Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 18:59:19.554 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:51956 10 6452 1 2025-08-01 18:59:33.869 00:00:10.365 TCP 23.104.0.1:47522 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:00:19.781 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41876 10 6452 1 2025-08-01 19:00:34.272 00:00:10.365 TCP 23.104.0.1:47012 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:01:20.002 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37976 10 6452 1 2025-08-01 19:01:34.676 00:00:10.378 TCP 23.104.0.1:53488 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:01:51.274 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:01:51.307 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:57:04.724 00:06:00.011 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 18:57:04.729 00:06:00.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 19:02:20.217 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41180 10 6452 1 2025-08-01 19:02:35.105 00:00:10.328 TCP 23.104.0.1:49284 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:03:20.433 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35354 10 6452 1 2025-08-01 19:03:35.473 00:00:10.334 TCP 23.104.0.1:41366 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:04:20.644 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43684 10 6452 1 2025-08-01 19:04:35.844 00:00:10.390 TCP 23.104.0.1:38850 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:05:20.860 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:60518 10 6452 1 2025-08-01 19:05:36.271 00:00:10.365 TCP 23.104.0.1:45766 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:06:21.083 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42690 10 6452 1 2025-08-01 19:06:36.673 00:00:10.324 TCP 23.104.0.1:34366 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:06:51.276 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:06:51.247 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:07:21.304 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:39132 10 6452 1 2025-08-01 19:07:37.060 00:00:10.363 TCP 23.104.0.1:56668 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:08:21.478 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42590 10 6452 1 2025-08-01 19:08:37.460 00:00:10.361 TCP 23.104.0.1:53294 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:04:04.732 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 19:04:04.726 00:06:00.010 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 19:09:21.695 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40620 10 6452 1 2025-08-01 19:09:37.861 00:00:10.370 TCP 23.104.0.1:54136 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:10:21.908 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:35112 10 6452 1 2025-08-01 19:10:38.265 00:00:10.324 TCP 23.104.0.1:47514 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:11:22.093 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43876 10 6452 1 2025-08-01 19:11:51.476 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:11:38.628 00:00:10.369 TCP 23.104.0.1:33726 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:11:51.572 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:12:22.268 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49702 10 6452 1 2025-08-01 19:12:39.028 00:00:10.366 TCP 23.104.0.1:37932 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:13:22.481 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37768 10 6452 1 2025-08-01 19:13:39.433 00:00:10.374 TCP 23.104.0.1:44150 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:14:22.693 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:40486 10 6452 1 2025-08-01 19:14:39.840 00:00:10.398 TCP 23.104.0.1:37714 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:15:22.860 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:53012 10 6452 1 2025-08-01 19:15:40.274 00:00:10.364 TCP 23.104.0.1:54074 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:11:04.726 00:06:00.012 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 757 1 2025-08-01 19:11:04.733 00:06:00.008 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 653 1 2025-08-01 19:16:23.109 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38774 10 6452 1 2025-08-01 19:16:51.385 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:16:51.436 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:16:40.680 00:00:10.375 TCP 23.104.0.1:50970 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:17:23.323 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:52934 10 6452 1 2025-08-01 19:17:41.107 00:00:10.367 TCP 23.104.0.1:58966 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:18:23.530 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40468 10 6452 1 2025-08-01 19:18:41.517 00:00:10.366 TCP 23.104.0.1:56326 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:19:23.744 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44668 10 6452 1 2025-08-01 19:19:41.925 00:00:10.382 TCP 23.104.0.1:51670 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:20:23.958 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:32882 10 6452 1 2025-08-01 19:20:42.349 00:00:10.364 TCP 23.104.0.1:34558 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:21:24.180 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47000 10 6452 1 2025-08-01 19:21:51.720 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:21:51.656 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:21:42.754 00:00:10.387 TCP 23.104.0.1:55460 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:22:24.396 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:42884 10 6452 1 2025-08-01 19:22:43.182 00:00:10.367 TCP 23.104.0.1:49598 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:18:04.739 00:06:00.001 TCP 179.1.22.1:179 -> 179.1.22.22:39396 7 497 1 2025-08-01 19:18:04.734 00:06:00.007 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 19:23:24.564 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:53550 10 6452 1 2025-08-01 19:23:43.595 00:00:10.363 TCP 23.104.0.1:40454 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:24:24.738 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60740 10 6452 1 2025-08-01 19:24:43.998 00:00:10.326 TCP 23.104.0.1:55234 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:25:24.952 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:52676 12 6556 1 2025-08-01 19:25:44.361 00:00:10.325 TCP 23.104.0.1:44472 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:26:25.182 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:38314 10 6452 1 2025-08-01 19:26:52.542 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:26:52.499 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:26:44.720 00:00:10.375 TCP 23.104.0.1:52252 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:27:25.359 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:46952 10 6452 1 2025-08-01 19:27:45.131 00:00:10.366 TCP 23.104.0.1:43178 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:28:25.531 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40976 10 6452 1 2025-08-01 19:28:45.538 00:00:10.368 TCP 23.104.0.1:46042 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:29:25.748 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35196 10 6452 1 2025-08-01 19:29:45.946 00:00:10.373 TCP 23.104.0.1:33428 