Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 12:59:05.558 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60022 10 6452 1 2025-08-10 12:59:06.871 00:00:10.370 TCP 23.104.0.1:56540 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:00:05.773 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51792 10 6452 1 2025-08-10 13:00:07.277 00:00:10.367 TCP 23.104.0.1:42466 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:01:03.875 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:01:03.677 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:01:05.972 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:32824 10 6452 1 2025-08-10 13:01:07.680 00:00:10.328 TCP 23.104.0.1:57122 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:57:09.145 00:06:00.776 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 13:02:06.163 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49458 10 6452 1 2025-08-10 13:02:08.061 00:00:10.365 TCP 23.104.0.1:59546 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:03:06.380 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44240 10 6452 1 2025-08-10 13:03:08.464 00:00:10.325 TCP 23.104.0.1:39246 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:59:09.147 00:06:00.771 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 13:04:06.596 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:46150 10 6452 1 2025-08-10 13:04:08.825 00:00:10.367 TCP 23.104.0.1:53520 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:05:06.762 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:57626 10 6452 1 2025-08-10 13:05:09.231 00:00:10.337 TCP 23.104.0.1:43396 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:06:03.766 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:06:03.727 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:06:09.612 00:00:10.369 TCP 23.104.0.1:46808 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:06:06.939 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:50532 10 6452 1 2025-08-10 13:07:10.017 00:00:10.364 TCP 23.104.0.1:54142 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:07:07.136 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47278 10 6452 1 2025-08-10 13:08:07.347 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36012 10 6452 1 2025-08-10 13:08:10.419 00:00:10.326 TCP 23.104.0.1:57168 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:04:09.146 00:06:00.777 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 13:09:07.564 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55804 10 6452 1 2025-08-10 13:09:10.786 00:00:10.366 TCP 23.104.0.1:53134 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:10:11.190 00:00:10.366 TCP 23.104.0.1:60058 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:10:07.783 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44910 10 6452 1 2025-08-10 13:11:04.159 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:11:04.298 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:06:09.148 00:06:00.774 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 13:11:07.992 00:00:17.666 TCP 1.101.0.1:3000 -> 22.102.0.1:48642 10 6452 1 2025-08-10 13:11:11.595 00:00:14.172 TCP 23.104.0.1:51568 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:12:15.715 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57862 10 6452 1 2025-08-10 13:12:15.864 00:00:10.369 TCP 23.104.0.1:56984 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:13:15.927 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:57602 10 6452 1 2025-08-10 13:13:16.273 00:00:10.370 TCP 23.104.0.1:59062 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:14:16.154 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44766 10 6452 1 2025-08-10 13:14:16.680 00:00:10.325 TCP 23.104.0.1:38036 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:15:16.368 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48072 10 6452 1 2025-08-10 13:15:17.049 00:00:10.368 TCP 23.104.0.1:44262 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:16:04.379 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:16:04.342 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:11:09.148 00:06:00.778 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 13:16:16.578 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:50354 10 6452 1 2025-08-10 13:16:17.451 00:00:10.364 TCP 23.104.0.1:43778 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:17:16.749 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35946 10 6452 1 2025-08-10 13:17:17.853 00:00:10.334 TCP 23.104.0.1:48406 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:13:09.151 00:06:00.773 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 13:18:16.963 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:50488 10 6452 1 2025-08-10 13:18:18.225 00:00:10.325 TCP 23.104.0.1:55564 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:19:18.587 00:00:10.328 TCP 23.104.0.1:48390 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:19:17.139 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60220 10 6452 1 2025-08-10 13:20:17.351 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:58706 10 6452 1 2025-08-10 13:20:18.949 00:00:10.367 TCP 23.104.0.1:34540 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:21:04.293 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:21:04.144 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:21:17.555 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36552 10 6452 1 2025-08-10 13:21:19.354 00:00:10.366 TCP 23.104.0.1:39710 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:22:19.761 00:00:10.386 TCP 23.104.0.1:53800 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:22:17.775 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60718 10 6452 1 2025-08-10 13:18:09.150 00:06:00.777 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 13:23:20.172 00:00:10.382 TCP 23.104.0.1:55644 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:23:17.982 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:58214 10 6452 1 2025-08-10 13:24:20.590 00:00:10.439 TCP 23.104.0.1:35456 -> 1.101.0.1:3000 15 1926 1 2025-08-10 13:24:18.168 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:36528 12 10365 1 2025-08-10 13:20:09.153 00:06:00.774 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 13:25:21.098 00:00:10.362 TCP 23.104.0.1:55456 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:25:18.410 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46898 10 6452 1 2025-08-10 13:26:04.227 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:26:04.398 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:26:21.496 00:00:10.369 TCP 23.104.0.1:56834 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:26:18.624 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50934 10 6452 1 2025-08-10 13:27:18.837 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42326 10 6452 1 2025-08-10 13:27:21.899 00:00:10.372 TCP 23.104.0.1:40638 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:28:19.081 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53450 10 6452 1 2025-08-10 13:28:22.311 00:00:10.365 TCP 23.104.0.1:56710 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:29:19.294 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36086 10 6452 1 2025-08-10 13:29:22.715 00:00:10.369 TCP 23.104.0.1:33340 