Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 21:59:07.081 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:59582 10 6452 1 2025-10-13 21:59:31.522 00:00:10.364 TCP 23.104.0.1:49122 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:00:07.260 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54362 10 6452 1 2025-10-13 22:00:31.927 00:00:10.388 TCP 23.104.0.1:53876 -> 1.101.0.1:3000 11 1507 1 2025-10-13 21:56:41.856 00:05:02.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 21:56:41.852 00:05:02.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:01:07.479 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:35290 12 10375 1 2025-10-13 22:01:32.351 00:00:10.400 TCP 23.104.0.1:42016 -> 1.101.0.1:3000 15 1926 1 2025-10-13 22:02:11.593 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:02:11.623 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:02:07.725 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58582 10 6452 1 2025-10-13 22:02:32.790 00:00:10.369 TCP 23.104.0.1:33940 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:03:07.936 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47544 10 6452 1 2025-10-13 22:03:33.202 00:00:10.331 TCP 23.104.0.1:58996 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:04:08.152 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58660 10 6452 1 2025-10-13 22:04:33.572 00:00:10.324 TCP 23.104.0.1:33020 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:05:08.369 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37236 10 6452 1 2025-10-13 22:05:33.933 00:00:10.372 TCP 23.104.0.1:43418 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:06:08.585 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46394 10 6452 1 2025-10-13 22:02:41.856 00:05:02.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 22:06:34.341 00:00:10.360 TCP 23.104.0.1:42914 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:02:41.853 00:05:02.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:07:10.690 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:07:10.887 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:07:08.798 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33410 10 6452 1 2025-10-13 22:07:34.745 00:00:10.328 TCP 23.104.0.1:54770 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:08:09.012 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57008 10 6452 1 2025-10-13 22:08:35.118 00:00:10.324 TCP 23.104.0.1:51016 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:09:09.221 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35828 10 6452 1 2025-10-13 22:09:35.475 00:00:10.373 TCP 23.104.0.1:35542 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:10:09.445 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47286 10 6452 1 2025-10-13 22:10:35.891 00:00:10.378 TCP 23.104.0.1:53034 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:11:09.655 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40098 10 6452 1 2025-10-13 22:11:36.311 00:00:10.376 TCP 23.104.0.1:55418 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:12:10.763 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:12:10.893 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:12:09.879 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:51384 10 6452 1 2025-10-13 22:08:41.855 00:05:02.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:08:41.856 00:05:02.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 22:12:36.733 00:00:10.369 TCP 23.104.0.1:42356 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:13:10.078 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:33184 10 6452 1 2025-10-13 22:13:37.138 00:00:10.369 TCP 23.104.0.1:40500 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:14:10.249 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56346 10 6452 1 2025-10-13 22:14:37.546 00:00:10.327 TCP 23.104.0.1:38870 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:15:10.462 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46436 10 6452 1 2025-10-13 22:15:37.909 00:00:10.369 TCP 23.104.0.1:38708 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:16:10.681 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50950 10 6452 1 2025-10-13 22:16:38.313 00:00:10.364 TCP 23.104.0.1:43168 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:17:10.975 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:17:10.802 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:17:10.887 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55346 10 6452 1 2025-10-13 22:17:38.713 00:00:10.324 TCP 23.104.0.1:46266 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:18:11.106 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42850 10 6452 1 2025-10-13 22:14:41.857 00:05:02.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:14:41.858 00:05:02.447 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 22:18:39.098 00:00:10.369 TCP 23.104.0.1:37766 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:19:11.324 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:55710 10 6452 1 2025-10-13 22:19:39.502 00:00:10.372 TCP 23.104.0.1:36724 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:20:11.496 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:37044 10 6452 1 2025-10-13 22:20:39.909 00:00:10.362 TCP 23.104.0.1:43484 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:21:11.711 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56884 10 6452 1 2025-10-13 22:21:40.332 00:00:10.377 TCP 23.104.0.1:58754 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:22:11.140 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:22:10.902 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:22:11.930 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:36710 10 6452 1 2025-10-13 22:22:40.750 00:00:10.372 TCP 23.104.0.1:33764 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:23:12.161 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44862 10 6452 1 2025-10-13 22:23:41.158 00:00:10.364 TCP 23.104.0.1:51348 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:24:12.380 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48210 10 6452 1 2025-10-13 22:20:41.860 00:05:02.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 22:20:41.858 00:05:02.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:24:41.562 00:00:10.366 TCP 23.104.0.1:54716 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:25:12.593 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39238 10 6452 1 2025-10-13 22:25:41.969 00:00:10.381 TCP 23.104.0.1:43890 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:26:12.808 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:41680 12 10375 1 2025-10-13 22:26:42.391 00:00:10.394 TCP 23.104.0.1:39378 -> 1.101.0.1:3000 15 1926 1 2025-10-13 22:27:11.024 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:27:11.021 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:27:13.067 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49106 10 6452 1 2025-10-13 22:27:42.832 00:00:10.399 TCP 23.104.0.1:52164 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:28:13.285 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:52024 10 6452 1 2025-10-13 22:28:43.277 00:00:10.368 TCP 23.104.0.1:43974 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:29:13.470 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:36622 10 6452 1 2025-10-13 