LongTail Log Analysis

Assorted Statistics

Analysis does not include today's numbers. Numbers rounded to two decimal places

Created on Tue Jun 18 06:22:07 EDT 2019

Normalized data is data that consists of only full days of attacks, AND to servers that are NOT protected by firewalls or other kinds of intrusion protection systems.

Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev. Median Max Min
All Hosts Combined
ALL Hosts So Far Today10N/AN/AN/AN/AN/A
ALL Hosts This Month 13 46,093 3,545.62 820.08 3,655 4,861 1,631
ALL Hosts Last Month 24 83,958 3,498.25 1,138.96 3,716.5 5,589 1,882
ALL Hosts This Year 145 604,594 4,169.61 1,724.61 3,897 10,389 1,220
ALL Hosts Since Logging Started 1,566 112,744,978 71,995.52 76,664.41 51,802 518,642 0
ALL Hosts Normalized Since Logging Started 7,485 66,242,977 8,850.10 17,882.63 515 235,429 0
 
Hosts protected by BlackRidge Technologies
blackridge Educational Site, Protected By a BlackRidge Technology Eclipse Gateway
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
blackridge So Far Today10N/AN/AN/AN/AN/A
blackridge This Month 14 0 0.00 0.00 0 0 0
blackridge Last Month 24 0 0.00 0.00 0 0 0
blackridge This Year 151 0 0.00 0.00 0 0 0
blackridge Since Logging Started 1,326 150,274 113.33 3,072.47 0 108,999 0
blackridge Normalized Since Logging Started 0.00 0.00
 
Hosts protected by an Intrusion Protection System
erhp Educational Site, Protected By a Juniper SRX 3600
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
erhp So Far Today10N/AN/AN/AN/AN/A
erhp This Month 12 0 0.00 0.00 0 0 0
erhp Last Month 25 0 0.00 0.00 0 0 0
erhp This Year 147 0 0.00 0.00 0 0 0
erhp Since Logging Started 1,484 303,459 204.49 1,587.37 0 31,241 0
erhp Normalized Since Logging Started 0.00 0.00
erhp2 Educational Site, Protected By a Juniper SRX 3600
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
erhp2 So Far Today10N/AN/AN/AN/AN/A
erhp2 This Month 14 0 0.00 0.00 0 0 0
erhp2 Last Month 25 0 0.00 0.00 0 0 0
erhp2 This Year 148 0 0.00 0.00 0 0 0
erhp2 Since Logging Started 1,431 26,970 18.85 162.86 0 5,357 0
erhp2 Normalized Since Logging Started 0.00 0.00
 
Educational Sites
syrtest Educational Site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
syrtest So Far Today10N/AN/AN/AN/AN/A
syrtest This Month 14 0 0.00 0.00 0 0 0
syrtest Last Month 24 0 0.00 0.00 0 0 0
syrtest This Year 144 0 0.00 0.00 0 0 0
syrtest Since Logging Started 1,445 11,897,488 8,233.56 13,843.88 691 121,449 0
syrtest Normalized Since Logging Started 1,444 11,897,483 8,239.25 13,846.98 710 121,449 0
edub Second Educational Site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
edub So Far Today10N/AN/AN/AN/AN/A
edub This Month 23 0 0.00 0.00 0 0 0
edub Last Month 31 80,170 2,586.13 5,514.63 0 22,038 0
edub This Year 236 1,254,067 5,313.84 8,432.76 3,326.5 102,009 0
edub Since Logging Started 524 4,738,036 9,042.05 14,056.96 3,922.5 102,009 0
edub Normalized Since Logging Started 521 4,737,755 9,093.58 14,080.91 3,957 102,009 0
edu_c Third Educational Site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
edu_c So Far Today10N/AN/AN/AN/AN/A
edu_c This Month 14 0 0.00 0.00 0 0 0
edu_c Last Month 24 0 0.00 0.00 0 0 0
edu_c This Year 150 0 0.00 0.00 0 0 0
edu_c Since Logging Started 1,379 23,272,208 16,876.15 29,565.16 1,002 235,429 0
edu_c Normalized Since Logging Started 1,376 23,233,262 16,884.64 29,588.57 987 235,429 0
 
Residential Sites
shepherd Residential Site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
shepherd So Far Today10N/AN/AN/AN/AN/A
shepherd This Month 13 12,366 951.23 372.85 1,005 1,621 0
shepherd Last Month 22 28,324 1,287.45 752.73 1,097 3,172 36
shepherd This Year 145 213,413 1,471.81 906.18 1,170 4,597 0
shepherd Since Logging Started 1,461 12,379,078 8,473.02 13,343.72 2,280 116,607 0
shepherd Normalized Since Logging Started 1,460 12,375,177 8,476.15 13,347.76 2,279.5 116,607 0
 
Cloud Provider Sites
AWS AWS Amazon Web Services cloud site
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
AWS So Far Today10N/AN/AN/AN/AN/A
AWS This Month 14 0 0.00 0.00 0 0 0
AWS Last Month 24 0 0.00 0.00 0 0 0
AWS This Year 149 0 0.00 0.00 0 0 0
AWS Since Logging Started 1,134 10,326,463 9,106.23 16,559.20 0 119,665 0
AWS Normalized Since Logging Started 1,134 10,326,463 9,106.23 16,559.20 0 119,665 0
cloud_v Host Cloud_v, offline on Feb 23rd, 2015.
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
cloud_v So Far Today10N/AN/AN/AN/AN/A
cloud_v This Month 0.00 0.00
cloud_v Last Month 6 106475 17745.83 12110.57 25841.5 34185 0
cloud_v This Year 6 106475 17745.83 12110.57 25841.5 34185 0
cloud_v Since Logging Started 6 106475 17745.83 12110.57 25841.5 34185 0
cloud_v Normalized Since Logging Started 4 101308 25327.00 6651.26 25841.5 34185 15440
cloud_c Host Cloud_c, offline on Feb 23rd, 2015.
Time
Frame
Number
of Days
Total
SSH attempts
Average
Per Day
Std. Dev.MedianMaxMin
cloud_c So Far Today10N/AN/AN/AN/AN/A
cloud_c This Month 0.00 0.00
cloud_c Last Month 2 145 72.50 49.50 72.5 122 23
cloud_c This Year 2 145 72.50 49.50 72.5 122 23
cloud_c Since Logging Started 2 145 72.50 49.50 72.5 122 23
cloud_c Normalized Since Logging Started 0.00 0.00

Total SSH attempts for all hosts may be LARGER than the sum of SSH attempts of each host. This is because each host's attacks are counted before totalling all the SSH attacks, and if attacks are ongoing, then more attacks will have come in between counting for a host and counting all the SSH attacks.


LongTail Copyright 2015 by Eric Wedaa, under GPLV2