(C) 1998-2011 - Luca Deri  
Please enable make sure that the ntop html/ directory is properly installed

 

 

Info about 163.30.44.1

IP Address163.30.44.1 [unicast - multihomed Multihomed] [ Purge Asset ]
Multihomed Addresses 
    Custom Host Name
    First/Last SeenWed Aug 20 00:00:00 2025  -  Wed Aug 20 22:17:48 2025 [Inactive since 1 sec]
    Autonomous System1659 [Tiawan Academic Network (TANet) Information Center]
    Subnet163.30.44.0/24
    Main Host MAC Address10:C3:7B:47:57:9A 
    Origin AS1659
    Host LocationLocal (inside specified/local subnet or known network list)
    Physical LocationTaoyüan, Taiwan Flag for Taiwan (TW)   
    IP TTL (Time to Live)63:127 [~0 hop(s)]
    Total Data Sent37.8 MBytes/198,674 Pkts/0 Retran. Pkts [0%]
    Broadcast Pkts Sent1,503 Pkts
    Data Sent Stats
    Local 13.0 %
      
    Rem 87.0 %
    IP vs. Non-IP Sent
    IP 100 %
     
    Non-IP 0 %
    Total Data Rcvd47.2 MBytes/198,680 Pkts/0 Retran. Pkts [0%]
    Data Rcvd Stats
    Local 5.8 %
      
    Rem 94.2 %
    IP vs. Non-IP Rcvd
    IP 100 %
     
    Non-IP 0 %
    Sent vs. Rcvd Pkts
    Sent 50.0 %
      
    Rcvd 50.0 %
    Sent vs. Rcvd Data
    Sent 44.5 %
      
    Rcvd 55.5 %
    Used Subnet Routers 4C:77:6D:62:EA:41 Network Card
    Host TypeName Server DNS
    VoIP Host VoIP
    SMTP (Mail) Server Mail (SMTP)
    POP Server 
    IMAP Server 
    HTTP Server HTTP Server
    Host Healthness (Risk Flags) High Risk Medium Risk Low Risk
    1. Medium RiskWrong network mask or bridging enabled
    2. Medium RiskSuspicious activities: too many host contacts
    3. Low RiskUnexpected packets (e.g. traffic to closed port or connection reset):
      [Sent: udp to closed] [Rcvd: rst] [Rcvd: port unreac] [Rcvd: hostnet unreac] [Rcvd: admin prohib] 

     

    Host Traffic Stats

    TimeTot. Traffic Sent% Traffic SentTot. Traffic Rcvd% Traffic Rcvd
    10 PM 724.9 KBytes1.9 %369.7 KBytes0.8 %
    9 PM 1.7 MBytes4.6 %3.6 MBytes7.7 %
    8 PM 2.3 MBytes6.2 %4.2 MBytes8.9 %
    7 PM 1.6 MBytes4.2 %3.7 MBytes7.8 %
    6 PM 3.5 MBytes9.2 %2.5 MBytes5.4 %
    5 PM 2.7 MBytes7.0 %1.8 MBytes3.8 %
    4 PM 3.2 MBytes8.5 %2.0 MBytes4.2 %
    3 PM 2.2 MBytes5.9 %3.9 MBytes8.3 %
    2 PM 3.2 MBytes8.6 %1.9 MBytes4.1 %
    1 PM 1.6 MBytes4.3 %1.9 MBytes3.9 %
    12 PM 1.9 MBytes4.9 %1.9 MBytes3.9 %
    11 AM 1.7 MBytes4.5 %1.9 MBytes3.9 %
    10 AM 1.3 MBytes3.5 %1.5 MBytes3.2 %
    9 AM 1.6 MBytes4.2 %3.0 MBytes6.5 %
    8 AM 1003.0 KBytes2.6 %1.3 MBytes2.8 %
    7 AM 1005.8 KBytes2.6 %1.3 MBytes2.8 %
    6 AM 1.0 MBytes2.7 %1.2 MBytes2.4 %
    5 AM 789.9 KBytes2.0 %1.1 MBytes2.3 %
    4 AM 1.5 MBytes4.1 %1.7 MBytes3.6 %
    3 AM 691.7 KBytes1.8 %1.2 MBytes2.6 %
    2 AM 906.9 KBytes2.3 %3.0 MBytes6.3 %
    1 AM 594.6 KBytes1.5 %1.1 MBytes2.3 %
    12 AM 1.1 MBytes2.9 %1.2 MBytes2.5 %
    11 PM 00.0 %00.0 %
    Total

     

    Packet Statistics

    TCP ConnectionsDirected toRcvd From
    Attempted4,708 16,545
    Established2,034 [43 %] 5,488 [33 %]
    Terminated0  431

    TCP FlagsPkts SentPkts Rcvd
    SYN4,708 16,545
    RST|ACK5,988 532
    RST46 3,249
    NULL0  255

