LongTail Log Analysis

Assorted Statistics

Analysis does not include today's numbers. Numbers rounded to two decimal places

Created on Fri May 25 21:13:12 EDT 2018

Normalized data is data that consists of only full days of attacks, AND to servers that are NOT protected by firewalls or other kinds of intrusion protection systems.

Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev. Median Max Min
All Hosts Combined
ALL Hosts So Far Today1732N/AN/AN/AN/AN/A
ALL Hosts This Month 24 93,222 3,884.25 1,788.87 3,114.5 7,353 1,129
ALL Hosts Last Month 30 142,602 4,753.40 1,253.00 4,716.5 7,300 2,488
ALL Hosts This Year 144 642,144 4,459.33 1,664.59 4,218.5 8,184 1,129
ALL Hosts Since Logging Started 1,200 111,404,634 92,837.20 76,227.14 84,503.5 518,642 0
ALL Hosts Normalized Since Logging Started 5,449 65,841,202 12,083.17 20,017.80 3,766 235,429 0
 
Hosts protected by BlackRidge Technologies
blackridge Educational Site, Protected By a BlackRidge Technology Eclipse Gateway
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
blackridge So Far Today10N/AN/AN/AN/AN/A
blackridge This Month 20 0 0.00 0.00 0 0 0
blackridge Last Month 24 0 0.00 0.00 0 0 0
blackridge This Year 111 0 0.00 0.00 0 0 0
blackridge Since Logging Started 1,009 150,274 148.93 3,521.45 0 108,999 0
blackridge Normalized Since Logging Started 0.00 0.00
 
Hosts protected by an Intrusion Protection System
erhp Educational Site, Protected By a Juniper SRX 3600
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
erhp So Far Today10N/AN/AN/AN/AN/A
erhp This Month 23 0 0.00 0.00 0 0 0
erhp Last Month 28 0 0.00 0.00 0 0 0
erhp This Year 135 0 0.00 0.00 0 0 0
erhp Since Logging Started 1,127 303,459 269.26 1,816.72 3 31,241 0
erhp Normalized Since Logging Started 0.00 0.00
erhp2 Educational Site, Protected By a Juniper SRX 3600
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
erhp2 So Far Today10N/AN/AN/AN/AN/A
erhp2 This Month 23 0 0.00 0.00 0 0 0
erhp2 Last Month 27 0 0.00 0.00 0 0 0
erhp2 This Year 127 0 0.00 0.00 0 0 0
erhp2 Since Logging Started 1,086 26,970 24.83 186.55 0 5,357 0
erhp2 Normalized Since Logging Started 0.00 0.00
 
Educational Sites
syrtest Educational Site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
syrtest So Far Today10N/AN/AN/AN/AN/A
syrtest This Month 24 0 0.00 0.00 0 0 0
syrtest Last Month 30 0 0.00 0.00 0 0 0
syrtest This Year 134 0 0.00 0.00 0 0 0
syrtest Since Logging Started 1,092 11,897,488 10,895.14 14,986.95 6,019 121,449 0
syrtest Normalized Since Logging Started 1,091 11,897,483 10,905.12 14,990.18 6,043 121,449 0
edub Second Educational Site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
edub So Far Today10N/AN/AN/AN/AN/A
edub This Month 23 0 0.00 0.00 0 0 0
edub Last Month 31 80,170 2,586.13 5,514.63 0 22,038 0
edub This Year 236 1,254,067 5,313.84 8,432.76 3,326.5 102,009 0
edub Since Logging Started 524 4,738,036 9,042.05 14,056.96 3,922.5 102,009 0
edub Normalized Since Logging Started 521 4,737,755 9,093.58 14,080.91 3,957 102,009 0
edu_c Third Educational Site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
edu_c So Far Today10N/AN/AN/AN/AN/A
edu_c This Month 18 0 0.00 0.00 0 0 0
edu_c Last Month 26 0 0.00 0.00 0 0 0
edu_c This Year 115 0 0.00 0.00 0 0 0
edu_c Since Logging Started 1,037 23,272,208 22,441.86 32,209.78 10,251 235,429 0
edu_c Normalized Since Logging Started 1,034 23,233,262 22,469.31 32,242.36 10,253.5 235,429 0
 
Residential Sites
shepherd Residential Site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
shepherd So Far Today1444N/AN/AN/AN/AN/A
shepherd This Month 18 21,009 1,167.17 768.00 973 3,044 89
shepherd Last Month 24 47,974 1,998.92 951.30 1,891.5 4,645 743
shepherd This Year 115 133,381 1,159.83 993.77 1,182 4,645 0
shepherd Since Logging Started 1,134 11,977,303 10,562.00 14,478.02 4,950.5 116,607 0
shepherd Normalized Since Logging Started 1,133 11,973,402 10,567.87 14,483.06 4,980 116,607 0
 
Cloud Provider Sites
AWS AWS Amazon Web Services cloud site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
AWS So Far Today10N/AN/AN/AN/AN/A
AWS This Month 23 0 0.00 0.00 0 0 0
AWS Last Month 29 0 0.00 0.00 0 0 0
AWS This Year 132 0 0.00 0.00 0 0 0
AWS Since Logging Started 783 10,326,463 13,188.33 18,528.12 4,414 119,665 0
AWS Normalized Since Logging Started 783 10,326,463 13,188.33 18,528.12 4,414 119,665 0
cloud_v Host Cloud_v, offline on Feb 23rd, 2015.
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
cloud_v So Far Today10N/AN/AN/AN/AN/A
cloud_v This Month 0.00 0.00
cloud_v Last Month 6 106475 17745.83 12110.57 25841.5 34185 0
cloud_v This Year 6 106475 17745.83 12110.57 25841.5 34185 0
cloud_v Since Logging Started 6 106475 17745.83 12110.57 25841.5 34185 0
cloud_v Normalized Since Logging Started 4 101308 25327.00 6651.26 25841.5 34185 15440
cloud_c Host Cloud_c, offline on Feb 23rd, 2015.
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
cloud_c So Far Today10N/AN/AN/AN/AN/A
cloud_c This Month 0.00 0.00
cloud_c Last Month 2 145 72.50 49.50 72.5 122 23
cloud_c This Year 2 145 72.50 49.50 72.5 122 23
cloud_c Since Logging Started 2 145 72.50 49.50 72.5 122 23
cloud_c Normalized Since Logging Started 0.00 0.00

Total SSH attempts for all hosts may be LARGER than the sum of SSH attempts of each host. This is because each host's attacks are counted before totalling all the SSH attacks, and if attacks are ongoing, then more attacks will have come in between counting for a host and counting all the SSH attacks.


LongTail Copyright 2015 by Eric Wedaa, under GPLV2