Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 06:59:12.221 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:48690 10 6452 1 2025-10-29 06:59:35.032 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 06:59:35.310 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 06:59:23.888 00:00:10.328 TCP 23.104.0.1:40002 -> 1.101.0.1:3000 11 1507 1 2025-10-29 06:55:48.988 00:05:03.372 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:00:12.441 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:32842 10 6452 1 2025-10-29 07:00:24.254 00:00:10.320 TCP 23.104.0.1:32782 -> 1.101.0.1:3000 11 1507 1 2025-10-29 06:56:48.986 00:05:03.377 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 07:01:12.666 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:43384 10 6452 1 2025-10-29 07:01:24.619 00:00:10.365 TCP 23.104.0.1:58862 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:02:12.899 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57798 10 6452 1 2025-10-29 07:02:25.025 00:00:10.370 TCP 23.104.0.1:35190 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:03:13.120 00:00:10.227 TCP 1.101.0.1:3000 -> 22.102.0.1:43658 10 6452 1 2025-10-29 07:03:25.438 00:00:10.364 TCP 23.104.0.1:48874 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:04:13.396 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54004 10 6452 1 2025-10-29 07:04:35.017 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:04:34.970 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:04:25.841 00:00:10.388 TCP 23.104.0.1:54912 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:05:13.612 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60168 10 6452 1 2025-10-29 07:05:26.267 00:00:10.322 TCP 23.104.0.1:40390 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:01:48.988 00:05:03.372 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:06:13.795 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48082 10 6452 1 2025-10-29 07:06:26.624 00:00:10.367 TCP 23.104.0.1:54850 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:02:48.987 00:05:03.377 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 07:07:14.009 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:36838 10 6452 1 2025-10-29 07:07:27.030 00:00:10.363 TCP 23.104.0.1:34378 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:08:14.203 00:00:10.611 TCP 1.101.0.1:3000 -> 22.102.0.1:60138 11 6504 1 2025-10-29 07:08:27.430 00:00:10.592 TCP 23.104.0.1:47360 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:09:14.850 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52922 10 6452 1 2025-10-29 07:09:35.006 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:09:35.049 00:00:00.043 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:09:28.062 00:00:10.325 TCP 23.104.0.1:46346 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:10:15.083 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35014 10 6452 1 2025-10-29 07:10:28.425 00:00:10.367 TCP 23.104.0.1:58776 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:11:15.302 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:46228 10 6452 1 2025-10-29 07:11:28.829 00:00:10.345 TCP 23.104.0.1:59830 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:07:48.990 00:05:03.375 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:12:15.530 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34962 10 6452 1 2025-10-29 07:12:29.213 00:00:10.361 TCP 23.104.0.1:58144 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:08:48.987 00:05:03.381 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 07:13:15.740 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57110 10 6452 1 2025-10-29 07:13:29.615 00:00:10.364 TCP 23.104.0.1:57288 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:14:15.960 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:54188 10 6452 1 2025-10-29 07:14:35.224 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:14:35.168 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:14:30.018 00:00:10.364 TCP 23.104.0.1:52868 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:15:16.195 00:00:10.864 TCP 1.101.0.1:3000 -> 22.102.0.1:38730 10 6452 1 2025-10-29 07:15:30.418 00:00:15.575 TCP 23.104.0.1:45212 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:16:17.101 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:39018 10 6452 1 2025-10-29 07:16:36.028 00:00:10.371 TCP 23.104.0.1:56462 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:17:17.281 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37270 10 6452 1 2025-10-29 07:17:36.434 00:00:10.375 TCP 23.104.0.1:51582 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:13:48.995 00:05:03.373 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:18:17.491 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41692 10 6452 1 2025-10-29 07:18:36.843 00:00:10.652 TCP 23.104.0.1:49054 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:14:48.992 00:05:03.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 07:19:17.700 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41298 10 6452 1 2025-10-29 07:19:35.248 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:19:35.306 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:19:37.535 00:00:10.372 TCP 23.104.0.1:48506 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:20:17.917 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56876 10 6452 1 2025-10-29 07:20:37.942 00:00:10.376 TCP 23.104.0.1:60334 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:21:18.125 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:57700 10 6452 1 2025-10-29 07:21:38.359 00:00:10.325 TCP 23.104.0.1:39722 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:22:18.296 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43296 10 6452 1 2025-10-29 07:22:38.721 00:00:10.369 TCP 23.104.0.1:46244 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:23:18.514 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:57428 10 6452 1 2025-10-29 07:23:39.131 00:00:10.367 TCP 23.104.0.1:53350 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:19:48.994 00:05:03.374 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:24:18.738 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45292 10 6452 1 2025-10-29 07:24:35.642 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:24:35.557 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:24:39.532 00:00:10.366 TCP 23.104.0.1:39388 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:20:48.992 00:05:03.379 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 07:25:18.959 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44270 10 6452 1 2025-10-29 07:25:39.936 00:00:10.377 TCP 23.104.0.1:42888 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:26:19.181 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47568 10 6452 1 2025-10-29 07:26:40.348 00:00:11.376 TCP 23.104.0.1:60930 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:27:19.402 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56908 10 6452 1 2025-10-29 07:27:41.776 00:00:10.327 TCP 23.104.0.1:48486 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:28:19.618 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55688 10 6452 1 2025-10-29 07:28:42.141 00:00:10.365 TCP 23.104.0.1:47594 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:29:19.840 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:33996 10 