Advertisement
Guest User

Untitled

a guest
Feb 16th, 2019
78
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 8.47 KB | None | 0 0
  1. mchoudhary@lamda ~]$ nflonread 176.57.178.0/24
  2.  
  3. For the IP: 176.57.178.0/24
  4.  
  5. For the pcap file: nfcapd.201902160434
  6.  
  7. Top 10 IP Addr ordered by bytes:
  8. Date first seen Duration Proto IP Addr Flows(%) Packets(%) Bytes(%) pps bps bpp
  9. 2019-02-16 03:28:05.340 3690.002 any 176.57.178.246 552(16.0) 6.1 M(70.7) 6.8 G(94.0) 1662 14.7 M 1105
  10. 2019-02-16 03:28:05.340 3690.002 any 176.57.180.125 552(16.0) 6.1 M(70.7) 6.8 G(94.0) 1662 14.7 M 1105
  11. 2019-02-16 04:27:52.766 97.061 any 195.110.28.3 16( 0.5) 102000( 1.2) 125.8 M( 1.7) 1050 10.4 M 1233
  12. 2019-02-16 04:28:14.665 75.205 any 176.57.178.54 56( 1.6) 102500( 1.2) 77.1 M( 1.1) 1362 8.2 M 752
  13. 2019-02-16 04:27:52.766 97.407 any 176.57.178.52 45( 1.3) 75000( 0.9) 55.7 M( 0.8) 769 4.6 M 743
  14. 2019-02-16 04:26:26.580 188.528 any 176.57.178.104 201( 5.8) 199500( 2.3) 44.1 M( 0.6) 1058 1.9 M 221
  15. 2019-02-16 04:28:02.088 90.869 any 176.57.178.50 222( 6.4) 170000( 2.0) 21.2 M( 0.3) 1870 1.9 M 124
  16. 2019-02-16 04:27:53.801 97.947 any 176.57.178.138 189( 5.5) 130000( 1.5) 20.4 M( 0.3) 1327 1.7 M 156
  17. 2019-02-16 04:10:10.360 1164.550 any 176.57.178.123 145( 4.2) 222500( 2.6) 17.3 M( 0.2) 191 118960 77
  18. 2019-02-16 04:27:42.612 109.851 any 176.57.178.130 152( 4.4) 122000( 1.4) 14.3 M( 0.2) 1110 1.0 M 117
  19.  
  20. Summary: total flows: 3444, total bytes: 7215002000, total packets: 8678500, avg bps: 15642272, avg pps: 2351, avg bpp: 831
  21. Time window: 2019-01-26 22:09:28 - 2019-02-16 04:29:35
  22. Total flows processed: 21929, Blocks skipped: 0, Bytes read: 1492080
  23. Sys: 0.022s flows/second: 953600.6 Wall: 0.023s flows/second: 929470.6
  24. [mchoudhary@lamda ~]$ nflonhost 176.57.178.246
  25. +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
  26. For Pcap file: nfcapd.201902160434
  27.  
  28. For the IP: 176.57.178.246
  29.  
