Add Mudfish protocol dissector (#2932)

Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
This commit is contained in:
Toni 2025-08-06 21:07:27 +02:00 committed by GitHub
parent c5c309708b
commit 470d0d6323
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
333 changed files with 832 additions and 675 deletions

View file

@ -0,0 +1,40 @@
DPI Packets (TCP): 4 (4.00 pkts/flow)
DPI Packets (UDP): 20 (2.00 pkts/flow)
Confidence DPI : 11 (flows)
Num dissector calls: 1549 (140.82 diss/flow)
LRU cache ookla: 0/0/0 (insert/search/found)
LRU cache bittorrent: 0/0/0 (insert/search/found)
LRU cache stun: 0/0/0 (insert/search/found)
LRU cache tls_cert: 0/0/0 (insert/search/found)
LRU cache mining: 0/0/0 (insert/search/found)
LRU cache msteams: 0/0/0 (insert/search/found)
LRU cache fpc_dns: 0/11/0 (insert/search/found)
Automa host: 0/0 (search/found)
Automa domain: 0/0 (search/found)
Automa tls cert: 0/0 (search/found)
Automa risk mask: 0/0 (search/found)
Automa common alpns: 0/0 (search/found)
Patricia risk mask: 0/0 (search/found)
Patricia risk mask IPv6: 0/0 (search/found)
Patricia risk: 0/0 (search/found)
Patricia risk IPv6: 0/0 (search/found)
Patricia protocols: 21/1 (search/found)
Patricia protocols IPv6: 0/0 (search/found)
Mudfish 89 77795 11
Acceptable 89 77795 11
VPN 89 77795 11
1 TCP 192.168.0.102:50023 <-> 14.63.214.216:10010 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 4][cat: VPN/2][Breed: Acceptable][29 pkts/1795 bytes <-> 38 pkts/74867 bytes][Goodput ratio: 0/97][1.93 sec][bytes ratio: -0.953 (Download)][IAT c2s/s2c min/avg/max/stddev: 0/0 63/28 274/275 113/82][Pkt Len c2s/s2c min/avg/max/stddev: 60/54 62/1970 66/4410 3/1146][TCP Fingerprint: 2_128_64240_6bb88f5575fd/Windows][PLAIN TEXT (INET UDP 180.149.230.54 10007 1)][Plen Bins: 2,0,0,2,0,0,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0,0,52,0,39]
2 UDP 192.168.0.102:60977 <-> 35.201.242.82:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 284/GoogleCloud][Encrypted][Confidence: DPI][FPC: 284/GoogleCloud, Confidence: IP address][DPI packets: 2][cat: VPN/2][Breed: Acceptable][2 pkts/120 bytes <-> 2 pkts/86 bytes][Goodput ratio: 2/2][98.76 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
3 UDP 192.168.0.102:60976 <-> 2.58.243.110:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 2][cat: VPN/2][Breed: Acceptable][1 pkts/60 bytes <-> 1 pkts/43 bytes][Goodput ratio: 2/2][0.22 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
4 UDP 192.168.0.102:60976 <-> 45.120.157.78:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 2][cat: VPN/2][Breed: Acceptable][1 pkts/60 bytes <-> 1 pkts/43 bytes][Goodput ratio: 2/2][0.23 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
5 UDP 192.168.0.102:60976 <-> 58.228.231.36:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 2][cat: VPN/2][Breed: Acceptable][1 pkts/60 bytes <-> 1 pkts/43 bytes][Goodput ratio: 2/2][0.28 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
6 UDP 192.168.0.102:60976 <-> 108.181.0.36:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 2][cat: VPN/2][Breed: Acceptable][1 pkts/60 bytes <-> 1 pkts/43 bytes][Goodput ratio: 2/2][0.16 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
7 UDP 192.168.0.102:60976 <-> 172.233.67.67:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 2][cat: VPN/2][Breed: Acceptable][1 pkts/60 bytes <-> 1 pkts/43 bytes][Goodput ratio: 2/2][0.33 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
8 UDP 192.168.0.102:60976 <-> 180.149.230.60:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 2][cat: VPN/2][Breed: Acceptable][1 pkts/60 bytes <-> 1 pkts/43 bytes][Goodput ratio: 2/2][0.26 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
9 UDP 192.168.0.102:60976 <-> 211.253.26.155:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 2][cat: VPN/2][Breed: Acceptable][1 pkts/60 bytes <-> 1 pkts/43 bytes][Goodput ratio: 2/2][0.27 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
10 UDP 192.168.0.102:60977 <-> 46.173.30.40:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 2][cat: VPN/2][Breed: Acceptable][1 pkts/60 bytes <-> 1 pkts/43 bytes][Goodput ratio: 2/2][0.16 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
11 UDP 192.168.0.102:60977 <-> 176.10.111.130:10007 [proto: 454/Mudfish][Stack: Mudfish][IP: 0/Unknown][Encrypted][Confidence: DPI][FPC: 0/Unknown, Confidence: Unknown][DPI packets: 2][cat: VPN/2][Breed: Acceptable][1 pkts/60 bytes <-> 1 pkts/43 bytes][Goodput ratio: 2/2][0.03 sec][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]