Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-10 12:59:15.523 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:59486 10 6452 1 2025-09-10 12:59:36.137 00:00:10.319 TCP 23.104.0.1:35986 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:00:15.710 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35560 10 6452 1 2025-09-10 12:56:26.364 00:05:00.830 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:00:36.494 00:00:10.368 TCP 23.104.0.1:52594 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:01:06.879 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:01:07.019 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:01:15.931 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:54092 10 6452 1 2025-09-10 13:01:36.903 00:00:10.369 TCP 23.104.0.1:35870 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:02:16.128 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:32770 10 6452 1 2025-09-10 13:02:37.316 00:00:10.323 TCP 23.104.0.1:60484 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:03:16.300 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47944 10 6452 1 2025-09-10 13:03:37.678 00:00:10.332 TCP 23.104.0.1:37032 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:04:16.513 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37092 10 6452 1 2025-09-10 13:00:26.372 00:05:00.819 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:04:38.057 00:00:10.364 TCP 23.104.0.1:54380 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:05:16.735 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51624 10 6452 1 2025-09-10 13:05:38.460 00:00:10.361 TCP 23.104.0.1:42988 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:06:06.985 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:06:07.048 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:02:26.369 00:05:00.828 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:06:16.950 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:60860 10 6452 1 2025-09-10 13:06:38.860 00:00:10.373 TCP 23.104.0.1:60372 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:07:17.182 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46850 10 6452 1 2025-09-10 13:07:39.266 00:00:10.322 TCP 23.104.0.1:39966 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:08:17.392 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39514 10 6452 1 2025-09-10 13:08:39.626 00:00:10.368 TCP 23.104.0.1:60792 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:09:17.606 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55898 10 6452 1 2025-09-10 13:09:40.037 00:00:10.504 TCP 23.104.0.1:40886 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:06:26.371 00:05:00.824 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:10:17.818 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:46050 10 6452 1 2025-09-10 13:10:40.595 00:00:10.365 TCP 23.104.0.1:33158 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:11:06.862 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:11:07.023 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:11:17.992 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:56884 10 6452 1 2025-09-10 13:11:41.001 00:00:10.324 TCP 23.104.0.1:44096 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:12:18.207 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:52134 10 6452 1 2025-09-10 13:08:26.370 00:05:00.828 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:12:41.364 00:00:10.372 TCP 23.104.0.1:40284 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:13:18.420 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:55342 10 6452 1 2025-09-10 13:13:41.779 00:00:10.367 TCP 23.104.0.1:50150 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:14:18.627 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:59028 10 6452 1 2025-09-10 13:14:42.181 00:00:10.378 TCP 23.104.0.1:58272 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:15:18.806 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:58900 10 6452 1 2025-09-10 13:15:42.596 00:00:10.370 TCP 23.104.0.1:36776 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:16:07.403 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:16:07.322 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:16:18.986 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:51240 10 6452 1 2025-09-10 13:12:26.373 00:05:00.823 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:16:43.002 00:00:10.384 TCP 23.104.0.1:53252 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:17:19.181 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:59290 10 6452 1 2025-09-10 13:17:43.427 00:00:10.788 TCP 23.104.0.1:42712 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:18:19.349 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38468 10 6452 1 2025-09-10 13:14:26.372 00:05:00.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:18:44.256 00:00:10.367 TCP 23.104.0.1:54548 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:19:19.568 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49478 10 6452 1 2025-09-10 13:19:44.655 00:00:10.372 TCP 23.104.0.1:35108 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:20:19.781 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34654 10 6452 1 2025-09-10 13:20:45.093 00:00:10.360 TCP 23.104.0.1:60540 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:21:07.390 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:21:07.199 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:21:19.991 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:56766 10 6452 1 2025-09-10 13:21:45.494 00:00:10.368 TCP 23.104.0.1:51480 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:18:26.375 00:05:00.822 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:22:20.218 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49684 10 6452 1 2025-09-10 13:22:45.903 00:00:10.361 TCP 23.104.0.1:42266 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:23:20.431 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37202 10 6452 1 2025-09-10 13:23:46.302 00:00:10.661 TCP 23.104.0.1:42012 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:20:26.376 00:05:00.825 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:24:20.645 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57294 10 6452 1 2025-09-10 13:24:47.003 00:00:10.360 TCP 23.104.0.1:39964 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:25:20.855 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:36652 10 6452 1 2025-09-10 13:25:47.403 00:00:10.370 TCP 23.104.0.1:36098 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:26:07.306 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:26:07.174 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:26:21.087 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48970 10 6452 1 2025-09-10 13:26:47.809 00:00:10.367 TCP 23.104.0.1:43692 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:27:21.296 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38410 10 6452 1 2025-09-10 13:27:48.213 00:00:10.364 TCP 23.104.0.1:48634 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:24:26.377 00:05:00.821 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:28:21.514 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44486 10 6452 1 2025-09-10 13:28:48.613 00:00:10.366 TCP 23.104.0.1:52316 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:29:21.725 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:52298 