Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 08:59:00.443 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57150 10 6452 1 2025-10-25 08:59:19.308 00:00:10.368 TCP 23.104.0.1:42348 -> 1.101.0.1:3000 11 1507 1 2025-10-25 08:55:47.175 00:05:03.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:00:00.659 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:35056 10 6452 1 2025-10-25 09:00:19.717 00:00:10.370 TCP 23.104.0.1:48186 -> 1.101.0.1:3000 11 1507 1 2025-10-25 08:56:47.172 00:05:03.084 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:01:00.852 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54212 10 6452 1 2025-10-25 09:01:20.126 00:00:10.359 TCP 23.104.0.1:35288 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:02:01.081 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48774 10 6452 1 2025-10-25 09:02:20.522 00:00:10.368 TCP 23.104.0.1:36074 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:02:41.889 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:02:41.912 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:03:01.304 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:46274 10 6452 1 2025-10-25 09:03:20.927 00:00:10.383 TCP 23.104.0.1:55742 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:04:01.473 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57666 10 6452 1 2025-10-25 09:04:21.353 00:00:10.364 TCP 23.104.0.1:60766 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:05:01.688 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36544 10 6452 1 2025-10-25 09:05:21.749 00:00:10.395 TCP 23.104.0.1:52248 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:01:47.175 00:05:03.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:06:01.898 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46532 10 6452 1 2025-10-25 09:06:22.178 00:00:10.368 TCP 23.104.0.1:54842 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:02:47.173 00:05:03.084 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:07:02.113 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:48036 10 6452 1 2025-10-25 09:07:22.584 00:00:10.369 TCP 23.104.0.1:35194 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:07:41.702 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:07:41.734 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:08:02.288 00:00:14.342 TCP 1.101.0.1:3000 -> 22.102.0.1:35064 10 6452 1 2025-10-25 09:08:22.991 00:00:10.361 TCP 23.104.0.1:50020 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:09:06.672 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:40722 10 6452 1 2025-10-25 09:09:23.392 00:00:10.321 TCP 23.104.0.1:44996 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:10:06.893 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:54844 10 6452 1 2025-10-25 09:10:23.754 00:00:10.327 TCP 23.104.0.1:34746 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:11:07.120 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34842 10 6452 1 2025-10-25 09:11:24.121 00:00:10.363 TCP 23.104.0.1:50446 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:07:47.176 00:05:03.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:12:07.350 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:54718 10 6452 1 2025-10-25 09:12:24.523 00:00:10.329 TCP 23.104.0.1:46206 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:12:42.331 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:12:42.246 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:08:47.173 00:05:03.085 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:13:07.559 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48426 10 6452 1 2025-10-25 09:13:24.889 00:00:10.333 TCP 23.104.0.1:43370 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:14:07.733 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45354 10 6452 1 2025-10-25 09:14:25.263 00:00:10.364 TCP 23.104.0.1:44404 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:15:07.942 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:35726 10 6452 1 2025-10-25 09:15:25.669 00:00:10.366 TCP 23.104.0.1:52490 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:16:08.181 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48444 10 6452 1 2025-10-25 09:16:26.102 00:00:10.321 TCP 23.104.0.1:52988 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:17:08.390 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53234 10 6452 1 2025-10-25 09:17:26.462 00:00:10.331 TCP 23.104.0.1:45116 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:17:42.208 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:17:42.281 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:13:47.179 00:05:03.078 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:18:08.610 00:00:10.368 TCP 1.101.0.1:3000 -> 22.102.0.1:58776 11 6504 1 2025-10-25 09:18:26.845 00:00:10.378 TCP 23.104.0.1:49162 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:14:47.177 00:05:03.083 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:19:09.029 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57114 10 6452 1 2025-10-25 09:19:27.261 00:00:10.338 TCP 23.104.0.1:56758 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:20:09.245 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:52576 10 6452 1 2025-10-25 09:20:27.648 00:00:10.380 TCP 23.104.0.1:50842 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:21:09.476 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53052 10 6452 1 2025-10-25 09:21:28.112 00:00:10.360 TCP 23.104.0.1:36742 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:22:09.701 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45016 10 6452 1 2025-10-25 09:22:28.516 00:00:10.363 TCP 23.104.0.1:55542 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:22:42.386 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:22:42.455 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:23:09.915 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:56760 10 6452 1 2025-10-25 09:23:28.912 00:00:10.368 TCP 23.104.0.1:34940 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:19:47.181 00:05:03.077 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:24:10.119 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60336 10 6452 1 2025-10-25 09:24:29.325 00:00:10.375 TCP 23.104.0.1:55644 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:20:47.178 00:05:03.082 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:25:10.338 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51834 10 6452 1 2025-10-25 09:25:29.736 00:00:10.371 TCP 23.104.0.1:56194 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:26:10.548 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33304 10 6452 1 2025-10-25 09:26:30.141 00:00:10.366 TCP 23.104.0.1:59982 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:27:10.761 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:43400 10 6452 1 2025-10-25 09:27:30.544 00:00:10.366 TCP 23.104.0.1:50184 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:27:42.273 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:27:42.417 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:28:10.990 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:34172 10 6452 1 2025-10-25 09:28:30.946 00:00:10.372 TCP 23.104.0.1:58130 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:29:11.220 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55628 