Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 19:59:00.328 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54680 10 6452 1 2025-08-13 19:59:33.133 00:00:10.363 TCP 23.104.0.1:39776 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:00:00.548 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:58470 10 6452 1 2025-08-13 19:56:10.839 00:05:00.800 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:00:33.537 00:00:10.418 TCP 23.104.0.1:53922 -> 1.101.0.1:3000 11 1507 1 2025-08-13 19:57:10.842 00:05:00.795 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:01:00.779 00:00:10.162 TCP 1.101.0.1:3000 -> 22.102.0.1:47628 10 6452 1 2025-08-13 20:01:33.992 00:00:10.367 TCP 23.104.0.1:42178 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:02:00.986 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:59256 10 6452 1 2025-08-13 20:02:38.830 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:02:38.880 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:02:34.397 00:00:10.324 TCP 23.104.0.1:55134 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:03:01.220 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54248 10 6452 1 2025-08-13 20:03:34.760 00:00:10.344 TCP 23.104.0.1:41818 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:04:01.433 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:50058 10 6452 1 2025-08-13 20:04:35.140 00:00:10.368 TCP 23.104.0.1:36804 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:05:01.653 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45988 10 6452 1 2025-08-13 20:05:35.545 00:00:10.325 TCP 23.104.0.1:48242 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:06:01.867 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38766 10 6452 1 2025-08-13 20:02:10.841 00:05:00.799 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:06:35.913 00:00:10.389 TCP 23.104.0.1:46752 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:07:02.084 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55754 10 6452 1 2025-08-13 20:03:10.844 00:05:00.792 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:07:39.187 00:00:00.046 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:07:39.500 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:07:36.384 00:00:10.368 TCP 23.104.0.1:40098 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:08:02.293 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36074 10 6452 1 2025-08-13 20:08:36.785 00:00:10.382 TCP 23.104.0.1:37674 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:09:02.511 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:58286 10 6452 1 2025-08-13 20:09:37.208 00:00:10.330 TCP 23.104.0.1:50946 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:10:02.683 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:45986 10 6452 1 2025-08-13 20:10:37.579 00:00:10.361 TCP 23.104.0.1:48958 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:11:02.854 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:56982 10 6452 1 2025-08-13 20:11:37.976 00:00:10.366 TCP 23.104.0.1:42544 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:08:10.842 00:05:00.801 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:12:03.033 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:53832 10 6452 1 2025-08-13 20:12:39.144 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:12:38.801 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:12:38.383 00:00:10.367 TCP 23.104.0.1:56860 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:09:10.845 00:05:00.795 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:13:03.242 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37174 10 6452 1 2025-08-13 20:13:38.790 00:00:10.366 TCP 23.104.0.1:45534 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:14:03.459 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45594 10 6452 1 2025-08-13 20:14:39.195 00:00:10.366 TCP 23.104.0.1:47480 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:15:03.683 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:56518 10 6452 1 2025-08-13 20:15:39.598 00:00:10.365 TCP 23.104.0.1:41676 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:16:03.852 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:32774 10 6452 1 2025-08-13 20:16:39.999 00:00:10.358 TCP 23.104.0.1:53322 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:17:04.093 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46288 10 6452 1 2025-08-13 20:17:39.381 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:17:39.312 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:17:40.396 00:00:10.368 TCP 23.104.0.1:58360 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:18:04.316 00:00:10.339 TCP 1.101.0.1:3000 -> 22.102.0.1:57562 10 6452 1 2025-08-13 20:14:10.844 00:05:00.805 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:18:40.799 00:00:10.365 TCP 23.104.0.1:50348 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:19:04.693 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:59430 10 6452 1 2025-08-13 20:15:10.847 00:05:00.802 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:19:41.200 00:00:10.368 TCP 23.104.0.1:33394 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:20:04.861 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:59694 10 6452 1 2025-08-13 20:20:41.602 00:00:10.369 TCP 23.104.0.1:54954 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:21:05.091 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46314 10 6452 1 2025-08-13 20:21:42.009 00:00:10.364 TCP 23.104.0.1:44206 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:22:05.302 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47176 10 6452 1 2025-08-13 20:22:39.353 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:22:39.152 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:22:42.413 00:00:10.331 TCP 23.104.0.1:49114 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:23:05.512 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:41388 10 6452 1 2025-08-13 20:23:42.783 00:00:10.368 TCP 23.104.0.1:46528 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:24:05.684 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:45324 10 6452 1 2025-08-13 20:20:10.847 00:05:00.806 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:24:43.190 00:00:10.366 TCP 23.104.0.1:51276 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:21:10.850 00:05:00.801 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:25:05.856 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:43060 12 10365 1 2025-08-13 20:25:43.595 00:00:10.439 TCP 23.104.0.1:39158 -> 1.101.0.1:3000 15 1926 1 2025-08-13 20:26:06.101 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:51858 10 6452 1 2025-08-13 20:26:44.100 00:00:10.363 TCP 23.104.0.1:47002 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:27:06.332 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:36236 10 6452 1 2025-08-13 20:27:39.687 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:27:39.421 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:27:44.504 00:00:10.367 TCP 23.104.0.1:41812 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:28:06.565 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38698 10 6452 1 2025-08-13 20:28:44.908 00:00:10.363 TCP 23.104.0.1:42128 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:29:06.784 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:41840 