Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 20:59:27.583 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52976 10 6452 1 2025-10-15 20:59:27.953 00:00:10.373 TCP 23.104.0.1:43354 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:00:27.804 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:34288 10 6452 1 2025-10-15 21:00:28.363 00:00:10.368 TCP 23.104.0.1:51890 -> 1.101.0.1:3000 11 1507 1 2025-10-15 20:56:42.774 00:05:02.583 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 20:56:42.776 00:05:02.578 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:01:28.039 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:51270 12 10369 1 2025-10-15 21:01:28.770 00:00:10.400 TCP 23.104.0.1:54368 -> 1.101.0.1:3000 15 1926 1 2025-10-15 21:02:28.287 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52502 10 6452 1 2025-10-15 21:02:29.211 00:00:10.374 TCP 23.104.0.1:49840 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:03:07.304 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:03:07.093 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:03:29.612 00:00:10.373 TCP 23.104.0.1:34952 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:03:28.506 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53480 10 6452 1 2025-10-15 21:04:28.721 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:48048 10 6452 1 2025-10-15 21:04:30.029 00:00:10.990 TCP 23.104.0.1:59358 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:05:28.894 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55250 10 6452 1 2025-10-15 21:05:31.079 00:00:10.369 TCP 23.104.0.1:47382 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:06:29.113 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43716 10 6452 1 2025-10-15 21:06:31.488 00:00:10.364 TCP 23.104.0.1:52872 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:02:42.776 00:05:02.582 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 21:02:42.779 00:05:02.577 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:07:29.332 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46734 10 6452 1 2025-10-15 21:07:31.890 00:00:10.375 TCP 23.104.0.1:53554 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:08:07.368 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:08:07.455 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:08:29.542 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39358 10 6452 1 2025-10-15 21:08:32.300 00:00:10.368 TCP 23.104.0.1:35912 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:09:29.769 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:37378 10 6452 1 2025-10-15 21:09:32.708 00:00:10.362 TCP 23.104.0.1:42078 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:10:29.998 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:50024 10 6452 1 2025-10-15 21:10:33.112 00:00:10.362 TCP 23.104.0.1:48020 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:11:30.188 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:39664 10 6452 1 2025-10-15 21:11:33.514 00:00:10.369 TCP 23.104.0.1:45904 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:12:30.378 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:39832 10 6452 1 2025-10-15 21:12:33.921 00:00:10.380 TCP 23.104.0.1:44604 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:08:42.778 00:05:02.578 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:08:42.776 00:05:02.583 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 21:13:07.402 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:13:07.372 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:13:30.551 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43216 10 6452 1 2025-10-15 21:13:34.344 00:00:10.369 TCP 23.104.0.1:53472 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:14:30.761 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58632 10 6452 1 2025-10-15 21:14:34.754 00:00:10.380 TCP 23.104.0.1:45052 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:15:30.974 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:37390 10 6452 1 2025-10-15 21:15:35.178 00:00:10.369 TCP 23.104.0.1:40316 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:16:31.207 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58952 10 6452 1 2025-10-15 21:16:35.586 00:00:10.362 TCP 23.104.0.1:59930 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:17:31.420 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34190 10 6452 1 2025-10-15 21:17:35.989 00:00:10.369 TCP 23.104.0.1:45098 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:18:07.387 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:18:07.542 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:18:31.638 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:46260 10 6452 1 2025-10-15 21:14:42.778 00:05:02.582 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 21:18:36.395 00:00:10.364 TCP 23.104.0.1:34272 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:14:42.782 00:05:02.577 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:19:31.854 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:60338 10 6452 1 2025-10-15 21:19:36.798 00:00:10.347 TCP 23.104.0.1:38688 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:20:32.084 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:43756 10 6452 1 2025-10-15 21:20:37.174 00:00:10.364 TCP 23.104.0.1:36464 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:21:32.261 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:34800 10 6452 1 2025-10-15 21:21:37.578 00:00:10.361 TCP 23.104.0.1:34388 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:22:32.429 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:42118 10 6452 1 2025-10-15 21:22:37.977 00:00:10.364 TCP 23.104.0.1:51562 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:23:07.701 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:23:07.646 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:23:32.605 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52378 10 6452 1 2025-10-15 21:23:38.387 00:00:10.326 TCP 23.104.0.1:40224 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:20:42.785 00:05:02.575 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:24:32.829 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54302 10 6452 1 2025-10-15 21:20:42.783 00:05:02.580 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 21:24:38.755 00:00:10.380 TCP 23.104.0.1:51848 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:25:33.078 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:43686 10 6452 1 2025-10-15 21:25:39.172 00:00:10.367 TCP 23.104.0.1:55038 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:26:33.299 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40458 10 6452 1 2025-10-15 21:26:39.575 00:00:10.366 TCP 23.104.0.1:36452 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:27:33.511 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42864 10 6452 1 2025-10-15 21:27:39.972 00:00:10.371 TCP 23.104.0.1:37094 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:28:07.831 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:28:07.752 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:28:33.723 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56180 10 6452 1 2025-10-15 21:28:40.381 00:00:10.364 TCP 23.104.0.1:53762 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:29:33.941 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:33672 