6452 1 2025-10-29 07:29:35.661 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:29:35.813 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:29:42.548 00:00:10.367 TCP 23.104.0.1:41468 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:25:48.995 00:05:03.374 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:30:20.020 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:49464 10 6452 1 2025-10-29 07:30:42.965 00:00:10.327 TCP 23.104.0.1:58422 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:26:48.991 00:05:03.380 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 07:31:20.191 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:46166 10 6452 1 2025-10-29 07:31:43.331 00:00:10.335 TCP 23.104.0.1:56778 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:32:20.401 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:55552 10 6452 1 2025-10-29 07:32:43.701 00:00:10.326 TCP 23.104.0.1:46672 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:33:20.608 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:38566 10 6452 1 2025-10-29 07:33:44.100 00:00:10.367 TCP 23.104.0.1:37790 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:34:20.781 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:60788 10 6452 1 2025-10-29 07:34:35.850 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:34:35.688 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:34:44.505 00:00:10.361 TCP 23.104.0.1:32878 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:35:20.957 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:48216 10 6452 1 2025-10-29 07:31:48.995 00:05:03.375 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:35:44.908 00:00:10.330 TCP 23.104.0.1:45798 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:36:21.141 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47064 10 6452 1 2025-10-29 07:32:48.994 00:05:03.379 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 07:36:45.276 00:00:10.365 TCP 23.104.0.1:49148 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:37:21.350 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:53728 10 6452 1 2025-10-29 07:37:45.680 00:00:10.324 TCP 23.104.0.1:32960 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:38:21.519 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:42292 10 6452 1 2025-10-29 07:38:46.051 00:00:10.326 TCP 23.104.0.1:52994 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:39:35.886 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:39:21.694 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:58474 10 6452 1 2025-10-29 07:39:35.827 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:39:46.417 00:00:10.366 TCP 23.104.0.1:48040 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:40:21.860 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:45408 11 6492 1 2025-10-29 07:40:46.819 00:00:10.362 TCP 23.104.0.1:51168 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:41:22.085 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33106 10 6452 1 2025-10-29 07:37:49.001 00:05:03.372 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:41:47.217 00:00:10.364 TCP 23.104.0.1:40916 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:42:22.297 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37642 10 6452 1 2025-10-29 07:38:48.997 00:05:03.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 07:42:47.618 00:00:10.375 TCP 23.104.0.1:39806 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:43:22.506 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60136 10 6452 1 2025-10-29 07:43:48.031 00:00:10.380 TCP 23.104.0.1:59398 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:44:22.723 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:34188 10 6452 1 2025-10-29 07:44:35.877 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:44:35.640 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:44:48.452 00:00:10.370 TCP 23.104.0.1:58446 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:45:22.892 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33114 10 6452 1 2025-10-29 07:45:48.857 00:00:10.379 TCP 23.104.0.1:43942 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:46:23.110 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:35330 10 6452 1 2025-10-29 07:46:49.266 00:00:10.363 TCP 23.104.0.1:58010 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:47:23.318 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:46244 10 6452 1 2025-10-29 07:43:49.000 00:05:03.373 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:47:49.671 00:00:10.381 TCP 23.104.0.1:36426 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:48:23.545 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48188 10 6452 1 2025-10-29 07:44:48.997 00:05:00.004 TCP 179.1.22.1:179 -> 179.1.22.22:39396 11 686 1 2025-10-29 07:48:50.103 00:00:10.363 TCP 23.104.0.1:51608 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:49:23.755 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56354 10 6452 1 2025-10-29 07:49:35.971 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:49:36.029 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:49:50.507 00:00:10.363 TCP 23.104.0.1:37126 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:50:23.968 00:00:11.288 TCP 1.101.0.1:3000 -> 22.102.0.1:56042 10 6452 1 2025-10-29 07:50:50.906 00:00:10.328 TCP 23.104.0.1:45262 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:51:25.290 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:42238 10 6452 1 2025-10-29 07:51:51.268 00:00:10.364 TCP 23.104.0.1:35212 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:52:25.468 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41572 10 6452 1 2025-10-29 07:52:51.674 00:00:10.380 TCP 23.104.0.1:55362 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:53:25.678 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40734 10 6452 1 2025-10-29 07:49:49.004 00:05:03.371 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 07:53:52.106 00:00:10.375 TCP 23.104.0.1:39358 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:54:36.196 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 07:54:36.321 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 07:54:25.887 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48984 10 6452 1 2025-10-29 07:49:52.375 00:05:56.627 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 07:54:52.522 00:00:10.548 TCP 23.104.0.1:47826 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:55:26.112 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58156 10 6452 1 2025-10-29 07:55:53.140 00:00:10.363 TCP 23.104.0.1:53312 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:56:26.329 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:53408 10 6452 1 2025-10-29 07:56:53.541 00:00:10.361 TCP 23.104.0.1:48882 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:57:26.527 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:59524 10 6452 1 2025-10-29 07:57:53.942 00:00:10.727 TCP 23.104.0.1:57632 -> 1.101.0.1:3000 11 1507 1 2025-10-29 07:58:26.705 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:51360 10 6452 1 Summary: total flows: 163, total bytes: 496881, total packets: 1562, avg bps: 1054, avg pps: 0, avg bpp: 318 Time window: 2025-10-29 06:55:48 - 2025-10-29 07:58:36 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0034s User: 0.0026s Wall: 0.0022s flows/second: 74062.6 Runtime: 0.0022s