MAWILab

Data set: 2023/02/16






Traffic Trace: 2023/02/16

Info: http://mawi.wide.ad.jp/mawi/samplepoint-F/2023/202302161400.html
tcpdump file: http://mawi.wide.ad.jp/mawi/samplepoint-F/2023/202302161400.pcap.gz

Anomalous Traffic:

"Anomalous" and "Suspicious" labels (admd file): 20230216_anomalous_suspicious.xml
"Anomalous" and "Suspicious" labels (csv file): 20230216_anomalous_suspicious.csv

Overview of the anomalies:

Number of anomalies: 590
Proportion of anomalies in terms of occurrence:


Breakdown of the anomalies:

TaxonomyHeuristicLabelDetectors
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_ICMP_ecrqPing floodsuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_UDP_otherOthersuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
small_network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_ICMP_ecrqPing floodsuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
small_network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYN_139_445SYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_UDP_otherOthersuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_UDP_otherOthersuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYN_139_445SYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYN_139_445SYN attacksuspicious Hough
network_scan_UDP_otherOthersuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYN_139_445SYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, KL
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYN_139_445SYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYN_139_445SYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYN_139_445SYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_UDP_otherOthersuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_UDP_otherOthersuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYN_139_445SYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_SYNSYN attacksuspicious Hough
network_scan_ICMP_ecrqPing floodsuspicious Hough
network_scan_ICMP_ecrqPing floodsuspicious Hough, Gamma
point_to_point_denial_of_service_SYNSYN attacksuspicious Hough, KL
network_scan_SYNSYN attacksuspicious Hough, Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
point_to_point_port_scan_UDPOthersuspicious Gamma
network_scan_SYNSYN attacksuspicious Hough
small_network_scan_SYNSYN attacksuspicious Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
point_to_point_port_scan_UDPOthersuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
port_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
network_scan_ICMP_ecrq_ICMP_ecrp_responsePing floodsuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
network_scan_TCP_TCP_ICMP_responsePing floodsuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
port_scan_SYNSYN attacksuspicious Gamma
network_scan_ICMP_ecrqPing floodsuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious Gamma
small_network_scan_SYNSYN attacksuspicious PCA
point_to_point_denial_of_service_SYNSYN attacksuspicious KL, PCA
point_to_point_port_scan_UDPOthersuspicious PCA
network_scan_TCP_RST_ACK_responseRST attacksuspicious PCA
network_scan_ICMP_ecrq_ICMP_ecrp_du_rm_te_responsePing floodsuspicious KL, PCA
network_scan_ICMP_ecrq_ICMP_ecrp_responsePing floodsuspicious PCA
network_scan_SYNSYN attackanomalous Hough, Gamma, KL, PCA
network_scan_SYNSYN attackanomalous Hough, Gamma
network_scan_SYNSYN attackanomalous Hough, Gamma, PCA
small_network_scan_SYNSYN attackanomalous Gamma
port_scan_SYNSYN attackanomalous Gamma
network_scan_SYNSYN attackanomalous Hough, Gamma, PCA
point_to_point_port_scan_UDPHTTPS trafficanomalous Gamma, PCA
network_scan_UDP_UDP_responseOtheranomalous Hough, Gamma, KL, PCA
network_scan_SYNSYN attackanomalous Hough, Gamma, KL, PCA
point_to_point_port_scan_UDPOtheranomalous PCA
network_scan_SYNSYN attackanomalous Hough, Gamma, KL, PCA
network_scan_SYNSYN attackanomalous Hough, Gamma, KL, PCA
network_scan_UDP_otherOtheranomalous Hough, Gamma, KL, PCA
alpha_flowHTTPS trafficsuspicious Hough
alpha_flowHTTPS trafficsuspicious Hough
small_alpha_flowHTTPS trafficsuspicious Hough
point_to_multipoint_low_activity_HTTPHTTP trafficsuspicious Hough
alpha_flowOthersuspicious Hough
point_to_multipoint_low_activityOthersuspicious Hough
alpha_flowHTTPS trafficsuspicious Hough
alpha_flowHTTPS trafficsuspicious Hough
alpha_flowHTTPS trafficsuspicious Hough
small_alpha_flowHTTPS trafficsuspicious Hough
alpha_flowHTTPS trafficsuspicious Hough
alpha_flowHTTPS trafficsuspicious Hough
multipoint_to_multipointPing floodsuspicious Hough, Gamma
point_to_multipointFIN attacksuspicious Hough, Gamma
point_to_multipointSYN attacksuspicious Hough, Gamma, KL
point_to_multipointOthersuspicious Hough
multipoint_to_point_low_activityOthersuspicious Hough
