Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-03 19:59:11.428 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:57338 10 6452 1 2025-09-03 19:59:20.434 00:00:10.367 TCP 23.104.0.1:33164 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:00:11.607 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57528 10 6452 1 2025-09-03 20:00:20.840 00:00:10.389 TCP 23.104.0.1:43222 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:01:11.819 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36552 10 6452 1 2025-09-03 20:01:21.266 00:00:10.364 TCP 23.104.0.1:34048 -> 1.101.0.1:3000 11 1507 1 2025-09-03 19:57:23.096 00:06:00.745 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-03 20:02:12.041 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52522 10 6452 1 2025-09-03 20:02:21.667 00:00:10.367 TCP 23.104.0.1:48506 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:02:45.843 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:02:45.831 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:03:12.254 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:49748 10 6452 1 2025-09-03 19:58:23.093 00:06:00.750 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-03 20:03:22.102 00:00:10.357 TCP 23.104.0.1:39756 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:04:12.466 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:35266 10 6452 1 2025-09-03 20:04:22.498 00:00:10.366 TCP 23.104.0.1:48236 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:05:12.639 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:60228 10 6452 1 2025-09-03 20:05:22.901 00:00:10.369 TCP 23.104.0.1:36376 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:06:12.847 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60728 10 6452 1 2025-09-03 20:06:23.310 00:00:10.386 TCP 23.104.0.1:43030 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:07:13.081 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44812 10 6452 1 2025-09-03 20:07:23.736 00:00:10.371 TCP 23.104.0.1:49918 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:07:45.964 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:07:45.771 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:08:13.296 00:00:10.638 TCP 1.101.0.1:3000 -> 22.102.0.1:58650 12 10367 1 2025-09-03 20:08:24.146 00:00:10.442 TCP 23.104.0.1:55118 -> 1.101.0.1:3000 15 1926 1 2025-09-03 20:04:23.098 00:06:00.745 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-03 20:09:13.990 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46322 10 6452 1 2025-09-03 20:09:24.624 00:00:10.368 TCP 23.104.0.1:43636 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:10:14.208 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34692 10 6452 1 2025-09-03 20:05:23.096 00:06:00.750 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-03 20:10:25.027 00:00:10.369 TCP 23.104.0.1:51352 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:11:14.420 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37142 10 6452 1 2025-09-03 20:11:25.432 00:00:10.362 TCP 23.104.0.1:51454 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:12:14.592 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33164 10 6452 1 2025-09-03 20:12:25.836 00:00:10.396 TCP 23.104.0.1:50686 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:12:46.122 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:12:45.929 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:13:14.806 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:49498 10 6452 1 2025-09-03 20:13:26.272 00:00:10.363 TCP 23.104.0.1:53066 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:14:14.983 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:42058 10 6452 1 2025-09-03 20:14:26.675 00:00:10.328 TCP 23.104.0.1:53570 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:15:15.215 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47486 10 6452 1 2025-09-03 20:15:27.039 00:00:10.336 TCP 23.104.0.1:51676 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:16:15.424 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38556 10 6452 1 2025-09-03 20:11:23.100 00:06:00.745 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-03 20:16:27.416 00:00:10.326 TCP 23.104.0.1:48072 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:17:15.638 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35608 10 6452 1 2025-09-03 20:12:23.099 00:06:00.750 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-03 20:17:27.776 00:00:10.367 TCP 23.104.0.1:50698 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:17:46.259 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:17:46.085 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:18:15.855 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59134 10 6452 1 2025-09-03 20:18:28.179 00:00:10.367 TCP 23.104.0.1:38408 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:19:16.080 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:40242 10 6452 1 2025-09-03 20:19:28.584 00:00:10.328 TCP 23.104.0.1:45400 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:20:16.302 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:38176 10 6452 1 2025-09-03 20:20:28.950 00:00:10.370 TCP 23.104.0.1:46848 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:21:16.517 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43162 10 6452 1 2025-09-03 20:21:29.359 00:00:10.371 TCP 23.104.0.1:50610 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:22:16.689 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59736 10 6452 1 2025-09-03 20:22:29.770 00:00:10.329 TCP 23.104.0.1:53318 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:22:46.235 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:22:46.280 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:18:23.101 00:06:00.746 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-03 20:23:16.909 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47078 10 6452 1 2025-09-03 20:23:30.138 00:00:10.323 TCP 23.104.0.1:33842 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:19:23.098 00:06:00.752 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-03 20:24:17.124 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45534 10 6452 1 2025-09-03 20:24:30.499 00:00:10.365 TCP 23.104.0.1:33120 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:25:17.298 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39048 10 6452 1 2025-09-03 20:25:30.903 00:00:10.366 TCP 23.104.0.1:54148 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:26:17.518 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:53526 10 6452 1 2025-09-03 20:26:31.306 00:00:10.367 TCP 23.104.0.1:57122 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:27:17.692 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49500 10 6452 1 2025-09-03 20:27:31.705 00:00:10.368 TCP 23.104.0.1:58966 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:27:46.408 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:27:46.308 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:28:17.903 00:00:10.484 TCP 1.101.0.1:3000 -> 22.102.0.1:55302 10 6452 1 2025-09-03 20:28:32.112 00:00:10.363 TCP 23.104.0.1:45954 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:29:18.425 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:34632 10 6452 1 2025-09-03 20:29:32.515 00:00:10.368 