Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-10 16:59:24.435 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51524 10 6452 1 2025-09-10 16:59:27.774 00:00:10.375 TCP 23.104.0.1:35696 -> 1.101.0.1:3000 11 1507 1 2025-09-10 16:56:26.433 00:05:00.839 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:00:24.659 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49058 10 6452 1 2025-09-10 17:00:28.187 00:00:10.327 TCP 23.104.0.1:34506 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:01:11.829 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:01:11.566 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:01:24.880 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:41940 10 6452 1 2025-09-10 17:01:28.555 00:00:10.366 TCP 23.104.0.1:34240 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:02:25.107 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48612 10 6452 1 2025-09-10 17:02:28.959 00:00:10.366 TCP 23.104.0.1:55628 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:03:25.327 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:49788 10 6452 1 2025-09-10 17:03:29.362 00:00:10.366 TCP 23.104.0.1:37446 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:00:26.436 00:05:00.833 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:04:25.510 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:52984 10 6452 1 2025-09-10 17:04:29.770 00:00:10.369 TCP 23.104.0.1:44520 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:05:25.719 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:50070 10 6452 1 2025-09-10 17:05:30.176 00:00:10.323 TCP 23.104.0.1:43492 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:06:11.708 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:06:11.750 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:02:26.434 00:05:00.842 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:06:25.953 00:00:10.715 TCP 1.101.0.1:3000 -> 22.102.0.1:43276 11 6504 1 2025-09-10 17:06:30.536 00:00:10.326 TCP 23.104.0.1:45168 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:07:26.704 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52536 12 6556 1 2025-09-10 17:07:30.902 00:00:10.328 TCP 23.104.0.1:59998 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:08:26.926 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:38696 10 6452 1 2025-09-10 17:08:31.269 00:00:10.363 TCP 23.104.0.1:50730 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:09:27.174 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:53914 10 6452 1 2025-09-10 17:09:31.672 00:00:10.376 TCP 23.104.0.1:50392 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:06:26.436 00:05:00.837 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:10:27.409 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:38204 10 6452 1 2025-09-10 17:10:32.114 00:00:10.396 TCP 23.104.0.1:39054 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:11:11.931 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:11:12.019 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:11:27.644 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:41740 10 6452 1 2025-09-10 17:11:32.519 00:00:10.367 TCP 23.104.0.1:52872 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:08:26.435 00:05:00.842 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:12:27.864 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:43114 10 6452 1 2025-09-10 17:12:32.923 00:00:10.390 TCP 23.104.0.1:42998 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:13:28.088 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:38006 10 6452 1 2025-09-10 17:13:33.374 00:00:10.370 TCP 23.104.0.1:40538 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:14:28.313 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55186 10 6452 1 2025-09-10 17:14:33.785 00:00:10.382 TCP 23.104.0.1:42776 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:15:28.533 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:47466 10 6452 1 2025-09-10 17:15:34.214 00:00:10.363 TCP 23.104.0.1:40282 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:16:11.928 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:16:11.763 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:12:26.437 00:05:00.837 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:16:28.756 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:45626 10 6452 1 2025-09-10 17:16:34.616 00:00:10.397 TCP 23.104.0.1:46488 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:17:28.942 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:51266 10 6452 1 2025-09-10 17:17:35.092 00:00:10.362 TCP 23.104.0.1:49934 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:14:26.435 00:05:00.842 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:18:29.172 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39994 10 6452 1 2025-09-10 17:18:35.499 00:00:10.363 TCP 23.104.0.1:40632 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:19:29.383 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54386 10 6452 1 2025-09-10 17:19:35.897 00:00:10.330 TCP 23.104.0.1:50630 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:20:29.596 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45662 10 6452 1 2025-09-10 17:20:36.272 00:00:11.191 TCP 23.104.0.1:46420 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:21:12.181 00:00:00.029 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:21:12.000 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:21:29.808 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55078 10 6452 1 2025-09-10 17:21:37.502 00:00:10.370 TCP 23.104.0.1:58420 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:18:26.442 00:05:00.836 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:22:30.033 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55796 10 6452 1 2025-09-10 17:22:37.907 00:00:10.368 TCP 23.104.0.1:35776 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:23:30.246 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50148 10 6452 1 2025-09-10 17:23:38.309 00:00:10.367 TCP 23.104.0.1:39976 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:20:26.439 00:05:00.840 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:24:30.458 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34334 10 6452 1 2025-09-10 17:24:38.720 00:00:10.380 TCP 23.104.0.1:48194 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:25:30.677 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38212 10 6452 1 2025-09-10 17:25:39.139 00:00:10.367 TCP 23.104.0.1:43514 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:26:12.199 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:26:12.084 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:26:30.887 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:50832 10 6452 1 2025-09-10 17:26:39.545 00:00:10.366 TCP 23.104.0.1:34970 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:27:31.081 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:35392 10 6452 1 2025-09-10 17:27:39.953 00:00:10.324 TCP 23.104.0.1:33730 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:24:26.444 00:05:00.833 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:28:31.252 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45264 10 6452 1 2025-09-10 17:28:40.320 00:00:10.365 TCP 23.104.0.1:39304 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:29:31.473 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44986 