    AnomalyPkts Sent toPkts Rcvd from
    UDP Pkt to Closed Port244 342
    UDP Pkt Disgnostic Port0  3
    TCP Pkt Disgnostic Port3 3
    Tiny Fragments0  10
    Closed Empty TCP Conn.0  431
    ICMP Port Unreachable342 244
    ICMP Net Unreachable0  3
    ICMP Administratively Prohibited0  230

    ARPPacket
    Request Sent0
    Reply Rcvd59 (0.0 %)
    Reply Sent4,076

     

    Protocol Distribution

    ProtocolData SentData Rcvd
    TCP24.9 MBytes
    65%

     

    22.0 MBytes
    46%

     

    UDP12.7 MBytes
    33%

     

    24.9 MBytes
    52%

     

    ICMP152.4 KBytes  159.2 KBytes 
    (R)ARP128.8 KBytes  177.6 KBytes 
    Other (Non IP)0.0 KBytes  0.2 KBytes 
    Protocol Distribution
    IP Distribution

     

    Unknown Protocols

    Data SentData Rcvd
     
  1. IP Protocol: 0x41
  2. IP Protocol: 0x4  
  3.  

    ICMP Traffic

    TypePkt SentPkt Rcvd
    Echo Request8040
    Echo Reply0804
    Unreach342477
    Redirect7420

     

    IP Fragments Distribution

    ProtocolData SentData Rcvd
    UDP0.0 KBytes  67.9 KBytes100
    Fragment Distribution Received Fragment Distribution for 163.30.44.1-65535
    IP Fragment Distribution Received IP Fragment Distribution for 163.30.44.1-65535

     

    Last Contacted Peers

    Sent ToIP Address
    203.119.26.1 203.119.26.1 
    203.119.27.1 203.119.27.1 
    163.30.44.7 163.30.44.7 
    163.30.44.14 163.30.44.14 
    163.30.44.9 163.30.44.9 
    163.30.0.1 163.30.0.1 
    216.73.216.188 216.73.216.188 
    Total Contacts41282
    Received FromIP Address
    163.30.44.9 163.30.44.9 
    165.154.237.244 165.154.237.244 
    163.30.44.7 163.30.44.7 
    91.231.89.207 91.231.89.207 
    66.249.77.11 66.249.77.11 
    134.199.207.54 134.199.207.54 
    219.70.85.71 219.70.85.71 
    216.73.216.188 216.73.216.188 
    Total Contacts38396

     

    HTTP Virtual Hosts Traffic

    Virtual HostSentRcvd
    www.youporn.com44 131 
    163.30.44.1:80184.9 KBytes 250.3 KBytes 
    host1.tyes.tyc.edu.tw27.4 MBytes 27.7 MBytes 
    www.tyes.tyc.edu.tw423.6 KBytes 453.5 KBytes 
    163.30.44.11.5 MBytes 1.5 MBytes 
    NOTE: The above table is not updated in realtime but when connections are terminated.

     

    IP Service Stats: Client Role

     # Loc. Req. Sent# Rem. Req. Sent# Pos. Reply Rcvd# Neg. Reply RcvdLocal RndTripRem RndTrip
    DNS00.0%92,920100.0%66,47173.0%24,06726.0%0.0 ms - 0.0 ms0.1 ms - 5.0 sec
    HTTP00.0%9100.0%450.0%450.0%0.0 ms - 0.0 ms0.0 ms - 0.0 ms

     

    IP Service Stats: Server Role

     # Loc. Req. Rcvd# Rem. Req. Rcvd# Pos. Reply Sent# Neg. Reply SentLocal RndTripRem RndTrip
    DNS29,90999.0%350.0%6,31621.0%23,52878.0%0.0 ms - 30.0 sec0.1 ms - 0.1 ms
    HTTP00.0%1,071100.0%9794.0%65.0%0.0 ms - 0.0 ms0.0 ms - 0.0 ms

     

    TCP/UDP Service/Port Usage

    IP ServicePort# Client Sess.Last Client Peer# Server Sess.Last Server Peer
    77  1/2365.49.1.112
    1111  1/165.49.1.97
    1313  1/164.62.156.16
    1717  2/265.49.1.33
    1919  1/164.62.156.51
    ftp21  1/2120.55.29.197
    2222  1/21135.237.126.231
    telnet23  1/2120.15.224.207
    25251283/143.9 KBytes202.39.160.90 6075/5.6 MBytes147.185.132.164
    26261/44213.179.209.177   
    3737  1/164.62.156.18
    535352596/22.9 MBytes163.30.0.1 59816/4.7 MBytes163.30.44.9
    6969  2/3464.62.197.165
    http805101/7.0 MBytes192.50.199.248 13361/13.8 MBytes66.249.77.11
    8181  1/2120.169.105.164
    102102  1/2220.169.107.190
    pop-3110  179/7.9 KBytesVMware, Inc.:BB:92:25 Network Card
    113113  1/192165.154.237.253
    1231238/384118.163.81.61 10/21865.49.1.149
    netbios-ns13727/1.3 KBytes163.30.44.7 27/1.3 KBytes163.30.44.7
    netbios-ssn139  1/2252.165.89.103
    143143  102/13.1 KBytes165.154.246.240
    snmp161  161/10.6 KBytes176.61.148.89
    177177  3/21167.94.138.131
    199199  6/536199.45.154.156
    389389  2/10564.62.156.75
    427427  2/54147.185.132.90
    https443  4/2.7 KBytes20.15.162.238
    465465  2/5220.163.14.19
    500500  5/2.6 KBytes205.210.31.75
    502502  1/229.234.8.67
    520520  3/7223.228.99.177
    523523  2/4045.56.118.110
    587587  48/6.0 KBytes40.124.175.188
    623623  2/4664.62.156.69
    626626  1/30165.154.246.253
    873873  72/1.8 KBytes52.165.81.253
    993993  32/3.5 KBytes162.142.125.123

