Alert Table for hk_ha.pcapng

Relative Time Packet Source Source Port Destination Dest Port Category Rule Set Signature Severity
0.0 5 192.168.30.117 3389 113.108.139.62 60022 Misc activity ET INFO RDP - Response To External Host 3
5.0 38 192.168.30.117 3389 113.108.139.62 60022 Misc activity ET INFO RDP - Response To External Host 3
10.0 87 192.168.30.117 3389 113.108.139.62 60069 Misc activity ET INFO RDP - Response To External Host 3
16.0 129 192.168.30.117 3389 113.108.139.62 60069 Misc activity ET INFO RDP - Response To External Host 3
20.0 169 192.168.30.117 3389 113.108.139.62 60115 Misc activity ET INFO RDP - Response To External Host 3
25.0 212 192.168.30.117 3389 113.108.139.62 60115 Misc activity ET INFO RDP - Response To External Host 3
30.0 251 192.168.30.117 3389 113.108.139.62 60163 Misc activity ET INFO RDP - Response To External Host 3
35.0 293 192.168.30.117 3389 113.108.139.62 60163 Misc activity ET INFO RDP - Response To External Host 3
39.0 333 192.168.30.117 3389 113.108.139.62 60206 Misc activity ET INFO RDP - Response To External Host 3
44.0 375 192.168.30.117 3389 113.108.139.62 60206 Misc activity ET INFO RDP - Response To External Host 3
49.0 419 192.168.30.117 3389 113.108.139.62 60248 Misc activity ET INFO RDP - Response To External Host 3
54.0 461 192.168.30.117 3389 113.108.139.62 60248 Misc activity ET INFO RDP - Response To External Host 3
58.0 501 192.168.30.117 3389 113.108.139.62 60294 Misc activity ET INFO RDP - Response To External Host 3
65.0 561 192.168.30.117 3389 113.108.139.62 60294 Misc activity ET INFO RDP - Response To External Host 3
68.0 599 192.168.30.117 3389 113.108.139.62 60342 Misc activity ET INFO RDP - Response To External Host 3
73.0 642 192.168.30.117 3389 113.108.139.62 60342 Misc activity ET INFO RDP - Response To External Host 3
77.0 683 192.168.30.117 3389 113.108.139.62 60385 Misc activity ET INFO RDP - Response To External Host 3
82.0 727 192.168.30.117 3389 113.108.139.62 60385 Misc activity ET INFO RDP - Response To External Host 3
86.0 766 192.168.30.117 3389 113.108.139.62 60422 Misc activity ET INFO RDP - Response To External Host 3
91.0 809 192.168.30.117 3389 113.108.139.62 60422 Misc activity ET INFO RDP - Response To External Host 3
95.0 849 192.168.30.117 3389 113.108.139.62 60461 Misc activity ET INFO RDP - Response To External Host 3
100.0 891 192.168.30.117 3389 113.108.139.62 60461 Misc activity ET INFO RDP - Response To External Host 3
103.0 931 192.168.30.117 3389 113.108.139.62 60504 Misc activity ET INFO RDP - Response To External Host 3
108.0 973 192.168.30.117 3389 113.108.139.62 60504 Misc activity ET INFO RDP - Response To External Host 3
112.0 1013 192.168.30.117 3389 113.108.139.62 60541 Misc activity ET INFO RDP - Response To External Host 3
117.0 1055 192.168.30.117 3389 113.108.139.62 60541 Misc activity ET INFO RDP - Response To External Host 3
121.0 1094 192.168.30.117 3389 113.108.139.62 60588 Misc activity ET INFO RDP - Response To External Host 3
126.0 1142 192.168.30.117 3389 113.108.139.62 60588 Misc activity ET INFO RDP - Response To External Host 3
130.0 1183 192.168.30.117 3389 113.108.139.62 60631 Misc activity ET INFO RDP - Response To External Host 3
135.0 1225 192.168.30.117 3389 113.108.139.62 60631 Misc activity ET INFO RDP - Response To External Host 3
138.0 1269 192.168.30.117 3389 113.108.139.62 60669 Misc activity ET INFO RDP - Response To External Host 3
143.0 1311 192.168.30.117 3389 113.108.139.62 60669 Misc activity ET INFO RDP - Response To External Host 3
147.0 1350 192.168.30.117 3389 113.108.139.62 60707 Misc activity ET INFO RDP - Response To External Host 3
152.0 1396 192.168.30.117 3389 113.108.139.62 60707 Misc activity ET INFO RDP - Response To External Host 3
156.0 1439 192.168.30.117 3389 113.108.139.62 60748 Misc activity ET INFO RDP - Response To External Host 3
161.0 1482 192.168.30.117 3389 113.108.139.62 60748 Misc activity ET INFO RDP - Response To External Host 3
