2015-16:51:32.261634 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:51:33.564006 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:51:34.294265 [**] [1:2520090:2316] ET TOR Known Tor Exit Node Traffic group 46 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65422
08/25/2015-16:51:34.294265 [**] [1:2522090:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 46 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65422
08/25/2015-16:51:34.886955 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39659 -> 115.132.192.35:35886
08/25/2015-16:51:42.124934 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:42.898294 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:42.898306 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:42.911170 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:43.065748 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:43.096671 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:43.905530 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39888 -> 41.57.120.126:29779
08/25/2015-16:51:44.180756 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:51:51.588557 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:51:54.200792 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54484 -> 198.2.77.102:13341
08/25/2015-16:51:59.215906 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:52:00.284056 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53996 -> 112.95.42.89:57896
08/25/2015-16:52:02.531649 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:52:04.410786 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52352 -> 175.139.95.205:64865
08/25/2015-16:52:04.647482 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:52:22.120354 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42990 -> 121.54.54.35:6881
08/25/2015-16:52:22.279777 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:52:22.597634 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:52:32.601753 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39822 -> 123.237.118.141:48447
08/25/2015-16:52:33.788922 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57763 -> 86.188.119.248:27714
08/25/2015-16:52:39.631895 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41396 -> 96.43.167.215:36435
08/25/2015-16:52:41.732871 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40877 -> 101.183.101.139:36287
08/25/2015-16:52:46.686915 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34697 -> 123.136.153.35:25785
08/25/2015-16:52:49.491384 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:52:49.797394 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:52:53.262522 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:52:53.741197 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56157 -> 49.144.31.179:40436
08/25/2015-16:52:58.789894 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:52:58.795301 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:52:58.800782 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:53:04.447095 [**] [1:2520176:2316] ET TOR Known Tor Exit Node Traffic group 89 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 96.47.226.20:3 -> 10.1.1.101:3
08/25/2015-16:53:04.447095 [**] [1:2522178:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 90 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 96.47.226.20:3 -> 10.1.1.101:3
08/25/2015-16:53:19.314573 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 65.74.23.115:64174 -> 10.1.1.101:34772
08/25/2015-16:53:25.253786 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53875 -> 73.23.50.157:16073
08/25/2015-16:53:32.166784 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51381 -> 79.169.67.62:26663
08/25/2015-16:53:52.465038 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:53:53.080021 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48641 -> 118.101.190.148:24111
08/25/2015-16:54:08.588968 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:08.744663 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:12.778163 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 1.186.143.107:24406 -> 10.1.1.101:46619
08/25/2015-16:54:12.798330 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:13.354568 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:54:13.537860 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:13.706815 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:13.712177 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:13.717686 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:13.722635 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:14.044519 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:17.073945 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 5.82.211.236:51413
08/25/2015-16:54:20.098977 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:20.206546 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:20.545346 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:22.098953 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33141 -> 121.54.54.56:6881
08/25/2015-16:54:23.906246 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:23.913254 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:24.500549 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37155 -> 101.175.50.89:18753
08/25/2015-16:54:28.552862 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47733 -> 210.187.144.70:55800
08/25/2015-16:54:29.183362 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.183395 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.205943 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.205959 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.206460 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.216781 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.216789 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.231450 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.234393 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.234398 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.234402 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.234406 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.234410 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.245908 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.251657 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.254801 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:29.579727 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:33.907409 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:36.015911 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:38.183822 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:39.213079 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:47.415372 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42909 -> 124.176.116.20:21589
08/25/2015-16:54:49.793675 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:54:50.268489 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:50.272657 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:54:51.317915 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42832 -> 69.245.85.160:43033
08/25/2015-16:54:53.312640 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 113.79.248.234:29519 -> 10.1.1.101:47684
08/25/2015-16:54:57.317611 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:54:57.338654 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 153.216.74.88:16857 -> 10.1.1.101:34459
08/25/2015-16:55:04.529409 [**] [1:2520176:2316] ET TOR Known Tor Exit Node Traffic group 89 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 95.27.206.197:3 -> 10.1.1.101:3
08/25/2015-16:55:04.529409 [**] [1:2522176:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 89 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 95.27.206.197:3 -> 10.1.1.101:3
08/25/2015-16:55:11.458299 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:55:19.161683 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49319 -> 112.81.41.79:10349
08/25/2015-16:55:20.688047 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:55:24.833954 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:55:27.747024 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:55:31.145922 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36222 -> 67.185.55.230:19086
08/25/2015-16:55:33.776882 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:55:35.449023 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51389 -> 114.143.140.195:34938
08/25/2015-16:55:35.855994 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:55:45.308127 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42846 -> 115.134.184.31:16191
08/25/2015-16:55:45.532243 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:55:45.733017 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:55:47.457590 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40586 -> 113.199.167.206:41381
08/25/2015-16:56:03.457226 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:55198
08/25/2015-16:56:05.900986 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:56:05.915733 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:56:05.921243 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:56:17.597767 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:56:22.280643 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40220 -> 58.7.56.100:6881
08/25/2015-16:56:23.363627 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:56:24.750068 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:56:27.877530 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:56:32.117184 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:56:39.580050 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33927 -> 117.247.218.135:10804
08/25/2015-16:56:47.525720 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:56:47.668162 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:56:52.721605 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:56:54.201902 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42501 -> 178.128.182.32:6881
08/25/2015-16:56:58.012051 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39659 -> 115.132.192.35:35886
08/25/2015-16:56:59.017262 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 115.134.39.105:25965 -> 10.1.1.101:42615
08/25/2015-16:57:02.354134 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39058 -> 27.106.90.64:25675
08/25/2015-16:57:02.906762 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42615 -> 115.134.39.105:25965
08/25/2015-16:57:03.162753 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:55198
08/25/2015-16:57:06.183796 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 115.134.39.105:25965 -> 10.1.1.101:42615
08/25/2015-16:57:06.208616 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49400 -> 121.54.54.53:6881
08/25/2015-16:57:08.610277 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56524 -> 106.68.34.208:26085
08/25/2015-16:57:16.158813 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37247 -> 67.165.153.37:21072
08/25/2015-16:57:18.216567 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32774 -> 121.54.54.132:6881
08/25/2015-16:57:18.940664 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:21.347189 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:21.347221 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:22.459046 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:24.832138 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:57:28.663418 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:31.240294 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:33.026040 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53433 -> 124.191.69.182:50000
08/25/2015-16:57:34.968243 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:35.108433 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:37.092943 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:37.174071 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:37.181656 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:37.198643 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:37.534932 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:38.349517 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:38.355643 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:41.044266 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:49.637704 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44228 -> 118.100.41.55:14088
08/25/2015-16:57:52.639771 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58995 -> 37.58.52.35:56993
08/25/2015-16:57:53.815333 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:55.050056 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:55.146162 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:55.199032 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:56.159010 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:56.274484 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:56.280099 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:56.395486 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:57:57.629093 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:57:58.046768 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:57:58.143557 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53652 -> 49.145.118.128:6881
08/25/2015-16:58:00.183355 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:58:01.270404 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:58:01.874843 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:58:04.691636 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:55198
08/25/2015-16:58:06.377982 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:58:06.675456 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 5.107.31.16:53750 -> 10.1.1.101:42542
