Professional Documents
Culture Documents
FortiGate: fw_deltoromty
Out
4500K
18K
4000K
16K
3500K
14K
Sessions
5000K
3000K
2500K
2000K
1500K
12K
10K
8K
6K
4K
500K
2K
0K
0K
00
:
01 00
:
02 00
:
03 00
:
04 00
:
05 00
:
06 00
:
07 00
:
08 00
:
09 00
:
10 00
:
11 00
:
12 00
:
13 00
:
14 00
:
15 00
:
16 00
:
17 00
:
18 00
:
19 00
:
20 00
:
21 00
:
22 00
:
23 00
:0
0
1000K
00
:
01 00
:
02 00
:
03 00
:
04 00
:
05 00
:
06 00
:
07 00
:
08 00
:
09 00
:
10 00
:
11 00
:
12 00
:
13 00
:
14 00
:
15 00
:
16 00
:
17 00
:
18 00
:
19 00
:
20 00
:
21 00
:
22 00
:
23 00
:0
0
Bandwidth (bit/s)
IP
Recv
User
IP
Sessions
192.168.0.138
192.168.0.138
1.6 GB
192.168.0.5
192.168.0.5
192.168.0.248
192.168.0.248
1.2 GB
192.168.0.104
192.168.0.104
6.4 K
192.168.0.189
192.168.0.189
971.3 MB
192.168.0.246
192.168.0.246
6.3 K
192.168.0.75
192.168.0.75
942.2 MB
192.168.0.107
192.168.0.107
5.3 K
192.168.0.143
192.168.0.143
938.2 MB
192.168.0.167
192.168.0.167
4.5 K
192.168.0.195
192.168.0.195
751.1 MB
192.168.0.248
192.168.0.248
4.1 K
192.168.0.15
192.168.0.15
676.3 MB
192.168.0.103
192.168.0.103
3.0 K
192.168.0.156
192.168.0.156
618.8 MB
192.168.0.142
192.168.0.142
2.8 K
192.168.0.72
192.168.0.72
576.6 MB
192.168.0.118
192.168.0.118
2.8 K
192.168.0.245
192.168.0.245
511.1 MB
192.168.0.84
192.168.0.84
2.5 K
Sent
12.6 K
Application
Sessions
YouTube
3.8 GB
HTTP
71.8 K
HTTP.Video
3.7 GB
POP3S
22.1 K
HTTP
2.5 GB
4.1 K
1.9 GB
HTTP.Audio
Gmail
3.9 K
Gmail
677.1 MB
YouTube
3.6 K
POP3S
663.1 MB
Skype
3.6 K
MS.Windows.Update
401.4 MB
MS.Windows.Update
2.8 K
Ultrasurf_9.6+
327.7 MB
DNS
800
HTTP.Download.Accelerator
89.2 MB
HTTP.Video
796
79.8 MB
Hotmail
746
gmail.com (21.8 K)
it-finance.com (13.9 K)
google.com (5.1 K)
twitter.com (4.2 K)
terra.com.mx (3.8 K)
doubleclick.net (3.1 K)
googlevideo.com (2.7 K)
microsoft.com (2.6 K)
youtube.com (2.1 K)
googlesyndication.com (1.8 K)
Available
IP
SSID
Sent
MAC
Recv
200
180
160
140
120
100
80
60
40
20
0
00
:
01 00
:
02 00
:
03 00
:
04 00
:
05 00
:
06 00
:
07 00
:
08 00
:
09 00
:
10 00
:
11 00
:
12 00
:
13 00
:
14 00
:
15 00
:
16 00
:
17 00
:
18 00
:
19 00
:
20 00
:
21 00
:
22 00
:
23 00
:0
0
Active Users
Web Usage
Top Allowed Websites by Requests
Website
Sent
Website
Recv
it-finance.com
13.9 K
terra.com.mx
3.8 K
akamaihd.net
615.0 MB
doubleclick.net
3.1 K
microsoft.com
508.4 MB
googlevideo.com
2.7 K
yac.mx
432.4 MB
googlesyndication.com
1.9 K
windowsupdate.com
361.2 MB
ytimg.com
1.6 K
ytimg.com
110.0 MB
msn.com
1.6 K
pinimg.com
95.9 MB
youtube.com
1.4 K
info7.mx
86.1 MB
info7.mx
1.4 K
andrea.com
83.2 MB
ooyala.com
1.3 K
googlesyndication.com
64.3 MB
googlevideo.com
7.8 GB
User(or IP)
Hostname(MAC)
Requests
crwdcntrl.net
126
192.168.0.246
2c:27:d7:1c:39:a5
122
kalooga.com
39
192.168.0.15
60:67:20:a0:ec:04
45
m2pub.com
36
192.168.0.127
d4:85:64:03:bf:ad
36
dalealplay.com
27
192.168.0.220
d4:85:64:03:bf:24
29
txtsrving.info
25
192.168.0.118
d4:85:64:03:bf:51
18
beforeitsnews.com
22
192.168.0.134
d4:85:64:03:bf:82
16
adroll.com
17
192.168.0.248
d4:85:64:03:bf:a8
16
frogupdate.com
