Alert Table for hk_ha.pcapng

Relative Time Packet Source Source Port Destination Dest Port Category Rule Set Signature Severity
0.0 5 192.168.30.117 3389 113.108.139.62 60022 Misc activity ET INFO RDP - Response To External Host 3
5.0 38 192.168.30.117 3389 113.108.139.62 60022 Misc activity ET INFO RDP - Response To External Host 3
10.0 87 192.168.30.117 3389 113.108.139.62 60069 Misc activity ET INFO RDP - Response To External Host 3
16.0 136 192.168.30.117 3389 113.108.139.62 60069 Misc activity ET INFO RDP - Response To External Host 3
20.0 169 192.168.30.117 3389 113.108.139.62 60115 Misc activity ET INFO RDP - Response To External Host 3
26.0 218 192.168.30.117 3389 113.108.139.62 60115 Misc activity ET INFO RDP - Response To External Host 3
30.0 251 192.168.30.117 3389 113.108.139.62 60163 Misc activity ET INFO RDP - Response To External Host 3
36.0 299 192.168.30.117 3389 113.108.139.62 60163 Misc activity ET INFO RDP - Response To External Host 3
39.0 333 192.168.30.117 3389 113.108.139.62 60206 Misc activity ET INFO RDP - Response To External Host 3
45.0 382 192.168.30.117 3389 113.108.139.62 60206 Misc activity ET INFO RDP - Response To External Host 3
49.0 419 192.168.30.117 3389 113.108.139.62 60248 Misc activity ET INFO RDP - Response To External Host 3
54.0 468 192.168.30.117 3389 113.108.139.62 60248 Misc activity ET INFO RDP - Response To External Host 3
58.0 501 192.168.30.117 3389 113.108.139.62 60294 Misc activity ET INFO RDP - Response To External Host 3
65.0 561 192.168.30.117 3389 113.108.139.62 60294 Misc activity ET INFO RDP - Response To External Host 3
68.0 599 192.168.30.117 3389 113.108.139.62 60342 Misc activity ET INFO RDP - Response To External Host 3
73.0 642 192.168.30.117 3389 113.108.139.62 60342 Misc activity ET INFO RDP - Response To External Host 3
77.0 683 192.168.30.117 3389 113.108.139.62 60385 Misc activity ET INFO RDP - Response To External Host 3
83.0 733 192.168.30.117 3389 113.108.139.62 60385 Misc activity ET INFO RDP - Response To External Host 3
86.0 766 192.168.30.117 3389 113.108.139.62 60422 Misc activity ET INFO RDP - Response To External Host 3
91.0 809 192.168.30.117 3389 113.108.139.62 60422 Misc activity ET INFO RDP - Response To External Host 3
95.0 849 192.168.30.117 3389 113.108.139.62 60461 Misc activity ET INFO RDP - Response To External Host 3
100.0 897 192.168.30.117 3389 113.108.139.62 60461 Misc activity ET INFO RDP - Response To External Host 3
103.0 931 192.168.30.117 3389 113.108.139.62 60504 Misc activity ET INFO RDP - Response To External Host 3
109.0 980 192.168.30.117 3389 113.108.139.62 60504 Misc activity ET INFO RDP - Response To External Host 3
112.0 1013 192.168.30.117 3389 113.108.139.62 60541 Misc activity ET INFO RDP - Response To External Host 3
117.0 1061 192.168.30.117 3389 113.108.139.62 60541 Misc activity ET INFO RDP - Response To External Host 3
121.0 1094 192.168.30.117 3389 113.108.139.62 60588 Misc activity ET INFO RDP - Response To External Host 3
126.0 1142 192.168.30.117 3389 113.108.139.62 60588 Misc activity ET INFO RDP - Response To External Host 3
130.0 1183 192.168.30.117 3389 113.108.139.62 60631 Misc activity ET INFO RDP - Response To External Host 3
135.0 1231 192.168.30.117 3389 113.108.139.62 60631 Misc activity ET INFO RDP - Response To External Host 3
138.0 1269 192.168.30.117 3389 113.108.139.62 60669 Misc activity ET INFO RDP - Response To External Host 3
144.0 1317 192.168.30.117 3389 113.108.139.62 60669 Misc activity ET INFO RDP - Response To External Host 3
147.0 1350 192.168.30.117 3389 113.108.139.62 60707 Misc activity ET INFO RDP - Response To External Host 3
152.0 1396 192.168.30.117 3389 113.108.139.62 60707 Misc activity ET INFO RDP - Response To External Host 3
156.0 1439 192.168.30.117 3389 113.108.139.62 60748 Misc activity ET INFO RDP - Response To External Host 3
162.0 1494 192.168.30.117 3389 113.108.139.62 60748 Misc activity ET INFO RDP - Response To External Host 3