08/25/2015-16:58:11.573774 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:58:13.020084 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46981 -> 83.221.169.82:38084
08/25/2015-16:58:23.048740 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:58:28.586173 [**] [1:2520170:2316] ET TOR Known Tor Exit Node Traffic group 86 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 95.130.11.147:3 -> 10.1.1.101:3
08/25/2015-16:58:28.586173 [**] [1:2522170:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 86 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 95.130.11.147:3 -> 10.1.1.101:3
08/25/2015-16:58:28.918014 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:58:35.567501 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:58:42.320856 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:58:43.996108 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41396 -> 96.43.167.215:36435
08/25/2015-16:58:46.317299 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:58:49.544143 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:58:56.840835 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:58:57.593207 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:58:58.685434 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56478 -> 192.115.132.219:6881
08/25/2015-16:59:03.963615 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:55198
08/25/2015-16:59:06.856027 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:07.490201 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:09.314366 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:10.493491 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53112 -> 105.229.9.252:45682
08/25/2015-16:59:12.166259 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:12.172384 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:12.501469 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:15.265218 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:15.395671 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:17.398462 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 41.101.31.148:16937
08/25/2015-16:59:17.751295 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57682 -> 41.140.191.183:26664
08/25/2015-16:59:18.775788 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:20.117018 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:20.390986 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:20.503785 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:26.017145 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:26.044813 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:26.050428 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:26.374811 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:29.386913 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:29.408662 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:35.430718 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:44.743281 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:44.775992 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-16:59:48.585069 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:48.918449 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52320 -> 98.93.83.221:40401
08/25/2015-16:59:57.947239 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:58.236024 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47733 -> 210.187.144.70:55800
08/25/2015-16:59:58.736544 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-16:59:58.790700 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:05.011125 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:08.185785 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:00:09.839894 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:10.045676 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:12.861841 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:13.073562 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:13.079034 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:13.084068 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46981 -> 83.221.169.82:38084
08/25/2015-17:00:13.084429 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:13.468957 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:15.954085 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:00:16.642111 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:00:17.071788 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:18.237238 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:00:21.668741 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:32.374968 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:00:38.035934 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:42.650325 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60641 -> 121.54.54.61:6881
08/25/2015-17:00:47.337722 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:47.532669 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:00:48.753061 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44739 -> 190.213.215.244:27087
08/25/2015-17:00:50.431396 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:00:50.448191 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:00:55.253213 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:00:58.590278 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46045 -> 139.0.121.201:9804
08/25/2015-17:01:02.351025 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:04.506798 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:06.709513 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:09.469851 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:09.811346 [**] [1:2520090:2316] ET TOR Known Tor Exit Node Traffic group 46 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 46.183.220.132:3 -> 10.1.1.101:3
08/25/2015-17:01:09.811346 [**] [1:2522090:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 46 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 46.183.220.132:3 -> 10.1.1.101:3
08/25/2015-17:01:14.554322 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:20.118866 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:20.233302 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:22.786347 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:23.601087 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:23.736866 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:24.074851 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:24.999799 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:28.248935 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:28.372606 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:30.475011 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42046 -> 121.54.54.48:6881
08/25/2015-17:01:31.049427 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:31.063067 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:31.347695 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:32.796918 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:33.177834 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41287 -> 27.106.62.238:6881
08/25/2015-17:01:34.061043 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:35.677201 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:39.913921 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:42.429197 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:43.183705 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44297 -> 117.208.100.167:6881
08/25/2015-17:01:49.695530 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 1.186.143.107:24406 -> 10.1.1.101:46619
08/25/2015-17:01:50.263423 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:50.449611 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:01:51.995464 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:53.163129 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:53.436033 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36222 -> 67.185.55.230:19086
08/25/2015-17:01:55.203490 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:55.334408 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:01:56.491556 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58850 -> 60.228.30.214:15824
08/25/2015-17:01:56.959763 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:00.394139 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51505 -> 121.54.54.62:6881
08/25/2015-17:02:01.630934 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33814 -> 109.153.110.131:58992
08/25/2015-17:02:02.629528 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:02.674251 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:02.690795 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:06.297478 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58795 -> 65.94.243.176:14241
08/25/2015-17:02:06.840317 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:08.076882 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:02:08.150090 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:02:08.157663 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:02:08.240101 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:08.281831 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:08.286851 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:08.374857 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:08.441014 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:02:08.703973 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:10.420916 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:13.404031 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46981 -> 83.221.169.82:38084
08/25/2015-17:02:23.132018 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55192 -> 153.101.217.175:63759
08/25/2015-17:02:29.649060 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:31.762254 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:35.197970 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57499 -> 109.93.233.1:30717
08/25/2015-17:02:35.626790 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:35.812804 [**] [1:2520176:2316] ET TOR Known Tor Exit Node Traffic group 89 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 96.44.189.100:3 -> 10.1.1.101:3
08/25/2015-17:02:35.812804 [**] [1:2522176:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 89 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 96.44.189.100:3 -> 10.1.1.101:3
08/25/2015-17:02:35.996748 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:36.731700 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:02:40.540047 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33927 -> 117.247.218.135:10804
08/25/2015-17:02:41.148754 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:42.283018 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:45.824497 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59190 -> 62.210.214.89:51589
08/25/2015-17:02:48.100998 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:48.812821 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:54.132827 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:56.429194 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:02:57.332631 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34697 -> 117.199.127.169:29146
08/25/2015-17:03:00.534690 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37752 -> 24.112.79.175:19611
08/25/2015-17:03:00.742236 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:02.786195 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:04.237134 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35008 -> 62.210.104.47:51133
08/25/2015-17:03:05.625808 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59450 -> 67.193.224.95:21173
08/25/2015-17:03:05.975704 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:10.422977 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58090 -> 59.78.167.115:22870
08/25/2015-17:03:14.621549 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:20.448140 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46144 -> 121.54.54.137:6881
08/25/2015-17:03:22.001639 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:22.119507 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:22.223039 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:22.956259 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:03:25.352692 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:27.150539 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:29.314974 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:29.351968 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:29.375337 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:31.648910 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:35.903677 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:37.658211 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51718 -> 121.215.150.68:64540
08/25/2015-17:03:39.953549 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:03:40.068381 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:03:40.234007 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:03:44.862352 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44752 -> 49.151.8.203:16164
08/25/2015-17:03:50.571529 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:53.853492 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:03:56.064816 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:03:56.180769 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:04:06.271702 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49091 -> 176.205.215.121:20886
08/25/2015-17:04:06.383396 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:10.052364 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:12.559472 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:04:13.724014 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46981 -> 83.221.169.82:38084
