(C) 1998-2007 - Luca Deri  
Please enable make sure that the ntop html/ directory is properly installed

 

 

Info about ag.dns-finder.com

IP Address34.36.200.111 Flag for ISO 3166 code us (from p2c file) [unicast] [ Purge Asset ]
First/Last SeenFri Jun 13 05:01:11 2025  -  Fri Jun 13 05:36:13 2025 [Inactive since 7 sec]
Autonomous System22717
Domaindns-finder.com
Last MAC Address/Router Network Interface Card (NIC)/Router00:24:8C:DE:84:31 
OS NameOS: Cisco [Cisco-louche1 ] 
Origin AS22717
Host LocationRemote (outside specified/local subnet)
IP TTL (Time to Live)122:122 [~6 hop(s)]
Total Data Sent32.5 KBytes/203 Pkts/0 Retran. Pkts [0%]
Broadcast Pkts Sent0 Pkts
Data Sent Stats
Local 100 %
 
Rem 0 %
IP vs. Non-IP Sent
IP 100 %
 
Non-IP 0 %
Total Data Rcvd58.0 KBytes/220 Pkts/0 Retran. Pkts [0%]
Data Rcvd Stats
Local 100 %
 
Rem 0 %
IP vs. Non-IP Rcvd
IP 100 %
 
Non-IP 0 %
Sent vs. Rcvd Pkts
Sent 48.0 %
  
Rcvd 52.0 %
Sent vs. Rcvd Data
Sent 35.9 %
  
Rcvd 64.1 %
Host TypeHTTP Server HTTP Server
Further Host Information[ Whois ] [ ]

 

Host Traffic Stats

TimeTot. Traffic Sent% Traffic SentTot. Traffic Rcvd% Traffic Rcvd
5 AM 32.5 KBytes100.0 %58.0 KBytes100.0 %
4 AM 00.0 %00.0 %
3 AM 00.0 %00.0 %
2 AM 00.0 %00.0 %
1 AM 00.0 %00.0 %
12 AM 00.0 %00.0 %
11 PM 00.0 %00.0 %
10 PM 00.0 %00.0 %
9 PM 00.0 %00.0 %
8 PM 00.0 %00.0 %
7 PM 00.0 %00.0 %
6 PM 00.0 %00.0 %
5 PM 00.0 %00.0 %
4 PM 00.0 %00.0 %
3 PM 00.0 %00.0 %
2 PM 00.0 %00.0 %
1 PM 00.0 %00.0 %
12 PM 00.0 %00.0 %
11 AM 00.0 %00.0 %
10 AM 00.0 %00.0 %
9 AM 00.0 %00.0 %
8 AM 00.0 %00.0 %
7 AM 00.0 %00.0 %
6 AM 00.0 %00.0 %
Total

 

Packet Statistics

TCP ConnectionsDirected toRcvd From
Attempted0  12
Established0  6 [50 %]

TCP FlagsPkts SentPkts Rcvd
SYN0  12

 

Protocol Distribution

ProtocolData SentData Rcvd
TCP32.5 KBytes100% 27.7 KBytes
47%

 

UDP0.0 KBytes  30.3 KBytes
52%

 

Protocol Distribution
IP Distribution

 

Last Contacted Peers

Sent ToIP Address
70:71:BC:72:1F:5B Network Card  
04:D9:F5:32:79:12 Network Card  
192.168.1.194 192.168.1.194 
192.168.1.190 192.168.1.190 
Total Contacts4
Received FromIP Address
70:71:BC:72:1F:5B Network Card  
04:D9:F5:32:79:12 Network Card  
192.168.1.194 192.168.1.194 
192.168.1.190 192.168.1.190 
Total Contacts5

 

TCP/UDP Service/Port Usage

IP ServicePort# Client Sess.Last Client Peer# Server Sess.Last Server Peer
https443  246/66.9 KBytes70:71:BC:72:1F:5B Network Card

 

TCP/UDP Recently Used Ports

Client PortServer Port
     

 

1774 Active TCP/UDP Sessions

ClientServerData SentData RcvdActive SinceLast SeenDurationInactiveLatencyL7 ProtoNote
CPA-CFUCHILA  VoIP Medium Risk :50604ag.dns-finder.com  HTTP Server :https3.2 KBytes6.2 KBytesFri Jun 13 05:30:30 2025Fri Jun 13 05:35:46 20255:1634 sec   SYN ACK PUSH 
CPATRIBUNAL  VoIP Medium Risk P2P Server :59826ag.dns-finder.com  HTTP Server :https3.1 KBytes1.6 KBytesFri Jun 13 05:36:13 2025Fri Jun 13 05:36:13 20250 sec7 sec   SYN ACK PUSH 

The color of the host link indicates how recently the host was FIRST seen
  0 to 5 minutes     5 to 15 minutes     15 to 30 minutes     30 to 60 minutes     60+ minutes  

Report created on Fri Jun 13 05:36:20 2025 [ntop uptime: 4 days 1:23:34]
Generated by ntop v.3.3 [x86_64-unknown-linux-gnu]
© 1998-2007 by Luca Deri, built: Aug 6 2008 09:54:10.
Listening on [eth0] for all packets (i.e. without a filtering expression)
Web reports include all interfaces (merged)