multipoint_to_pointRST attacksuspicious Hough
point_to_multipointSYN attacksuspicious Hough, Gamma
multipoint_to_multipointSYN attacksuspicious Gamma
point_to_multipointSYN attacksuspicious Gamma
point_to_multipointSSH trafficsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipoint_low_activity_HTTPHTTP trafficsuspicious Gamma
point_to_multipointOthersuspicious Gamma
multipoint_to_multipointOthersuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipointOthersuspicious Gamma
small_alpha_flowHTTPS trafficsuspicious Gamma
alpha_flowHTTPS trafficsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipointSYN attacksuspicious Gamma
icmp_errorPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipointPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
micro_alpha_flowSSH trafficsuspicious Gamma
point_to_multipointHTTPS trafficsuspicious Gamma
point_to_multipointHTTPS trafficsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
multipoint_to_pointOthersuspicious Gamma
alpha_flowOthersuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipoint_low_activityHTTPS trafficsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipointHTTPS trafficsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipoint_low_activitySSH trafficsuspicious Gamma
small_alpha_flowHTTPS trafficsuspicious Gamma
small_alpha_flowHTTPS trafficsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipointSMB attacksuspicious Gamma
point_to_multipointPing floodsuspicious Gamma
point_to_multipointHTTPS trafficsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
small_alpha_flowHTTPS trafficsuspicious Gamma
point_to_multipoint_low_activityHTTPS trafficsuspicious Gamma
small_alpha_flowOthersuspicious Gamma
micro_alpha_flowHTTPS trafficsuspicious Gamma
small_alpha_flowOthersuspicious Gamma
point_to_multipointSYN attacksuspicious Gamma
point_to_multipointSYN attacksuspicious Gamma
point_to_multipointSYN attacksuspicious Gamma
point_to_multipoint_low_activityHTTPS trafficsuspicious Gamma
point_to_multipointHTTPS trafficsuspicious Gamma
point_to_multipoint_low_activityHTTPS trafficsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipoint_low_activity_HTTPHTTP trafficsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipoint_HTTPPing floodsuspicious Gamma
point_to_multipoint_low_activitySMB attacksuspicious Gamma
multipoint_to_point_low_activityOthersuspicious Gamma
point_to_multipoint_low_activityHTTPS trafficsuspicious Gamma
alpha_flowHTTPS trafficsuspicious Gamma
small_alpha_flowHTTPS trafficsuspicious Gamma
multipoint_to_multipointOthersuspicious Gamma
multipoint_to_pointHTTPS trafficsuspicious Hough, Gamma, KL
small_alpha_flowHTTPS trafficsuspicious Gamma
point_to_multipointPing floodsuspicious Gamma
icmp_errorPing floodsuspicious Gamma
point_to_multipointPing floodsuspicious Gamma
point_to_multipointPing floodsuspicious Gamma
point_to_multipoint_low_activity_HTTPHTTP trafficsuspicious Gamma
point_to_multipointFIN attacksuspicious Gamma
alpha_flowHTTPS trafficsuspicious Gamma
small_alpha_flowOthersuspicious Gamma
point_to_multipointOthersuspicious PCA
alpha_flowHTTPS trafficsuspicious Hough, PCA
alpha_flowOthersuspicious PCA
icmp_errorPing floodsuspicious PCA
point_to_multipointHTTPS trafficsuspicious Gamma, PCA
point_to_multipointHTTPS trafficsuspicious PCA
icmp_errorPing floodsuspicious PCA
icmp_errorPing floodsuspicious PCA
point_to_multipointHTTPS trafficsuspicious PCA
point_to_multipointOthersuspicious PCA
point_to_multipointHTTPS trafficsuspicious Gamma, PCA
point_to_multipointHTTPS trafficsuspicious PCA
alpha_flowOthersuspicious PCA
point_to_multipoint_low_activityHTTPS trafficsuspicious PCA
point_to_multipoint_low_activityOthersuspicious PCA
alpha_flowHTTPS trafficsuspicious PCA
point_to_multipointSYN attacksuspicious PCA
point_to_multipointSSH trafficsuspicious Gamma, PCA
point_to_multipoint_low_activityHTTPS trafficsuspicious PCA
alpha_flowOthersuspicious PCA
alpha_flow_HTTPHTTP trafficsuspicious PCA
alpha_flowOthersuspicious PCA
alpha_flowOthersuspicious PCA
multipoint_to_pointRST attacksuspicious PCA
alpha_flowHTTPS trafficsuspicious Gamma, PCA
multipoint_to_point_low_activityOthersuspicious PCA
multipoint_to_point_low_activityOthersuspicious PCA
multipoint_to_pointPing floodsuspicious PCA
alpha_flowHTTPS trafficsuspicious PCA
multipoint_to_point_low_activityHTTPS trafficsuspicious Hough, PCA
alpha_flowHTTPS trafficsuspicious PCA
icmp_errorPing floodsuspicious PCA
multipoint_to_pointHTTPS trafficsuspicious Hough, PCA
multipoint_to_point_low_activityOthersuspicious PCA
alpha_flowOthersuspicious KL, PCA
icmp_errorPing floodsuspicious PCA
icmp_errorPing floodsuspicious KL, PCA
icmp_errorPing floodsuspicious PCA
icmp_errorPing floodsuspicious PCA