     

    TCP/UDP - Traffic on Other Ports

    Client PortServer Port

     

    TCP/UDP Recently Used Ports

    Client PortServer Port

     

    Recent Sessions: Network Delay

    Client ModeServer Mode
    Last TimeServiceLast Server ContactClient Delay [min/avg/max]
    Wed Aug 20 21:08:44 2025 HTTP192.50.199.248 0.01/0.02/0.08 ms
    Last TimeServiceLast Client ContactServer Delay [min/avg/max]
    Wed Aug 20 22:17:28 2025 HTTP219.70.85.71 0.01/0.01/0.05 ms
    Wed Aug 20 17:40:32 2025 Mail162.142.125.123 0.01/0.01/0.02 ms
    • Scenario: client <--> ntop <--> server
    • Client Delay: the network delay (computed as RTT/2) taken
      by a packet sent by the client to reach ntop
    • Server Delay: the network delay (computed as RTT/2) taken
      by a packet sent by the server to reach ntop
    • All times are majored during TCP 3-way handshake

     

    Active Sessions

    ProtoClientServerData Sent/RcvdActive SinceDurationInactiveClient/Server Nw DelayL7 Proto
    TCP216.73.216.188 :65450 163.30.44.1  MultihomedNetwork Card VoIP DNS Mail (SMTP) HTTP Server Medium Risk :30007406.1 KBytesWed Aug 20 22:17:47 20251 sec1 sec115.91 ms0.02 ms 
    TCP216.73.216.188 :3673 163.30.44.1  MultihomedNetwork Card VoIP DNS Mail (SMTP) HTTP Server Medium Risk :30001.1 KBytes20.9 KBytesWed Aug 20 22:16:19 20251 sec1:29111.96 ms0.02 ms 
    TCP216.73.216.188 :3867 163.30.44.1  MultihomedNetwork Card VoIP DNS Mail (SMTP) HTTP Server Medium Risk :30001.1 KBytes27.2 KBytesWed Aug 20 22:16:56 20251 sec52 sec119.54 ms0.01 ms 
    TCPcrawl-66-249-77-11.googlebot.com :44525 163.30.44.1  MultihomedNetwork Card VoIP DNS Mail (SMTP) HTTP Server Medium Risk :http7462.4 KBytesWed Aug 20 22:17:24 20256 sec19 sec78.06 ms0.01 msHTTP
    TCP216.73.216.188 :18987 163.30.44.1  MultihomedNetwork Card VoIP DNS Mail (SMTP) HTTP Server Medium Risk :30007926.4 KBytesWed Aug 20 22:16:55 20251 sec53 sec116.57 ms0.02 ms 
    TCP219-70-85-71.hyabd.com.tw :62800 163.30.44.1  MultihomedNetwork Card VoIP DNS Mail (SMTP) HTTP Server Medium Risk :http11660Wed Aug 20 22:17:28 20250 sec21 sec4.54 ms0.01 ms 
    TCP216.73.216.188 :36217 163.30.44.1  MultihomedNetwork Card VoIP DNS Mail (SMTP) HTTP Server Medium Risk :30008426.3 KBytesWed Aug 20 22:16:57 20250 sec52 sec116.83 ms0.02 ms 
    TCP216.73.216.188 :51574 163.30.44.1  MultihomedNetwork Card VoIP DNS Mail (SMTP) HTTP Server Medium Risk :30008478.3 KBytesWed Aug 20 22:16:21 20250 sec1:28115.79 ms0.01 ms 
    TCP216.73.216.188 :59595 163.30.44.1  MultihomedNetwork Card VoIP DNS Mail (SMTP) HTTP Server Medium Risk :300084716.2 KBytesWed Aug 20 22:16:21 20251 sec1:27117.88 ms0.01 ms 

    The color of the host link indicates how recently the host was FIRST seen
      0 to 5 minutes     5 to 15 minutes     15 to 30 minutes     30 to 60 minutes     60+ minutes