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:25:09.152 00:06:00.777 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 13:30:19.510 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47684 10 6452 1 2025-08-10 13:30:23.123 00:00:10.362 TCP 23.104.0.1:39756 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:31:04.502 00:00:00.028 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:31:04.649 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:31:19.725 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49618 10 6452 1 2025-08-10 13:31:23.523 00:00:10.364 TCP 23.104.0.1:41298 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:27:09.156 00:06:00.774 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 13:32:19.941 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:52440 10 6452 1 2025-08-10 13:32:23.929 00:00:10.376 TCP 23.104.0.1:36116 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:33:20.177 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59316 10 6452 1 2025-08-10 13:33:24.344 00:00:10.329 TCP 23.104.0.1:37904 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:34:20.389 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:49568 12 10367 1 2025-08-10 13:34:24.708 00:00:10.440 TCP 23.104.0.1:59782 -> 1.101.0.1:3000 15 1926 1 2025-08-10 13:35:20.624 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:49208 10 6452 1 2025-08-10 13:35:25.186 00:00:10.370 TCP 23.104.0.1:46112 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:36:04.741 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:36:04.673 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:36:20.855 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39660 10 6452 1 2025-08-10 13:36:25.587 00:00:10.365 TCP 23.104.0.1:37266 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:32:09.154 00:06:00.782 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 13:37:21.080 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49588 10 6452 1 2025-08-10 13:37:25.993 00:00:10.362 TCP 23.104.0.1:49758 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:38:21.302 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52168 10 6452 1 2025-08-10 13:38:26.394 00:00:10.334 TCP 23.104.0.1:34018 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:34:09.156 00:06:00.778 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 13:39:21.518 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:37708 12 10365 1 2025-08-10 13:39:26.775 00:00:10.439 TCP 23.104.0.1:53240 -> 1.101.0.1:3000 15 1926 1 2025-08-10 13:40:21.760 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39278 10 6452 1 2025-08-10 13:40:27.260 00:00:10.368 TCP 23.104.0.1:41870 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:41:04.830 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:41:04.709 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:41:21.988 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:43832 10 6452 1 2025-08-10 13:41:27.676 00:00:10.322 TCP 23.104.0.1:36636 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:42:22.215 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35342 10 6452 1 2025-08-10 13:42:28.041 00:00:10.364 TCP 23.104.0.1:54912 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:43:22.429 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:58170 10 6452 1 2025-08-10 13:43:28.445 00:00:10.377 TCP 23.104.0.1:50442 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:39:09.156 00:06:00.787 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 13:44:22.602 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:59536 10 6452 1 2025-08-10 13:44:28.875 00:00:10.362 TCP 23.104.0.1:35466 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:45:22.820 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:35340 10 6452 1 2025-08-10 13:45:29.282 00:00:10.373 TCP 23.104.0.1:40870 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:46:04.907 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:46:04.672 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:41:09.161 00:06:00.782 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 13:46:22.993 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:53524 10 6452 1 2025-08-10 13:46:29.693 00:00:10.364 TCP 23.104.0.1:34008 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:47:23.216 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:51930 10 6452 1 2025-08-10 13:47:30.109 00:00:10.359 TCP 23.104.0.1:60906 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:48:23.392 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:43898 10 6452 1 2025-08-10 13:48:30.506 00:00:10.365 TCP 23.104.0.1:42480 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:49:23.563 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33672 10 6452 1 2025-08-10 13:49:30.904 00:00:10.567 TCP 23.104.0.1:49556 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:50:23.772 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53158 10 6452 1 2025-08-10 13:50:31.513 00:00:10.321 TCP 23.104.0.1:55642 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:51:05.084 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:51:05.101 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:46:09.157 00:06:00.788 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 13:51:23.987 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:59278 10 6452 1 2025-08-10 13:51:31.873 00:00:10.367 TCP 23.104.0.1:56298 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:52:24.211 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:37622 10 6452 1 2025-08-10 13:52:32.274 00:00:10.373 TCP 23.104.0.1:58488 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:48:09.161 00:06:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 13:53:24.385 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33260 10 6452 1 2025-08-10 13:53:32.685 00:00:10.323 TCP 23.104.0.1:56494 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:54:24.607 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55952 10 6452 1 2025-08-10 13:54:33.048 00:00:10.372 TCP 23.104.0.1:54764 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:55:24.818 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37616 10 6452 1 2025-08-10 13:55:33.459 00:00:10.367 TCP 23.104.0.1:56982 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:56:04.952 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 13:56:04.912 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 13:56:24.985 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:34240 10 6452 1 2025-08-10 13:56:33.866 00:00:10.330 TCP 23.104.0.1:59572 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:57:25.233 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57946 10 6452 1 2025-08-10 13:57:34.229 00:00:10.324 TCP 23.104.0.1:37964 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:53:09.158 00:06:00.790 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 13:58:25.450 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36744 10 6452 1 2025-08-10 13:58:34.592 00:00:10.367 TCP 23.104.0.1:60196 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 511223, total packets: 1588, avg bps: 1099, avg pps: 0, avg bpp: 321 Time window: 2025-08-10 12:57:09 - 2025-08-10 13:59:09 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0025s User: 0.0025s Wall: 0.0019s flows/second: 85360.0 Runtime: 0.0019s