10 6452 1 2025-10-25 09:29:31.355 00:00:10.322 TCP 23.104.0.1:52350 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:25:47.186 00:05:03.075 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:30:11.430 00:00:24.045 TCP 1.101.0.1:3000 -> 22.102.0.1:53748 10 6452 1 2025-10-25 09:30:31.720 00:00:10.368 TCP 23.104.0.1:45364 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:26:47.186 00:05:03.077 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:31:25.520 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55118 10 6452 1 2025-10-25 09:31:32.133 00:00:10.760 TCP 23.104.0.1:59724 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:32:25.737 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55188 10 6452 1 2025-10-25 09:32:32.921 00:00:10.379 TCP 23.104.0.1:51832 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:32:42.590 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:32:42.583 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:33:25.958 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:47942 10 6452 1 2025-10-25 09:33:33.340 00:00:10.378 TCP 23.104.0.1:44342 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:34:26.152 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:37988 10 6452 1 2025-10-25 09:34:33.766 00:00:10.370 TCP 23.104.0.1:55426 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:35:26.336 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39982 10 6452 1 2025-10-25 09:35:34.174 00:00:10.386 TCP 23.104.0.1:44826 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:31:47.191 00:05:03.070 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:36:26.559 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:40264 10 6452 1 2025-10-25 09:36:34.588 00:00:10.379 TCP 23.104.0.1:42782 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:32:47.189 00:05:03.075 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:37:26.738 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44946 10 6452 1 2025-10-25 09:37:35.008 00:00:10.380 TCP 23.104.0.1:48218 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:37:42.719 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:37:42.407 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:38:26.959 00:00:10.314 TCP 1.101.0.1:3000 -> 22.102.0.1:45620 12 6556 1 2025-10-25 09:38:35.429 00:00:11.101 TCP 23.104.0.1:40048 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:39:27.312 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54442 10 6452 1 2025-10-25 09:39:36.583 00:00:10.369 TCP 23.104.0.1:47584 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:40:27.530 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53294 10 6452 1 2025-10-25 09:40:36.989 00:00:10.365 TCP 23.104.0.1:51004 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:41:27.749 00:00:13.964 TCP 1.101.0.1:3000 -> 22.102.0.1:42962 10 6452 1 2025-10-25 09:41:37.397 00:00:10.323 TCP 23.104.0.1:58924 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:37:47.193 00:05:03.071 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:42:42.755 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:42:31.756 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47924 10 6452 1 2025-10-25 09:42:42.741 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:38:47.190 00:05:03.076 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:42:37.764 00:00:10.377 TCP 23.104.0.1:49306 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:43:31.930 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:44438 10 6452 1 2025-10-25 09:43:38.176 00:00:10.367 TCP 23.104.0.1:50904 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:44:32.175 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37022 10 6452 1 2025-10-25 09:44:38.580 00:00:10.366 TCP 23.104.0.1:42704 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:45:32.387 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:48278 10 6452 1 2025-10-25 09:45:38.981 00:00:10.368 TCP 23.104.0.1:48894 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:46:32.596 00:00:10.514 TCP 1.101.0.1:3000 -> 22.102.0.1:53488 10 6452 1 2025-10-25 09:46:39.388 00:00:10.544 TCP 23.104.0.1:35126 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:47:33.147 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:58998 10 6452 1 2025-10-25 09:47:42.841 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:47:42.747 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:43:47.192 00:05:03.070 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:47:39.971 00:00:10.369 TCP 23.104.0.1:60598 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:48:33.332 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:57732 10 6452 1 2025-10-25 09:44:47.192 00:05:03.074 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:48:40.375 00:00:10.369 TCP 23.104.0.1:42058 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:49:33.560 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46962 10 6452 1 2025-10-25 09:49:40.782 00:00:10.366 TCP 23.104.0.1:35702 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:50:33.784 00:00:10.163 TCP 1.101.0.1:3000 -> 22.102.0.1:38886 12 10375 1 2025-10-25 09:50:41.188 00:00:10.442 TCP 23.104.0.1:37738 -> 1.101.0.1:3000 15 1926 1 2025-10-25 09:51:33.989 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:56916 10 6452 1 2025-10-25 09:51:41.667 00:00:10.366 TCP 23.104.0.1:53102 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:52:42.924 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:52:42.970 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:52:34.224 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35486 10 6452 1 2025-10-25 09:52:42.096 00:00:10.357 TCP 23.104.0.1:55478 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:53:34.439 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:44874 10 6452 1 2025-10-25 09:49:47.194 00:05:03.071 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:53:42.490 00:00:10.367 TCP 23.104.0.1:55584 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:54:34.621 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56182 10 6452 1 2025-10-25 09:50:47.194 00:05:03.076 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 09:54:42.908 00:00:10.327 TCP 23.104.0.1:55668 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:55:34.839 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:49310 10 6452 1 2025-10-25 09:55:43.274 00:00:10.363 TCP 23.104.0.1:53532 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:56:35.081 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37982 10 6452 1 2025-10-25 09:56:43.677 00:00:10.366 TCP 23.104.0.1:34854 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:57:42.850 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 09:57:43.032 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 09:57:35.304 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:35544 10 6452 1 2025-10-25 09:57:44.103 00:00:10.368 TCP 23.104.0.1:33090 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:58:35.558 00:00:10.710 TCP 1.101.0.1:3000 -> 22.102.0.1:54612 10 6452 1 Summary: total flows: 163, total bytes: 501339, total packets: 1570, avg bps: 1061, avg pps: 0, avg bpp: 319 Time window: 2025-10-25 08:55:47 - 2025-10-25 09:58:46 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0031s User: 0.0023s Wall: 0.0029s flows/second: 55402.9 Runtime: 0.0030s