22:29:43.685 00:00:10.367 TCP 23.104.0.1:50476 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:30:13.638 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55236 10 6452 1 2025-10-13 22:26:41.859 00:05:02.454 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:26:41.863 00:05:02.449 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 22:30:44.105 00:00:10.339 TCP 23.104.0.1:43962 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:31:13.863 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:38778 12 10369 1 2025-10-13 22:31:44.482 00:00:10.398 TCP 23.104.0.1:59828 -> 1.101.0.1:3000 15 1926 1 2025-10-13 22:32:11.265 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:32:11.034 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:32:14.111 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:44056 10 6452 1 2025-10-13 22:32:44.920 00:00:10.370 TCP 23.104.0.1:46480 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:33:14.282 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:38398 10 6452 1 2025-10-13 22:33:45.340 00:00:10.366 TCP 23.104.0.1:43470 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:34:14.458 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55264 10 6452 1 2025-10-13 22:34:45.742 00:00:10.366 TCP 23.104.0.1:33160 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:35:14.670 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59122 10 6452 1 2025-10-13 22:35:46.143 00:00:10.326 TCP 23.104.0.1:37998 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:36:14.887 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:53030 10 6452 1 2025-10-13 22:32:41.860 00:05:02.455 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:32:41.864 00:05:02.449 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 22:36:46.510 00:00:10.370 TCP 23.104.0.1:36458 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:37:11.388 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:37:11.392 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:37:15.090 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:52382 10 6452 1 2025-10-13 22:37:46.915 00:00:10.361 TCP 23.104.0.1:32926 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:38:15.265 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46956 10 6452 1 2025-10-13 22:38:47.319 00:00:10.324 TCP 23.104.0.1:49022 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:39:15.480 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43384 10 6452 1 2025-10-13 22:39:47.683 00:00:10.379 TCP 23.104.0.1:35742 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:40:15.691 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42336 10 6452 1 2025-10-13 22:40:48.111 00:00:10.366 TCP 23.104.0.1:53892 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:41:15.913 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43342 10 6452 1 2025-10-13 22:41:48.519 00:00:10.368 TCP 23.104.0.1:54728 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:42:11.321 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:42:11.507 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:42:16.129 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:46548 10 6452 1 2025-10-13 22:38:41.861 00:05:02.458 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:38:41.865 00:05:02.452 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 22:42:48.921 00:00:10.383 TCP 23.104.0.1:55200 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:43:16.338 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:58254 10 6452 1 2025-10-13 22:43:49.347 00:00:10.362 TCP 23.104.0.1:54574 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:44:16.543 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40680 10 6452 1 2025-10-13 22:44:49.751 00:00:10.346 TCP 23.104.0.1:34734 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:45:16.753 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:52166 10 6452 1 2025-10-13 22:45:50.135 00:00:10.367 TCP 23.104.0.1:34424 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:46:16.925 00:00:10.163 TCP 1.101.0.1:3000 -> 22.102.0.1:35386 10 6452 1 2025-10-13 22:46:50.545 00:00:10.366 TCP 23.104.0.1:46944 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:47:11.949 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:47:11.813 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:47:17.127 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:42062 10 6452 1 2025-10-13 22:47:50.947 00:00:10.369 TCP 23.104.0.1:42196 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:48:17.296 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55430 10 6452 1 2025-10-13 22:44:41.862 00:05:02.460 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:44:41.866 00:05:02.455 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 22:48:51.353 00:00:10.369 TCP 23.104.0.1:44046 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:49:17.510 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47964 10 6452 1 2025-10-13 22:49:51.762 00:00:10.386 TCP 23.104.0.1:58486 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:50:17.725 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46614 10 6452 1 2025-10-13 22:50:52.185 00:00:10.369 TCP 23.104.0.1:49710 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:51:17.939 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:58752 10 6452 1 2025-10-13 22:51:52.590 00:00:10.370 TCP 23.104.0.1:59608 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:52:11.878 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:52:11.560 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:52:18.176 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50248 10 6452 1 2025-10-13 22:52:53.004 00:00:10.367 TCP 23.104.0.1:41214 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:53:18.397 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57494 10 6452 1 2025-10-13 22:53:53.407 00:00:10.326 TCP 23.104.0.1:36536 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:54:18.609 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42978 10 6452 1 2025-10-13 22:50:41.866 00:05:02.455 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 22:50:41.864 00:05:02.460 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 22:54:53.779 00:00:10.375 TCP 23.104.0.1:35914 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:55:18.825 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51990 10 6452 1 2025-10-13 22:55:54.188 00:00:10.362 TCP 23.104.0.1:56512 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:56:19.043 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51474 10 6452 1 2025-10-13 22:56:54.591 00:00:10.370 TCP 23.104.0.1:43774 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:57:11.565 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 22:57:12.027 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 22:57:19.276 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49354 10 6452 1 2025-10-13 22:57:55.003 00:00:10.387 TCP 23.104.0.1:53430 -> 1.101.0.1:3000 11 1507 1 2025-10-13 22:58:19.490 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:34392 10 6452 1 Summary: total flows: 163, total bytes: 509861, total packets: 1579, avg bps: 1100, avg pps: 0, avg bpp: 322 Time window: 2025-10-13 21:56:41 - 2025-10-13 22:58:29 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0040s User: 0.0010s Wall: 0.0037s flows/second: 44207.7 Runtime: 0.0037s