08/25/2015-17:04:15.492154 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:17.578973 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 23.248.157.104:6881
08/25/2015-17:04:28.485865 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47139 -> 211.28.40.248:23588
08/25/2015-17:04:28.667695 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:32.251063 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:33.759591 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:04:38.787903 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:38.884674 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:40.291423 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:40.759770 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:04:40.879278 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:04:44.496148 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46393 -> 121.54.54.42:6881
08/25/2015-17:04:44.956106 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41396 -> 96.43.167.215:36435
08/25/2015-17:04:45.300275 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:48.748472 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:49.558174 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:49.599222 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:49.605295 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:49.610481 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:04:54.602415 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56251 -> 121.54.54.149:6881
08/25/2015-17:04:56.352966 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:02.932855 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:03.167804 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:05:03.224279 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:05:03.229311 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:05:05.108914 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57606 -> 115.132.64.37:49926
08/25/2015-17:05:06.119769 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:09.086022 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:11.092301 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:12.692772 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:19.195052 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:20.143050 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:05:20.718008 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34045 -> 49.151.7.58:53640
08/25/2015-17:05:21.891423 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:28.097099 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:05:32.424116 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:32.441264 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:32.763469 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:35.559214 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:36.279081 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:37.694501 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:48.566854 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:49.386609 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:49.404177 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:49.408418 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:49.789721 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:54.603957 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:58.782274 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:05:59.196014 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47733 -> 210.187.144.70:55800
08/25/2015-17:06:08.775007 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:08.984630 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32812 -> 81.131.148.244:59174
08/25/2015-17:06:10.876525 [**] [1:2520168:2316] ET TOR Known Tor Exit Node Traffic group 85 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 94.242.246.24:3 -> 10.1.1.101:3
08/25/2015-17:06:10.876525 [**] [1:2522168:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 85 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 94.242.246.24:3 -> 10.1.1.101:3
08/25/2015-17:06:12.333124 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:12.474436 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:12.477419 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:12.954094 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:13.960858 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:06:13.985770 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:06:14.044185 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46981 -> 83.221.169.82:38084
08/25/2015-17:06:16.511745 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:06:17.833715 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:17.897003 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:17.934696 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:20.958531 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40497 -> 204.237.126.155:10275
08/25/2015-17:06:27.185758 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:30.696186 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:37.086650 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:06:37.700880 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:06:44.110431 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:06:44.282512 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:06:51.076659 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35304 -> 80.193.3.180:6881
08/25/2015-17:07:04.826243 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:05.012291 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:07:06.319941 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:06.390435 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:06.396047 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:06.760388 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:07.487680 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:07.901077 [**] [1:2520126:2316] ET TOR Known Tor Exit Node Traffic group 64 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 77.247.181.165:3 -> 10.1.1.101:3
08/25/2015-17:07:07.901077 [**] [1:2522126:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 64 [**] [Classification: Misc Attack] [Priority: 2] {ICMP} 77.247.181.165:3 -> 10.1.1.101:3
08/25/2015-17:07:08.084589 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52682 -> 105.97.165.71:63348
08/25/2015-17:07:13.987536 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48995 -> 84.41.46.166:18574
08/25/2015-17:07:16.314690 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:25.070300 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:25.079451 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:27.411258 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:27.573468 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:29.398709 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:36.026969 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:37.211617 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:07:44.043859 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:07:44.188265 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:07:45.487196 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:07:45.636227 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:07:48.764083 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57499 -> 109.93.233.1:30717
08/25/2015-17:07:54.396266 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36222 -> 67.185.55.230:19086
08/25/2015-17:07:56.347907 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:07:57.638235 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:01.942118 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:04.169506 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:04.370553 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:08:04.823276 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:05.073139 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:08:07.077113 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:09.295496 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:08:10.429762 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:08:10.958712 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:08:11.100726 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:08:13.396449 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:14.351799 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:14.364017 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46981 -> 83.221.169.82:38084
08/25/2015-17:08:14.403644 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:08:21.718200 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:21.841316 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:08:22.961883 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:23.336167 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:23.594811 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:25.595836 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:26.290365 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:26.798715 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:08:27.608701 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:08:39.021345 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:41.935071 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:42.698071 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:42.828222 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:42.839628 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:44.220286 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:08:44.904639 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:08:44.954921 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:45.528622 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47666 -> 79.117.188.50:6881
08/25/2015-17:08:51.599623 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:08:51.688572 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:08:51.741157 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:08:55.741422 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:08:55.861256 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:08:58.050379 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:02.314526 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:02.885070 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:09:03.029589 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:09:04.003831 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:10.619858 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:10.842105 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:11.702022 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:14.085164 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:14.599758 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:09:14.605416 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:09:15.913757 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:16.838986 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:09:17.749830 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 123.2.151.115:51413
08/25/2015-17:09:18.404429 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:18.666387 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44684 -> 49.145.136.244:26714
08/25/2015-17:09:19.280949 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:25.108032 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:26.196948 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:32.718773 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:35.123353 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:35.383176 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:36.846373 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:38.840955 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:40.109010 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:46.469426 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:48.247764 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:09:48.708866 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:48.742528 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:49.268044 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:09:54.636300 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:55.025949 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:09:58.092045 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:09:58.778748 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:10:00.055649 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:10:00.151148 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:10:00.274952 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36577 -> 123.136.153.35:25785
08/25/2015-17:10:02.877742 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:03.163268 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:03.923086 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:06.207535 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:06.407967 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:10:06.846950 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53760 -> 190.6.226.137:21977
08/25/2015-17:10:10.617728 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:12.075165 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:13.183578 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35854 -> 119.94.92.101:51905
08/25/2015-17:10:14.012090 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42864 -> 121.97.69.203:16684
08/25/2015-17:10:18.660259 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:10:21.588753 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32961 -> 84.78.74.232:35517
