Hourly Report 1328786105

Embed Size (px)

Citation preview

  • 8/3/2019 Hourly Report 1328786105

    1/72

    HOURLY REPORT

    CONFIDENTIAL REPORT

    Generated at: 2012/02/09 17:00:05

    Period: 2012-02-09 16:00:00 to 2012-02-09 17:00:00

    IMMUNESECURITY A/S

    Automatically generated by LOGINSPECT 5.0

  • 8/3/2019 Hourly Report 1328786105

    2/72

    Empty Query

    logs

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00602 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00602 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00601 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00601 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00601 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00601 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00601 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:40.00601 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00600 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00600 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00600 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00600 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00600 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00600 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00599 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00599 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00599 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00599 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00599 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00598 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00597 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00597 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00597 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00597 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00597 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00597 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00596 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 1

  • 8/3/2019 Hourly Report 1328786105

    3/72

    logs

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00596 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00596 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00596 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00595 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00595 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00595 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00595 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00595 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00594 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00594 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00593 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00593 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00593 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00593 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00593 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00592 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00592 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00592 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00592 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00592 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00592 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00592 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:40.00592 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00591 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00591 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00590 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00590 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00589 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00589 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 2

  • 8/3/2019 Hourly Report 1328786105

    4/72

    logs

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00589 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00589 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00589 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00589 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00588 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00588 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00587 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00587 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00587 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00587 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00586 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00586 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00585 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00585 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00585 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00585 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00585 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00585 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00584 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00584 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00439 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00439 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:40.00439 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00439 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00439 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00439 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00438 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00438 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00438 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 3

  • 8/3/2019 Hourly Report 1328786105

    5/72

    logs

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00438 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00438 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00438 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00438 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00438 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00437 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00437 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00273 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00273 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:40.00272 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00272 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:40.00271 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00266 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:58device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00266 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00266 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00266 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 4

  • 8/3/2019 Hourly Report 1328786105

    6/72

    logs

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00266 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00266 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00266 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00265 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00265 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00265 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00265 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00265 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00265 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00265 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00264 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00264 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00263 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00263 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00262 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00261 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00261 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00261 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00261 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00261 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00261 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00261 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:39.00261 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00261 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00260 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00260 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00260 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00260 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00259 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 5

  • 8/3/2019 Hourly Report 1328786105

    7/72

    logs

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00259 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00258 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00258 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00258 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00258 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00258 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00258 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00257 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00257 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00257 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00257 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00257 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00257 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00256 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00256 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00256 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00256 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00256 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00255 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00255 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00255 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00255 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:39.00255 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00254 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00254 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00254 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00254 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00253 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00253 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 6

  • 8/3/2019 Hourly Report 1328786105

    8/72

    logs

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00253 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00253 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00253 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00253 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00252 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00252 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00250 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00250 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00250 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00250 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00250 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00249 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00249 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00249 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00249 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00249 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00248 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00248 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00248 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00248 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00248 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00248 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:39.00248 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00248 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00245 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00245 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00245 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00245 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00245 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 7

  • 8/3/2019 Hourly Report 1328786105

    9/72

    logs

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00245 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00245 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00245 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00245 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00244 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00244 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00244 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00244 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00244 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00244 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00244 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00242 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:57device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00241 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:39.00241 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00240 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00240 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00240 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00240 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00240 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00240 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 8

  • 8/3/2019 Hourly Report 1328786105

    10/72

    logs

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00237 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00236 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00236 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00236 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00236 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00236 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00236 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00235 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00234 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00234 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00233 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00233 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:39.00233 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00233 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00233 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00233 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00233 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00233 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00232 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 9

  • 8/3/2019 Hourly Report 1328786105

    11/72

    logs

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00232 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00232 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00232 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00232 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00231 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00230 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00230 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00230 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00230 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00230 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00230 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00229 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00229 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00229 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00229 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00229 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00229 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00228 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00228 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00228 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00228 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00228 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:39.00228 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00226 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00226 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00226 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00226 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00225 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00225 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 10

  • 8/3/2019 Hourly Report 1328786105

    12/72

    logs

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00225 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00225 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00225 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00225 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00225 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00225 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00224 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00224 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00224 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00224 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00222 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00222 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00222 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00222 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00222 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00222 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00221 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00221 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00221 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00221 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00221 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00221 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:39.00220 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00220 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00220 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00220 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00220 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00220 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00215 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 11

  • 8/3/2019 Hourly Report 1328786105

    13/72

    logs

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00214 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00213 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00213 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00213 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:39.00213 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00210 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:56device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00210 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00210 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00210 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00210 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00210 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00209 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:38.00209 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00209 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00209 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00209 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00209 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00208 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00208 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 12

  • 8/3/2019 Hourly Report 1328786105

    14/72

    logs

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00208 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00208 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00208 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00208 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00206 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00206 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00205 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00204 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00204 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00204 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00204 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00204 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00204 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:38.00201 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00201 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00201 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00201 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00201 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 13

  • 8/3/2019 Hourly Report 1328786105

    15/72

    logs

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00200 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00199 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00198 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00198 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00198 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00198 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00197 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00197 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00197 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00197 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00197 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00197 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00196 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00196 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00196 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:38.00196 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00196 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00196 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00196 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00196 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00194 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00194 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    HOURLY REPORTImmuneSecurity A/S

    Automatically generated by LOGINSPECT 5.0 Page 14

  • 8/3/2019 Hourly Report 1328786105

    16/72

    logs

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00193 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00193 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00193 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00193 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00193 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00193 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00192 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00192 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00192 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00192 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00192 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00192 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00192 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00192 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00191 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00191 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00190 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00190 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00190 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00190 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00190 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00190 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect

    2012-02-08_13:14:38.00190 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00190 CorrelationRuleListener;sendAlert; f96c6cdb47a89ad1cc175d0210dbb623 id not found

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00190 CorrelationRule; correlation rule detected; correlation_rule=test123; risk=medium; message=test; groups=

    2012/02/09 16:59:55device_ip:127.0.0.1col_type:filesystemrepo_name:_loginspect2012-02-08_13:14:38.00190 C