Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 09:59:12.686 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42946 10 6452 1 2025-10-13 09:59:27.160 00:00:10.324 TCP 23.104.0.1:43840 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:00:12.916 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40976 10 6452 1 2025-10-13 10:00:27.525 00:00:10.367 TCP 23.104.0.1:51110 -> 1.101.0.1:3000 11 1507 1 2025-10-13 09:56:41.638 00:05:02.444 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 09:56:41.636 00:05:02.449 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:01:13.128 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:41148 12 10369 1 2025-10-13 10:01:27.926 00:00:10.414 TCP 23.104.0.1:38510 -> 1.101.0.1:3000 15 1926 1 2025-10-13 10:01:56.403 00:00:00.019 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:01:56.237 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:02:13.368 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54832 10 6452 1 2025-10-13 10:02:28.377 00:00:10.365 TCP 23.104.0.1:34704 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:03:13.574 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:39776 10 6452 1 2025-10-13 10:03:28.780 00:00:10.736 TCP 23.104.0.1:60958 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:04:13.751 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:42180 10 6452 1 2025-10-13 10:04:29.556 00:00:10.323 TCP 23.104.0.1:48630 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:05:13.928 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37966 10 6452 1 2025-10-13 10:05:29.928 00:00:10.376 TCP 23.104.0.1:59978 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:06:14.153 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44294 10 6452 1 2025-10-13 10:06:30.349 00:00:10.359 TCP 23.104.0.1:36748 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:02:41.640 00:05:02.447 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:02:41.643 00:05:02.442 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 10:06:56.218 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:06:56.308 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:07:14.369 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:41464 10 6452 1 2025-10-13 10:07:30.756 00:00:10.377 TCP 23.104.0.1:54902 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:08:14.589 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47694 10 6452 1 2025-10-13 10:08:31.178 00:00:10.359 TCP 23.104.0.1:37746 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:09:14.810 00:00:10.246 TCP 1.101.0.1:3000 -> 22.102.0.1:44598 10 6452 1 2025-10-13 10:09:31.579 00:00:10.367 TCP 23.104.0.1:33916 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:10:15.102 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34684 10 6452 1 2025-10-13 10:10:31.986 00:00:10.371 TCP 23.104.0.1:39038 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:11:15.313 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:44630 10 6452 1 2025-10-13 10:11:32.398 00:00:10.369 TCP 23.104.0.1:45316 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:11:56.404 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:11:56.222 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:12:15.494 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43756 10 6452 1 2025-10-13 10:08:41.642 00:05:02.448 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:08:41.645 00:05:02.443 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 10:12:32.802 00:00:10.365 TCP 23.104.0.1:34312 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:13:15.715 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42562 10 6452 1 2025-10-13 10:13:33.208 00:00:10.361 TCP 23.104.0.1:36116 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:14:15.931 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:50832 10 6452 1 2025-10-13 10:14:33.607 00:00:10.366 TCP 23.104.0.1:57230 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:15:16.133 00:00:10.335 TCP 1.101.0.1:3000 -> 22.102.0.1:39016 10 6452 1 2025-10-13 10:15:34.014 00:00:10.357 TCP 23.104.0.1:47996 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:16:16.506 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33438 10 6452 1 2025-10-13 10:16:34.407 00:00:10.340 TCP 23.104.0.1:39154 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:16:56.275 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:16:56.436 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:17:16.673 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57116 10 6452 1 2025-10-13 10:17:34.791 00:00:10.467 TCP 23.104.0.1:52098 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:18:16.888 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:54744 10 6452 1 2025-10-13 10:14:41.646 00:05:02.445 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:18:35.297 00:00:10.362 TCP 23.104.0.1:45094 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:14:41.649 00:05:02.440 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 10:19:17.110 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53164 10 6452 1 2025-10-13 10:19:35.696 00:00:10.366 TCP 23.104.0.1:33474 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:20:17.326 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:39900 10 6452 1 2025-10-13 10:20:36.112 00:00:10.367 TCP 23.104.0.1:46454 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:21:17.514 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54004 10 6452 1 2025-10-13 10:21:36.515 00:00:10.367 TCP 23.104.0.1:34292 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:21:56.557 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:21:56.527 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:22:17.732 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55398 10 6452 1 2025-10-13 10:22:36.920 00:00:10.377 TCP 23.104.0.1:45508 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:23:17.948 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:40036 10 6452 1 2025-10-13 10:23:37.336 00:00:10.365 TCP 23.104.0.1:49614 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:24:18.179 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57502 10 6452 1 2025-10-13 10:20:41.650 00:05:02.440 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 10:20:41.647 00:05:02.445 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:24:37.742 00:00:10.398 TCP 23.104.0.1:44128 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:25:18.391 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:44912 10 6452 1 2025-10-13 10:25:38.192 00:00:10.328 TCP 23.104.0.1:48528 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:26:18.615 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35828 10 6452 1 2025-10-13 10:26:38.552 00:00:10.377 TCP 23.104.0.1:57322 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:26:56.579 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:26:56.567 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:27:18.839 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44876 10 6452 1 2025-10-13 10:27:38.968 00:00:10.371 TCP 23.104.0.1:39224 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:28:19.081 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50356 10 6452 1 2025-10-13 10:28:39.381 00:00:10.373 TCP 23.104.0.1:50222 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:29:19.304 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:36998 