08/25/2015-17:10:24.507609 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:24.597826 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:25.982427 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:27.761026 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:10:30.039995 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:10:30.227463 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:10:30.523952 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:10:30.966835 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:31.800330 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:10:31.895912 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:10:33.686465 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:10:35.695324 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53667 -> 86.7.195.70:46020
08/25/2015-17:10:36.073377 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:10:36.627020 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:41.029458 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:10:45.491379 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:45.882773 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:10:51.401419 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:10:51.786099 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:10:57.018472 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:02.266678 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:02.421304 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:02.481538 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:02.488333 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:02.855333 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:06.808224 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56496 -> 202.44.242.175:55451
08/25/2015-17:11:10.317850 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:10.323726 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:10.395891 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:11.057920 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:11:13.734834 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:14.757767 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:20.901615 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:11:21.555527 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:21.785602 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:23.114159 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48042 -> 95.44.253.175:24302
08/25/2015-17:11:23.137005 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:24.958326 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:25.012814 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:30.118723 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51565 -> 27.252.112.122:45160
08/25/2015-17:11:34.542350 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:34.567454 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:34.573164 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:34.602424 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:36.041237 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:37.764362 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:37.885392 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:11:41.187293 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:11:44.179078 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:44.235472 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:46.092075 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57549 -> 93.107.108.231:53375
08/25/2015-17:11:49.130266 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58620 -> 151.225.61.212:6882
08/25/2015-17:11:49.737955 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:11:50.669654 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:11:51.314652 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 93.107.108.231:53375 -> 10.1.1.101:57549
08/25/2015-17:11:51.364292 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:11:51.572288 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:11:51.650358 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 93.107.108.231:53375 -> 10.1.1.101:57549
08/25/2015-17:11:59.137255 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56949 -> 86.42.167.236:48776
08/25/2015-17:12:00.533132 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:12:00.805555 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:12:03.037694 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:12:06.341810 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43837 -> 188.117.234.78:64665
08/25/2015-17:12:09.252742 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:12:09.468756 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:12:10.351638 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:12:10.600916 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:12:10.606866 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:12:10.606902 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:12:11.829051 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:12:11.862973 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57742 -> 118.101.190.148:24116
08/25/2015-17:12:12.558887 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:12:13.481939 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:12:20.525651 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:12:22.605451 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:12:22.687263 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:12:24.487966 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:12:30.058532 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54429 -> 188.51.205.131:31004
08/25/2015-17:12:31.062854 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 75.140.199.118:12592 -> 10.1.1.101:40531
08/25/2015-17:12:34.998271 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:12:45.212057 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32812 -> 81.131.148.244:59174
08/25/2015-17:12:48.818966 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:12:50.269749 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:12:52.119677 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:12:56.334357 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:12:59.383886 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:13:00.151091 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:13:01.692911 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60647 -> 182.253.250.111:10400
08/25/2015-17:13:02.597572 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:13:04.352674 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:05.885272 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:06.513914 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:07.721133 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:09.083561 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56183 -> 187.153.167.75:6888
08/25/2015-17:13:12.842934 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:13.618997 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:15.592116 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:13:21.308813 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:21.344109 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:21.376854 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:22.099753 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:13:30.369698 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:13:32.661788 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:33.975528 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:13:36.110813 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:39.010160 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:13:49.212061 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42864 -> 121.97.69.203:16684
08/25/2015-17:13:50.440563 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:13:51.906419 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:53.402795 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:13:57.169386 [**] [1:2520090:2316] ET TOR Known Tor Exit Node Traffic group 46 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65422
08/25/2015-17:13:57.169386 [**] [1:2522090:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 46 [**] [Classification: Misc Attack] [Priority: 2] {UDP} 46.20.246.117:51413 -> 10.1.1.101:65422
08/25/2015-17:13:57.501308 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:13:59.197936 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:00.839144 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:03.341149 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:14:04.912560 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:14:06.095333 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:09.429734 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:09.463986 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:14.602939 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:16.186157 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:16.630360 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:14:18.260622 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 85.17.20.68:49998
08/25/2015-17:14:21.377932 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:23.870812 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:25.633774 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:14:27.563405 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:29.283262 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:33.027783 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:33.270362 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:34.356459 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:14:35.267824 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:41.004362 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:41.231058 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:41.325714 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:41.386360 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:43.170213 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:44.727636 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:44.766999 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:44.774214 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:44.789402 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:49.932069 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:14:49.940478 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54302 -> 60.229.209.212:61255
08/25/2015-17:14:50.757487 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:14:53.667600 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:55.408927 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:14:58.845643 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34653 -> 37.56.16.254:15975
08/25/2015-17:14:59.249945 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:00.421142 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:15:00.721319 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:15:01.104785 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:15:02.168955 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:02.504645 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:06.108110 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:15:06.158745 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:15:10.890563 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:10.901543 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:10.931425 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:11.269432 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:15.095204 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:15:16.212715 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:15:19.558254 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33795 -> 86.182.209.238:60048
08/25/2015-17:15:21.923296 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:25.372609 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:15:25.616765 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:15:26.662929 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57600 -> 73.42.170.105:53228
08/25/2015-17:15:29.651412 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:30.365107 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56652 -> 185.21.216.144:56254
08/25/2015-17:15:31.873979 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:15:32.414246 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:33.606763 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:15:34.296196 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:15:34.473353 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:15:35.374094 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:15:36.968878 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58006 -> 115.134.39.105:25965
08/25/2015-17:15:37.993399 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:15:39.474327 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:45.344340 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:15:45.500683 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:15:45.989025 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:15:49.532052 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42864 -> 121.97.69.203:16684
08/25/2015-17:15:50.358321 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:15:53.141669 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:16:00.118032 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:16:00.149546 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:16:02.082966 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:16:04.562739 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:16:05.347836 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:16:06.459186 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:06.831172 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:16:07.378787 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:16:13.098365 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:16:13.497791 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:19.171969 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:20.697617 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52860 -> 149.241.33.55:49628
