Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-27 01:59:01.467 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 01:59:01.400 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 01:59:08.863 00:00:10.367 TCP 23.104.0.1:42554 -> 1.101.0.1:3000 11 1507 1 2025-08-27 01:59:07.288 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48268 10 6452 1 2025-08-27 01:54:18.603 00:06:00.158 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-27 02:00:09.276 00:00:10.325 TCP 23.104.0.1:44172 -> 1.101.0.1:3000 11 1507 1 2025-08-27 01:55:18.607 00:06:00.151 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-27 02:00:07.461 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39116 10 6452 1 2025-08-27 02:01:09.638 00:00:10.370 TCP 23.104.0.1:36760 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:01:07.642 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52734 10 6452 1 2025-08-27 02:02:07.857 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:57794 10 6452 1 2025-08-27 02:02:10.043 00:00:10.370 TCP 23.104.0.1:41030 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:03:08.092 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38676 10 6452 1 2025-08-27 02:03:10.451 00:00:10.316 TCP 23.104.0.1:57936 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:04:02.027 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:04:02.230 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:04:08.309 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40748 10 6452 1 2025-08-27 02:04:10.804 00:00:10.369 TCP 23.104.0.1:35732 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:05:08.521 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:36830 10 6452 1 2025-08-27 02:05:11.212 00:00:10.377 TCP 23.104.0.1:59758 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:06:11.633 00:00:10.365 TCP 23.104.0.1:58102 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:06:08.712 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41518 10 6452 1 2025-08-27 02:01:18.612 00:06:00.151 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-27 02:07:08.925 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:59766 10 6452 1 2025-08-27 02:02:18.617 00:06:00.143 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-27 02:07:12.033 00:00:10.374 TCP 23.104.0.1:44538 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:08:09.163 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36518 10 6452 1 2025-08-27 02:08:12.458 00:00:10.365 TCP 23.104.0.1:58930 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:09:01.844 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:09:01.712 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:09:09.379 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:33298 10 6452 1 2025-08-27 02:09:12.867 00:00:10.330 TCP 23.104.0.1:40558 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:10:09.550 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49340 10 6452 1 2025-08-27 02:10:13.231 00:00:10.366 TCP 23.104.0.1:42458 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:11:09.761 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32880 10 6452 1 2025-08-27 02:11:13.638 00:00:10.327 TCP 23.104.0.1:50358 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:12:09.975 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:39852 10 6452 1 2025-08-27 02:12:13.998 00:00:10.366 TCP 23.104.0.1:47164 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:13:10.198 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37602 10 6452 1 2025-08-27 02:08:18.614 00:06:00.153 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-27 02:13:14.406 00:00:10.366 TCP 23.104.0.1:47546 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:14:01.760 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:14:02.027 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:09:18.618 00:06:00.144 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-27 02:14:10.408 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58488 10 6452 1 2025-08-27 02:14:14.812 00:00:10.370 TCP 23.104.0.1:39938 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:15:10.620 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44798 10 6452 1 2025-08-27 02:15:15.227 00:00:10.769 TCP 23.104.0.1:44758 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:16:10.836 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:56690 10 6452 1 2025-08-27 02:16:16.033 00:00:10.369 TCP 23.104.0.1:33986 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:17:11.022 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47242 10 6452 1 2025-08-27 02:17:16.442 00:00:10.363 TCP 23.104.0.1:44220 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:18:11.237 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58776 10 6452 1 2025-08-27 02:18:16.851 00:00:10.333 TCP 23.104.0.1:35246 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:19:01.963 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:19:01.866 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:19:11.452 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52734 10 6452 1 2025-08-27 02:19:17.226 00:00:10.362 TCP 23.104.0.1:33730 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:20:11.668 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38254 10 6452 1 2025-08-27 02:15:18.616 00:06:00.150 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-27 02:20:17.625 00:00:10.371 TCP 23.104.0.1:54922 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:16:18.618 00:06:00.145 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-27 02:21:11.876 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:40906 10 6452 1 2025-08-27 02:21:18.030 00:00:10.366 TCP 23.104.0.1:46688 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:22:12.119 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:41818 10 6452 1 2025-08-27 02:22:18.435 00:00:10.384 TCP 23.104.0.1:53840 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:23:12.295 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:32836 10 6452 1 2025-08-27 02:23:18.859 00:00:10.378 TCP 23.104.0.1:54226 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:24:02.214 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:24:02.010 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:24:12.473 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35154 10 6452 1 2025-08-27 02:24:19.266 00:00:10.364 TCP 23.104.0.1:58118 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:25:12.683 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:43604 10 6452 1 2025-08-27 02:25:19.670 00:00:10.331 TCP 23.104.0.1:59382 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:26:12.844 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48824 10 6452 1 2025-08-27 02:26:20.045 00:00:10.327 TCP 23.104.0.1:40110 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:22:18.622 00:06:00.144 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-27 02:27:13.078 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47192 10 6452 1 2025-08-27 02:27:20.409 00:00:10.369 TCP 23.104.0.1:33096 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:23:18.624 00:06:00.140 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-27 02:28:13.290 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60210 10 6452 1 2025-08-27 02:28:20.816 00:00:10.363 TCP 23.104.0.1:58304 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:29:02.145 