Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-25 21:58:56.554 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:51890 10 6438 1 2025-07-25 21:59:16.351 00:00:10.362 TCP 23.104.0.1:43116 -> 1.101.0.1:3000 11 1507 1 2025-07-25 21:55:01.075 00:06:00.160 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 21:59:56.730 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:49280 10 6438 1 2025-07-25 22:00:16.753 00:00:10.386 TCP 23.104.0.1:41098 -> 1.101.0.1:3000 11 1507 1 2025-07-25 21:56:01.078 00:06:00.154 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 22:00:56.959 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:43382 12 6542 1 2025-07-25 22:01:17.178 00:00:10.361 TCP 23.104.0.1:59276 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:01:57.205 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60626 10 6438 1 2025-07-25 22:02:17.580 00:00:10.366 TCP 23.104.0.1:44202 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:02:57.419 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35978 10 6438 1 2025-07-25 22:03:17.988 00:00:10.371 TCP 23.104.0.1:37008 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:03:32.785 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:03:32.970 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:03:57.629 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34602 10 6438 1 2025-07-25 22:04:18.403 00:00:10.369 TCP 23.104.0.1:42978 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:04:57.841 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38536 10 6438 1 2025-07-25 22:05:18.806 00:00:10.364 TCP 23.104.0.1:53802 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:05:58.081 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33288 10 6438 1 2025-07-25 22:06:19.206 00:00:10.369 TCP 23.104.0.1:43824 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:02:01.077 00:06:00.176 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 22:06:58.289 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58834 10 6438 1 2025-07-25 22:07:19.611 00:00:10.325 TCP 23.104.0.1:36418 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:03:01.078 00:06:00.001 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 790 1 2025-07-25 22:07:58.512 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:34346 10 6438 1 2025-07-25 22:08:32.770 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:08:19.974 00:00:10.377 TCP 23.104.0.1:47220 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:08:32.822 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:08:58.680 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51556 10 6438 1 2025-07-25 22:09:20.390 00:00:10.530 TCP 23.104.0.1:39706 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:09:01.249 00:01:00.000 TCP 179.1.22.1:179 -> 179.1.22.22:39396 3 194 1 2025-07-25 22:09:58.899 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:36852 10 6438 1 2025-07-25 22:10:20.957 00:00:10.360 TCP 23.104.0.1:35218 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:10:59.106 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56674 10 6438 1 2025-07-25 22:11:21.358 00:00:10.326 TCP 23.104.0.1:55406 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:11:59.319 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42484 10 6438 1 2025-07-25 22:12:21.731 00:00:10.372 TCP 23.104.0.1:59640 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:12:59.537 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38958 10 6438 1 2025-07-25 22:13:33.040 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:13:22.138 00:00:10.366 TCP 23.104.0.1:48110 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:13:33.013 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:09:01.077 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 809 1 2025-07-25 22:13:59.748 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49296 10 6438 1 2025-07-25 22:14:22.545 00:00:10.363 TCP 23.104.0.1:47342 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:11:01.080 00:04:00.170 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-07-25 22:14:59.961 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:48660 10 6438 1 2025-07-25 22:15:22.959 00:00:10.362 TCP 23.104.0.1:56078 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:15:01.253 00:01:00.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 3 175 1 2025-07-25 22:16:00.136 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42506 10 6438 1 2025-07-25 22:16:23.357 00:00:10.377 TCP 23.104.0.1:39840 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:17:00.344 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:52750 10 6438 1 2025-07-25 22:17:23.778 00:00:10.369 TCP 23.104.0.1:38744 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:18:00.512 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40368 10 6438 1 2025-07-25 22:18:33.057 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:18:24.193 00:00:10.369 TCP 23.104.0.1:57942 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:18:33.101 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:19:00.724 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53276 10 6438 1 2025-07-25 22:19:24.598 00:00:10.367 TCP 23.104.0.1:49856 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:16:01.081 00:04:00.173 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-07-25 22:20:00.939 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:58690 10 6438 1 2025-07-25 22:20:25.008 00:00:10.363 TCP 23.104.0.1:37478 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:17:01.078 00:04:00.177 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-07-25 22:21:01.135 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57206 10 6438 1 2025-07-25 22:21:25.410 00:00:10.372 TCP 23.104.0.1:53964 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:22:01.352 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:57360 10 6438 1 2025-07-25 22:22:25.830 00:00:10.351 TCP 23.104.0.1:49882 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:23:01.529 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37796 10 6438 1 2025-07-25 22:23:32.982 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:23:33.342 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:23:26.226 00:00:10.376 TCP 23.104.0.1:44202 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:24:01.741 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42698 10 6438 1 2025-07-25 22:24:26.657 00:00:10.374 TCP 23.104.0.1:47332 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:25:01.954 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:48742 10 6438 1 2025-07-25 22:25:27.100 00:00:10.365 TCP 23.104.0.1:45350 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:21:01.082 00:06:00.173 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 22:22:01.080 00:04:00.177 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-07-25 22:26:02.183 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46952 10 6438 1 2025-07-25 22:26:27.508 00:00:10.368 TCP 23.104.0.1:57930 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:27:02.389 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49146 12 6542 1 2025-07-25 22:27:27.916 00:00:10.364 TCP 23.104.0.1:45254 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:28:02.608 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55206 10 6438 1 2025-07-25 22:28:33.296 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:28:33.358 00:00:00.031 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:28:28.316 00:00:10.367 TCP 23.104.0.1:45554 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:29:02.832 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:36156 10 6438 1 2025-07-25 22:29:28.720 00:00:10.370 TCP 