08/25/2015-17:16:28.745605 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:30.821530 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:16:38.427459 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:41.779089 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37234 -> 73.23.50.157:16073
08/25/2015-17:16:44.253756 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:44.401914 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:44.407401 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:44.779622 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:49.281693 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:51.210282 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:51.443126 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:57.812317 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:57.902070 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:16:57.952152 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:16:58.006136 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:05.539267 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:17:05.889272 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:17:07.727722 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35649 -> 121.215.150.68:64540
08/25/2015-17:17:10.005352 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:17:11.112070 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:17:18.016185 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:20.123019 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:23.643402 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:26.815543 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:28.875877 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:17:30.082479 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:17:38.012597 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:40.256625 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:17:42.679415 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:47.170898 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:17:49.852048 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42864 -> 121.97.69.203:16684
08/25/2015-17:17:50.427719 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:52.970326 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:17:54.115307 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:17:55.586824 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:56.382038 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:17:57.493527 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:17:57.676275 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:17:59.170330 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:17:59.278529 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:06.866909 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:18:09.672522 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59069 -> 176.40.179.90:18368
08/25/2015-17:18:12.073982 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34196 -> 112.81.41.79:10349
08/25/2015-17:18:12.362205 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:14.075514 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52112 -> 149.102.51.229:31116
08/25/2015-17:18:16.296608 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:22.206047 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:24.841493 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:47935
08/25/2015-17:18:24.878058 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:18:27.162486 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:28.888889 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:29.253148 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:34.089302 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:36.309015 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:36.796782 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:18:37.505380 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:40.294567 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35618 -> 114.143.140.195:34938
08/25/2015-17:18:41.054677 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:41.365551 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:41.371027 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:41.708952 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:42.983997 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:43.061612 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:45.283089 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:46.172027 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32812 -> 81.131.148.244:59174
08/25/2015-17:18:52.193259 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:18:52.565572 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:18:52.571189 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:18:52.969921 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:18:53.016821 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:18:53.535779 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:53.656553 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:18:59.678040 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:00.006062 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:00.427863 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:01.092429 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:19:01.306343 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:19:02.726350 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:19:02.880676 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:03.210180 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55984 -> 101.109.112.217:28169
08/25/2015-17:19:08.165963 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:19:08.399139 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:08.826278 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:19:08.932594 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:19:10.758314 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:19:13.011191 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54522 -> 62.210.104.47:51133
08/25/2015-17:19:15.447325 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:19:18.129788 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:20.222620 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 24.57.186.254:54082
08/25/2015-17:19:22.236174 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:27.746063 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53636 -> 67.165.153.37:21072
08/25/2015-17:19:28.831910 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:19:35.212887 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:35.432907 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:35.438472 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:39.868079 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:43.546839 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:45.375333 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:19:50.172043 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42864 -> 121.97.69.203:16684
08/25/2015-17:19:50.433999 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:19:50.970908 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:19:54.014783 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:19:54.021247 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:20:04.527537 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:20:12.383706 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:20:15.925355 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:20:20.150001 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:20:23.169797 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:20:23.223598 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:20:23.598441 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:20:32.740138 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:20:35.036405 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:20:35.125415 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:20:37.336460 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:20:37.597055 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:20:41.790774 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:20:43.014675 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38960 -> 81.231.148.172:54204
08/25/2015-17:20:44.612594 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:20:44.698421 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:20:48.321794 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:20:49.411024 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:20:50.958282 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:20:53.678111 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:00.221529 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:02.191460 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:04.354564 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:05.406192 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:05.437955 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:05.843911 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:08.836607 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:09.613486 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:14.028169 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:14.031935 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:14.031982 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:14.135913 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:14.814820 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:15.089361 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:15.100454 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:26.428330 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:26.435066 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:27.026609 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:27.032223 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:27.401127 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:28.232898 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44949 -> 139.0.121.201:9804
08/25/2015-17:21:33.104696 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:33.802581 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:35.681256 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:35.879486 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:36.217169 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:44.467765 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:45.445628 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35898 -> 60.51.107.212:21097
08/25/2015-17:21:45.727322 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:46.871079 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 181.197.188.30:39851 -> 10.1.1.101:55162
08/25/2015-17:21:48.957418 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:49.086704 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.67.182.10:53712 -> 10.1.1.101:34840
08/25/2015-17:21:50.492180 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42864 -> 121.97.69.203:16684
08/25/2015-17:21:51.715213 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:53.023608 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:21:55.552560 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47447 -> 37.58.52.35:56993
08/25/2015-17:21:55.659941 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 100.34.203.173:56599 -> 10.1.1.101:34776
08/25/2015-17:26:08.923728 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 182.68.205.216:22842
08/25/2015-17:26:10.785358 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55157 -> 121.54.54.132:6881
08/25/2015-17:26:11.462552 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41012 -> 27.106.62.238:6881
08/25/2015-17:26:18.098215 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43454 -> 115.134.184.31:16191
08/25/2015-17:26:19.942699 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49706 -> 178.61.246.129:43428
08/25/2015-17:26:20.494091 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36832 -> 192.115.132.219:6881
08/25/2015-17:26:20.803031 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34826 -> 58.178.108.31:29136
08/25/2015-17:26:21.923165 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33871 -> 121.54.54.61:6881
08/25/2015-17:26:25.569020 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48876 -> 95.44.253.175:24302
08/25/2015-17:26:26.131600 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43746 -> 222.71.203.180:23088
08/25/2015-17:26:28.509226 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49426 -> 185.21.216.144:56254
08/25/2015-17:26:39.034381 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51644 -> 97.85.1.61:41540
08/25/2015-17:26:39.210076 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:51644
08/25/2015-17:26:40.335431 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35987 -> 147.69.148.244:41871
08/25/2015-17:26:44.037454 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58725 -> 90.215.80.154:26913
08/25/2015-17:26:45.938307 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48381 -> 121.54.54.142:6881
08/25/2015-17:26:46.732444 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53227 -> 117.38.230.113:63342
08/25/2015-17:26:53.212169 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:26:53.344385 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:26:53.554298 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:51644
08/25/2015-17:26:55.863291 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:26:56.156794 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:02.047653 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34160 -> 112.81.41.79:10349
