(C) 1998-2010 - Luca Deri  
Please enable make sure that the ntop html/ directory is properly installed

 

 

Info about 10.0.0.50

IP Address10.0.0.50 [unicast - multihomed Multihomed] [ Purge Asset ]
Multihomed Addresses 
    Custom Host Name
    First/Last SeenFri Sep 13 16:14:39 2024  -  Fri Sep 20 08:40:57 2024 [Inactive since 0 sec]
    Subnet10.0.0.0/22
    Main Host MAC Address58:EF:68:09:34:1E 
    Host LocationLocal (inside specified/local subnet or known network list)
    IP TTL (Time to Live)1:254 [~0 hop(s)]
    Total Data Sent30.4 GBytes/132,316,022 Pkts/0 Retran. Pkts [0%]
    Broadcast Pkts Sent46 Pkts
    Data Sent Stats
    Local 8.8 %
      
    Rem 91.2 %
    IP vs. Non-IP Sent
    IP 91.2 %
      
    Non-IP 8.8 %
    Total Data Rcvd287.2 GBytes/236,897,030 Pkts/0 Retran. Pkts [0%]
    Data Rcvd Stats
    Local 10.6 %
      
    Rem 89.4 %
    IP vs. Non-IP Rcvd
    IP 89.4 %
      
    Non-IP 10.6 %
    Sent vs. Rcvd Pkts
    Sent 35.8 %
      
    Rcvd 64.2 %
    Sent vs. Rcvd Data
    Sent 9.6 %
      
    Rcvd 90.4 %
    Used Subnet Routers F2:D9:A0:7D:57:46 Network Card
    LAA (Locally assigned address):63:53:C9 Network Card
    LAA (Locally assigned address):8B:47:CB Network Card
    FA:CB:D6:D7:C4:32 Network Card
    Jetway Information Co., Ltd.:AB:14:78 Network Card
    7C:2A:DB:9B:F7:85 Network Card
    LAA (Locally assigned address):3A:CD:A3 Network Card
    8E:B0:B2:54:26:FC Network Card
    Host TypeName Server DNS
    VoIP Host VoIP
    Host Healthness (Risk Flags) High Risk Medium Risk Low Risk
    1. Medium RiskWrong network mask or bridging enabled
    2. Medium RiskSuspicious activities: too many host contacts
    3. Low RiskUnexpected packets (e.g. traffic to closed port or connection reset):
      [Rcvd: rejected] [Sent: udp to closed] [Rcvd: port unreac] [Rcvd: hostnet unreac] [Rcvd: admin prohib] 

     

    Host Traffic Stats

    TimeTot. Traffic Sent% Traffic SentTot. Traffic Rcvd% Traffic Rcvd
    8 AM 407.8 MBytes13.2 %7.5 GBytes18.1 %
    7 AM 9.4 MBytes0.3 %46.4 MBytes0.1 %
    6 AM 190.3 MBytes6.1 %1.3 GBytes3.1 %
    5 AM 16.1 MBytes0.5 %117.4 MBytes0.3 %
    4 AM 6.1 MBytes0.2 %4.3 MBytes0.0 %
    3 AM 43.7 MBytes1.4 %114.7 MBytes0.3 %
    2 AM 381.6 KBytes0.0 %6.0 MBytes0.0 %
    1 AM 513.7 KBytes0.0 %1.1 MBytes0.0 %
    12 AM 1.1 MBytes0.0 %24.8 MBytes0.1 %
    11 PM 24.2 MBytes0.8 %382.4 MBytes0.9 %
    10 PM 1.5 MBytes0.0 %7.1 MBytes0.0 %
    9 PM 51.6 MBytes1.7 %344.1 MBytes0.8 %
    8 PM 15.7 MBytes0.5 %64.0 MBytes0.2 %
    7 PM 43.4 MBytes1.4 %250.3 MBytes0.6 %
    6 PM 41.9 MBytes1.4 %493.3 MBytes1.2 %
    5 PM 10.4 MBytes0.3 %162.5 MBytes0.4 %
    4 PM 3.9 MBytes0.1 %48.5 MBytes0.1 %
    3 PM 33.2 MBytes1.1 %180.0 MBytes0.4 %
    2 PM 79.2 MBytes2.6 %275.7 MBytes0.6 %
    1 PM 23.3 MBytes0.8 %120.3 MBytes0.3 %
    12 PM 176.5 MBytes5.7 %2.5 GBytes5.9 %
    11 AM 693.5 MBytes22.4 %9.4 GBytes22.6 %
    10 AM 730.5 MBytes23.6 %9.9 GBytes23.9 %
    9 AM 492.2 MBytes15.9 %8.4 GBytes20.1 %
    Total

     

    Packet Statistics

    TCP ConnectionsDirected toRcvd From
    Rejected608 327

    AnomalyPkts Sent toPkts Rcvd from
    UDP Pkt to Closed Port21,914 83,349
    ICMP Port Unreachable83,957 22,241
    ICMP Net Unreachable1,590,146 106
    ICMP Administratively Prohibited0  33

    ARPPacket
    Request Sent0
    Reply Rcvd14,677 (0.0 %)
    Reply Sent14,569

     

    Protocol Distribution

    ProtocolData SentData Rcvd
    TCP11.2 GBytes
    40%

     

    70.0 GBytes
    27%

     

    UDP16.3 GBytes
    58%

     

    186.7 GBytes
    72%

     

    ICMP273.7 MBytes  7.7 MBytes 
    IPsec0.1 KBytes  709.7 MBytes 
    (R)ARP1.3 MBytes  799.7 KBytes 
    Protocol Distribution
    IP Distribution

     

    ICMP Traffic

    TypePkt SentPkt Rcvd
    Echo Request51,0710
    Echo Reply038,565
    Unreach1,674,10322,382
    Time Exceeded019,243

     

    IP Fragments Distribution

    ProtocolData SentData Rcvd
    UDP7.0 KBytes100% 1.3 MBytes100
    Fragment DistributionSent Fragment Distribution for 10.0.0.50-65535Received Fragment Distribution for 10.0.0.50-65535
    IP Fragment DistributionSent IP Fragment Distribution for 10.0.0.50-65535Received IP Fragment Distribution for 10.0.0.50-65535

     

    Last Contacted Peers

    Sent ToIP Address
    157.240.7.35 157.240.7.35 
    57.144.100.1 57.144.100.1 
    157.240.208.34 157.240.208.34 
    66.96.226.211 66.96.226.211 
    71.18.36.224 71.18.36.224 
    103.242.150.3 103.242.150.3 
    31.13.95.13 31.13.95.13 
    103.157.33.94 103.157.33.94 
    Total Contacts15568991
    Received FromIP Address
    31.13.95.13 31.13.95.13 
    157.240.208.34 157.240.208.34 
    66.96.226.211 66.96.226.211 
    157.240.7.35 157.240.7.35 
    157.240.7.20 157.240.7.20 
    71.18.36.224 71.18.36.224 
    103.242.150.3 103.242.150.3 
    13.35.218.168 13.35.218.168 
    Total Contacts18704302

     

    TCP/UDP Service/Port Usage

    IP ServicePort# Client Sess.Last Client Peer# Server Sess.Last Server Peer
    ftp2126/19.7 KBytes217.160.102.109   
    ssh2224844/15.4 MBytes172.234.236.41   
    nicname432/593212.193.111.1   
    domain5324833/37.8 MBytesJetway Information Co., Ltd.:AB:14:78 Network Card 1/99102.139.208.76
    http8043922/2.9 GBytes34.104.35.123   
    8181  2/115Jetway Information Co., Ltd.:AB:14:78 Network Card
    ctf84  2/221114.114.114.114
    npp9212/240169.150.212.238   
    dcp9392/1.8 KBytes169.150.212.227   
    supdup9510/200146.70.20.99   
    dixie9610/200128.14.197.97 2/533Jetway Information Co., Ltd.:AB:14:78 Network Card
    swift-rvf9734/680146.70.20.96   
    tacnews98236/315.7 KBytes8.222.250.43   
    metagram9930/564128.14.65.49   
    ntp12327759/1.3 MBytes103.177.8.230 88/4.1 KBytes17.253.60.125
    sqlsrv156  2/90114.114.114.114
    sgmp-traps16096/32.9 KBytes169.136.94.249   
    bgp17948/26.6 KBytes24.199.68.20   
    masqdialer224  2/181114.114.114.114
    229229  2/216Jetway Information Co., Ltd.:AB:14:78 Network Card
    30030094/10.7 KBytes8.215.162.27   
    301301289/30.2 KBytes8.215.162.29   
    30230278/6.1 KBytes8.215.162.26   
    303303231/24.7 KBytes8.215.162.31   
    opalis-robot314  2/106114.114.114.114
    opc-job-track424  2/200114.114.114.114
    decvms-sysmgt441  4/258Jetway Information Co., Ltd.:AB:14:78 Network Card
    https44342072/287.7 GBytes31.13.95.13 1/3534.117.36.110
    urd46511/5.0 KBytes64.233.170.109   
    isakmp50036994/734.2 MBytes115.178.175.4 1/40172.25.51.11
    ulp522  2/312114.114.114.114
    rtsp5545273/3.3 MBytes172.234.249.228   
    dhcp-failover64710/9.7 KBytes8.215.162.11   
    accessnetwork699  4/3108.8.8.8
    agentx705  2/536Jetway Information Co., Ltd.:AB:14:78 Network Card
    725725  4/404Jetway Information Co., Ltd.:AB:14:78 Network Card
    737737  2/556Jetway Information Co., Ltd.:AB:14:78 Network Card
    85385333984/10.0 MBytes94.140.14.14   
    865865  2/96Jetway Information Co., Ltd.:AB:14:78 Network Card
    916916  2/200114.114.114.114
    98398332/20.4 KBytes172.233.81.115   
    imaps9934036/1.5 MBytes142.251.12.109   

     

    TCP/UDP - Traffic on Other Ports

    Client PortServer Port

     

    TCP/UDP Recently Used Ports

    Client PortServer Port