165.0 1524 192.168.30.117 3389 113.108.139.62 60788 Misc activity ET INFO RDP - Response To External Host 3
170.0 1573 192.168.30.117 3389 113.108.139.62 60788 Misc activity ET INFO RDP - Response To External Host 3
174.0 1611 192.168.30.117 3389 113.108.139.62 60835 Misc activity ET INFO RDP - Response To External Host 3
180.0 1659 192.168.30.117 3389 113.108.139.62 60835 Misc activity ET INFO RDP - Response To External Host 3
183.0 1692 192.168.30.117 3389 113.108.139.62 60877 Misc activity ET INFO RDP - Response To External Host 3
189.0 1740 192.168.30.117 3389 113.108.139.62 60877 Misc activity ET INFO RDP - Response To External Host 3
192.0 1774 192.168.30.117 3389 113.108.139.62 60917 Misc activity ET INFO RDP - Response To External Host 3
198.0 1822 192.168.30.117 3389 113.108.139.62 60917 Misc activity ET INFO RDP - Response To External Host 3
200.0 1851 113.108.139.62 60962 192.168.30.117 3389 Detection of a Network Scan ET SCAN Behavioral Unusually fast Terminal Server Traffic Potential Scan or Infection (Inbound) 3
201.0 1855 192.168.30.117 3389 113.108.139.62 60962 Misc activity ET INFO RDP - Response To External Host 3
208.0 1912 192.168.30.117 3389 113.108.139.62 60962 Misc activity ET INFO RDP - Response To External Host 3
257.0 1953 192.168.30.117 3389 113.108.139.62 61222 Misc activity ET INFO RDP - Response To External Host 3
263.0 2001 192.168.30.117 3389 113.108.139.62 61222 Misc activity ET INFO RDP - Response To External Host 3
267.0 2035 192.168.30.117 3389 113.108.139.62 61264 Misc activity ET INFO RDP - Response To External Host 3
273.0 2087 192.168.30.117 3389 113.108.139.62 61264 Misc activity ET INFO RDP - Response To External Host 3
277.0 2121 192.168.30.117 3389 113.108.139.62 61310 Misc activity ET INFO RDP - Response To External Host 3
283.0 2170 192.168.30.117 3389 113.108.139.62 61310 Misc activity ET INFO RDP - Response To External Host 3
287.0 2205 192.168.30.117 3389 113.108.139.62 61357 Misc activity ET INFO RDP - Response To External Host 3
293.0 2257 192.168.30.117 3389 113.108.139.62 61357 Misc activity ET INFO RDP - Response To External Host 3
297.0 2290 113.108.139.62 61410 192.168.30.117 3389 Detection of a Network Scan ET SCAN Behavioral Unusually fast Terminal Server Traffic Potential Scan or Infection (Inbound) 3
297.0 2297 192.168.30.117 3389 113.108.139.62 61410 Misc activity ET INFO RDP - Response To External Host 3
306.0 2355 192.168.30.117 3389 113.108.139.62 61410 Misc activity ET INFO RDP - Response To External Host 3
309.0 2392 192.168.30.117 3389 113.108.139.62 61465 Misc activity ET INFO RDP - Response To External Host 3
315.0 2441 192.168.30.117 3389 113.108.139.62 61465 Misc activity ET INFO RDP - Response To External Host 3
319.0 2474 192.168.30.117 3389 113.108.139.62 61512 Misc activity ET INFO RDP - Response To External Host 3
326.0 2528 192.168.30.117 3389 113.108.139.62 61512 Misc activity ET INFO RDP - Response To External Host 3
330.0 2562 192.168.30.117 3389 113.108.139.62 61560 Misc activity ET INFO RDP - Response To External Host 3
336.0 2610 192.168.30.117 3389 113.108.139.62 61560 Misc activity ET INFO RDP - Response To External Host 3
339.0 2644 192.168.30.117 3389 113.108.139.62 61606 Misc activity ET INFO RDP - Response To External Host 3
345.0 2693 192.168.30.117 3389 113.108.139.62 61606 Misc activity ET INFO RDP - Response To External Host 3
348.0 2726 192.168.30.117 3389 113.108.139.62 61652 Misc activity ET INFO RDP - Response To External Host 3
355.0 2781 192.168.30.117 3389 113.108.139.62 61652 Misc activity ET INFO RDP - Response To External Host 3
359.0 2817 192.168.30.117 3389 113.108.139.62 61700 Misc activity ET INFO RDP - Response To External Host 3
365.0 2863 192.168.30.117 3389 113.108.139.62 61700 Misc activity ET INFO RDP - Response To External Host 3
369.0 2906 192.168.30.117 3389 113.108.139.62 61748 Misc activity ET INFO RDP - Response To External Host 3