08/25/2015-17:27:03.186941 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:51644
08/25/2015-17:27:03.584176 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:03.644190 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:04.009282 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:06.167154 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53627 -> 49.145.31.74:25638
08/25/2015-17:27:10.411382 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:10.580203 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:13.542507 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:13.605429 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:17.156759 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55633 -> 117.208.100.167:6881
08/25/2015-17:27:18.157379 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56954 -> 81.97.67.142:15194
08/25/2015-17:27:24.261070 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36386 -> 89.115.74.210:49367
08/25/2015-17:27:31.916990 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:32.456058 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45741 -> 115.134.39.105:25965
08/25/2015-17:27:34.367546 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57117 -> 121.54.54.62:6881
08/25/2015-17:27:35.975310 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:35.980813 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:36.110067 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:50105 -> 204.112.158.71:45733
08/25/2015-17:27:38.993079 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:39.033261 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:40.784455 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 115.134.39.105:25965 -> 10.1.1.101:45741
08/25/2015-17:27:41.361153 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:41.444149 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:43.519339 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 115.134.39.105:25965 -> 10.1.1.101:45741
08/25/2015-17:27:46.650632 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:50.379419 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:53.774247 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:55.497289 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:55.758805 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:56.078867 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58684 -> 67.165.153.37:21072
08/25/2015-17:27:58.111068 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:27:58.116792 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 76.106.72.15:20492 -> 10.1.1.101:54631
08/25/2015-17:28:01.692067 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47447 -> 37.58.52.35:56993
08/25/2015-17:28:04.130759 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:51644
08/25/2015-17:28:32.924107 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54522 -> 62.210.104.47:51133
08/25/2015-17:28:36.206106 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51499 -> 81.131.148.244:59174
08/25/2015-17:28:59.500058 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53125 -> 41.140.191.183:26664
08/25/2015-17:29:03.243026 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 97.85.1.61:41540 -> 10.1.1.101:51644
08/25/2015-17:29:31.240469 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47717 -> 192.115.132.219:6881
08/25/2015-17:29:52.681731 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41525 -> 84.78.74.232:35517
08/25/2015-17:30:02.658480 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43738 -> 27.106.62.238:6881
08/25/2015-17:30:29.574425 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54201 -> 81.233.165.2:57502
08/25/2015-17:31:11.058647 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 95.103.241.8:43249
08/25/2015-17:31:49.020046 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48705 -> 115.134.184.31:16191
08/25/2015-17:31:51.522495 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34834 -> 121.54.54.140:6881
08/25/2015-17:31:53.116058 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:53227 -> 117.38.230.113:63342
08/25/2015-17:32:06.329668 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58032 -> 70.176.107.179:25513
08/25/2015-17:32:12.236895 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57811 -> 121.54.54.131:6881
08/25/2015-17:32:25.445319 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52449 -> 89.168.124.70:60954
08/25/2015-17:32:27.346291 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38002 -> 192.115.132.219:6881
08/25/2015-17:32:34.044240 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48226 -> 172.98.67.101:26094
08/25/2015-17:32:53.061919 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43592 -> 112.81.41.79:10349
08/25/2015-17:33:13.774511 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32907 -> 27.106.62.238:6881
08/25/2015-17:33:33.086699 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57448 -> 121.54.54.132:6881
08/25/2015-17:33:52.904252 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52689 -> 117.208.100.167:6881
08/25/2015-17:34:00.109262 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52135 -> 121.54.54.142:6881
08/25/2015-17:34:07.114942 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:60709 -> 121.54.54.130:6881
08/25/2015-17:34:22.326697 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 186.179.139.137:10865 -> 10.1.1.101:38397
08/25/2015-17:34:38.881868 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35916 -> 180.254.187.218:50280
08/25/2015-17:35:19.168463 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43923 -> 121.54.54.140:6881
08/25/2015-17:35:25.051120 [**] [1:2520176:2316] ET TOR Known Tor Exit Node Traffic group 89 [**] [Classification: Misc Attack] [Priority: 2] {TCP} 96.47.226.20:58899 -> 10.1.1.101:46445
08/25/2015-17:35:25.051120 [**] [1:2522178:2316] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 90 [**] [Classification: Misc Attack] [Priority: 2] {TCP} 96.47.226.20:58899 -> 10.1.1.101:46445
08/25/2015-17:35:55.465206 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 14.202.107.7:21746
08/25/2015-17:35:55.648056 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:65422 -> 185.90.63.2:1337
08/25/2015-17:38:44.522955 [Drop] [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45789 -> 104.24.105.37:80
08/25/2015-17:47:32.110990 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51944 -> 108.220.236.139:24730
08/25/2015-17:47:35.732049 [Drop] [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45874 -> 104.24.105.37:80
08/25/2015-17:47:37.548254 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:32850 -> 82.38.47.208:6890
08/25/2015-17:47:38.444372 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52409 -> 122.150.106.43:6881
08/25/2015-17:47:44.651837 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51944 -> 179.43.146.110:80
08/25/2015-17:48:10.445325 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51222 -> 2.219.161.59:22342
08/25/2015-17:48:20.814286 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34245 -> 103.21.187.66:41596
08/25/2015-17:48:22.905528 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43481 -> 60.231.83.60:20704
08/25/2015-17:48:28.342569 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42607 -> 2.100.44.240:16649
08/25/2015-17:48:31.044213 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:50620 -> 49.145.251.79:8982
08/25/2015-17:48:40.491903 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59196 -> 92.31.221.154:26073
08/25/2015-17:48:44.133192 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:35851 -> 24.224.157.12:14021
08/25/2015-17:48:48.353692 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58450 -> 94.62.118.94:15446
08/25/2015-17:48:53.169384 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57052 -> 69.250.211.12:12232
08/25/2015-17:48:53.270014 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56714 -> 82.18.220.122:25029
08/25/2015-17:48:55.257214 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52330 -> 2.50.216.92:26085
08/25/2015-17:49:00.260060 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37326 -> 109.110.247.244:8870
08/25/2015-17:49:01.460665 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55392 -> 58.164.138.138:9680
08/25/2015-17:49:50.473802 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51944 -> 31.172.63.226:80
08/25/2015-17:51:16.268192 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51944 -> 85.66.29.236:12114
08/25/2015-17:56:16.229928 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51944 -> 117.196.93.137:20362
08/25/2015-17:56:39.210581 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51944 -> 130.239.18.146:6881
08/26/2015-09:26:13.456740 [Drop] [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:49385 -> 104.24.105.37:80
08/26/2015-09:26:14.891387 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:50069 -> 78.233.206.227:62198
08/26/2015-09:26:44.600981 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:50069 -> 46.166.162.81:6969
08/26/2015-09:28:04.788972 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43962 -> 109.161.205.200:51902
08/26/2015-09:32:08.919362 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:50069 -> 92.132.33.246:36879
08/26/2015-09:32:09.963884 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59472 -> 122.148.166.172:24351
08/26/2015-09:32:12.809648 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43962 -> 109.161.205.200:51902
08/26/2015-09:32:59.984580 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47461 -> 5.30.106.42:6881
08/26/2015-09:33:00.425205 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:44186 -> 175.193.166.198:61137
08/26/2015-09:34:31.102601 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48569 -> 124.168.114.134:24464
08/26/2015-09:48:47.974857 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:50069 -> 106.159.91.56:43037
08/26/2015-09:48:53.203072 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43059 -> 124.197.57.185:8827
08/26/2015-09:48:54.645101 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58501 -> 105.225.35.191:6881
08/26/2015-09:48:58.423060 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:43623 -> 125.237.101.180:35078
08/26/2015-09:48:59.883797 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56172 -> 5.80.143.238:7955
08/26/2015-09:49:07.013017 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55625 -> 73.199.92.53:27497
08/26/2015-09:49:14.757063 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34378 -> 116.86.37.81:15000
08/26/2015-09:49:16.560807 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57286 -> 86.174.80.7:14207
08/26/2015-09:49:30.557659 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47119 -> 108.173.216.77:19776
08/26/2015-09:49:32.170836 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38934 -> 93.108.70.41:6881
08/26/2015-09:49:40.356335 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47263 -> 210.195.67.199:14311
08/26/2015-09:49:41.356080 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47263 -> 210.195.67.199:14311
08/26/2015-09:49:48.572003 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57423 -> 92.17.200.57:14715
08/26/2015-09:50:14.486575 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42593 -> 121.97.112.148:22448
08/26/2015-09:50:22.292389 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:33096 -> 50.164.226.74:16358
08/26/2015-09:50:30.468622 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:50220 -> 49.145.99.148:17835
08/26/2015-09:51:38.113625 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57543 -> 151.229.186.65:14182
08/26/2015-09:51:40.473000 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40647 -> 24.108.112.79:22335
08/26/2015-09:51:47.419085 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:38376 -> 24.171.121.248:9109
08/26/2015-09:51:48.019582 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57846 -> 209.221.50.58:16152
08/26/2015-09:51:48.943773 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:50069 -> 179.43.146.110:80
08/26/2015-09:51:54.494943 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47540 -> 27.253.69.50:23779
08/26/2015-09:52:03.128827 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47224 -> 50.69.107.67:22782
08/26/2015-09:52:12.634879 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:46916 -> 67.45.96.22:6881
08/26/2015-09:52:31.258143 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:50084 -> 183.87.41.139:6881
08/26/2015-09:52:54.694766 [Drop] [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54105 -> 104.24.104.37:80
08/26/2015-09:52:57.366305 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 123.3.42.244:49357 -> 10.1.1.101:41338
08/26/2015-09:53:37.595799 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52855 -> 87.98.182.154:48984
08/26/2015-09:53:38.781848 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37903 -> 67.232.130.148:60666
08/26/2015-09:53:47.701412 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:50069 -> 123.63.149.242:33783
08/26/2015-09:53:54.686944 [Drop] [**] [1:2000357:9] ET P2P BitTorrent Traffic [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47540 -> 27.253.69.50:23779
08/26/2015-09:54:07.610391 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:47233 -> 63.245.108.55:24030
08/26/2015-09:54:19.354304 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:41221 -> 122.52.82.122:21196
08/26/2015-09:54:24.320440 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:40675 -> 112.196.73.149:11340
08/26/2015-09:54:26.722175 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39316 -> 93.137.172.204:37805
