Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 03:58:53.564 00:00:10.368 TCP 23.104.0.1:44926 -> 1.101.0.1:3000 11 1507 1 2025-10-08 03:59:24.460 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 03:59:24.471 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 03:59:38.610 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33334 10 6452 1 2025-10-08 03:59:53.973 00:00:10.370 TCP 23.104.0.1:52438 -> 1.101.0.1:3000 11 1507 1 2025-10-08 03:56:39.275 00:05:02.042 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:00:38.834 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:38498 10 6452 1 2025-10-08 04:00:54.383 00:00:10.365 TCP 23.104.0.1:40038 -> 1.101.0.1:3000 11 1507 1 2025-10-08 03:57:39.278 00:05:02.038 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:01:39.079 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55122 10 6452 1 2025-10-08 04:01:54.787 00:00:10.371 TCP 23.104.0.1:45004 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:02:39.291 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38380 10 6452 1 2025-10-08 04:02:55.202 00:00:10.325 TCP 23.104.0.1:50456 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:03:39.504 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:36768 10 6452 1 2025-10-08 04:03:55.560 00:00:10.367 TCP 23.104.0.1:53254 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:04:24.711 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:04:24.643 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:04:39.712 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:59662 10 6452 1 2025-10-08 04:04:55.960 00:00:10.323 TCP 23.104.0.1:47750 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:05:39.930 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:58706 10 6452 1 2025-10-08 04:05:56.324 00:00:10.372 TCP 23.104.0.1:41516 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:02:39.276 00:05:02.042 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:06:40.120 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58132 10 6452 1 2025-10-08 04:06:56.736 00:00:10.369 TCP 23.104.0.1:50494 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:03:39.279 00:05:02.037 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:07:40.329 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60136 10 6452 1 2025-10-08 04:07:57.144 00:00:10.363 TCP 23.104.0.1:53692 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:08:40.539 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43146 10 6452 1 2025-10-08 04:08:57.548 00:00:11.069 TCP 23.104.0.1:45676 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:09:24.810 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:09:24.659 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:09:40.751 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:35938 10 6452 1 2025-10-08 04:09:58.658 00:00:10.740 TCP 23.104.0.1:34602 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:10:40.996 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59852 10 6452 1 2025-10-08 04:10:59.436 00:00:10.365 TCP 23.104.0.1:44314 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:11:41.213 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34418 10 6452 1 2025-10-08 04:11:59.839 00:00:10.343 TCP 23.104.0.1:49762 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:08:39.280 00:05:02.040 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:12:41.422 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56686 10 6452 1 2025-10-08 04:13:00.214 00:00:10.367 TCP 23.104.0.1:38930 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:09:39.279 00:05:02.039 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:13:41.634 00:00:10.809 TCP 1.101.0.1:3000 -> 22.102.0.1:41098 12 6556 1 2025-10-08 04:14:00.624 00:00:10.327 TCP 23.104.0.1:36330 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:14:24.899 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:14:24.827 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:14:42.486 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40460 10 6452 1 2025-10-08 04:15:00.987 00:00:10.393 TCP 23.104.0.1:49790 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:15:42.694 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:48200 10 6452 1 2025-10-08 04:16:01.418 00:00:10.366 TCP 23.104.0.1:59716 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:16:42.859 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:60704 10 6452 1 2025-10-08 04:17:01.824 00:00:10.382 TCP 23.104.0.1:59212 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:17:43.090 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:50534 10 6452 1 2025-10-08 04:18:02.244 00:00:10.367 TCP 23.104.0.1:36290 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:14:39.279 00:05:02.043 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:18:43.348 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57140 10 6452 1 2025-10-08 04:19:02.653 00:00:10.369 TCP 23.104.0.1:46080 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:19:25.212 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:19:25.153 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:15:39.280 00:05:02.039 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:19:43.576 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:48478 12 10369 1 2025-10-08 04:20:03.061 00:00:10.442 TCP 23.104.0.1:44140 -> 1.101.0.1:3000 15 1926 1 2025-10-08 04:20:43.831 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53774 10 6452 1 2025-10-08 04:21:03.538 00:00:10.365 TCP 23.104.0.1:60456 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:21:44.071 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:33992 10 6452 1 2025-10-08 04:22:03.937 00:00:10.383 TCP 23.104.0.1:44178 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:22:44.248 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58374 10 6452 1 2025-10-08 04:23:04.359 00:00:10.369 TCP 23.104.0.1:40974 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:23:44.461 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:38200 10 6452 1 2025-10-08 04:24:04.763 00:00:10.383 TCP 23.104.0.1:43986 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:24:25.035 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:24:25.140 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:20:39.280 00:05:02.043 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:24:44.663 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40664 10 6452 1 2025-10-08 04:25:05.187 00:00:10.371 TCP 23.104.0.1:39242 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:21:39.282 00:05:02.037 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:25:44.830 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:51858 10 6452 1 2025-10-08 04:26:05.599 00:00:10.368 TCP 23.104.0.1:41002 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:26:45.008 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35258 10 6452 1 2025-10-08 04:27:06.004 00:00:10.977 TCP 23.104.0.1:41380 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:27:45.221 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54516 10 6452 1 2025-10-08 04:28:07.024 00:00:10.364 TCP 23.104.0.1:37400 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:28:45.441 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41694 10 6452 1 2025-10-08 04:29:07.423 00:00:10.371 TCP 23.104.0.1:38102 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:29:25.049 00:00:00.032 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:29:25.194 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:29:45.656 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:57960 10 6452 1 2025-10-08 04:30:07.830 00:00:10.354 TCP 23.104.0.1:56472 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:26:39.282 00:05:02.042 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:30:45.831 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54016 10 6452 1 2025-10-08 04:31:08.224 00:00:10.364 TCP 23.104.0.1:58922 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:27:39.284 00:05:02.038 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:31:46.075 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54330 10 6452 1 2025-10-08 04:32:08.622 00:00:10.334 TCP 23.104.0.1:33584 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:32:46.285 00:00:10.722 TCP 1.101.0.1:3000 -> 22.102.0.1:48116 10 6452 1 2025-10-08 04:33:09.001 00:00:10.365 TCP 23.104.0.1:48594 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:33:47.073 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58190 10 6452 1 2025-10-08 04:34:09.405 00:00:10.368 TCP 23.104.0.1:39852 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:34:25.277 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:34:25.377 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:34:47.281 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59282 10 6452 1 2025-10-08 04:35:09.806 00:00:10.368 TCP 23.104.0.1:49754 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:35:47.495 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42440 10 6452 1 2025-10-08 04:36:10.208 00:00:10.368 TCP 23.104.0.1:48862 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:32:39.283 00:05:02.044 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:36:47.704 00:00:10.250 TCP 1.101.0.1:3000 -> 22.102.0.1:42406 10 6452 1 2025-10-08 04:37:10.615 00:00:10.375 TCP 23.104.0.1:57786 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:33:39.285 00:05:02.039 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:37:47.998 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:52242 10 6452 1 2025-10-08 04:38:11.023 00:00:10.417 TCP 23.104.0.1:42004 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:38:48.187 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37994 10 6452 1 2025-10-08 04:39:11.481 00:00:10.328 TCP 23.104.0.1:40852 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:39:25.355 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:39:25.254 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:39:48.417 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54498 10 6452 1 2025-10-08 04:40:11.848 00:00:10.379 TCP 23.104.0.1:47038 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:40:48.624 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46460 10 6452 1 2025-10-08 04:41:12.264 00:00:10.363 TCP 23.104.0.1:35856 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:41:48.836 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:41022 10 6452 1 2025-10-08 04:42:12.678 00:00:10.367 TCP 23.104.0.1:56014 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:38:39.287 00:05:02.041 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:42:49.017 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50472 10 6452 1 2025-10-08 04:43:13.103 00:00:10.364 TCP 23.104.0.1:37782 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:39:39.288 00:05:02.037 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:43:49.230 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:44954 10 6452 1 2025-10-08 04:44:25.657 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:44:13.507 00:00:10.369 TCP 23.104.0.1:50470 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:44:25.534 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:44:49.449 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40580 10 6452 1 2025-10-08 04:45:13.909 00:00:10.366 TCP 23.104.0.1:58518 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:45:49.661 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:35302 10 6452 1 2025-10-08 04:46:14.313 00:00:10.366 TCP 23.104.0.1:53388 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:46:49.848 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:41558 10 6452 1 2025-10-08 04:47:14.718 00:00:10.379 TCP 23.104.0.1:41130 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:47:50.032 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38564 10 6452 1 2025-10-08 04:48:15.136 00:00:10.364 TCP 23.104.0.1:52846 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:44:39.287 00:05:02.042 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:48:50.248 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42448 10 6452 1 2025-10-08 04:49:25.542 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:49:25.692 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:49:15.539 00:00:10.367 TCP 23.104.0.1:59240 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:45:39.289 00:05:02.037 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:49:50.462 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54368 10 6452 1 2025-10-08 04:50:15.939 00:00:10.368 TCP 23.104.0.1:41832 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:50:50.689 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46586 10 6452 1 2025-10-08 04:51:16.352 00:00:10.361 TCP 23.104.0.1:53234 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:51:50.905 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47006 10 6452 1 2025-10-08 04:52:16.749 00:00:10.389 TCP 23.104.0.1:39550 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:52:51.116 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36984 10 6452 1 2025-10-08 04:53:17.178 00:00:10.365 TCP 23.104.0.1:51712 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:53:51.331 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41166 10 6452 1 2025-10-08 04:54:25.627 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 04:54:25.367 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 04:54:17.575 00:00:10.367 TCP 23.104.0.1:47396 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:50:39.288 00:05:02.044 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 04:54:51.541 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:55586 10 6452 1 2025-10-08 04:55:17.982 00:00:10.369 TCP 23.104.0.1:58150 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:51:39.290 00:05:02.039 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 04:55:51.711 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:44234 10 6452 1 2025-10-08 04:56:18.390 00:00:10.385 TCP 23.104.0.1:56738 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:56:51.888 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46562 10 6452 1 2025-10-08 04:57:18.829 00:00:10.385 TCP 23.104.0.1:52062 -> 1.101.0.1:3000 11 1507 1 2025-10-08 04:57:52.089 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34068 10 6452 1 2025-10-08 04:58:19.256 00:00:10.370 TCP 23.104.0.1:34208 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496336, total packets: 1570, avg bps: 1070, avg pps: 0, avg bpp: 316 Time window: 2025-10-08 03:56:39 - 2025-10-08 04:58:29 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0035s User: 0.0012s Wall: 0.0028s flows/second: 57292.5 Runtime: 0.0029s