11
192.168.0.167
00:26:82:cb:bd:a2
15
stgbssint.com
11
192.168.0.249
20:10:7a:23:42:0b
14
infolinks.com
10
192.168.0.86
00:26:82:cb:bd:9b
14
Web Usage
Top Web Users by Requests
User(or IP)
Hostname(MAC)
User(or IP)
Requests
192.168.0.5
d4:85:64:03:bf:f8
192.168.0.104
d4:85:64:03:be:ca
192.168.0.246
2c:27:d7:1c:39:a5
192.168.0.107
2c:27:d7:36:58:fd
192.168.0.248
d4:85:64:03:bf:a8
192.168.0.167
00:26:82:cb:bd:a2
192.168.0.103
d4:85:64:03:bf:b7
192.168.0.142
d4:85:64:03:bf:17
192.168.0.84
00:21:85:9c:af:44
192.168.0.85
10:60:4b:80:5c:b6
Average Usage of Top 10
12.6 K
6.0 K
5.9 K
4.2 K
3.9 K
3.2 K
2.9 K
2.4 K
2.3 K
2.2 K
4.6 K
Hostname(Mac)
Sent
192.168.0.138
1c:c1:de:a1:ed:d7
192.168.0.248
d4:85:64:03:bf:a8
192.168.0.189
b8:a3:86:8e:59:ec
192.168.0.143
d4:85:64:03:bf:16
192.168.0.75
00:25:ab:1e:cb:4c
192.168.0.15
60:67:20:a0:ec:04
192.168.0.156
d4:85:64:03:bf:6b
192.168.0.72
40:f0:2f:c5:69:8c
192.168.0.245
d4:85:64:03:bf:72
192.168.0.142
d4:85:64:03:bf:17
Average Usage of Top 10
Recv
1.6 GB
1.2 GB
971.2 MB
922.1 MB
914.0 MB
671.6 MB
613.3 MB
575.5 MB
453.5 MB
436.5 MB
836.0 MB
Sent
Website
Recv
45.3%
youtube.com
53.6 M
22.2%
msn.com
26.3 M
15.6%
savefrom.net
18.5 M
7.2%
thestaticvube.com
8.5 M
3.0%
netflix.com
3.6 M
6.8%
others
8.1 M
Emails
Top Senders by Number of Emails
Sender
Number of Emails
Sender
Bandwidth
Bandwidth
Threats
Top Viruses by Name
Virus Name
Virus Victim
Occurrence
Attack Source
Occurrence
27.0%
199.66.238.110
24.3%
192.168.0.37
10
9
24.3%
199.66.238.111
24.3%
199.66.238.112
Attack Victim
Occurrence
75.7%
192.168.0.37
28
8.1%
199.66.238.110
8.1%
199.66.238.111
8.1%
199.66.238.112
VPN Usage
Top Site-to-Site IPSec Tunnels by Bandwidth
Sent
Tunnel
Recv
User
IP
Type
Sent
Recv
User
Sent
Sent
IP
Recv
Sent
Tunnel
SSL Out
SSL In
Recv
IPSec Out
IPSec In
10
Recv
Bandwidth (bit/s)
8
7
6
5
4
3
2
1
00
:
01 00
:
02 00
:
03 00
:
04 00
:
05 00
:
06 00
:
07 00
:
08 00
:
09 00
:
10 00
:
11 00
:
12 00
:
13 00
:
14 00
:
15 00
:
16 00
:
17 00
:
18 00
:
19 00
:
20 00
:
21 00
:
22 00
:
23 00
:0
0
User Name
admin
=Config Changed
Login Interface
https(192.168.0.78)
Duration
Date/Time
User Name
Login Interface
Duration
Event
Date/Time
Event
06/25 22:16
06/25 11:26
06/25 18:12
06/25 07:55
06/25 17:33
06/25 06:12
06/25 16:13
06/25 02:00
06/25 16:06
The ntp daemon step adjusted time from Wed Jun 25 16:06:48 2014
06/25 00:33
06/25 15:20
06/25 00:33
06/25 13:33
06/25 00:00
06/25 13:20
Appendix A
- Individual Report for 1st Highest User: 192.168.0.138 Usage: 1.6 GB IP: 192.168.0.138 Device:
Traffic Summary
1.6 GB
1.5 GB in
53.2 MB out
1.4 K
Top 5 Destinations
Destination
Bandwidth
googlevideo.com
googlevideo.com
googlevideo.com
ytimg.com
gmail.com
APP
986.5 MB
521.6 MB
36.6 MB
14.9 MB
10.1 MB
Host Name
Number of Visits
googlevideo.com
ytimg.com
youtube.com
doubleclick.net
google.com
HTTP.Video
HTTP.Audio
YouTube
HTTP
POP3S
265
163
136
122
46
Host Name
Number of Visits
crwdcntrl.net
Bandwidth
0B
0B
Threat Summary
Threat Name
Type
Counts
Bandwidth
Bandwidth
Application Summary