08/26/2015-09:54:35.736236 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 82.24.139.210:46609 -> 10.1.1.101:58394
08/26/2015-09:54:36.470054 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:58394 -> 82.24.139.210:46609
08/26/2015-09:54:38.820936 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:50069 -> 185.90.63.2:1337
08/26/2015-10:06:35.350297 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.228:650 -> 10.1.1.101:45924
08/26/2015-10:09:16.937237 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.228:650 -> 10.1.1.101:45922
08/26/2015-10:09:45.082178 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54507 -> 10.1.1.228:80
08/26/2015-10:13:27.981361 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.228:650 -> 10.1.1.101:45922
08/26/2015-10:15:49.207181 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54553 -> 10.1.1.228:80
08/26/2015-10:15:55.287058 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.228:650 -> 10.1.1.101:45922
08/26/2015-10:16:12.599230 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.228:650 -> 10.1.1.101:45922
08/26/2015-10:17:39.551843 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.228:650 -> 10.1.1.101:45922
08/26/2015-10:21:50.003240 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54591 -> 10.1.1.228:80
08/26/2015-10:21:52.742607 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 63.245.216.134:443 -> 10.1.1.101:45872
08/26/2015-10:27:50.786475 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54638 -> 10.1.1.228:80
08/26/2015-10:33:52.025411 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54828 -> 10.1.1.228:80
08/26/2015-10:39:54.356041 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54864 -> 10.1.1.228:80
08/26/2015-10:45:37.134222 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54918 -> 10.1.1.228:80
08/26/2015-10:51:38.328791 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:54991 -> 10.1.1.228:80
08/26/2015-10:53:08.621149 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55018 -> 10.1.1.228:80
08/26/2015-10:59:10.031386 [**] [1:2006380:13] ET POLICY Outgoing Basic Auth Base64 HTTP Password detected unencrypted [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:55123 -> 10.1.1.228:80
08/26/2015-11:51:39.626560 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.155.11.149:443 -> 10.1.1.101:46629
08/26/2015-12:00:11.987617 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:52093 -> 110.142.124.161:39317
08/26/2015-12:00:17.956038 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:52093 -> 185.90.63.2:1337
08/26/2015-12:00:25.922016 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39282 -> 91.216.110.47:80
08/26/2015-12:00:25.922016 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39282 -> 91.216.110.47:80
08/26/2015-12:00:26.424463 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56543 -> 89.188.127.134:80
08/26/2015-12:00:26.424463 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56543 -> 89.188.127.134:80
08/26/2015-12:00:48.124172 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56664 -> 190.213.201.63:6881
08/26/2015-12:00:51.749613 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36629 -> 196.46.123.77:8085
08/26/2015-12:00:55.726939 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:37449 -> 39.41.190.222:11573
08/26/2015-12:01:05.531642 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57606 -> 86.174.80.7:14207
08/26/2015-12:01:15.628600 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:57703 -> 39.41.241.243:53982
08/26/2015-12:01:27.450773 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:45440 -> 122.52.79.92:21196
08/26/2015-12:01:32.752899 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:36620 -> 182.64.163.43:6881
08/26/2015-12:01:45.588287 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52468 -> 108.53.33.133:13243
08/26/2015-12:01:56.201795 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:34100 -> 187.214.184.124:6881
08/26/2015-12:02:10.479817 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59048 -> 63.245.108.55:24030
08/26/2015-12:04:50.403827 [Drop] [**] [1:2010144:6] ET P2P Vuze BT UDP Connection (5) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 185.90.63.2:1337
08/26/2015-12:05:14.467013 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 14.102.54.42:62842
08/26/2015-12:05:20.149249 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51948 -> 182.64.163.43:6881
08/26/2015-12:05:20.434698 [Drop] [**] [1:2102181:3] GPL P2P BitTorrent transfer [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:59911 -> 187.214.184.124:6881
08/26/2015-12:05:29.557432 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56604 -> 89.188.127.134:80
08/26/2015-12:05:29.557432 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:56604 -> 89.188.127.134:80
08/26/2015-12:05:29.986263 [Drop] [**] [1:2011704:5] ET P2P Bittorrent P2P Client User-Agent (Deluge 1.x.x) [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39345 -> 91.216.110.47:80
08/26/2015-12:05:29.986263 [Drop] [**] [1:2102180:5] GPL P2P BitTorrent announce request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:39345 -> 91.216.110.47:80
08/26/2015-12:06:03.279438 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:48377 -> 112.209.144.120:15365
08/26/2015-12:06:05.196599 [Drop] [**] [1:2000334:12] ET P2P BitTorrent peer sync [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51674 -> 91.121.81.195:51103
08/26/2015-12:08:02.701627 [Drop] [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:51304 -> 104.24.105.37:80
08/26/2015-12:19:31.412752 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 101.186.106.159:41756
08/26/2015-12:34:31.403805 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 82.221.103.244:6881
08/26/2015-12:49:31.403902 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 67.215.246.10:6881
08/26/2015-13:04:31.419137 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 82.221.103.244:6881
08/26/2015-13:12:49.128691 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 115.124.41.34:26044
08/26/2015-13:19:31.404196 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 67.215.246.10:6881
08/26/2015-13:25:10.355848 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.361810 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.367052 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.601990 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.776724 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.782383 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.787671 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.793055 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.798802 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.804438 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.810373 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.815698 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.821328 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.827258 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.832574 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.838173 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.959510 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.965089 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.985192 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.987579 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:10.993288 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:11.048906 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:11.054807 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:11.060365 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:11.077299 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:11.083497 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:11.088534 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:11.094500 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:11.099678 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:25:11.105355 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56315
08/26/2015-13:26:02.806932 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56354
08/26/2015-13:26:02.812418 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56354
08/26/2015-13:26:02.818047 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56354
08/26/2015-13:26:02.823674 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56354
08/26/2015-13:26:18.609100 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56354
08/26/2015-13:26:18.614587 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56354
08/26/2015-13:26:18.631045 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.164:80 -> 10.1.1.101:56354
08/26/2015-13:29:38.665808 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54082
08/26/2015-13:29:41.662250 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54078
08/26/2015-13:29:42.943751 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54078
08/26/2015-13:29:42.949364 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54078
08/26/2015-13:29:42.955243 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54078
08/26/2015-13:29:42.960626 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54078
08/26/2015-13:29:42.965975 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54078
08/26/2015-13:29:42.971844 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54078
08/26/2015-13:29:42.977449 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54078
08/26/2015-13:29:42.983081 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 92.222.30.87:80 -> 10.1.1.101:54078
08/26/2015-13:32:58.454643 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.460248 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.499504 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.505466 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.646386 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.651870 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.657505 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.663162 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.733877 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.741790 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.766733 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.772357 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.778024 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.783617 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.828509 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.834113 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.839741 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.857313 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:32:58.862125 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57428
08/26/2015-13:33:01.155808 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 94.31.29.96:80 -> 10.1.1.101:57431
08/26/2015-13:34:31.404317 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 67.215.246.10:6881
08/26/2015-13:36:15.920444 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.62:80 -> 10.1.1.101:35525
08/26/2015-13:45:19.872199 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 72.185.166.82:38036
08/26/2015-13:53:16.404467 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 82.221.103.244:6881
08/26/2015-14:04:31.404531 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 82.221.103.244:6881
08/26/2015-14:13:19.589172 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.42:631 -> 10.1.1.101:43377
08/26/2015-14:13:19.729529 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.42:631 -> 10.1.1.101:43377
08/26/2015-14:13:19.729549 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.42:631 -> 10.1.1.101:43377
08/26/2015-14:13:19.805578 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.42:631 -> 10.1.1.101:43377
08/26/2015-14:16:54.384790 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 50.147.100.83:13180
08/26/2015-14:23:16.411044 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 82.221.103.244:6881
08/26/2015-14:33:27.226484 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 74.125.130.91:443 -> 10.1.1.101:53228
08/26/2015-14:33:28.046937 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:53227 -> 74.125.130.91:443
08/26/2015-14:33:30.777405 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52672
08/26/2015-14:33:31.148002 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52673
08/26/2015-14:33:31.154984 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52673
08/26/2015-14:33:31.155904 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52673
08/26/2015-14:33:31.162258 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52673
08/26/2015-14:33:31.167669 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52673
08/26/2015-14:33:31.173352 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52673
08/26/2015-14:33:31.178994 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52673
08/26/2015-14:33:31.184754 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52673
08/26/2015-14:33:31.190214 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52673
08/26/2015-14:33:30.895405 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52676
08/26/2015-14:33:31.915529 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.24.105.37:80 -> 10.1.1.101:52676
08/26/2015-14:34:20.925469 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.16:80 -> 10.1.1.101:45664
08/26/2015-14:34:21.502815 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.16:80 -> 10.1.1.101:45664
08/26/2015-14:34:21.932733 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.16:80 -> 10.1.1.101:45664
08/26/2015-14:34:22.691260 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.16:80 -> 10.1.1.101:45665
08/26/2015-14:34:29.629700 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.16:80 -> 10.1.1.101:45657