165.0 1524 192.168.30.117 3389 113.108.139.62 60788 Misc activity ET INFO RDP - Response To External Host 3
170.0 1566 192.168.30.117 3389 113.108.139.62 60788 Misc activity ET INFO RDP - Response To External Host 3
174.0 1611 192.168.30.117 3389 113.108.139.62 60835 Misc activity ET INFO RDP - Response To External Host 3
180.0 1653 192.168.30.117 3389 113.108.139.62 60835 Misc activity ET INFO RDP - Response To External Host 3
183.0 1685 113.108.139.62 60877 192.168.30.117 3389 Detection of a Network Scan ET SCAN Behavioral Unusually fast Terminal Server Traffic Potential Scan or Infection (Inbound) 3
183.0 1692 192.168.30.117 3389 113.108.139.62 60877 Misc activity ET INFO RDP - Response To External Host 3
189.0 1734 192.168.30.117 3389 113.108.139.62 60877 Misc activity ET INFO RDP - Response To External Host 3
192.0 1774 192.168.30.117 3389 113.108.139.62 60917 Misc activity ET INFO RDP - Response To External Host 3
197.0 1816 192.168.30.117 3389 113.108.139.62 60917 Misc activity ET INFO RDP - Response To External Host 3
201.0 1855 192.168.30.117 3389 113.108.139.62 60962 Misc activity ET INFO RDP - Response To External Host 3
208.0 1912 192.168.30.117 3389 113.108.139.62 60962 Misc activity ET INFO RDP - Response To External Host 3
257.0 1953 192.168.30.117 3389 113.108.139.62 61222 Misc activity ET INFO RDP - Response To External Host 3
263.0 1995 192.168.30.117 3389 113.108.139.62 61222 Misc activity ET INFO RDP - Response To External Host 3
267.0 2035 192.168.30.117 3389 113.108.139.62 61264 Misc activity ET INFO RDP - Response To External Host 3
273.0 2081 192.168.30.117 3389 113.108.139.62 61264 Misc activity ET INFO RDP - Response To External Host 3
277.0 2121 192.168.30.117 3389 113.108.139.62 61310 Misc activity ET INFO RDP - Response To External Host 3
282.0 2163 192.168.30.117 3389 113.108.139.62 61310 Misc activity ET INFO RDP - Response To External Host 3
287.0 2205 192.168.30.117 3389 113.108.139.62 61357 Misc activity ET INFO RDP - Response To External Host 3
293.0 2257 192.168.30.117 3389 113.108.139.62 61357 Misc activity ET INFO RDP - Response To External Host 3
297.0 2297 192.168.30.117 3389 113.108.139.62 61410 Misc activity ET INFO RDP - Response To External Host 3
304.0 2339 192.168.30.117 3389 113.108.139.62 61410 Misc activity ET INFO RDP - Response To External Host 3
309.0 2392 192.168.30.117 3389 113.108.139.62 61465 Misc activity ET INFO RDP - Response To External Host 3
315.0 2435 192.168.30.117 3389 113.108.139.62 61465 Misc activity ET INFO RDP - Response To External Host 3
319.0 2474 192.168.30.117 3389 113.108.139.62 61512 Misc activity ET INFO RDP - Response To External Host 3
326.0 2528 192.168.30.117 3389 113.108.139.62 61512 Misc activity ET INFO RDP - Response To External Host 3
330.0 2562 192.168.30.117 3389 113.108.139.62 61560 Misc activity ET INFO RDP - Response To External Host 3
335.0 2604 192.168.30.117 3389 113.108.139.62 61560 Misc activity ET INFO RDP - Response To External Host 3
339.0 2644 192.168.30.117 3389 113.108.139.62 61606 Misc activity ET INFO RDP - Response To External Host 3
344.0 2687 192.168.30.117 3389 113.108.139.62 61606 Misc activity ET INFO RDP - Response To External Host 3
348.0 2726 192.168.30.117 3389 113.108.139.62 61652 Misc activity ET INFO RDP - Response To External Host 3
355.0 2775 192.168.30.117 3389 113.108.139.62 61652 Misc activity ET INFO RDP - Response To External Host 3
359.0 2817 192.168.30.117 3389 113.108.139.62 61700 Misc activity ET INFO RDP - Response To External Host 3
365.0 2863 192.168.30.117 3389 113.108.139.62 61700 Misc activity ET INFO RDP - Response To External Host 3
369.0 2906 192.168.30.117 3389 113.108.139.62 61748 Misc activity ET INFO RDP - Response To External Host 3
374.0 2948 192.168.30.117 3389 113.108.139.62 61748 Misc activity ET INFO RDP - Response To External Host 3