  30. Date first seen Event XEvent Proto Src IP Addr:Port Dst IP Addr:Port X-Src IP Addr:Port X-Dst IP Addr:Port In Byte Out Byte
  31. 2019-02-16 04:00:21.293 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49760 0.0.0.0:0 -> 0.0.0.0:0 24.0 M 0
  32. 2019-02-16 03:50:30.958 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49844 0.0.0.0:0 -> 0.0.0.0:0 26.2 M 0
  33. 2019-02-16 03:55:03.082 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49812 0.0.0.0:0 -> 0.0.0.0:0 21.0 M 0
  34. 2019-02-16 03:31:24.074 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49764 0.0.0.0:0 -> 0.0.0.0:0 21.8 M 0
  35. 2019-02-16 03:56:42.841 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49772 0.0.0.0:0 -> 0.0.0.0:0 25.5 M 0
  36. 2019-02-16 03:50:34.375 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49840 0.0.0.0:0 -> 0.0.0.0:0 21.0 M 0
  37. 2019-02-16 03:28:05.340 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49776 0.0.0.0:0 -> 0.0.0.0:0 16.5 M 0
  38. 2019-02-16 03:38:52.195 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49780 0.0.0.0:0 -> 0.0.0.0:0 24.8 M 0
  39. 2019-02-16 03:47:12.230 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49828 0.0.0.0:0 -> 0.0.0.0:0 24.8 M 0
  40. 2019-02-16 03:56:54.349 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49848 0.0.0.0:0 -> 0.0.0.0:0 24.8 M 0
  41. 2019-02-16 03:54:21.871 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49788 0.0.0.0:0 -> 0.0.0.0:0 36.0 M 0
  42. 2019-02-16 03:34:02.341 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49804 0.0.0.0:0 -> 0.0.0.0:0 22.5 M 0
  43. 2019-02-16 03:41:01.007 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49824 0.0.0.0:0 -> 0.0.0.0:0 21.0 M 0
  44. 2019-02-16 03:51:05.469 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49846 0.0.0.0:0 -> 0.0.0.0:0 21.8 M 0
  45. 2019-02-16 04:04:38.624 IGNORE Ignore TCP 176.57.178.246:49806 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 312000 0
  46. 2019-02-16 03:56:38.724 IGNORE Ignore TCP 176.57.178.246:49824 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 188000 0
  47. 2019-02-16 04:03:36.811 IGNORE Ignore TCP 176.57.178.246:49790 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 292000 0
  48. 2019-02-16 04:04:10.013 IGNORE Ignore TCP 176.57.178.246:49804 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 286000 0
  49. 2019-02-16 03:59:16.079 IGNORE Ignore TCP 176.57.178.246:49784 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 562000 0
  50. 2019-02-16 04:02:17.206 IGNORE Ignore TCP 176.57.178.246:49794 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 390000 0
  51. 2019-02-16 03:44:16.388 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49786 0.0.0.0:0 -> 0.0.0.0:0 27.0 M 0
  52. 2019-02-16 04:03:56.683 IGNORE Ignore TCP 176.57.178.246:49766 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 370000 0
  53. 2019-02-16 04:00:26.423 IGNORE Ignore TCP 176.57.178.246:49808 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 266000 0
  54. 2019-02-16 03:56:15.459 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49798 0.0.0.0:0 -> 0.0.0.0:0 26.2 M 0
  55. 2019-02-16 03:57:18.114 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49766 0.0.0.0:0 -> 0.0.0.0:0 31.5 M 0
  56. 2019-02-16 03:42:05.377 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49814 0.0.0.0:0 -> 0.0.0.0:0 25.5 M 0
  57. 2019-02-16 04:03:35.988 IGNORE Ignore TCP 176.57.178.246:49774 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 270000 0
  58. 2019-02-16 03:45:07.205 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49826 0.0.0.0:0 -> 0.0.0.0:0 24.8 M 0
  59. 2019-02-16 03:50:26.019 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49838 0.0.0.0:0 -> 0.0.0.0:0 21.8 M 0
  60. 2019-02-16 04:04:56.830 IGNORE Ignore TCP 176.57.178.246:49760 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 162000 0
  61. 2019-02-16 04:04:16.834 IGNORE Ignore TCP 176.57.178.246:49848 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 312000 0
  62. 2019-02-16 03:44:38.200 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49758 0.0.0.0:0 -> 0.0.0.0:0 21.0 M 0
  63. 2019-02-16 03:44:05.492 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49770 0.0.0.0:0 -> 0.0.0.0:0 33.8 M 0
  64. 2019-02-16 04:01:57.323 IGNORE Ignore TCP 176.57.180.125:8124 -> 176.57.178.246:49774 0.0.0.0:0 -> 0.0.0.0:0 18.8 M 0
  65. 2019-02-16 04:04:08.445 IGNORE Ignore TCP 176.57.178.246:49830 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 240000 0
  66. 2019-02-16 04:04:25.572 IGNORE Ignore TCP 176.57.178.246:49772 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 318000 0
  67. 2019-02-16 04:01:25.582 IGNORE Ignore TCP 176.57.178.246:49778 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 384000 0
  68. 2019-02-16 04:01:37.319 IGNORE Ignore TCP 176.57.178.246:49826 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 266000 0
  69. 2019-02-16 04:02:47.288 IGNORE Ignore TCP 176.57.178.246:49776 -> 176.57.180.125:8124 0.0.0.0:0 -> 0.0.0.0:0 188000 0
  70. +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement