Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-06 07:59:16.685 00:00:10.371 TCP 23.104.0.1:35614 -> 1.101.0.1:3000 11 1507 1 2025-10-06 07:59:35.909 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55184 10 6452 1 2025-10-06 08:00:17.106 00:00:10.366 TCP 23.104.0.1:48438 -> 1.101.0.1:3000 11 1507 1 2025-10-06 07:56:38.408 00:05:01.999 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:00:36.133 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38692 10 6452 1 2025-10-06 08:01:17.514 00:00:10.368 TCP 23.104.0.1:47532 -> 1.101.0.1:3000 11 1507 1 2025-10-06 07:57:38.410 00:05:01.994 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:01:36.362 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:40200 10 6452 1 2025-10-06 08:02:17.915 00:00:10.379 TCP 23.104.0.1:41928 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:02:36.604 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36130 10 6452 1 2025-10-06 08:03:31.736 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:03:18.334 00:00:10.364 TCP 23.104.0.1:33962 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:03:31.533 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:03:36.824 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42568 10 6452 1 2025-10-06 08:04:18.738 00:00:10.440 TCP 23.104.0.1:42080 -> 1.101.0.1:3000 15 1926 1 2025-10-06 08:04:37.065 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:54360 12 10369 1 2025-10-06 08:05:19.214 00:00:10.367 TCP 23.104.0.1:35006 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:05:37.310 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40828 10 6452 1 2025-10-06 08:06:19.620 00:00:10.323 TCP 23.104.0.1:35232 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:02:38.409 00:05:01.999 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:06:37.525 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41198 10 6452 1 2025-10-06 08:07:19.979 00:00:10.330 TCP 23.104.0.1:60430 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:03:38.411 00:05:01.994 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:07:37.738 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42312 10 6452 1 2025-10-06 08:08:31.807 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:08:31.730 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:08:20.347 00:00:10.364 TCP 23.104.0.1:45734 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:08:37.956 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:50422 12 6556 1 2025-10-06 08:09:20.764 00:00:10.379 TCP 23.104.0.1:45624 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:09:38.201 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33770 10 6452 1 2025-10-06 08:10:21.183 00:00:10.362 TCP 23.104.0.1:53224 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:10:38.418 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54836 10 6452 1 2025-10-06 08:11:21.587 00:00:10.373 TCP 23.104.0.1:41026 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:11:38.636 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:49376 10 6452 1 2025-10-06 08:12:22.022 00:00:10.363 TCP 23.104.0.1:46474 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:08:38.408 00:05:02.000 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:12:38.812 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41426 10 6452 1 2025-10-06 08:13:31.926 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:13:31.737 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:13:22.424 00:00:10.374 TCP 23.104.0.1:36240 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:09:38.411 00:05:01.994 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:13:39.025 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46874 10 6452 1 2025-10-06 08:14:22.838 00:00:10.392 TCP 23.104.0.1:34656 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:14:39.237 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59790 10 6452 1 2025-10-06 08:15:23.277 00:00:10.370 TCP 23.104.0.1:60818 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:15:39.444 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37400 10 6452 1 2025-10-06 08:16:23.683 00:00:10.368 TCP 23.104.0.1:43134 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:16:39.656 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53484 10 6452 1 2025-10-06 08:17:24.109 00:00:10.365 TCP 23.104.0.1:54414 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:17:39.868 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:34744 10 6452 1 2025-10-06 08:18:31.968 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:18:31.916 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:18:24.512 00:00:10.363 TCP 23.104.0.1:50392 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:14:38.413 00:05:01.998 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:18:40.060 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42942 10 6452 1 2025-10-06 08:19:24.918 00:00:10.384 TCP 23.104.0.1:43364 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:15:38.415 00:05:01.993 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:19:40.285 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:50184 10 6452 1 2025-10-06 08:20:25.339 00:00:10.436 TCP 23.104.0.1:46710 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:20:40.507 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51512 10 6452 1 2025-10-06 08:21:25.812 00:00:10.336 TCP 23.104.0.1:38950 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:21:40.728 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:45076 10 6452 1 2025-10-06 08:22:26.185 00:00:10.370 TCP 23.104.0.1:60660 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:22:40.978 00:00:10.490 TCP 1.101.0.1:3000 -> 22.102.0.1:53308 10 6452 1 2025-10-06 08:23:31.939 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:23:26.593 00:00:10.363 TCP 23.104.0.1:45918 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:23:31.980 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:23:41.511 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58688 10 6452 1 2025-10-06 08:20:38.412 00:05:01.999 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:24:26.996 00:00:10.319 TCP 23.104.0.1:52612 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:24:41.731 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:42428 10 6452 1 2025-10-06 08:21:38.416 00:05:01.992 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:25:27.353 00:00:10.359 TCP 23.104.0.1:54466 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:25:41.931 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:54882 10 6452 1 2025-10-06 08:26:27.755 00:00:10.375 TCP 23.104.0.1:34646 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:26:42.170 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34762 10 6452 1 2025-10-06 08:27:28.162 00:00:10.360 TCP 23.104.0.1:57358 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:27:42.391 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:59036 10 6452 1 2025-10-06 08:28:32.096 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:28:32.092 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:28:28.569 00:00:10.359 TCP 23.104.0.1:56254 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:28:42.605 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:43712 10 6452 1 2025-10-06 08:29:28.968 00:00:10.378 TCP 