10 6452 1 2025-09-10 13:29:49.017 00:00:10.325 TCP 23.104.0.1:43152 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:26:26.375 00:05:00.826 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:30:21.892 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33762 10 6452 1 2025-09-10 13:30:49.381 00:00:10.354 TCP 23.104.0.1:48014 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:31:07.235 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:31:07.290 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:31:22.108 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38622 10 6452 1 2025-09-10 13:31:49.789 00:00:10.350 TCP 23.104.0.1:33960 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:32:22.319 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45196 10 6452 1 2025-09-10 13:32:50.172 00:00:10.324 TCP 23.104.0.1:41100 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:33:22.535 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:56296 10 6452 1 2025-09-10 13:33:50.534 00:00:10.363 TCP 23.104.0.1:34136 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:30:26.381 00:05:00.819 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:34:22.752 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50124 10 6452 1 2025-09-10 13:34:50.944 00:00:10.369 TCP 23.104.0.1:40116 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:35:22.971 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:55104 10 6452 1 2025-09-10 13:35:51.358 00:00:10.415 TCP 23.104.0.1:54628 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:36:07.331 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:36:07.529 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:32:26.378 00:05:00.826 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:36:23.200 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35496 10 6452 1 2025-09-10 13:36:51.814 00:00:10.331 TCP 23.104.0.1:54870 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:37:23.416 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51896 10 6452 1 2025-09-10 13:37:52.183 00:00:10.358 TCP 23.104.0.1:37396 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:38:23.631 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:34098 10 6452 1 2025-09-10 13:38:52.575 00:00:10.367 TCP 23.104.0.1:59298 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:39:23.807 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43004 10 6452 1 2025-09-10 13:39:52.979 00:00:10.372 TCP 23.104.0.1:56718 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:36:26.383 00:05:00.819 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:40:24.033 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50550 10 6452 1 2025-09-10 13:40:53.393 00:00:10.375 TCP 23.104.0.1:60238 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:41:07.642 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:41:07.835 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:41:24.240 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:51716 10 6452 1 2025-09-10 13:41:53.810 00:00:10.366 TCP 23.104.0.1:34680 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:38:26.380 00:05:00.824 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:42:24.470 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:52200 10 6452 1 2025-09-10 13:42:54.215 00:00:10.369 TCP 23.104.0.1:39172 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:43:24.651 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:36118 10 6452 1 2025-09-10 13:43:54.623 00:00:10.358 TCP 23.104.0.1:34878 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:44:24.826 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:60250 10 6452 1 2025-09-10 13:44:55.020 00:00:10.360 TCP 23.104.0.1:55750 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:45:24.999 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35632 10 6452 1 2025-09-10 13:45:55.421 00:00:10.326 TCP 23.104.0.1:54280 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:46:07.670 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:46:07.889 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:42:26.383 00:05:00.822 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:46:25.217 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42508 10 6452 1 2025-09-10 13:46:55.785 00:00:10.365 TCP 23.104.0.1:43002 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:47:25.425 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58088 10 6452 1 2025-09-10 13:47:56.186 00:00:10.366 TCP 23.104.0.1:46882 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:44:26.382 00:05:00.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:48:25.643 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50922 10 6452 1 2025-09-10 13:48:56.586 00:00:10.366 TCP 23.104.0.1:33414 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:49:25.863 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:56966 10 6452 1 2025-09-10 13:49:56.991 00:00:10.326 TCP 23.104.0.1:35754 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:50:26.087 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40408 10 6452 1 2025-09-10 13:51:07.656 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:51:07.894 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:50:57.354 00:00:10.320 TCP 23.104.0.1:51646 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:51:26.262 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49006 10 6452 1 2025-09-10 13:51:57.713 00:00:10.379 TCP 23.104.0.1:47636 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:48:26.384 00:05:00.823 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:52:26.472 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:47802 10 6452 1 2025-09-10 13:52:58.124 00:00:10.325 TCP 23.104.0.1:39270 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:53:26.646 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35344 10 6452 1 2025-09-10 13:53:58.488 00:00:10.363 TCP 23.104.0.1:55282 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:50:26.382 00:05:00.831 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 13:54:26.866 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:42908 10 6452 1 2025-09-10 13:54:58.890 00:00:10.378 TCP 23.104.0.1:56480 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:55:27.092 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35122 10 6452 1 2025-09-10 13:56:07.884 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 13:56:08.064 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 13:55:59.308 00:00:10.361 TCP 23.104.0.1:59800 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:56:27.311 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:35948 10 6452 1 2025-09-10 13:56:59.708 00:00:10.377 TCP 23.104.0.1:49294 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:57:27.486 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:41704 10 6452 1 2025-09-10 13:58:00.128 00:00:10.372 TCP 23.104.0.1:34434 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:54:26.385 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 13:58:27.662 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:50568 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1051, avg pps: 0, avg bpp: 318 Time window: 2025-09-10 12:56:26 - 2025-09-10 13:59:27 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0018s User: 0.0037s Wall: 0.0028s flows/second: 58654.0 Runtime: 0.0028s