Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 15:58:53.149 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42076 10 6452 1 2025-10-05 15:59:38.029 00:00:10.363 TCP 23.104.0.1:56276 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:59:53.362 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:44066 10 6452 1 2025-10-05 15:56:38.105 00:05:01.987 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:00:38.429 00:00:10.362 TCP 23.104.0.1:46688 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:00:53.533 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:51240 10 6452 1 2025-10-05 15:57:38.107 00:05:01.984 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:01:38.826 00:00:10.388 TCP 23.104.0.1:37028 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:01:53.700 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45568 10 6452 1 2025-10-05 16:02:39.250 00:00:10.366 TCP 23.104.0.1:37120 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:02:53.914 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:42220 10 6452 1 2025-10-05 16:03:12.406 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:03:12.419 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:03:39.655 00:00:10.369 TCP 23.104.0.1:37658 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:03:54.110 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39394 10 6452 1 2025-10-05 16:04:40.093 00:00:10.368 TCP 23.104.0.1:50164 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:04:54.328 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:36968 10 6452 1 2025-10-05 16:05:40.500 00:00:10.364 TCP 23.104.0.1:51886 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:05:54.522 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39742 10 6452 1 2025-10-05 16:02:38.104 00:05:01.990 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:06:40.904 00:00:10.364 TCP 23.104.0.1:55010 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:06:54.733 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:43748 10 6452 1 2025-10-05 16:03:38.107 00:05:01.985 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:07:41.306 00:00:10.371 TCP 23.104.0.1:60618 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:07:54.904 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45410 10 6452 1 2025-10-05 16:08:12.568 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:08:12.401 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:08:41.719 00:00:10.372 TCP 23.104.0.1:48320 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:08:55.117 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42150 10 6452 1 2025-10-05 16:09:42.134 00:00:10.379 TCP 23.104.0.1:52216 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:09:55.333 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:32990 10 6452 1 2025-10-05 16:10:42.554 00:00:10.365 TCP 23.104.0.1:33974 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:10:55.556 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33682 10 6452 1 2025-10-05 16:11:42.956 00:00:10.364 TCP 23.104.0.1:58134 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:11:55.770 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53424 10 6452 1 2025-10-05 16:08:38.104 00:05:01.992 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:12:43.359 00:00:10.360 TCP 23.104.0.1:47556 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:12:55.983 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:41256 10 6452 1 2025-10-05 16:13:12.658 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:13:12.560 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:09:38.113 00:05:01.982 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:13:43.756 00:00:10.333 TCP 23.104.0.1:43890 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:13:56.240 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51802 10 6452 1 2025-10-05 16:14:44.127 00:00:10.367 TCP 23.104.0.1:41774 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:14:56.455 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:56442 10 6452 1 2025-10-05 16:15:44.544 00:00:10.361 TCP 23.104.0.1:49202 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:15:56.666 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54592 10 6452 1 2025-10-05 16:16:44.945 00:00:10.367 TCP 23.104.0.1:36092 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:16:56.881 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:36944 10 6452 1 2025-10-05 16:17:45.350 00:00:10.370 TCP 23.104.0.1:45250 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:18:12.649 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:17:57.099 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:55768 10 6452 1 2025-10-05 16:18:12.519 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:14:38.110 00:05:01.986 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:18:45.765 00:00:10.447 TCP 23.104.0.1:46664 -> 1.101.0.1:3000 15 1926 1 2025-10-05 16:18:57.269 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:58378 12 10369 1 2025-10-05 16:15:38.114 00:05:01.984 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:19:46.249 00:00:10.365 TCP 23.104.0.1:47780 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:19:57.465 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:42420 10 6452 1 2025-10-05 16:20:46.661 00:00:10.365 TCP 23.104.0.1:44074 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:20:57.633 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54820 10 6452 1 2025-10-05 16:21:47.094 00:00:10.364 TCP 23.104.0.1:52796 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:21:57.852 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49068 10 6452 1 2025-10-05 16:22:47.494 00:00:10.369 TCP 23.104.0.1:52130 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:22:58.079 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35926 10 6452 1 2025-10-05 16:23:12.796 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:23:12.957 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:23:47.902 00:00:10.329 TCP 23.104.0.1:34482 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:23:58.296 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47262 10 6452 1 2025-10-05 16:20:38.113 00:05:01.985 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:24:48.275 00:00:10.371 TCP 23.104.0.1:45428 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:24:58.501 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39132 10 6452 1 2025-10-05 16:21:38.116 00:05:01.980 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:25:48.685 00:00:10.329 TCP 23.104.0.1:46748 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:25:58.714 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:53696 10 6452 1 2025-10-05 16:26:49.071 00:00:10.364 TCP 23.104.0.1:60718 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:26:58.925 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54740 10 6452 1 2025-10-05 16:27:49.473 00:00:10.367 TCP 23.104.0.1:58744 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:27:59.137 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48376 10 6452 1 2025-10-05 16:28:12.853 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:28:12.949 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:28:49.879 00:00:10.380 TCP 23.104.0.1:42808 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:28:59.353 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36968 10 6452 1 