Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 04:58:42.315 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47644 10 6452 1 2025-10-29 04:59:32.715 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 04:59:32.718 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 04:59:33.108 00:00:10.325 TCP 23.104.0.1:39508 -> 1.101.0.1:3000 11 1507 1 2025-10-29 04:59:42.538 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:38414 10 6452 1 2025-10-29 04:55:48.946 00:05:03.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:00:33.473 00:00:10.367 TCP 23.104.0.1:45176 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:00:42.714 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42178 10 6452 1 2025-10-29 04:56:48.944 00:05:03.372 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:01:33.881 00:00:10.376 TCP 23.104.0.1:51764 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:01:42.934 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:35146 10 6452 1 2025-10-29 05:02:34.297 00:00:10.360 TCP 23.104.0.1:36048 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:02:43.170 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:49690 10 6452 1 2025-10-29 05:03:34.696 00:00:10.326 TCP 23.104.0.1:58480 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:03:43.345 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38400 10 6452 1 2025-10-29 05:04:32.584 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:04:32.742 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:04:35.087 00:00:10.368 TCP 23.104.0.1:51460 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:04:43.555 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43042 10 6452 1 2025-10-29 05:05:35.491 00:00:10.942 TCP 23.104.0.1:46848 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:05:43.773 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:56086 10 6452 1 2025-10-29 05:01:48.948 00:05:03.370 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:06:36.467 00:00:10.363 TCP 23.104.0.1:45018 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:06:43.995 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:49142 10 6452 1 2025-10-29 05:02:48.947 00:05:03.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:07:36.869 00:00:10.366 TCP 23.104.0.1:49954 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:07:44.215 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52268 10 6452 1 2025-10-29 05:08:37.275 00:00:10.372 TCP 23.104.0.1:58074 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:08:44.426 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:40392 10 6452 1 2025-10-29 05:09:32.859 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:09:32.892 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:09:37.688 00:00:10.366 TCP 23.104.0.1:48272 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:09:44.603 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39254 10 6452 1 2025-10-29 05:10:38.103 00:00:10.326 TCP 23.104.0.1:47448 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:10:44.813 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41110 10 6452 1 2025-10-29 05:11:38.464 00:00:10.368 TCP 23.104.0.1:46046 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:07:48.951 00:05:03.370 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:11:45.032 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50082 10 6452 1 2025-10-29 05:12:38.874 00:00:10.372 TCP 23.104.0.1:32796 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:08:48.949 00:05:03.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:12:45.251 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60484 10 6452 1 2025-10-29 05:13:39.279 00:00:10.371 TCP 23.104.0.1:37900 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:13:45.426 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:46738 10 6452 1 2025-10-29 05:14:32.814 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:14:32.774 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:14:39.689 00:00:10.371 TCP 23.104.0.1:53840 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:14:45.651 00:00:10.512 TCP 1.101.0.1:3000 -> 22.102.0.1:59190 10 6452 1 2025-10-29 05:15:40.106 00:00:10.325 TCP 23.104.0.1:50890 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:15:46.198 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:42684 10 6452 1 2025-10-29 05:16:40.474 00:00:10.377 TCP 23.104.0.1:57886 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:16:46.372 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43342 10 6452 1 2025-10-29 05:17:40.896 00:00:10.371 TCP 23.104.0.1:60552 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:13:48.952 00:05:03.370 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:17:46.589 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46482 10 6452 1 2025-10-29 05:18:41.307 00:00:10.366 TCP 23.104.0.1:47484 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:18:46.809 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:48184 10 6452 1 2025-10-29 05:14:48.950 00:05:03.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:19:32.881 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:19:33.004 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:19:41.712 00:00:10.377 TCP 23.104.0.1:42212 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:19:47.040 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47218 10 6452 1 2025-10-29 05:20:42.126 00:00:10.948 TCP 23.104.0.1:48462 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:20:47.259 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56762 10 6452 1 2025-10-29 05:21:43.109 00:00:10.324 TCP 23.104.0.1:36588 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:21:47.469 00:00:10.125 TCP 1.101.0.1:3000 -> 22.102.0.1:50470 10 6452 1 2025-10-29 05:22:43.472 00:00:10.369 TCP 23.104.0.1:47004 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:22:47.635 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:59048 10 6452 1 2025-10-29 05:19:48.952 00:05:03.371 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:23:43.879 00:00:10.328 TCP 23.104.0.1:43266 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:23:47.814 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:45744 10 6452 1 2025-10-29 05:24:33.436 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:24:33.288 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:24:44.244 00:00:10.365 TCP 23.104.0.1:37220 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:20:48.951 00:05:03.