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:29:02.281 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:29:13.511 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40918 10 6452 1 2025-08-27 02:29:21.217 00:00:10.368 TCP 23.104.0.1:33534 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:30:13.731 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41284 12 6556 1 2025-08-27 02:30:21.623 00:00:10.357 TCP 23.104.0.1:48044 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:31:13.946 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49598 10 6452 1 2025-08-27 02:31:22.020 00:00:10.365 TCP 23.104.0.1:40034 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:32:14.171 00:00:10.220 TCP 1.101.0.1:3000 -> 22.102.0.1:33116 12 10367 1 2025-08-27 02:32:22.421 00:00:10.438 TCP 23.104.0.1:35454 -> 1.101.0.1:3000 15 1926 1 2025-08-27 02:33:14.434 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52794 10 6452 1 2025-08-27 02:33:22.901 00:00:10.368 TCP 23.104.0.1:36074 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:34:02.287 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:34:02.217 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:29:18.622 00:06:00.162 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-27 02:34:14.655 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51458 10 6452 1 2025-08-27 02:34:23.309 00:00:10.365 TCP 23.104.0.1:35622 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:30:18.625 00:06:00.158 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-27 02:35:14.870 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:55084 10 6452 1 2025-08-27 02:35:23.717 00:00:10.378 TCP 23.104.0.1:60756 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:36:15.061 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:45458 10 6452 1 2025-08-27 02:36:24.136 00:00:10.321 TCP 23.104.0.1:33064 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:37:15.231 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37258 10 6452 1 2025-08-27 02:37:24.493 00:00:10.377 TCP 23.104.0.1:35274 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:38:15.446 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54292 10 6452 1 2025-08-27 02:38:24.904 00:00:10.368 TCP 23.104.0.1:47288 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:39:02.383 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:39:02.217 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:39:15.663 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44512 10 6452 1 2025-08-27 02:39:25.321 00:00:10.361 TCP 23.104.0.1:55160 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:40:15.893 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:48300 10 6452 1 2025-08-27 02:40:25.718 00:00:10.376 TCP 23.104.0.1:36856 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:36:18.625 00:06:00.160 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-27 02:41:16.087 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:59418 10 6452 1 2025-08-27 02:41:26.139 00:00:10.365 TCP 23.104.0.1:38856 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:37:18.630 00:06:00.154 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-27 02:42:16.260 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39668 10 6452 1 2025-08-27 02:42:26.544 00:00:10.363 TCP 23.104.0.1:37442 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:43:16.477 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:33322 10 6452 1 2025-08-27 02:43:26.962 00:00:10.366 TCP 23.104.0.1:37566 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:44:02.583 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:44:02.578 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:44:16.683 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34378 10 6452 1 2025-08-27 02:44:27.366 00:00:10.370 TCP 23.104.0.1:53850 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:45:16.889 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:35340 10 6452 1 2025-08-27 02:45:27.776 00:00:10.369 TCP 23.104.0.1:35338 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:46:17.077 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59346 10 6452 1 2025-08-27 02:46:28.181 00:00:10.365 TCP 23.104.0.1:59364 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:47:17.291 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57956 10 6452 1 2025-08-27 02:47:28.588 00:00:10.319 TCP 23.104.0.1:45002 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:43:18.628 00:06:00.159 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-27 02:48:17.505 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50390 10 6452 1 2025-08-27 02:48:28.945 00:00:10.373 TCP 23.104.0.1:32774 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:49:02.635 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:49:02.491 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:44:18.630 00:06:00.156 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-27 02:49:17.724 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:32934 10 6452 1 2025-08-27 02:49:29.360 00:00:10.642 TCP 23.104.0.1:34348 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:50:17.897 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53464 10 6452 1 2025-08-27 02:50:30.049 00:00:10.324 TCP 23.104.0.1:34444 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:51:18.115 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54022 10 6452 1 2025-08-27 02:51:30.411 00:00:10.365 TCP 23.104.0.1:37210 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:52:18.328 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:56656 10 6452 1 2025-08-27 02:52:30.814 00:00:10.370 TCP 23.104.0.1:54744 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:53:18.501 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43402 10 6452 1 2025-08-27 02:53:31.225 00:00:10.332 TCP 23.104.0.1:38856 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:54:02.729 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 02:54:02.621 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 02:54:18.717 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:57986 10 6452 1 2025-08-27 02:54:31.596 00:00:10.320 TCP 23.104.0.1:58370 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:50:18.629 00:06:00.162 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-27 02:55:18.919 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33120 10 6452 1 2025-08-27 02:55:31.957 00:00:10.326 TCP 23.104.0.1:50124 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:51:18.632 00:06:00.160 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-27 02:56:19.133 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47860 10 6452 1 2025-08-27 02:56:32.321 00:00:10.366 TCP 23.104.0.1:34618 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:57:19.346 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:53484 10 6452 1 2025-08-27 02:57:32.734 00:00:10.330 TCP 23.104.0.1:49612 -> 1.101.0.1:3000 11 1507 1 2025-08-27 02:58:19.524 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39596 10 6452 1 2025-08-27 02:58:33.109 00:00:10.324 TCP 23.104.0.1:60538 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 503524, total packets: 1592, avg bps: 1042, avg pps: 0, avg bpp: 316 Time window: 2025-08-27 01:54:18 - 2025-08-27 02:58:43 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0045s User: 0.0000s Wall: 0.0023s flows/second: 70985.9 Runtime: 0.0023s