10 6452 1 2025-10-15 21:29:40.784 00:00:10.365 TCP 23.104.0.1:55944 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:26:42.787 00:05:02.574 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:26:42.783 00:05:02.580 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 21:30:34.130 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:55068 10 6452 1 2025-10-15 21:30:41.185 00:00:10.362 TCP 23.104.0.1:56174 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:31:34.305 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47102 10 6452 1 2025-10-15 21:31:41.585 00:00:10.319 TCP 23.104.0.1:48264 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:32:34.519 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45782 10 6452 1 2025-10-15 21:32:41.946 00:00:10.350 TCP 23.104.0.1:56642 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:33:07.838 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:33:07.891 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:33:34.732 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55484 10 6452 1 2025-10-15 21:33:42.330 00:00:10.369 TCP 23.104.0.1:35340 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:34:34.951 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:53126 10 6452 1 2025-10-15 21:34:42.741 00:00:10.366 TCP 23.104.0.1:54734 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:35:35.176 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:53692 10 6452 1 2025-10-15 21:35:43.146 00:00:10.326 TCP 23.104.0.1:59146 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:32:42.784 00:05:02.581 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 21:36:35.400 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33166 10 6452 1 2025-10-15 21:32:42.786 00:05:02.576 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:36:43.508 00:00:10.365 TCP 23.104.0.1:55570 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:37:35.617 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53316 10 6452 1 2025-10-15 21:37:43.915 00:00:10.377 TCP 23.104.0.1:60214 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:38:08.148 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:38:08.396 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:38:35.830 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:34982 10 6452 1 2025-10-15 21:38:44.327 00:00:10.930 TCP 23.104.0.1:50026 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:39:36.011 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:59760 10 6452 1 2025-10-15 21:39:45.294 00:00:10.361 TCP 23.104.0.1:49832 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:40:36.233 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:50702 10 6452 1 2025-10-15 21:40:45.692 00:00:10.369 TCP 23.104.0.1:41846 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:41:36.410 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56706 10 6452 1 2025-10-15 21:41:46.104 00:00:10.362 TCP 23.104.0.1:47904 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:38:42.788 00:05:02.578 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:42:36.619 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56886 10 6452 1 2025-10-15 21:38:42.785 00:05:02.583 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 21:42:46.505 00:00:10.365 TCP 23.104.0.1:57092 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:43:07.833 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:43:08.012 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:43:36.835 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:52976 10 6452 1 2025-10-15 21:43:46.910 00:00:10.368 TCP 23.104.0.1:34842 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:44:37.087 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:36184 10 6452 1 2025-10-15 21:44:47.334 00:00:10.326 TCP 23.104.0.1:50466 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:45:37.303 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37406 10 6452 1 2025-10-15 21:45:47.693 00:00:10.344 TCP 23.104.0.1:48720 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:46:37.521 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35632 10 6452 1 2025-10-15 21:46:48.151 00:00:10.368 TCP 23.104.0.1:52580 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:47:37.734 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:37178 10 6452 1 2025-10-15 21:47:48.559 00:00:10.367 TCP 23.104.0.1:50404 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:48:07.989 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:48:08.193 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:44:42.788 00:05:02.582 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 21:44:42.790 00:05:02.577 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:48:37.916 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33182 10 6452 1 2025-10-15 21:48:48.965 00:00:10.377 TCP 23.104.0.1:47610 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:49:38.129 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50738 10 6452 1 2025-10-15 21:49:49.379 00:00:10.369 TCP 23.104.0.1:46014 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:50:38.339 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:46870 10 6452 1 2025-10-15 21:50:49.785 00:00:10.494 TCP 23.104.0.1:51728 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:51:38.554 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:32942 10 6452 1 2025-10-15 21:51:50.318 00:00:10.327 TCP 23.104.0.1:52742 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:52:38.777 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44190 10 6452 1 2025-10-15 21:52:50.683 00:00:10.335 TCP 23.104.0.1:34480 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:53:08.305 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:53:08.319 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:53:38.997 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:53788 10 6452 1 2025-10-15 21:53:51.060 00:00:10.364 TCP 23.104.0.1:41096 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:50:42.793 00:05:02.577 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 21:50:42.789 00:05:02.582 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 21:54:39.216 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47162 10 6452 1 2025-10-15 21:54:51.465 00:00:10.366 TCP 23.104.0.1:33358 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:55:39.433 00:00:10.366 TCP 1.101.0.1:3000 -> 22.102.0.1:49320 10 6452 1 2025-10-15 21:55:51.874 00:00:10.368 TCP 23.104.0.1:41432 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:56:39.848 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56214 10 6452 1 2025-10-15 21:56:52.281 00:00:10.361 TCP 23.104.0.1:55018 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:57:40.079 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41772 10 6452 1 2025-10-15 21:58:08.555 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 21:57:52.681 00:00:10.660 TCP 23.104.0.1:49504 -> 1.101.0.1:3000 11 1507 1 2025-10-15 21:58:08.382 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 21:58:40.295 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35766 10 6452 1 Summary: total flows: 163, total bytes: 501177, total packets: 1567, avg bps: 1075, avg pps: 0, avg bpp: 319 Time window: 2025-10-15 20:56:42 - 2025-10-15 21:58:50 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0031s User: 0.0010s Wall: 0.0014s flows/second: 114307.2 Runtime: 0.0014s