23.104.0.1:48012 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:29:42.775 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35080 10 6452 1 2025-10-06 08:26:38.422 00:05:01.990 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:30:29.381 00:00:10.363 TCP 23.104.0.1:59258 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:30:42.989 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42038 10 6452 1 2025-10-06 08:31:29.785 00:00:11.518 TCP 23.104.0.1:44496 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:27:38.425 00:05:01.984 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:31:43.215 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60776 10 6452 1 2025-10-06 08:32:31.343 00:00:10.364 TCP 23.104.0.1:59980 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:32:43.427 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52778 10 6452 1 2025-10-06 08:33:32.289 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:33:32.057 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:33:31.747 00:00:10.342 TCP 23.104.0.1:49946 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:33:43.641 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52586 10 6452 1 2025-10-06 08:34:32.126 00:00:10.366 TCP 23.104.0.1:36850 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:34:43.864 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48978 10 6452 1 2025-10-06 08:35:32.532 00:00:10.364 TCP 23.104.0.1:55002 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:35:44.086 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:48366 10 6452 1 2025-10-06 08:32:38.425 00:05:01.989 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:36:32.933 00:00:10.388 TCP 23.104.0.1:42200 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:36:44.258 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55762 10 6452 1 2025-10-06 08:33:38.428 00:05:01.983 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:37:33.354 00:00:10.319 TCP 23.104.0.1:55722 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:37:44.475 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55238 10 6452 1 2025-10-06 08:38:32.221 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:38:32.341 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:38:33.713 00:00:10.373 TCP 23.104.0.1:32822 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:38:44.692 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:38566 12 10375 1 2025-10-06 08:39:34.123 00:00:10.495 TCP 23.104.0.1:59308 -> 1.101.0.1:3000 15 1926 1 2025-10-06 08:39:44.945 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:52416 10 6452 1 2025-10-06 08:40:34.659 00:00:10.373 TCP 23.104.0.1:48828 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:40:45.185 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:35250 10 6452 1 2025-10-06 08:41:35.096 00:00:10.358 TCP 23.104.0.1:52218 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:41:45.401 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:32778 10 6452 1 2025-10-06 08:38:38.425 00:05:01.990 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:42:35.508 00:00:10.367 TCP 23.104.0.1:43716 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:42:45.617 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59232 10 6452 1 2025-10-06 08:43:32.594 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:43:32.279 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:39:38.428 00:05:01.985 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:43:35.909 00:00:12.155 TCP 23.104.0.1:47024 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:43:45.837 00:00:10.219 TCP 1.101.0.1:3000 -> 22.102.0.1:49168 12 10375 1 2025-10-06 08:44:38.126 00:00:10.823 TCP 23.104.0.1:43772 -> 1.101.0.1:3000 15 1926 1 2025-10-06 08:44:46.092 00:00:10.392 TCP 1.101.0.1:3000 -> 22.102.0.1:38248 10 6452 1 2025-10-06 08:45:38.987 00:00:10.370 TCP 23.104.0.1:43528 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:45:46.527 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40660 10 6452 1 2025-10-06 08:46:39.401 00:00:10.361 TCP 23.104.0.1:50740 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:46:46.743 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:41788 10 6452 1 2025-10-06 08:47:39.802 00:00:10.367 TCP 23.104.0.1:38718 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:47:46.979 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:52878 10 6452 1 2025-10-06 08:48:32.500 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:48:32.439 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:44:38.427 00:05:01.989 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:48:40.212 00:00:10.369 TCP 23.104.0.1:51900 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:48:47.229 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:48484 10 6452 1 2025-10-06 08:45:38.429 00:05:01.983 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:49:40.610 00:00:10.357 TCP 23.104.0.1:42598 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:49:47.463 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:44510 10 6452 1 2025-10-06 08:50:41.007 00:00:10.360 TCP 23.104.0.1:58104 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:50:47.650 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37264 10 6452 1 2025-10-06 08:51:41.407 00:00:10.365 TCP 23.104.0.1:44302 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:51:47.862 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38796 10 6452 1 2025-10-06 08:52:41.813 00:00:10.364 TCP 23.104.0.1:44044 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:52:48.086 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54038 10 6452 1 2025-10-06 08:53:32.678 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:53:32.679 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-06 08:53:42.219 00:00:10.359 TCP 23.104.0.1:56894 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:53:48.297 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:33348 10 6452 1 2025-10-06 08:50:38.428 00:05:01.989 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-06 08:54:42.616 00:00:10.324 TCP 23.104.0.1:41518 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:54:48.503 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:52698 10 6452 1 2025-10-06 08:51:38.430 00:05:01.984 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-06 08:55:42.983 00:00:10.375 TCP 23.104.0.1:36864 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:55:48.717 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48098 10 6452 1 2025-10-06 08:56:43.399 00:00:10.365 TCP 23.104.0.1:56736 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:56:48.929 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:42298 10 6452 1 2025-10-06 08:57:43.801 00:00:10.366 TCP 23.104.0.1:55942 -> 1.101.0.1:3000 11 1507 1 2025-10-06 08:57:49.103 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:57044 10 6452 1 2025-10-06 08:58:32.744 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-06 08:58:33.025 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 Summary: total flows: 162, total bytes: 503513, total packets: 1571, avg bps: 1084, avg pps: 0, avg bpp: 320 Time window: 2025-10-06 07:56:38 - 2025-10-06 08:58:33 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0038s User: 0.0009s Wall: 0.0025s flows/second: 65777.1 Runtime: 0.0025s