icmp_errorPing floodsuspicious PCA
icmp_errorPing floodsuspicious PCA
multipoint_to_pointHTTPS trafficsuspicious Gamma, PCA
icmp_errorPing floodsuspicious PCA
icmp_errorPing floodsuspicious PCA
icmp_errorPing floodsuspicious Hough, KL, PCA
alpha_flowOthersuspicious Hough, PCA
multipoint_to_pointOthersuspicious PCA
icmp_errorPing floodsuspicious KL, PCA
multipoint_to_pointOthersuspicious PCA
multipoint_to_multipointSYN attacksuspicious PCA
multipoint_to_multipointSYN attacksuspicious PCA
point_to_pointSYN attacksuspicious PCA
multipoint_to_point_HTTPOthersuspicious PCA
multipoint_to_point_low_activityOthersuspicious PCA
multipoint_to_point_low_activityHTTPS trafficsuspicious PCA
point_to_multipoint_low_activityOthersuspicious Hough
multipoint_to_pointHTTPS trafficanomalous Hough, Gamma, KL, PCA
ipv4_gre_tunnelOtheranomalous Hough, Gamma, PCA
multipoint_to_multipointHTTP trafficanomalous Hough, Gamma, KL, PCA
ipv4_gre_tunnelOtheranomalous Hough, Gamma, PCA
multipoint_to_point_low_activitySYN attackanomalous Hough, Gamma
multipoint_to_pointHTTPS trafficanomalous Hough, Gamma, PCA
point_to_multipointOtheranomalous Hough, Gamma, PCA
multipoint_to_pointOtheranomalous Hough, Gamma, PCA
multipoint_to_multipointSYN attackanomalous Hough, Gamma
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, KL, PCA
point_to_multipoint_HTTPHTTP trafficanomalous Gamma
alpha_flowHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_pointPing floodanomalous Gamma, PCA
multipoint_to_pointSMB attackanomalous Gamma, PCA
multipoint_to_multipointOtheranomalous Gamma, PCA
multipoint_to_point_low_activitySSH trafficanomalous Gamma
multipoint_to_point_low_activityHTTPS trafficanomalous Gamma
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_multipointSYN attackanomalous Hough, Gamma, KL, PCA
multipoint_to_multipointSYN attackanomalous Hough, Gamma, KL, PCA
multipoint_to_pointHTTPS trafficanomalous Gamma
multipoint_to_multipointHTTPS trafficanomalous Gamma
multipoint_to_pointHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_pointHTTPS trafficanomalous Hough, PCA
alpha_flowHTTPS trafficanomalous Hough, PCA
point_to_multipointHTTPS trafficanomalous Hough, PCA
multipoint_to_point_low_activityHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_multipointOtheranomalous Gamma, KL, PCA
multipoint_to_multipointOtheranomalous Gamma, KL, PCA
multipoint_to_pointOtheranomalous Hough, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_pointHTTPS trafficanomalous Hough, Gamma, PCA
point_to_multipointSYN attackanomalous Hough, Gamma, PCA
multipoint_to_pointHTTPS trafficanomalous Hough, Gamma, KL, PCA
multipoint_to_pointHTTPS trafficanomalous Gamma, PCA
multipoint_to_multipointOtheranomalous Gamma, PCA
point_to_multipoint_HTTPHTTP trafficanomalous PCA
multipoint_to_pointOtheranomalous Hough, Gamma, KL, PCA
multipoint_to_pointHTTPS trafficanomalous Hough, Gamma, KL, PCA
alpha_flowOtheranomalous PCA
multipoint_to_pointHTTPS trafficanomalous Gamma, PCA
multipoint_to_multipointHTTPS trafficanomalous Gamma, PCA
icmp_errorPing floodanomalous PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, KL, PCA
icmp_errorPing floodanomalous PCA
point_to_multipoint_HTTPHTTP trafficanomalous Hough, Gamma, PCA
multipoint_to_pointOtheranomalous Gamma, PCA
alpha_flowHTTPS trafficanomalous PCA
alpha_flowHTTPS trafficanomalous PCA
point_to_multipointHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, KL, PCA
alpha_flowHTTPS trafficanomalous PCA
alpha_flowSSH trafficanomalous PCA
multipoint_to_pointHTTPS trafficanomalous PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, KL, PCA
multipoint_to_pointHTTPS trafficanomalous Gamma, KL, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_pointHTTPS trafficanomalous PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, PCA
heavy_hitterHTTPS attackanomalous Hough, Gamma, KL, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, PCA
multipoint_to_multipointHTTPS trafficanomalous Gamma, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, KL, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, KL, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, KL, PCA
multipoint_to_multipointOtheranomalous Gamma, PCA
multipoint_to_multipointHTTPS trafficanomalous Hough, Gamma, KL, PCA
emptyUnknownsuspicious Hough, Gamma
emptyUnknownsuspicious Hough, Gamma, KL
emptyUnknownsuspicious Hough, Gamma
emptyUnknownsuspicious Hough, Gamma, KL
emptyUnknownsuspicious Hough, Gamma, KL
emptyUnknownsuspicious Gamma, KL
emptyUnknownsuspicious Gamma, KL
emptyUnknownanomalous Gamma, KL
emptyUnknownanomalous Hough, Gamma, PCA
TaxonomyHeuristicLabelDetectors

Other:

"Notice" labels (admd file): 20230216_notice.xml
"Notice" labels (csv file): 20230216_notice.csv