Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 15:59:11.938 00:00:11.005 TCP 23.104.0.1:41496 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:59:26.670 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:35026 10 6452 1 2025-10-30 15:55:49.617 00:05:03.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:55:49.616 00:05:03.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:00:14.487 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:00:14.664 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:00:12.980 00:00:10.325 TCP 23.104.0.1:36726 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:00:26.906 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:54318 10 6452 1 2025-10-30 16:01:13.346 00:00:10.365 TCP 23.104.0.1:39428 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:01:27.146 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60050 10 6452 1 2025-10-30 16:02:13.750 00:00:10.378 TCP 23.104.0.1:51426 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:02:27.360 00:00:10.252 TCP 1.101.0.1:3000 -> 22.102.0.1:40760 10 6452 1 2025-10-30 16:03:14.170 00:00:10.366 TCP 23.104.0.1:55216 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:03:27.654 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57284 10 6452 1 2025-10-30 16:04:14.578 00:00:10.363 TCP 23.104.0.1:49398 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:04:27.867 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60864 10 6452 1 2025-10-30 16:05:14.786 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:05:14.967 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:05:14.974 00:00:10.373 TCP 23.104.0.1:51638 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:05:28.091 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54090 10 6452 1 2025-10-30 16:01:49.621 00:05:03.445 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:01:49.619 00:05:03.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:06:15.387 00:00:10.410 TCP 23.104.0.1:44522 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:06:28.299 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:48196 10 6452 1 2025-10-30 16:07:15.855 00:00:10.344 TCP 23.104.0.1:41640 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:07:28.476 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58262 10 6452 1 2025-10-30 16:08:16.308 00:00:10.371 TCP 23.104.0.1:43026 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:08:28.686 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60872 10 6452 1 2025-10-30 16:09:16.722 00:00:10.376 TCP 23.104.0.1:46048 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:09:28.906 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:34182 10 6452 1 2025-10-30 16:10:14.720 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:10:14.739 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:10:17.137 00:00:10.368 TCP 23.104.0.1:40808 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:10:29.080 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34564 10 6452 1 2025-10-30 16:11:17.544 00:00:10.363 TCP 23.104.0.1:45094 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:11:29.297 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54560 10 6452 1 2025-10-30 16:07:49.621 00:05:03.449 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:07:49.622 00:05:03.444 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:12:17.947 00:00:10.617 TCP 23.104.0.1:36306 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:12:29.511 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:53010 10 6452 1 2025-10-30 16:13:18.609 00:00:10.324 TCP 23.104.0.1:48258 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:13:29.681 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55666 10 6452 1 2025-10-30 16:14:18.974 00:00:10.375 TCP 23.104.0.1:33730 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:14:29.899 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55134 10 6452 1 2025-10-30 16:15:14.932 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:15:14.864 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:15:19.393 00:00:10.362 TCP 23.104.0.1:57398 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:15:30.114 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:53910 10 6452 1 2025-10-30 16:16:19.791 00:00:10.365 TCP 23.104.0.1:54246 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:16:30.294 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39826 10 6452 1 2025-10-30 16:17:20.201 00:00:10.370 TCP 23.104.0.1:43562 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:17:30.527 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:41502 10 6452 1 2025-10-30 16:13:49.626 00:05:03.443 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:13:49.623 00:05:03.448 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:18:20.611 00:00:10.367 TCP 23.104.0.1:52924 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:18:30.778 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57110 10 6452 1 2025-10-30 16:19:21.015 00:00:10.362 TCP 23.104.0.1:39446 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:19:30.996 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:41570 10 6452 1 2025-10-30 16:20:14.903 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:20:14.961 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:20:21.415 00:00:10.367 TCP 23.104.0.1:55546 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:20:31.180 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47104 10 6452 1 2025-10-30 16:21:21.818 00:00:10.365 TCP 23.104.0.1:38840 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:21:31.405 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50424 10 6452 1 2025-10-30 16:22:22.218 00:00:10.366 TCP 23.104.0.1:53396 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:22:31.616 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:44044 10 6452 1 2025-10-30 16:23:22.624 00:00:10.366 TCP 23.104.0.1:39576 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:23:31.840 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:35324 10 6452 1 