10 6452 1 2025-10-13 10:29:39.791 00:00:10.364 TCP 23.104.0.1:54380 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:30:19.522 00:00:10.787 TCP 1.101.0.1:3000 -> 22.102.0.1:42810 10 6452 1 2025-10-13 10:26:41.651 00:05:02.443 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:26:41.655 00:05:02.437 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 10:30:40.200 00:00:10.366 TCP 23.104.0.1:56344 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:31:20.351 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:51126 10 6452 1 2025-10-13 10:31:40.606 00:00:10.374 TCP 23.104.0.1:36214 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:31:56.525 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:31:56.879 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:32:20.556 00:00:10.551 TCP 1.101.0.1:3000 -> 22.102.0.1:57096 10 6452 1 2025-10-13 10:32:41.009 00:00:10.331 TCP 23.104.0.1:47662 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:33:21.143 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48490 10 6452 1 2025-10-13 10:33:41.377 00:00:10.357 TCP 23.104.0.1:46998 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:34:21.361 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:43642 10 6452 1 2025-10-13 10:34:41.777 00:00:10.374 TCP 23.104.0.1:57854 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:35:21.614 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32810 10 6452 1 2025-10-13 10:35:42.192 00:00:10.642 TCP 23.104.0.1:52918 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:36:21.829 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42386 10 6452 1 2025-10-13 10:32:41.657 00:05:02.437 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 10:32:41.654 00:05:02.442 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:36:56.814 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:36:42.871 00:00:10.371 TCP 23.104.0.1:34164 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:36:56.997 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:37:22.067 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:36450 10 6452 1 2025-10-13 10:37:43.276 00:00:10.367 TCP 23.104.0.1:46978 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:38:22.239 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45770 10 6452 1 2025-10-13 10:38:43.676 00:00:10.327 TCP 23.104.0.1:53226 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:39:22.463 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49526 10 6452 1 2025-10-13 10:39:44.045 00:00:10.383 TCP 23.104.0.1:52170 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:40:22.677 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52626 10 6452 1 2025-10-13 10:40:44.462 00:00:10.366 TCP 23.104.0.1:55534 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:41:22.889 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:52356 12 10375 1 2025-10-13 10:41:44.863 00:00:10.448 TCP 23.104.0.1:49196 -> 1.101.0.1:3000 15 1926 1 2025-10-13 10:41:57.095 00:00:00.046 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:41:57.021 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:42:23.136 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38110 10 6452 1 2025-10-13 10:38:41.655 00:05:02.443 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:38:41.658 00:05:02.437 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 10:42:45.359 00:00:10.362 TCP 23.104.0.1:52330 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:43:23.352 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49676 10 6452 1 2025-10-13 10:43:45.758 00:00:10.375 TCP 23.104.0.1:35724 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:44:23.566 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45876 10 6452 1 2025-10-13 10:44:46.173 00:00:10.367 TCP 23.104.0.1:54696 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:45:23.783 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:49014 10 6452 1 2025-10-13 10:45:46.577 00:00:10.368 TCP 23.104.0.1:44972 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:46:23.951 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:42536 10 6452 1 2025-10-13 10:46:56.886 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:46:46.977 00:00:10.368 TCP 23.104.0.1:56070 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:46:57.293 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:47:24.180 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60062 10 6452 1 2025-10-13 10:47:47.380 00:00:10.371 TCP 23.104.0.1:43892 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:48:24.392 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57050 10 6452 1 2025-10-13 10:44:41.656 00:05:02.444 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:44:41.659 00:05:02.438 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 10:48:47.789 00:00:10.358 TCP 23.104.0.1:37448 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:49:24.606 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48116 10 6452 1 2025-10-13 10:49:48.187 00:00:10.361 TCP 23.104.0.1:55644 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:50:24.827 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48300 10 6452 1 2025-10-13 10:50:48.586 00:00:10.363 TCP 23.104.0.1:34276 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:51:25.060 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33336 10 6452 1 2025-10-13 10:51:57.043 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:51:57.215 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:51:48.987 00:00:10.319 TCP 23.104.0.1:49746 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:52:25.271 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35308 10 6452 1 2025-10-13 10:52:49.345 00:00:10.332 TCP 23.104.0.1:52254 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:53:25.483 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48966 10 6452 1 2025-10-13 10:53:49.709 00:00:10.367 TCP 23.104.0.1:50324 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:54:25.689 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57120 10 6452 1 2025-10-13 10:50:41.657 00:05:02.446 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 10:50:41.660 00:05:02.441 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 10:54:50.115 00:00:10.326 TCP 23.104.0.1:39484 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:55:25.896 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57548 10 6452 1 2025-10-13 10:55:50.483 00:00:10.365 TCP 23.104.0.1:59068 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:56:26.116 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34244 10 6452 1 2025-10-13 10:56:57.336 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 10:56:50.887 00:00:10.379 TCP 23.104.0.1:40572 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:56:57.347 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 10:57:26.325 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33312 10 6452 1 2025-10-13 10:57:51.301 00:00:10.380 TCP 23.104.0.1:35928 -> 1.101.0.1:3000 11 1507 1 2025-10-13 10:58:26.537 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55724 10 6452 1 Summary: total flows: 163, total bytes: 505519, total packets: 1573, avg bps: 1088, avg pps: 0, avg bpp: 321 Time window: 2025-10-13 09:56:41 - 2025-10-13 10:58:36 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0049s User: 0.0010s Wall: 0.0021s flows/second: 79165.3 Runtime: 0.0021s