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:24:48.041 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:52960 10 6452 1 2025-10-29 05:25:44.648 00:00:10.368 TCP 23.104.0.1:40210 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:25:48.248 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44350 10 6452 1 2025-10-29 05:26:45.061 00:00:10.362 TCP 23.104.0.1:60026 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:26:48.460 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:53312 10 6452 1 2025-10-29 05:27:45.463 00:00:10.365 TCP 23.104.0.1:45652 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:27:48.685 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35726 10 6452 1 2025-10-29 05:28:45.861 00:00:10.830 TCP 23.104.0.1:58852 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:28:48.894 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:49236 10 6452 1 2025-10-29 05:29:33.294 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:29:33.243 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:25:48.954 00:05:03.372 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:29:46.725 00:00:10.372 TCP 23.104.0.1:42818 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:29:49.087 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55548 10 6452 1 2025-10-29 05:26:48.951 00:05:03.377 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:30:49.301 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55870 10 6452 1 2025-10-29 05:30:47.134 00:00:10.366 TCP 23.104.0.1:55074 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:31:47.539 00:00:10.361 TCP 23.104.0.1:33400 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:31:49.526 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33712 10 6452 1 2025-10-29 05:32:47.946 00:00:10.368 TCP 23.104.0.1:54174 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:32:49.735 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32968 10 6452 1 2025-10-29 05:33:48.386 00:00:10.375 TCP 23.104.0.1:38826 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:33:49.946 00:00:10.222 TCP 1.101.0.1:3000 -> 22.102.0.1:40832 12 6556 1 2025-10-29 05:34:33.254 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:34:33.385 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:34:48.796 00:00:10.366 TCP 23.104.0.1:50474 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:34:50.209 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58954 10 6452 1 2025-10-29 05:31:48.954 00:05:03.374 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:35:49.202 00:00:10.371 TCP 23.104.0.1:37256 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:35:50.426 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33192 10 6452 1 2025-10-29 05:32:48.953 00:05:03.380 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:36:49.615 00:00:10.375 TCP 23.104.0.1:33472 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:36:50.650 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47670 10 6452 1 2025-10-29 05:37:50.028 00:00:10.365 TCP 23.104.0.1:37642 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:37:50.864 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:47070 10 6452 1 2025-10-29 05:38:51.098 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:59898 10 6452 1 2025-10-29 05:38:50.433 00:00:10.327 TCP 23.104.0.1:59252 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:39:33.340 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:39:33.251 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:39:51.271 00:00:10.400 TCP 1.101.0.1:3000 -> 22.102.0.1:57742 10 6452 1 2025-10-29 05:39:50.794 00:00:10.907 TCP 23.104.0.1:56000 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:40:51.707 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33504 10 6452 1 2025-10-29 05:40:51.737 00:00:10.365 TCP 23.104.0.1:55384 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:37:48.958 00:05:03.374 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:41:51.925 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:58304 10 6452 1 2025-10-29 05:41:52.149 00:00:10.366 TCP 23.104.0.1:39280 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:38:48.957 00:05:03.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:42:52.172 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52336 10 6452 1 2025-10-29 05:42:52.549 00:00:10.365 TCP 23.104.0.1:40130 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:43:52.950 00:00:10.371 TCP 23.104.0.1:52026 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:43:52.388 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:43036 10 6452 1 2025-10-29 05:44:33.491 00:00:00.039 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:44:33.419 00:00:00.030 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:44:52.613 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47268 10 6452 1 2025-10-29 05:44:53.359 00:00:10.328 TCP 23.104.0.1:51492 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:45:52.827 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43046 10 6452 1 2025-10-29 05:45:53.725 00:00:10.339 TCP 23.104.0.1:36494 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:46:54.107 00:00:10.366 TCP 23.104.0.1:37354 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:46:53.057 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54258 10 6452 1 2025-10-29 05:43:48.960 00:05:03.372 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:47:54.515 00:00:10.362 TCP 23.104.0.1:55938 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:47:53.270 00:00:11.296 TCP 1.101.0.1:3000 -> 22.102.0.1:49046 10 6452 1 2025-10-29 05:44:48.956 00:05:03.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:48:54.605 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:52734 10 6452 1 2025-10-29 05:48:54.915 00:00:10.369 TCP 23.104.0.1:53474 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:49:33.675 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:49:33.633 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:49:55.318 00:00:10.366 TCP 23.104.0.1:49194 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:49:54.787 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36520 10 6452 1 2025-10-29 05:50:55.722 00:00:10.373 TCP 23.104.0.1:40908 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:50:54.999 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39654 10 6452 1 2025-10-29 05:51:55.212 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44098 10 6452 1 2025-10-29 05:51:56.133 00:00:10.329 TCP 23.104.0.1:33372 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:52:55.425 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36932 10 6452 1 2025-10-29 05:52:56.502 00:00:10.320 TCP 23.104.0.1:51650 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:49:48.962 00:05:03.371 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 05:53:55.638 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:36856 10 6452 1 2025-10-29 05:53:56.863 00:00:10.371 TCP 23.104.0.1:47604 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:54:33.498 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 05:54:33.572 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 05:50:48.959 00:05:03.377 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 05:54:55.846 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:58328 10 6452 1 2025-10-29 05:54:57.274 00:00:10.325 TCP 23.104.0.1:50204 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:55:56.095 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52432 10 6452 1 2025-10-29 05:55:57.641 00:00:10.377 TCP 23.104.0.1:45026 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:56:56.304 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58456 10 6452 1 2025-10-29 05:56:58.096 00:00:10.367 TCP 23.104.0.1:57464 -> 1.101.0.1:3000 11 1507 1 2025-10-29 05:57:56.516 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50232 10 6452 1 2025-10-29 05:57:58.501 00:00:10.364 TCP 23.104.0.1:49350 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496945, total packets: 1563, avg bps: 1063, avg pps: 0, avg bpp: 317 Time window: 2025-10-29 04:55:48 - 2025-10-29 05:58:08 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0022s User: 0.0044s Wall: 0.0030s flows/second: 53478.7 Runtime: 0.0031s