08/26/2015-14:34:29.775193 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.16:80 -> 10.1.1.101:45657
08/26/2015-14:34:29.780843 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.16:80 -> 10.1.1.101:45657
08/26/2015-14:34:29.786449 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.16:80 -> 10.1.1.101:45657
08/26/2015-14:34:29.792313 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.16:80 -> 10.1.1.101:45657
08/26/2015-14:34:31.422090 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 67.215.246.10:6881
08/26/2015-14:34:32.977730 [Drop] [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52668 -> 104.24.105.37:80
08/26/2015-14:49:31.411252 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 82.221.103.244:6881
08/26/2015-15:04:31.411398 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 82.221.103.244:6881
08/26/2015-15:19:31.411555 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 67.215.246.10:6881
08/26/2015-15:34:31.411694 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 67.215.246.10:6881
08/26/2015-15:49:31.411796 [Drop] [**] [1:2008581:3] ET P2P BitTorrent DHT ping request [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {UDP} 10.1.1.101:51442 -> 67.215.246.10:6881
08/26/2015-15:51:00.345456 [Drop] [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:52793 -> 104.24.105.37:80
08/26/2015-15:58:16.372708 [Drop] [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42081 -> 104.24.105.37:80
08/26/2015-16:35:16.002491 [Drop] [**] [1:2007727:5] ET P2P possible torrent download [**] [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 10.1.1.101:42098 -> 104.24.105.37:80
08/26/2015-16:35:24.077457 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.16.107.25:443 -> 10.1.1.101:46892
08/26/2015-16:50:31.344553 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.252.226.113:443 -> 10.1.1.101:43968
08/26/2015-16:52:35.278846 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.252.226.106:443 -> 10.1.1.101:56368
08/26/2015-16:52:35.329820 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.252.226.106:443 -> 10.1.1.101:56368
08/26/2015-16:52:57.437385 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.252.226.106:443 -> 10.1.1.101:56368
08/26/2015-16:52:57.443219 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 125.252.226.106:443 -> 10.1.1.101:56368
08/26/2015-16:57:46.089906 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.51.148.43:443 -> 10.1.1.101:52110
08/26/2015-16:57:47.662057 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.51.148.43:443 -> 10.1.1.101:52110
08/26/2015-16:57:51.352748 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.51.148.43:443 -> 10.1.1.101:52110
08/26/2015-16:58:47.377772 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.80:443 -> 10.1.1.101:33258
08/26/2015-16:59:55.052784 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.111:443 -> 10.1.1.101:34193
08/26/2015-16:59:55.134095 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.26.162.111:443 -> 10.1.1.101:34193
08/26/2015-17:01:12.223239 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 10.1.1.101:37804 -> 31.13.79.246:443
08/26/2015-17:01:12.724496 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42472
08/26/2015-17:01:12.662533 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42474
08/26/2015-17:01:16.652900 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 54.240.168.85:80 -> 10.1.1.101:55230
08/26/2015-17:01:17.340854 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42472
08/26/2015-17:01:17.347995 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42472
08/26/2015-17:01:17.354230 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42473
08/26/2015-17:01:17.505099 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 54.240.168.85:80 -> 10.1.1.101:55230
08/26/2015-17:01:17.510989 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 54.240.168.85:80 -> 10.1.1.101:55230
08/26/2015-17:01:17.516798 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 54.240.168.85:80 -> 10.1.1.101:55230
08/26/2015-17:01:17.522842 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 54.240.168.85:80 -> 10.1.1.101:55230
08/26/2015-17:01:17.528691 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 54.240.168.85:80 -> 10.1.1.101:55230
08/26/2015-17:01:19.875443 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.20.23.141:80 -> 10.1.1.101:35361
08/26/2015-17:01:19.881236 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.20.23.141:80 -> 10.1.1.101:35361
08/26/2015-17:01:19.894363 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.20.23.141:80 -> 10.1.1.101:35361
08/26/2015-17:01:19.906524 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.20.23.141:80 -> 10.1.1.101:35358
08/26/2015-17:01:19.914016 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.20.23.141:80 -> 10.1.1.101:35358
08/26/2015-17:01:19.918101 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 104.20.23.141:80 -> 10.1.1.101:35358
08/26/2015-17:01:22.813808 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 2.20.143.21:80 -> 10.1.1.101:41496
08/26/2015-17:01:22.819638 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 2.20.143.21:80 -> 10.1.1.101:41496
08/26/2015-17:01:22.819656 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 2.20.143.21:80 -> 10.1.1.101:41496
08/26/2015-17:01:22.839280 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.032329 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.039095 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.044173 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.049900 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.055594 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.079448 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.085243 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.091204 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.096868 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.103263 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.108682 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.120995 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.127272 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.135467 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.271848 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.277364 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.283288 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.289016 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:23.381905 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.9:80 -> 10.1.1.101:42540
08/26/2015-17:01:27.931819 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.45.48:80 -> 10.1.1.101:38443
08/26/2015-17:01:27.955441 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.45.48:80 -> 10.1.1.101:38443
08/26/2015-17:01:27.961518 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.45.48:80 -> 10.1.1.101:38443
08/26/2015-17:01:27.967398 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.45.48:80 -> 10.1.1.101:38443
08/26/2015-17:01:27.973317 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.45.48:80 -> 10.1.1.101:38443
08/26/2015-17:11:36.339184 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 2.20.143.21:80 -> 10.1.1.101:41496
08/26/2015-17:11:36.345362 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 2.20.143.21:80 -> 10.1.1.101:41496
08/26/2015-17:11:36.345397 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 2.20.143.21:80 -> 10.1.1.101:41496
08/26/2015-17:24:11.625593 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 115.112.2.7:443 -> 10.1.1.101:44296
08/26/2015-17:24:20.309775 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 184.51.148.32:443 -> 10.1.1.101:41521
08/26/2015-17:25:14.561266 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.44.121:443 -> 10.1.1.101:34866
08/26/2015-17:25:14.567297 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 68.232.44.121:443 -> 10.1.1.101:34867
08/26/2015-17:42:11.611421 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 216.58.220.46:443 -> 10.1.1.101:48278
08/26/2015-17:51:24.493645 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43353
08/26/2015-17:51:25.095829 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:51:25.101710 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:51:25.107551 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:51:25.114078 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:51:25.120354 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:51:25.125844 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:51:25.144210 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:51:25.182219 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:51:25.208666 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.214590 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.214649 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.224668 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43352
08/26/2015-17:51:25.246177 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43352
08/26/2015-17:51:25.278218 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.283877 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43352
08/26/2015-17:51:25.425381 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.430529 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.436986 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.442959 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.450979 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.484764 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.493177 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.499945 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.511549 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43355
08/26/2015-17:51:25.523093 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43354
08/26/2015-17:51:25.563577 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:51:25.584609 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43352
08/26/2015-17:51:25.590519 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43352
08/26/2015-17:51:25.596312 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43352
08/26/2015-17:51:25.623740 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43352
08/26/2015-17:51:25.629450 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43352
08/26/2015-17:51:25.635617 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43352
08/26/2015-17:51:29.312938 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 103.3.33.8:80 -> 10.1.1.101:43351
08/26/2015-17:53:15.115194 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 173.209.175.100:80 -> 10.1.1.101:58629
08/26/2015-17:53:18.712897 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 117.18.232.168:80 -> 10.1.1.101:56471
08/26/2015-17:53:18.963674 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 117.18.232.168:80 -> 10.1.1.101:56471
08/26/2015-17:55:55.753049 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 192.229.237.37:443 -> 10.1.1.101:37022
08/26/2015-17:56:00.369546 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41663
08/26/2015-17:56:00.584526 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41663
08/26/2015-17:56:00.599634 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41663
08/26/2015-17:56:00.718892 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:00.883801 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.223239 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.657123 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.674226 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.680456 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.688054 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.692461 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.697761 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.703643 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.710136 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.715444 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.721310 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.727577 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.732932 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.739361 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.745214 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:01.750985 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41664
08/26/2015-17:56:03.256662 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 216.58.196.14:443 -> 10.1.1.101:52916
08/26/2015-17:56:05.086520 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.107204 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.113229 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.119825 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.124902 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.130755 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.136690 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.142661 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.148466 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.154681 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.160235 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.161955 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.168329 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.174595 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.181516 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.188080 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 175.41.15.4:80 -> 10.1.1.101:41692
08/26/2015-17:56:05.923989 [**] [1:2210021:2] SURICATA STREAM ESTABLISHED retransmission packet before last ack [**] [Classification: (null)] [Priority: 3] {TCP} 192.229.237.182:80 -> 10.1.1.101:35039
    (1-1/1)