378.0 2987 192.168.30.117 3389 113.108.139.62 61792 Misc activity ET INFO RDP - Response To External Host 3
384.0 3029 192.168.30.117 3389 113.108.139.62 61792 Misc activity ET INFO RDP - Response To External Host 3
388.0 3068 192.168.30.117 3389 113.108.139.62 61838 Misc activity ET INFO RDP - Response To External Host 3
393.0 3110 192.168.30.117 3389 113.108.139.62 61838 Misc activity ET INFO RDP - Response To External Host 3
397.0 3151 192.168.30.117 3389 113.108.139.62 61881 Misc activity ET INFO RDP - Response To External Host 3
406.0 3196 192.168.30.117 3389 113.108.139.62 61881 Misc activity ET INFO RDP - Response To External Host 3
409.0 3235 192.168.30.117 3389 113.108.139.62 61938 Misc activity ET INFO RDP - Response To External Host 3
415.0 3277 192.168.30.117 3389 113.108.139.62 61938 Misc activity ET INFO RDP - Response To External Host 3
419.0 3318 192.168.30.117 3389 113.108.139.62 61982 Misc activity ET INFO RDP - Response To External Host 3
428.0 3371 192.168.30.117 3389 113.108.139.62 61982 Misc activity ET INFO RDP - Response To External Host 3
432.0 3423 192.168.30.117 3389 113.108.139.62 62044 Misc activity ET INFO RDP - Response To External Host 3
438.0 3466 192.168.30.117 3389 113.108.139.62 62044 Misc activity ET INFO RDP - Response To External Host 3
442.0 3506 192.168.30.117 3389 113.108.139.62 62091 Misc activity ET INFO RDP - Response To External Host 3
453.0 3569 192.168.30.117 3389 113.108.139.62 62091 Misc activity ET INFO RDP - Response To External Host 3
457.0 3606 192.168.30.117 3389 113.108.139.62 62159 Misc activity ET INFO RDP - Response To External Host 3
466.0 3667 192.168.30.117 3389 113.108.139.62 62159 Misc activity ET INFO RDP - Response To External Host 3
473.0 3706 192.168.30.117 3389 113.108.139.62 62220 Misc activity ET INFO RDP - Response To External Host 3
479.0 3749 192.168.30.117 3389 113.108.139.62 62220 Misc activity ET INFO RDP - Response To External Host 3
483.0 3788 192.168.30.117 3389 113.108.139.62 62277 Misc activity ET INFO RDP - Response To External Host 3
489.0 3831 192.168.30.117 3389 113.108.139.62 62277 Misc activity ET INFO RDP - Response To External Host 3
493.0 3870 192.168.30.117 3389 113.108.139.62 62324 Misc activity ET INFO RDP - Response To External Host 3
499.0 3913 192.168.30.117 3389 113.108.139.62 62324 Misc activity ET INFO RDP - Response To External Host 3
503.0 3953 192.168.30.117 3389 113.108.139.62 62370 Misc activity ET INFO RDP - Response To External Host 3
511.0 3997 192.168.30.117 3389 113.108.139.62 62370 Misc activity ET INFO RDP - Response To External Host 3
515.0 4037 192.168.30.117 3389 113.108.139.62 62426 Misc activity ET INFO RDP - Response To External Host 3
521.0 4080 192.168.30.117 3389 113.108.139.62 62426 Misc activity ET INFO RDP - Response To External Host 3
524.0 4120 192.168.30.117 3389 113.108.139.62 62470 Misc activity ET INFO RDP - Response To External Host 3
530.0 4163 192.168.30.117 3389 113.108.139.62 62470 Misc activity ET INFO RDP - Response To External Host 3
534.0 4198 113.108.139.62 62518 192.168.30.117 3389 Detection of a Network Scan ET SCAN Behavioral Unusually fast Terminal Server Traffic Potential Scan or Infection (Inbound) 3
534.0 4202 192.168.30.117 3389 113.108.139.62 62518 Misc activity ET INFO RDP - Response To External Host 3
540.0 4244 192.168.30.117 3389 113.108.139.62 62518 Misc activity ET INFO RDP - Response To External Host 3
544.0 4283 192.168.30.117 3389 113.108.139.62 62562 Misc activity ET INFO RDP - Response To External Host 3
551.0 4333 192.168.30.117 3389 113.108.139.62 62562 Misc activity ET INFO RDP - Response To External Host 3
556.0 4375 192.168.30.117 3389 113.108.139.62 62622 Misc activity ET INFO RDP - Response To External Host 3
561.0 4417 192.168.30.117 3389 113.108.139.62 62622 Misc activity ET INFO RDP - Response To External Host 3
565.0 4457 192.168.30.117 3389 113.108.139.62 62667 Misc activity ET INFO RDP - Response To External Host 3