TCP 23.104.0.1:46150 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:25:23.105 00:06:00.748 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-03 20:30:18.589 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46630 10 6452 1 2025-09-03 20:30:32.922 00:00:10.390 TCP 23.104.0.1:37404 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:26:23.102 00:06:00.754 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-03 20:31:18.801 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60032 10 6452 1 2025-09-03 20:31:33.347 00:00:10.366 TCP 23.104.0.1:33942 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:32:19.025 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35408 10 6452 1 2025-09-03 20:32:46.765 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:32:33.754 00:00:10.387 TCP 23.104.0.1:40056 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:32:46.636 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:33:19.248 00:00:10.379 TCP 1.101.0.1:3000 -> 22.102.0.1:35634 10 6452 1 2025-09-03 20:33:34.176 00:00:10.321 TCP 23.104.0.1:55296 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:34:19.672 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:36324 10 6452 1 2025-09-03 20:34:34.530 00:00:10.365 TCP 23.104.0.1:52780 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:35:19.841 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:33388 10 6452 1 2025-09-03 20:35:34.932 00:00:10.397 TCP 23.104.0.1:33198 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:36:20.084 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36120 10 6452 1 2025-09-03 20:36:35.363 00:00:10.364 TCP 23.104.0.1:53486 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:32:23.108 00:06:00.747 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-03 20:37:20.300 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45582 10 6452 1 2025-09-03 20:37:35.764 00:00:10.372 TCP 23.104.0.1:53344 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:37:46.526 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:37:46.526 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:33:23.104 00:06:00.755 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-03 20:38:20.520 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:36326 10 6452 1 2025-09-03 20:38:36.170 00:00:10.323 TCP 23.104.0.1:51214 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:39:20.689 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37824 10 6452 1 2025-09-03 20:39:36.535 00:00:10.372 TCP 23.104.0.1:42286 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:40:20.861 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58634 10 6452 1 2025-09-03 20:40:36.939 00:00:10.807 TCP 23.104.0.1:44138 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:41:21.081 00:00:10.676 TCP 1.101.0.1:3000 -> 22.102.0.1:38012 10 6452 1 2025-09-03 20:41:37.792 00:00:10.366 TCP 23.104.0.1:56784 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:42:21.799 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60066 10 6452 1 2025-09-03 20:42:46.680 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:42:46.567 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:42:38.199 00:00:10.367 TCP 23.104.0.1:35302 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:43:22.010 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42962 10 6452 1 2025-09-03 20:43:38.605 00:00:10.330 TCP 23.104.0.1:38392 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:39:23.109 00:06:00.749 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-03 20:44:22.220 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47066 10 6452 1 2025-09-03 20:44:38.972 00:00:10.371 TCP 23.104.0.1:41856 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:40:23.106 00:06:00.756 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-03 20:45:22.440 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40226 10 6452 1 2025-09-03 20:45:39.380 00:00:10.365 TCP 23.104.0.1:42364 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:46:22.650 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37974 10 6452 1 2025-09-03 20:46:39.784 00:00:10.366 TCP 23.104.0.1:44792 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:47:22.861 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:35580 10 6452 1 2025-09-03 20:47:46.788 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:47:46.900 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:47:40.187 00:00:10.368 TCP 23.104.0.1:43344 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:48:23.038 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:56706 10 6452 1 2025-09-03 20:48:40.593 00:00:10.365 TCP 23.104.0.1:48430 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:49:23.248 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:38152 10 6452 1 2025-09-03 20:49:41.007 00:00:10.370 TCP 23.104.0.1:34700 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:50:23.425 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50772 10 6452 1 2025-09-03 20:50:41.418 00:00:10.372 TCP 23.104.0.1:44596 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:46:23.110 00:06:00.750 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-03 20:51:23.637 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:59192 10 6452 1 2025-09-03 20:51:41.836 00:00:10.388 TCP 23.104.0.1:36256 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:47:23.106 00:06:00.756 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-03 20:52:23.812 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35166 10 6452 1 2025-09-03 20:52:46.623 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:52:47.072 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:52:42.265 00:00:10.362 TCP 23.104.0.1:50262 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:53:24.033 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57410 10 6452 1 2025-09-03 20:53:42.666 00:00:10.362 TCP 23.104.0.1:40588 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:54:24.245 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37930 10 6452 1 2025-09-03 20:54:43.091 00:00:10.368 TCP 23.104.0.1:36532 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:55:24.457 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:41658 10 6452 1 2025-09-03 20:55:43.500 00:00:10.361 TCP 23.104.0.1:52416 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:56:24.636 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42590 10 6452 1 2025-09-03 20:56:43.905 00:00:10.367 TCP 23.104.0.1:38486 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:57:24.849 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:59090 10 6452 1 2025-09-03 20:57:46.897 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-03 20:57:46.895 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-03 20:57:44.309 00:00:10.395 TCP 23.104.0.1:47942 -> 1.101.0.1:3000 11 1507 1 2025-09-03 20:53:23.111 00:06:00.750 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-03 20:58:25.060 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:57496 10 6452 1 Summary: total flows: 160, total bytes: 501052, total packets: 1565, avg bps: 1077, avg pps: 0, avg bpp: 320 Time window: 2025-09-03 19:57:23 - 2025-09-03 20:59:23 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0016s User: 0.0025s Wall: 0.0019s flows/second: 84883.5 Runtime: 0.0019s