Over the last week, I have taken recorded flows and have gathered some statistics on most common patterns for a select number of well known ports based on the amount of bytes transferred within the flow, as well as how many flows observed.

Have also gathered some statistics on the protocols that have been identified on these well known ports that wouldn't be expected.

Made some graphs :)