Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 13:59:14.481 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 13:59:14.740 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 13:59:29.808 00:00:10.419 TCP 23.104.0.1:57006 -> 1.101.0.1:3000 11 1507 1 2025-10-28 13:59:34.301 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58474 10 6452 1 2025-10-28 13:55:48.678 00:05:03.302 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:00:30.269 00:00:10.362 TCP 23.104.0.1:52642 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:00:34.511 00:00:18.968 TCP 1.101.0.1:3000 -> 22.102.0.1:47540 10 6452 1 2025-10-28 13:56:48.679 00:05:03.303 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:01:30.670 00:00:10.325 TCP 23.104.0.1:48590 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:01:43.519 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:34282 10 6452 1 2025-10-28 14:02:31.031 00:00:10.366 TCP 23.104.0.1:48240 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:02:43.754 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35378 10 6452 1 2025-10-28 14:03:31.438 00:00:10.369 TCP 23.104.0.1:43986 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:03:43.960 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:49758 10 6452 1 2025-10-28 14:04:14.614 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:04:14.761 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:04:31.845 00:00:10.384 TCP 23.104.0.1:58452 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:04:44.190 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33478 10 6452 1 2025-10-28 14:05:32.271 00:00:10.320 TCP 23.104.0.1:34268 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:05:44.417 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:45902 10 6452 1 2025-10-28 14:01:48.680 00:05:03.301 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:06:32.629 00:00:10.329 TCP 23.104.0.1:56514 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:02:48.676 00:05:03.307 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:06:44.665 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54000 10 6452 1 2025-10-28 14:07:32.995 00:00:10.358 TCP 23.104.0.1:59364 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:07:44.886 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:50630 10 6452 1 2025-10-28 14:08:33.391 00:00:10.364 TCP 23.104.0.1:50668 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:08:45.129 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58168 10 6452 1 2025-10-28 14:09:14.801 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:09:14.868 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:09:33.798 00:00:15.568 TCP 23.104.0.1:34400 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:09:45.346 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41696 10 6452 1 2025-10-28 14:10:39.407 00:00:10.371 TCP 23.104.0.1:42794 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:10:45.561 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52108 10 6452 1 2025-10-28 14:11:45.779 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:42124 10 6452 1 2025-10-28 14:11:39.813 00:00:10.365 TCP 23.104.0.1:55062 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:07:48.682 00:05:03.302 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:12:40.217 00:00:10.363 TCP 23.104.0.1:50614 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:12:45.952 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:44552 10 6452 1 2025-10-28 14:08:48.677 00:05:03.308 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:13:40.619 00:00:10.361 TCP 23.104.0.1:55586 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:13:46.189 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60698 10 6452 1 2025-10-28 14:14:14.831 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:14:14.866 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:14:41.029 00:00:10.363 TCP 23.104.0.1:47644 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:14:46.403 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36130 10 6452 1 2025-10-28 14:15:41.427 00:00:10.361 TCP 23.104.0.1:37626 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:15:46.630 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34380 10 6452 1 2025-10-28 14:16:41.834 00:00:10.386 TCP 23.104.0.1:55596 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:16:46.851 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57968 10 6452 1 2025-10-28 14:17:42.259 00:00:10.570 TCP 23.104.0.1:50090 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:13:48.684 00:05:03.302 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:17:47.091 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56730 10 6452 1 2025-10-28 14:14:48.682 00:05:03.307 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:18:42.863 00:00:10.372 TCP 23.104.0.1:53674 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:18:47.298 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38056 10 6452 1 2025-10-28 14:19:15.373 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:19:15.087 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:19:43.285 00:00:10.363 TCP 23.104.0.1:48334 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:19:47.511 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48092 10 6452 1 2025-10-28 14:20:43.686 00:00:11.115 TCP 23.104.0.1:37978 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:20:47.721 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:41740 10 6452 1 2025-10-28 14:21:44.842 00:00:10.467 TCP 23.104.0.1:59848 -> 1.101.0.1:3000 15 1926 1 2025-10-28 14:21:47.953 00:00:10.222 TCP 1.101.0.1:3000 -> 22.102.0.1:55544 12 10375 1 2025-10-28 14:22:45.349 00:00:10.362 TCP 23.104.0.1:47392 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:22:48.215 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:52522 10 6452 1 2025-10-28 14:23:45.751 00:00:10.393 TCP 23.104.0.1:48652 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:19:48.684 00:05:03.302 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:23:48.439 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52906 10 6452 1 2025-10-28 14:24:14.987 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:24:14.926 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:24:46.179 00:00:10.366 TCP 23.104.0.1:41034 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:20:48.682 00:05:03.307 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:24:48.653 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46564 10 6452 1 2025-10-28 14:25:46.593 00:00:10.363 TCP 23.104.0.1:59778 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:25:48.866 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:44760 10 6452 1 2025-10-28 14:26:46.995 00:00:10.437 TCP 23.104.0.1:37562 -> 1.101.0.1:3000 15 1926 1 2025-10-28 14:26:49.101 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:44832 12 10375 1 2025-10-28 14:27:47.472 00:00:10.357 TCP 23.104.0.1:58190 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:27:49.344 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48162 10 6452 1 2025-10-28 14:28:47.869 00:00:23.457 TCP 23.104.0.1:39846 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:29:15.187 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:28:49.556 00:00:21.679 TCP 1.101.0.1:3000 -> 22.102.0.1:59746 10 6452 1 2025-10-28 14:29:15.242 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:25:48.686 00:05:03.302 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:30:01.402 00:00:10.367 TCP 23.104.0.1:49984 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:30:01.290 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41498 10 6452 1 2025-10-28 14:26:48.684 00:05:03.307 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:31:01.510 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59504 10 6452 1 2025-10-28 14:31:01.801 00:00:10.365 TCP 23.104.0.1:42462 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:32:01.724 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52296 10 6452 1 2025-10-28 14:32:02.202 00:00:10.365 TCP 23.104.0.1:46890 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:33:01.937 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:34650 10 6452 1 2025-10-28 14:33:02.610 00:00:10.365 TCP 23.104.0.1:46354 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:34:15.327 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:34:03.014 00:00:10.380 TCP 23.104.0.1:58100 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:34:02.177 00:00:10.618 TCP 1.101.0.1:3000 -> 22.102.0.1:35904 10 6452 1 2025-10-28 14:34:15.348 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:35:02.839 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:58906 10 6452 1 2025-10-28 14:35:03.437 00:00:10.321 TCP 23.104.0.1:32796 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:31:48.689 00:05:03.327 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:36:03.797 00:00:10.347 TCP 23.104.0.1:39636 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:36:03.086 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39864 10 6452 1 2025-10-28 14:32:48.686 00:05:03.346 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:37:03.302 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:52000 12 10369 1 2025-10-28 14:37:04.178 00:00:10.405 TCP 23.104.0.1:44048 -> 1.101.0.1:3000 15 1926 1 2025-10-28 14:38:04.616 00:00:10.368 TCP 23.104.0.1:36910 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:38:03.506 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46170 10 6452 1 2025-10-28 14:39:03.718 00:00:10.802 TCP 1.101.0.1:3000 -> 22.102.0.1:58902 10 6452 1 2025-10-28 14:39:15.423 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:39:15.442 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:39:05.020 00:00:10.363 TCP 23.104.0.1:57788 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:40:05.420 00:00:10.326 TCP 23.104.0.1:52572 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:40:04.557 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:52876 10 6452 1 2025-10-28 14:41:04.771 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40324 10 6452 1 2025-10-28 14:41:05.781 00:00:10.376 TCP 23.104.0.1:54690 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:37:48.690 00:05:03.342 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:42:04.996 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46244 10 6452 1 2025-10-28 14:42:06.197 00:00:10.369 TCP 23.104.0.1:55286 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:38:48.687 00:05:03.348 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:43:06.603 00:00:10.363 TCP 23.104.0.1:40256 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:43:05.219 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56876 10 6452 1 2025-10-28 14:44:05.433 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:34462 10 6452 1 2025-10-28 14:44:15.550 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:44:15.399 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:44:07.007 00:00:10.362 TCP 23.104.0.1:57448 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:45:05.666 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:58924 10 6452 1 2025-10-28 14:45:07.402 00:00:10.325 TCP 23.104.0.1:57770 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:46:05.840 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60044 10 6452 1 2025-10-28 14:46:07.764 00:00:10.383 TCP 23.104.0.1:45606 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:47:06.083 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43296 10 6452 1 2025-10-28 14:47:08.207 00:00:10.374 TCP 23.104.0.1:40440 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:43:48.690 00:05:03.342 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:48:06.305 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39562 10 6452 1 2025-10-28 14:48:08.614 00:00:10.379 TCP 23.104.0.1:40770 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:44:48.688 00:05:03.347 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:49:15.576 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:49:06.510 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33198 10 6452 1 2025-10-28 14:49:15.411 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:49:09.031 00:00:10.370 TCP 23.104.0.1:45142 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:50:06.728 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:58734 10 6452 1 2025-10-28 14:50:09.440 00:00:10.364 TCP 23.104.0.1:42852 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:51:06.952 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:54366 10 6452 1 2025-10-28 14:51:09.844 00:00:10.347 TCP 23.104.0.1:47918 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:52:10.229 00:00:10.368 TCP 23.104.0.1:40964 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:52:07.185 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:44434 10 6452 1 2025-10-28 14:53:10.636 00:00:10.371 TCP 23.104.0.1:42006 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:53:07.410 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55392 10 6452 1 2025-10-28 14:49:48.692 00:05:03.343 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 14:54:15.854 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:54:15.663 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 14:54:07.625 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:49860 10 6452 1 2025-10-28 14:54:11.053 00:00:10.323 TCP 23.104.0.1:44322 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:50:48.689 00:05:03.348 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 14:55:11.413 00:00:10.364 TCP 23.104.0.1:38932 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:55:07.849 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43146 10 6452 1 2025-10-28 14:56:08.078 00:00:10.849 TCP 1.101.0.1:3000 -> 22.102.0.1:42208 10 6452 1 2025-10-28 14:56:11.819 00:00:10.374 TCP 23.104.0.1:42312 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:57:08.966 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:57918 10 6452 1 2025-10-28 14:57:12.228 00:00:10.367 TCP 23.104.0.1:58880 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:58:09.191 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:44042 10 6452 1 2025-10-28 14:58:12.628 00:00:10.369 TCP 23.104.0.1:59480 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 503409, total packets: 1569, avg bps: 1072, avg pps: 0, avg bpp: 320 Time window: 2025-10-28 13:55:48 - 2025-10-28 14:58:22 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0049s User: 0.0016s Wall: 0.0024s flows/second: 66726.6 Runtime: 0.0024s