375.0 2954 192.168.30.117 3389 113.108.139.62 61748 Misc activity ET INFO RDP - Response To External Host 3
378.0 2987 192.168.30.117 3389 113.108.139.62 61792 Misc activity ET INFO RDP - Response To External Host 3
384.0 3035 192.168.30.117 3389 113.108.139.62 61792 Misc activity ET INFO RDP - Response To External Host 3
388.0 3068 192.168.30.117 3389 113.108.139.62 61838 Misc activity ET INFO RDP - Response To External Host 3
394.0 3116 192.168.30.117 3389 113.108.139.62 61838 Misc activity ET INFO RDP - Response To External Host 3
397.0 3151 192.168.30.117 3389 113.108.139.62 61881 Misc activity ET INFO RDP - Response To External Host 3
406.0 3202 192.168.30.117 3389 113.108.139.62 61881 Misc activity ET INFO RDP - Response To External Host 3
409.0 3235 192.168.30.117 3389 113.108.139.62 61938 Misc activity ET INFO RDP - Response To External Host 3
415.0 3284 192.168.30.117 3389 113.108.139.62 61938 Misc activity ET INFO RDP - Response To External Host 3
419.0 3318 192.168.30.117 3389 113.108.139.62 61982 Misc activity ET INFO RDP - Response To External Host 3
428.0 3377 192.168.30.117 3389 113.108.139.62 61982 Misc activity ET INFO RDP - Response To External Host 3
432.0 3423 192.168.30.117 3389 113.108.139.62 62044 Misc activity ET INFO RDP - Response To External Host 3
438.0 3472 192.168.30.117 3389 113.108.139.62 62044 Misc activity ET INFO RDP - Response To External Host 3
442.0 3506 192.168.30.117 3389 113.108.139.62 62091 Misc activity ET INFO RDP - Response To External Host 3
453.0 3569 192.168.30.117 3389 113.108.139.62 62091 Misc activity ET INFO RDP - Response To External Host 3
457.0 3606 192.168.30.117 3389 113.108.139.62 62159 Misc activity ET INFO RDP - Response To External Host 3
466.0 3667 192.168.30.117 3389 113.108.139.62 62159 Misc activity ET INFO RDP - Response To External Host 3
473.0 3706 192.168.30.117 3389 113.108.139.62 62220 Misc activity ET INFO RDP - Response To External Host 3
479.0 3755 192.168.30.117 3389 113.108.139.62 62220 Misc activity ET INFO RDP - Response To External Host 3
483.0 3788 192.168.30.117 3389 113.108.139.62 62277 Misc activity ET INFO RDP - Response To External Host 3
489.0 3831 192.168.30.117 3389 113.108.139.62 62277 Misc activity ET INFO RDP - Response To External Host 3
493.0 3870 192.168.30.117 3389 113.108.139.62 62324 Misc activity ET INFO RDP - Response To External Host 3
499.0 3920 192.168.30.117 3389 113.108.139.62 62324 Misc activity ET INFO RDP - Response To External Host 3
503.0 3953 192.168.30.117 3389 113.108.139.62 62370 Misc activity ET INFO RDP - Response To External Host 3
512.0 4004 192.168.30.117 3389 113.108.139.62 62370 Misc activity ET INFO RDP - Response To External Host 3
515.0 4037 192.168.30.117 3389 113.108.139.62 62426 Misc activity ET INFO RDP - Response To External Host 3
521.0 4086 192.168.30.117 3389 113.108.139.62 62426 Misc activity ET INFO RDP - Response To External Host 3
524.0 4120 192.168.30.117 3389 113.108.139.62 62470 Misc activity ET INFO RDP - Response To External Host 3
531.0 4169 192.168.30.117 3389 113.108.139.62 62470 Misc activity ET INFO RDP - Response To External Host 3
534.0 4202 192.168.30.117 3389 113.108.139.62 62518 Misc activity ET INFO RDP - Response To External Host 3
540.0 4250 192.168.30.117 3389 113.108.139.62 62518 Misc activity ET INFO RDP - Response To External Host 3
544.0 4283 192.168.30.117 3389 113.108.139.62 62562 Misc activity ET INFO RDP - Response To External Host 3
551.0 4333 192.168.30.117 3389 113.108.139.62 62562 Misc activity ET INFO RDP - Response To External Host 3
556.0 4375 192.168.30.117 3389 113.108.139.62 62622 Misc activity ET INFO RDP - Response To External Host 3
562.0 4423 192.168.30.117 3389 113.108.139.62 62622 Misc activity ET INFO RDP - Response To External Host 3
565.0 4457 192.168.30.117 3389 113.108.139.62 62667 Misc activity ET INFO RDP - Response To External Host 3