10 6452 1 2025-09-10 17:29:40.721 00:00:10.382 TCP 23.104.0.1:37068 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:26:26.442 00:05:00.838 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:30:31.691 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44732 10 6452 1 2025-09-10 17:30:41.142 00:00:10.368 TCP 23.104.0.1:60214 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:31:12.230 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:31:12.075 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:31:31.912 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43796 10 6452 1 2025-09-10 17:31:41.549 00:00:10.364 TCP 23.104.0.1:37700 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:32:32.130 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52308 10 6452 1 2025-09-10 17:32:41.951 00:00:10.365 TCP 23.104.0.1:56828 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:33:32.352 00:00:12.033 TCP 1.101.0.1:3000 -> 22.102.0.1:45154 10 6452 1 2025-09-10 17:33:42.348 00:00:10.366 TCP 23.104.0.1:41790 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:30:26.445 00:05:00.833 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:34:34.433 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:55828 10 6452 1 2025-09-10 17:34:42.752 00:00:10.337 TCP 23.104.0.1:34516 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:35:34.601 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60630 10 6452 1 2025-09-10 17:35:43.129 00:00:10.363 TCP 23.104.0.1:46600 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:36:12.558 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:36:12.462 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:32:26.443 00:05:00.838 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:36:34.821 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55082 10 6452 1 2025-09-10 17:36:43.542 00:00:10.362 TCP 23.104.0.1:54186 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:37:35.071 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41572 10 6452 1 2025-09-10 17:37:43.944 00:00:10.370 TCP 23.104.0.1:57300 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:38:35.294 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38804 10 6452 1 2025-09-10 17:38:44.355 00:00:10.368 TCP 23.104.0.1:45360 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:39:35.513 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38760 10 6452 1 2025-09-10 17:39:44.760 00:00:10.387 TCP 23.104.0.1:47676 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:36:26.446 00:05:00.833 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:40:35.738 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51454 10 6452 1 2025-09-10 17:40:45.184 00:00:10.371 TCP 23.104.0.1:33566 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:41:12.253 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:41:12.431 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:41:35.955 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:58956 10 6452 1 2025-09-10 17:41:45.591 00:00:10.375 TCP 23.104.0.1:38034 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:38:26.444 00:05:00.837 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:42:36.147 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:42758 10 6452 1 2025-09-10 17:42:46.003 00:00:10.364 TCP 23.104.0.1:59868 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:43:36.378 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:57436 10 6452 1 2025-09-10 17:43:46.407 00:00:10.365 TCP 23.104.0.1:47522 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:44:36.553 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36682 10 6452 1 2025-09-10 17:44:46.813 00:00:10.332 TCP 23.104.0.1:44756 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:45:36.769 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57996 10 6452 1 2025-09-10 17:45:47.180 00:00:10.365 TCP 23.104.0.1:56382 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:46:12.414 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:46:12.597 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:42:26.448 00:05:00.833 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:46:36.987 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:43070 10 6452 1 2025-09-10 17:46:47.578 00:00:10.329 TCP 23.104.0.1:51930 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:47:37.222 00:00:10.632 TCP 1.101.0.1:3000 -> 22.102.0.1:57602 10 6452 1 2025-09-10 17:47:47.944 00:00:10.335 TCP 23.104.0.1:36962 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:44:26.448 00:05:00.836 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:48:37.887 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:40488 10 6452 1 2025-09-10 17:48:48.319 00:00:10.364 TCP 23.104.0.1:33856 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:49:38.117 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:59612 10 6452 1 2025-09-10 17:49:48.720 00:00:10.378 TCP 23.104.0.1:48712 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:50:38.348 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60134 10 6452 1 2025-09-10 17:50:49.134 00:00:10.366 TCP 23.104.0.1:37974 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:51:12.507 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:51:12.664 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:51:38.559 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44864 10 6452 1 2025-09-10 17:51:49.541 00:00:10.368 TCP 23.104.0.1:43200 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:48:26.450 00:05:00.831 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:52:38.783 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53008 10 6452 1 2025-09-10 17:52:49.945 00:00:10.375 TCP 23.104.0.1:41684 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:53:38.997 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:48332 10 6452 1 2025-09-10 17:53:50.361 00:00:10.362 TCP 23.104.0.1:36004 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:50:26.450 00:05:00.834 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 17:54:39.241 00:00:10.241 TCP 1.101.0.1:3000 -> 22.102.0.1:54758 10 6452 1 2025-09-10 17:54:50.761 00:00:10.377 TCP 23.104.0.1:55298 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:55:39.521 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:42394 10 6452 1 2025-09-10 17:55:51.173 00:00:10.359 TCP 23.104.0.1:41860 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:56:12.862 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 17:56:12.898 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 17:56:39.698 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:44676 10 6452 1 2025-09-10 17:56:51.573 00:00:10.369 TCP 23.104.0.1:38218 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:57:39.932 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:52316 10 6452 1 2025-09-10 17:57:51.971 00:00:10.383 TCP 23.104.0.1:51066 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:54:26.454 00:05:00.828 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 17:58:40.177 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:37370 10 6452 1 Summary: total flows: 163, total bytes: 496997, total packets: 1564, avg bps: 1051, avg pps: 0, avg bpp: 317 Time window: 2025-09-10 16:56:26 - 2025-09-10 17:59:27 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0010s User: 0.0031s Wall: 0.0014s flows/second: 115193.2 Runtime: 0.0014s