23.104.0.1:36044 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:30:03.016 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60112 10 6438 1 2025-07-25 22:30:29.129 00:00:10.364 TCP 23.104.0.1:42202 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:31:03.237 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54080 10 6438 1 2025-07-25 22:31:29.531 00:00:10.366 TCP 23.104.0.1:37220 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:27:01.084 00:06:00.179 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 22:32:03.447 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36904 10 6438 1 2025-07-25 22:32:29.942 00:00:10.373 TCP 23.104.0.1:46948 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:28:01.083 00:06:00.178 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 22:33:03.657 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45476 10 6438 1 2025-07-25 22:33:33.255 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:33:33.497 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:33:30.348 00:00:10.366 TCP 23.104.0.1:41382 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:34:03.866 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54062 10 6438 1 2025-07-25 22:34:30.751 00:00:10.363 TCP 23.104.0.1:46088 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:35:04.090 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35982 10 6438 1 2025-07-25 22:35:31.152 00:00:10.363 TCP 23.104.0.1:59316 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:36:04.301 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37278 10 6438 1 2025-07-25 22:36:31.558 00:00:10.364 TCP 23.104.0.1:51574 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:37:04.518 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:41448 10 6438 1 2025-07-25 22:37:31.961 00:00:10.359 TCP 23.104.0.1:46548 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:38:04.689 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36752 10 6438 1 2025-07-25 22:38:33.540 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:38:33.472 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:38:32.361 00:00:10.363 TCP 23.104.0.1:55036 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:34:01.082 00:06:00.182 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 22:39:04.900 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:58982 10 6438 1 2025-07-25 22:39:32.761 00:00:10.384 TCP 23.104.0.1:44120 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:35:01.085 00:06:00.001 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 790 1 2025-07-25 22:40:05.083 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45110 10 6438 1 2025-07-25 22:40:33.184 00:00:10.363 TCP 23.104.0.1:45874 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:41:05.296 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55900 10 6438 1 2025-07-25 22:41:33.587 00:00:10.364 TCP 23.104.0.1:37342 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:41:01.261 00:01:00.000 TCP 179.1.22.1:179 -> 179.1.22.22:39396 3 194 1 2025-07-25 22:42:05.511 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41514 10 6438 1 2025-07-25 22:42:33.988 00:00:10.343 TCP 23.104.0.1:36534 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:43:05.726 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49646 10 6438 1 2025-07-25 22:43:33.655 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:43:33.415 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:43:34.365 00:00:10.370 TCP 23.104.0.1:44862 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:44:05.935 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:58574 10 6438 1 2025-07-25 22:44:34.774 00:00:10.370 TCP 23.104.0.1:50032 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:45:06.138 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59266 10 6438 1 2025-07-25 22:45:35.180 00:00:10.366 TCP 23.104.0.1:59488 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:41:01.082 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 809 1 2025-07-25 22:46:06.352 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52378 10 6438 1 2025-07-25 22:46:35.584 00:00:10.368 TCP 23.104.0.1:45768 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:43:01.086 00:04:00.177 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-07-25 22:47:06.564 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38822 10 6438 1 2025-07-25 22:47:35.989 00:00:10.327 TCP 23.104.0.1:56276 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:47:01.266 00:01:00.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 3 175 1 2025-07-25 22:48:06.776 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49782 10 6438 1 2025-07-25 22:48:33.845 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:48:33.472 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:48:36.354 00:00:10.361 TCP 23.104.0.1:35428 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:49:06.989 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44564 10 6438 1 2025-07-25 22:49:36.759 00:00:10.379 TCP 23.104.0.1:49290 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:50:07.212 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42968 10 6438 1 2025-07-25 22:50:37.180 00:00:10.328 TCP 23.104.0.1:48426 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:51:07.430 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60146 10 6438 1 2025-07-25 22:51:37.547 00:00:10.364 TCP 23.104.0.1:53660 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:48:01.087 00:04:00.178 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-07-25 22:52:07.650 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36456 10 6438 1 2025-07-25 22:52:37.950 00:00:10.428 TCP 23.104.0.1:37294 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:49:01.084 00:04:00.183 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-07-25 22:53:07.863 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33936 10 6438 1 2025-07-25 22:53:33.882 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:53:33.893 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:53:38.420 00:00:10.367 TCP 23.104.0.1:57144 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:54:08.088 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38920 10 6438 1 2025-07-25 22:54:38.825 00:00:10.350 TCP 23.104.0.1:56864 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:55:08.314 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45056 10 6438 1 2025-07-25 22:55:39.229 00:00:10.370 TCP 23.104.0.1:57886 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:56:08.534 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54930 10 6438 1 2025-07-25 22:56:39.636 00:00:10.332 TCP 23.104.0.1:41442 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:53:01.098 00:04:00.170 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-07-25 22:57:08.757 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52530 10 6438 1 2025-07-25 22:57:40.008 00:00:10.359 TCP 23.104.0.1:60090 -> 1.101.0.1:3000 11 1507 1 2025-07-25 22:54:01.095 00:04:00.176 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-07-25 22:58:08.971 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:51668 12 10352 1 2025-07-25 22:58:33.834 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 22:58:34.001 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 22:58:40.420 00:00:10.412 TCP 23.104.0.1:57524 -> 1.101.0.1:3000 15 1925 1 Summary: total flows: 168, total bytes: 502786, total packets: 1594, avg bps: 1050, avg pps: 0, avg bpp: 315 Time window: 2025-07-25 21:55:01 - 2025-07-25 22:58:50 Total flows processed: 168, passed: 168, Blocks skipped: 0, Bytes read: 17536 Sys: 0.0010s User: 0.0029s Wall: 0.0031s flows/second: 54938.6 Runtime: 0.0031s