10 6452 1 2025-08-13 20:29:45.312 00:00:10.369 TCP 23.104.0.1:51392 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:26:10.849 00:05:00.806 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:30:07.007 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:59874 12 10367 1 2025-08-13 20:30:45.713 00:00:10.447 TCP 23.104.0.1:39256 -> 1.101.0.1:3000 15 1926 1 2025-08-13 20:27:10.852 00:05:00.799 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:31:07.251 00:00:10.263 TCP 1.101.0.1:3000 -> 22.102.0.1:41870 10 6452 1 2025-08-13 20:31:46.201 00:00:10.366 TCP 23.104.0.1:40590 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:32:07.555 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:56666 10 6452 1 2025-08-13 20:32:39.794 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:32:39.672 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:32:46.603 00:00:10.361 TCP 23.104.0.1:41060 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:33:07.734 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:57618 10 6452 1 2025-08-13 20:33:47.007 00:00:10.378 TCP 23.104.0.1:49792 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:34:07.905 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57980 10 6452 1 2025-08-13 20:34:47.426 00:00:10.368 TCP 23.104.0.1:58316 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:35:08.121 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38372 10 6452 1 2025-08-13 20:35:47.830 00:00:10.393 TCP 23.104.0.1:46690 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:32:10.858 00:05:00.797 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:36:08.339 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55086 10 6452 1 2025-08-13 20:36:48.261 00:00:10.368 TCP 23.104.0.1:60846 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:33:10.860 00:05:00.793 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:37:08.550 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:39282 10 6452 1 2025-08-13 20:37:39.611 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:37:39.845 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:37:48.668 00:00:10.371 TCP 23.104.0.1:56300 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:38:08.729 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49858 10 6452 1 2025-08-13 20:38:49.107 00:00:10.364 TCP 23.104.0.1:33070 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:39:08.950 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:41318 12 6556 1 2025-08-13 20:39:49.512 00:00:10.366 TCP 23.104.0.1:43490 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:40:09.189 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38064 10 6452 1 2025-08-13 20:40:49.919 00:00:10.322 TCP 23.104.0.1:57294 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:41:09.401 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59650 10 6452 1 2025-08-13 20:41:50.282 00:00:10.346 TCP 23.104.0.1:43226 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:38:10.858 00:05:00.797 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:42:09.619 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:38950 10 6452 1 2025-08-13 20:42:39.627 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:42:39.530 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:42:50.664 00:00:10.371 TCP 23.104.0.1:37480 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:39:10.861 00:05:00.793 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:43:09.799 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47626 10 6452 1 2025-08-13 20:43:51.097 00:00:10.324 TCP 23.104.0.1:59134 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:44:10.011 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:32988 10 6452 1 2025-08-13 20:44:51.458 00:00:10.363 TCP 23.104.0.1:38456 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:45:10.185 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:59086 10 6452 1 2025-08-13 20:45:51.861 00:00:10.373 TCP 23.104.0.1:44460 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:46:10.395 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48012 10 6452 1 2025-08-13 20:46:52.270 00:00:10.325 TCP 23.104.0.1:40304 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:47:10.605 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51760 10 6452 1 2025-08-13 20:47:39.935 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:47:39.796 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:47:52.634 00:00:10.335 TCP 23.104.0.1:54866 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:44:10.859 00:05:00.798 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:48:10.817 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60966 10 6452 1 2025-08-13 20:48:53.002 00:00:10.567 TCP 23.104.0.1:40382 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:45:10.861 00:05:00.793 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:49:11.039 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43380 10 6452 1 2025-08-13 20:49:53.607 00:00:10.364 TCP 23.104.0.1:35204 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:50:11.253 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38774 10 6452 1 2025-08-13 20:50:54.010 00:00:10.321 TCP 23.104.0.1:37986 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:51:11.470 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:57260 10 6452 1 2025-08-13 20:51:54.379 00:00:10.364 TCP 23.104.0.1:59570 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:52:11.647 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46684 10 6452 1 2025-08-13 20:52:39.819 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:52:39.689 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:52:54.777 00:00:10.329 TCP 23.104.0.1:56952 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:53:11.858 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:46552 10 6452 1 2025-08-13 20:53:55.145 00:00:10.365 TCP 23.104.0.1:52582 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:50:10.861 00:05:00.797 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 20:54:12.085 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:48840 10 6452 1 2025-08-13 20:54:55.556 00:00:10.368 TCP 23.104.0.1:43654 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:51:10.865 00:05:00.792 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 20:55:12.318 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52988 10 6452 1 2025-08-13 20:55:55.965 00:00:10.369 TCP 23.104.0.1:38410 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:56:12.534 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:55076 10 6452 1 2025-08-13 20:56:56.372 00:00:10.386 TCP 23.104.0.1:35336 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:57:12.773 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:51126 10 6452 1 2025-08-13 20:57:39.953 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 20:57:39.800 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 20:57:56.786 00:00:10.363 TCP 23.104.0.1:49332 -> 1.101.0.1:3000 11 1507 1 2025-08-13 20:58:12.996 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:49188 10 6452 1 Summary: total flows: 163, total bytes: 505611, total packets: 1575, avg bps: 1083, avg pps: 0, avg bpp: 321 Time window: 2025-08-13 19:56:10 - 2025-08-13 20:58:23 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0031s User: 0.0020s Wall: 0.0030s flows/second: 55103.7 Runtime: 0.0030s