572.0 4505 192.168.30.117 3389 113.108.139.62 62667 Misc activity ET INFO RDP - Response To External Host 3
575.0 4538 192.168.30.117 3389 113.108.139.62 62713 Misc activity ET INFO RDP - Response To External Host 3
582.0 4584 192.168.30.117 3389 113.108.139.62 62713 Misc activity ET INFO RDP - Response To External Host 3
587.0 4625 192.168.30.117 3389 113.108.139.62 62767 Misc activity ET INFO RDP - Response To External Host 3
594.0 4672 192.168.30.117 3389 113.108.139.62 62767 Misc activity ET INFO RDP - Response To External Host 3
598.0 4705 192.168.30.117 3389 113.108.139.62 62824 Misc activity ET INFO RDP - Response To External Host 3
605.0 4752 192.168.30.117 3389 113.108.139.62 62824 Misc activity ET INFO RDP - Response To External Host 3
608.0 4785 192.168.30.117 3389 113.108.139.62 62877 Misc activity ET INFO RDP - Response To External Host 3
617.0 4839 192.168.30.117 3389 113.108.139.62 62877 Misc activity ET INFO RDP - Response To External Host 3
624.0 4879 192.168.30.117 3389 113.108.139.62 62940 Misc activity ET INFO RDP - Response To External Host 3
630.0 4928 192.168.30.117 3389 113.108.139.62 62940 Misc activity ET INFO RDP - Response To External Host 3
634.0 4962 192.168.30.117 3389 113.108.139.62 62995 Misc activity ET INFO RDP - Response To External Host 3
640.0 5010 192.168.30.117 3389 113.108.139.62 62995 Misc activity ET INFO RDP - Response To External Host 3
644.0 5044 192.168.30.117 3389 113.108.139.62 63042 Misc activity ET INFO RDP - Response To External Host 3
649.0 5087 192.168.30.117 3389 113.108.139.62 63042 Misc activity ET INFO RDP - Response To External Host 3
654.0 5131 192.168.30.117 3389 113.108.139.62 63093 Misc activity ET INFO RDP - Response To External Host 3
660.0 5180 192.168.30.117 3389 113.108.139.62 63093 Misc activity ET INFO RDP - Response To External Host 3
664.0 5220 192.168.30.117 3389 113.108.139.62 63145 Misc activity ET INFO RDP - Response To External Host 3
671.0 5263 192.168.30.117 3389 113.108.139.62 63145 Misc activity ET INFO RDP - Response To External Host 3
675.0 5304 192.168.30.117 3389 113.108.139.62 63197 Misc activity ET INFO RDP - Response To External Host 3
681.0 5348 192.168.30.117 3389 113.108.139.62 63197 Misc activity ET INFO RDP - Response To External Host 3
685.0 5389 192.168.30.117 3389 113.108.139.62 63246 Misc activity ET INFO RDP - Response To External Host 3
691.0 5437 192.168.30.117 3389 113.108.139.62 63246 Misc activity ET INFO RDP - Response To External Host 3
695.0 5470 192.168.30.117 3389 113.108.139.62 63292 Misc activity ET INFO RDP - Response To External Host 3
701.0 5518 192.168.30.117 3389 113.108.139.62 63292 Misc activity ET INFO RDP - Response To External Host 3
704.0 5551 192.168.30.117 3389 113.108.139.62 63340 Misc activity ET INFO RDP - Response To External Host 3
711.0 5599 192.168.30.117 3389 113.108.139.62 63340 Misc activity ET INFO RDP - Response To External Host 3
714.0 5633 192.168.30.117 3389 113.108.139.62 63384 Misc activity ET INFO RDP - Response To External Host 3
720.0 5679 192.168.30.117 3389 113.108.139.62 63384 Misc activity ET INFO RDP - Response To External Host 3
724.0 5721 192.168.30.117 3389 113.108.139.62 63431 Misc activity ET INFO RDP - Response To External Host 3
733.0 5769 192.168.30.117 3389 113.108.139.62 63431 Misc activity ET INFO RDP - Response To External Host 3
737.0 5811 192.168.30.117 3389 113.108.139.62 63499 Misc activity ET INFO RDP - Response To External Host 3
740.0 5814 192.168.30.117 3389 113.108.139.62 63499 Misc activity ET INFO RDP - Response To External Host 3
746.0 5862 192.168.30.117 3389 113.108.139.62 63499 Misc activity ET INFO RDP - Response To External Host 3
750.0 5898 192.168.30.117 3389 113.108.139.62 63563 Misc activity ET INFO RDP - Response To External Host 3
756.0 5946 192.168.30.117 3389 113.108.139.62 63563 Misc activity ET INFO RDP - Response To External Host 3
Important Announcement: CS Personal is taking a break