Top 5 Applications by Bandwidth
HTTP (664)
Twitter (312)
YouTube (183)
HTTP.Video (147)
HTTP.Audio (87)
Appendix B
- Individual Report for 2nd Highest User: 192.168.0.248 Usage: 1.2 GB IP: 192.168.0.248 Device:
Traffic Summary
1.2 GB
1.1 GB in
39.1 MB out
3.9 K
Top 5 Destinations
Destination
Bandwidth
googlevideo.com
akamaihd.net
mediotiempo.com
ytimg.com
serving-sys.com
APP
891.9 MB
233.1 MB
12.3 MB
10.3 MB
9.7 MB
Host Name
Number of Visits
googlevideo.com
serving-sys.com
outbrain.com
gigya.com
mediotiempo.com
YouTube
HTTP.Video
HTTP
HTTP
HTTP
723
269
231
190
188
Host Name
Bandwidth
0B
Number of Visits
infolinks.com
m2pub.com
crwdcntrl.net
mathtag.com
singlessalad.com
7
6
1
1
1
0B
Threat Summary
Threat Name
Type
Counts
Bandwidth
Bandwidth
Application Summary
Top 5 Applications by Bandwidth
HTTP (2.9 K)
YouTube (799)
Twitter (167)
POP3S (53)
MS.Windows.Update (45)
Appendix C
- Individual Report for 3rd Highest User: 192.168.0.189 Usage: 971.3 MB IP: 192.168.0.189 Device:
Traffic Summary
971.3 MB
946.3 MB in
25.0 MB out
1.2 K
Top 5 Destinations
Destination
Bandwidth
googlevideo.com
ytimg.com
viva-images.com
youtube.com
googlesyndicatio
APP
936.2 MB
14.7 MB
7.3 MB
3.7 MB
1.6 MB
Host Name
Number of Visits
ytimg.com
googlevideo.com
youtube.com
doubleclick.net
gstatic.com
YouTube
HTTP
HTTP
YouTube
HTTP
285
256
136
109
72
Host Name
Number of Visits
putaslocuras.com
Bandwidth
0B
0B
Threat Summary
Threat Name
Type
Counts
Bandwidth
Bandwidth
Application Summary
Top 5 Applications by Bandwidth
HTTP (763)
YouTube (369)
HTTP.Video (39)
MS.Windows.Update (8)
Google.Search_Never.Insta (4)
Appendix D
- Individual Report for 4th Highest User: 192.168.0.75 Usage: 941.6 MB IP: 192.168.0.75 Device:
Traffic Summary
941.6 MB
901.9 MB in
39.6 MB out
727
Top 5 Destinations
Destination
Bandwidth
googlevideo.com
googlevideo.com
live.com
snt149.afx.ms
youtube.com
APP
557.8 MB
345.2 MB
14.6 MB
12.1 MB
4.5 MB
Host Name
Number of Visits
googlevideo.com
trafficmanager.net
youtube.com
doubleclick.net
bing.com
HTTP.Audio
HTTP.Video
Hotmail
Hotmail
YouTube
220
119
118
102
89
Host Name
Number of Visits
Bandwidth
0B
0B
Threat Summary
Threat Name
Type
Counts
Bandwidth
Bandwidth
Application Summary
Top 5 Applications by Bandwidth
HTTP (447)
YouTube (153)
HTTP.Audio (110)
HTTP.Video (108)
Hotmail (40)
10
Appendix E
- Individual Report for 5th Highest User: 192.168.0.143 Usage: 937.8 MB IP: 192.168.0.143 Device:
Traffic Summary
937.8 MB
906.7 MB in
31.0 MB out
1.1 K
Top 5 Destinations
Destination
Bandwidth
googlevideo.com
googlevideo.com
google.com
bp.blogspot.com
youtube.com
APP
643.1 MB
237.9 MB
12.5 MB
8.8 MB
8.6 MB
Host Name
Number of Visits
googlevideo.com
youtube.com
doubleclick.net
ytimg.com
googlesyndication.com
HTTP.Video
HTTP.Audio
Gmail
Blogger
YouTube
212
184
171
125
59
Host Name
Number of Visits
Bandwidth
0B
0B
Threat Summary
Threat Name
Type
Counts
Bandwidth
Bandwidth
Application Summary
Top 5 Applications by Bandwidth
HTTP (586)
YouTube (214)
POP3S (189)
HTTP.Video (115)
HTTP.Audio (95)
11