2025-10-05 16:29:50.301 00:00:10.386 TCP 23.104.0.1:34786 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:29:59.569 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34384 10 6452 1 2025-10-05 16:26:38.115 00:05:01.985 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:30:50.726 00:00:10.372 TCP 23.104.0.1:35636 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:30:59.779 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36944 10 6452 1 2025-10-05 16:27:38.116 00:05:01.980 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:31:51.136 00:00:10.363 TCP 23.104.0.1:52060 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:31:59.991 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60978 10 6452 1 2025-10-05 16:32:51.537 00:00:10.371 TCP 23.104.0.1:52082 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:33:00.213 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:57894 10 6452 1 2025-10-05 16:33:13.047 00:00:00.032 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:33:12.941 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:33:51.946 00:00:11.048 TCP 23.104.0.1:44484 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:34:00.428 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38486 10 6452 1 2025-10-05 16:34:53.025 00:00:10.362 TCP 23.104.0.1:40478 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:35:00.651 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57372 10 6452 1 2025-10-05 16:35:53.424 00:00:10.364 TCP 23.104.0.1:42094 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:36:00.867 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:58004 10 6452 1 2025-10-05 16:32:38.116 00:05:01.987 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:36:53.826 00:00:10.368 TCP 23.104.0.1:43644 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:37:01.108 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60084 10 6452 1 2025-10-05 16:33:38.118 00:05:01.982 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:37:54.231 00:00:10.368 TCP 23.104.0.1:38298 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:38:01.322 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38122 10 6452 1 2025-10-05 16:38:13.049 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:38:12.840 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:38:54.640 00:00:10.369 TCP 23.104.0.1:56944 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:39:01.537 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:53998 10 6452 1 2025-10-05 16:39:55.053 00:00:10.374 TCP 23.104.0.1:56568 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:40:01.717 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:48292 10 6452 1 2025-10-05 16:40:55.468 00:00:10.326 TCP 23.104.0.1:56502 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:41:01.887 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42940 10 6452 1 2025-10-05 16:41:55.834 00:00:10.385 TCP 23.104.0.1:55548 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:42:02.105 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:59342 10 6452 1 2025-10-05 16:38:38.117 00:05:01.988 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:42:56.257 00:00:10.495 TCP 23.104.0.1:54096 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:43:02.268 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:43868 10 6452 1 2025-10-05 16:43:13.341 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:43:13.285 00:00:00.034 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:39:38.119 00:05:01.982 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:43:56.788 00:00:10.366 TCP 23.104.0.1:46684 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:44:02.447 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:35564 10 6452 1 2025-10-05 16:44:57.191 00:00:10.326 TCP 23.104.0.1:60318 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:45:02.621 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:54304 10 6452 1 2025-10-05 16:45:57.565 00:00:10.368 TCP 23.104.0.1:39888 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:46:02.796 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51964 11 6492 1 2025-10-05 16:46:57.969 00:00:10.368 TCP 23.104.0.1:53736 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:47:02.966 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:49644 10 6452 1 2025-10-05 16:48:03.139 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36332 10 6452 1 2025-10-05 16:48:13.300 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:47:58.378 00:00:10.361 TCP 23.104.0.1:42798 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:48:13.517 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:44:38.118 00:05:01.987 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:48:58.781 00:00:10.329 TCP 23.104.0.1:47154 -> 1.101.0.1:3000 12 1559 1 2025-10-05 16:49:03.357 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:46112 10 6452 1 2025-10-05 16:45:38.121 00:05:01.982 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:49:59.147 00:00:10.368 TCP 23.104.0.1:37082 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:50:03.529 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37740 10 6452 1 2025-10-05 16:50:59.549 00:00:10.379 TCP 23.104.0.1:33748 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:51:03.748 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41202 10 6452 1 2025-10-05 16:51:59.964 00:00:10.369 TCP 23.104.0.1:35380 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:52:03.963 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47750 12 6556 1 2025-10-05 16:53:00.374 00:00:10.364 TCP 23.104.0.1:54376 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:53:04.189 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52770 10 6452 1 2025-10-05 16:53:13.501 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 16:53:13.409 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:54:00.776 00:00:10.365 TCP 23.104.0.1:60962 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:54:04.362 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60752 10 6452 1 2025-10-05 16:50:38.120 00:05:01.987 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 16:55:01.183 00:00:10.368 TCP 23.104.0.1:35946 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:55:04.575 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:55420 10 6452 1 2025-10-05 16:51:38.123 00:05:01.981 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 16:56:01.586 00:00:10.368 TCP 23.104.0.1:46480 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:56:04.752 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37482 10 6452 1 2025-10-05 16:57:04.964 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:37060 10 6452 1 2025-10-05 16:57:01.999 00:00:10.340 TCP 23.104.0.1:40120 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:58:13.589 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:58:02.395 00:00:10.340 TCP 23.104.0.1:55724 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:58:05.192 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54102 10 6452 1 2025-10-05 16:58:13.524 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 Summary: total flows: 163, total bytes: 501373, total packets: 1571, avg bps: 1084, avg pps: 0, avg bpp: 319 Time window: 2025-10-05 15:56:38 - 2025-10-05 16:58:15 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0036s User: 0.0018s Wall: 0.0023s flows/second: 71023.4 Runtime: 0.0023s