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:25:04.736 00:06:00.008 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 19:25:04.739 00:06:00.009 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 653 1 2025-08-01 19:30:25.961 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45328 12 6556 1 2025-08-01 19:30:46.367 00:00:10.362 TCP 23.104.0.1:57388 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:31:26.180 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52426 10 6452 1 2025-08-01 19:31:51.578 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:31:51.829 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:31:46.765 00:00:10.374 TCP 23.104.0.1:32790 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:32:26.397 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38512 10 6452 1 2025-08-01 19:32:47.182 00:00:10.363 TCP 23.104.0.1:44854 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:33:26.616 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58130 10 6452 1 2025-08-01 19:33:47.586 00:00:10.370 TCP 23.104.0.1:51708 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:34:26.830 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49234 11 6492 1 2025-08-01 19:34:47.994 00:00:10.328 TCP 23.104.0.1:57084 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:35:27.063 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59790 10 6452 1 2025-08-01 19:35:48.366 00:00:10.374 TCP 23.104.0.1:51076 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:36:27.277 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45446 10 6452 1 2025-08-01 19:36:51.963 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:36:52.110 00:00:00.041 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:36:48.779 00:00:10.363 TCP 23.104.0.1:48938 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:32:04.741 00:06:00.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 19:32:04.740 00:06:00.005 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 19:37:27.490 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35050 10 6452 1 2025-08-01 19:37:49.181 00:00:10.366 TCP 23.104.0.1:38806 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:38:27.704 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44342 10 6452 1 2025-08-01 19:38:49.581 00:00:10.362 TCP 23.104.0.1:57912 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:39:27.922 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:53018 10 6452 1 2025-08-01 19:39:49.980 00:00:10.332 TCP 23.104.0.1:34730 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:40:28.169 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37312 10 6452 1 2025-08-01 19:40:50.349 00:00:10.366 TCP 23.104.0.1:60468 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:41:28.381 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41678 10 6452 1 2025-08-01 19:41:51.885 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:41:51.832 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:41:50.753 00:00:10.344 TCP 23.104.0.1:52380 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:42:28.599 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:43952 10 6452 1 2025-08-01 19:42:51.138 00:00:10.363 TCP 23.104.0.1:54270 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:43:28.792 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:56352 10 6452 1 2025-08-01 19:43:51.540 00:00:10.365 TCP 23.104.0.1:60214 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:39:04.743 00:06:00.006 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 19:39:04.741 00:06:00.007 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 19:44:28.970 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:45594 10 6452 1 2025-08-01 19:44:51.950 00:00:10.368 TCP 23.104.0.1:51200 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:45:29.209 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56454 10 6452 1 2025-08-01 19:45:52.352 00:00:10.360 TCP 23.104.0.1:41764 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:46:29.424 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:46184 10 6452 1 2025-08-01 19:46:51.950 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:46:52.044 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:46:52.755 00:00:10.331 TCP 23.104.0.1:55816 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:47:29.632 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42972 10 6452 1 2025-08-01 19:47:53.135 00:00:10.370 TCP 23.104.0.1:49452 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:48:29.840 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60252 10 6452 1 2025-08-01 19:48:53.541 00:00:10.366 TCP 23.104.0.1:39550 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:49:30.075 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:32796 10 6452 1 2025-08-01 19:49:53.942 00:00:10.371 TCP 23.104.0.1:44936 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:50:30.286 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59698 10 6452 1 2025-08-01 19:46:04.745 00:06:00.006 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 19:50:54.353 00:00:10.368 TCP 23.104.0.1:37352 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:46:04.746 00:06:00.004 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 19:51:30.495 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34468 10 6452 1 2025-08-01 19:51:52.055 00:00:00.052 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:51:52.239 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:51:54.761 00:00:10.369 TCP 23.104.0.1:58714 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:52:30.714 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43828 10 6452 1 2025-08-01 19:52:55.172 00:00:10.366 TCP 23.104.0.1:55642 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:53:30.922 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46156 10 6452 1 2025-08-01 19:53:55.572 00:00:10.376 TCP 23.104.0.1:53226 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:54:31.132 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59576 10 6452 1 2025-08-01 19:54:56.000 00:00:10.363 TCP 23.104.0.1:53248 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:55:31.343 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:51680 10 6452 1 2025-08-01 19:55:56.401 00:00:10.363 TCP 23.104.0.1:51720 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:56:31.512 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41988 10 6452 1 2025-08-01 19:56:52.557 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 19:56:52.190 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 19:56:56.798 00:00:10.341 TCP 23.104.0.1:53428 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:57:31.727 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:56780 10 6452 1 2025-08-01 19:53:04.748 00:06:00.005 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 19:53:04.749 00:06:00.005 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 19:57:57.178 00:00:10.324 TCP 23.104.0.1:46374 -> 1.101.0.1:3000 11 1507 1 2025-08-01 19:58:31.961 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:32956 12 6556 1 Summary: total flows: 161, total bytes: 496319, total packets: 1549, avg bps: 1067, avg pps: 0, avg bpp: 320 Time window: 2025-08-01 18:57:04 - 2025-08-01 19:59:04 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0032s User: 0.0008s Wall: 0.0021s flows/second: 78230.2 Runtime: 0.0021s