571.0 4499 192.168.30.117 3389 113.108.139.62 62667 Misc activity ET INFO RDP - Response To External Host 3
575.0 4538 192.168.30.117 3389 113.108.139.62 62713 Misc activity ET INFO RDP - Response To External Host 3
582.0 4584 192.168.30.117 3389 113.108.139.62 62713 Misc activity ET INFO RDP - Response To External Host 3
587.0 4625 192.168.30.117 3389 113.108.139.62 62767 Misc activity ET INFO RDP - Response To External Host 3
593.0 4667 192.168.30.117 3389 113.108.139.62 62767 Misc activity ET INFO RDP - Response To External Host 3
598.0 4705 192.168.30.117 3389 113.108.139.62 62824 Misc activity ET INFO RDP - Response To External Host 3
604.0 4746 192.168.30.117 3389 113.108.139.62 62824 Misc activity ET INFO RDP - Response To External Host 3
608.0 4785 192.168.30.117 3389 113.108.139.62 62877 Misc activity ET INFO RDP - Response To External Host 3
617.0 4832 192.168.30.117 3389 113.108.139.62 62877 Misc activity ET INFO RDP - Response To External Host 3
624.0 4879 192.168.30.117 3389 113.108.139.62 62940 Misc activity ET INFO RDP - Response To External Host 3
630.0 4922 192.168.30.117 3389 113.108.139.62 62940 Misc activity ET INFO RDP - Response To External Host 3
634.0 4962 192.168.30.117 3389 113.108.139.62 62995 Misc activity ET INFO RDP - Response To External Host 3
639.0 5004 192.168.30.117 3389 113.108.139.62 62995 Misc activity ET INFO RDP - Response To External Host 3
644.0 5044 192.168.30.117 3389 113.108.139.62 63042 Misc activity ET INFO RDP - Response To External Host 3
649.0 5087 192.168.30.117 3389 113.108.139.62 63042 Misc activity ET INFO RDP - Response To External Host 3
654.0 5131 192.168.30.117 3389 113.108.139.62 63093 Misc activity ET INFO RDP - Response To External Host 3
660.0 5177 192.168.30.117 3389 113.108.139.62 63093 Misc activity ET INFO RDP - Response To External Host 3
664.0 5220 192.168.30.117 3389 113.108.139.62 63145 Misc activity ET INFO RDP - Response To External Host 3
671.0 5263 192.168.30.117 3389 113.108.139.62 63145 Misc activity ET INFO RDP - Response To External Host 3
675.0 5304 192.168.30.117 3389 113.108.139.62 63197 Misc activity ET INFO RDP - Response To External Host 3
681.0 5348 192.168.30.117 3389 113.108.139.62 63197 Misc activity ET INFO RDP - Response To External Host 3
685.0 5389 192.168.30.117 3389 113.108.139.62 63246 Misc activity ET INFO RDP - Response To External Host 3
691.0 5431 192.168.30.117 3389 113.108.139.62 63246 Misc activity ET INFO RDP - Response To External Host 3
695.0 5470 192.168.30.117 3389 113.108.139.62 63292 Misc activity ET INFO RDP - Response To External Host 3
700.0 5512 192.168.30.117 3389 113.108.139.62 63292 Misc activity ET INFO RDP - Response To External Host 3
704.0 5551 192.168.30.117 3389 113.108.139.62 63340 Misc activity ET INFO RDP - Response To External Host 3
710.0 5593 192.168.30.117 3389 113.108.139.62 63340 Misc activity ET INFO RDP - Response To External Host 3
714.0 5633 192.168.30.117 3389 113.108.139.62 63384 Misc activity ET INFO RDP - Response To External Host 3
720.0 5679 192.168.30.117 3389 113.108.139.62 63384 Misc activity ET INFO RDP - Response To External Host 3
724.0 5721 192.168.30.117 3389 113.108.139.62 63431 Misc activity ET INFO RDP - Response To External Host 3
733.0 5769 192.168.30.117 3389 113.108.139.62 63431 Misc activity ET INFO RDP - Response To External Host 3
737.0 5811 192.168.30.117 3389 113.108.139.62 63499 Misc activity ET INFO RDP - Response To External Host 3
740.0 5814 192.168.30.117 3389 113.108.139.62 63499 Misc activity ET INFO RDP - Response To External Host 3
746.0 5856 192.168.30.117 3389 113.108.139.62 63499 Misc activity ET INFO RDP - Response To External Host 3
750.0 5898 192.168.30.117 3389 113.108.139.62 63563 Misc activity ET INFO RDP - Response To External Host 3
756.0 5940 192.168.30.117 3389 113.108.139.62 63563 Misc activity ET INFO RDP - Response To External Host 3
Important Announcement: CS Personal is taking a break