2025-10-30 16:19:49.626 00:05:03.447 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:19:49.623 00:05:03.452 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:24:23.027 00:00:10.326 TCP 23.104.0.1:37968 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:24:32.017 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59556 10 6452 1 2025-10-30 16:25:15.877 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:25:15.801 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:25:23.389 00:00:10.365 TCP 23.104.0.1:50602 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:25:32.231 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:56710 10 6452 1 2025-10-30 16:26:23.795 00:00:10.593 TCP 23.104.0.1:60976 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:26:32.456 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:34434 10 6452 1 2025-10-30 16:27:24.436 00:00:10.323 TCP 23.104.0.1:42654 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:27:32.623 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:39312 10 6452 1 2025-10-30 16:28:24.798 00:00:10.371 TCP 23.104.0.1:34238 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:28:32.849 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:50086 10 6452 1 2025-10-30 16:29:25.209 00:00:10.364 TCP 23.104.0.1:51674 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:29:33.085 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41856 10 6452 1 2025-10-30 16:25:49.625 00:05:03.455 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:25:49.627 00:05:03.449 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:30:15.257 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:30:15.210 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:30:25.615 00:00:10.366 TCP 23.104.0.1:60024 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:30:33.297 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51226 10 6452 1 2025-10-30 16:31:26.022 00:00:10.365 TCP 23.104.0.1:55258 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:31:33.510 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45572 10 6452 1 2025-10-30 16:32:26.428 00:00:10.376 TCP 23.104.0.1:37218 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:32:33.726 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:45110 10 6452 1 2025-10-30 16:33:26.835 00:00:10.388 TCP 23.104.0.1:43182 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:33:33.899 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35332 10 6452 1 2025-10-30 16:34:27.264 00:00:10.368 TCP 23.104.0.1:43138 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:34:34.113 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:38022 10 6452 1 2025-10-30 16:35:15.095 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:35:15.381 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:35:34.292 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:50434 10 6452 1 2025-10-30 16:35:27.673 00:00:15.921 TCP 23.104.0.1:59338 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:31:49.628 00:05:03.450 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:31:49.626 00:05:03.455 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:36:33.640 00:00:10.367 TCP 23.104.0.1:60364 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:36:34.557 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34188 10 6452 1 2025-10-30 16:37:34.055 00:00:10.373 TCP 23.104.0.1:54644 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:37:34.769 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:43908 10 6452 1 2025-10-30 16:38:34.944 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:37800 10 6452 1 2025-10-30 16:38:34.459 00:00:10.370 TCP 23.104.0.1:50360 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:39:35.180 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35618 10 6452 1 2025-10-30 16:39:34.867 00:00:10.367 TCP 23.104.0.1:42676 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:40:15.978 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:40:15.709 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:40:35.399 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44206 10 6452 1 2025-10-30 16:40:35.274 00:00:10.328 TCP 23.104.0.1:42506 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:41:35.621 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:42826 10 6452 1 2025-10-30 16:41:35.641 00:00:10.364 TCP 23.104.0.1:40886 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:37:49.629 00:05:03.454 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:37:49.626 00:05:03.459 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:42:35.844 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:51888 10 6452 1 2025-10-30 16:42:36.047 00:00:10.368 TCP 23.104.0.1:51506 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:43:36.076 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35698 10 6452 1 2025-10-30 16:43:36.460 00:00:10.749 TCP 23.104.0.1:35426 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:44:36.297 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:37492 10 6452 1 2025-10-30 16:44:37.252 00:00:10.366 TCP 23.104.0.1:55238 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:45:15.565 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:45:15.632 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:45:36.476 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47222 10 6452 1 2025-10-30 16:45:37.652 00:00:10.365 TCP 23.104.0.1:49030 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:46:36.686 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55480 10 6452 1 2025-10-30 16:46:38.062 00:00:10.363 TCP 23.104.0.1:53650 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:47:38.463 00:00:10.367 TCP 23.104.0.1:45010 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:47:36.898 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35338 10 6452 1 2025-10-30 16:43:49.635 00:05:03.452 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:43:49.639 00:05:03.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:48:37.109 00:00:10.937 TCP 1.101.0.1:3000 -> 22.102.0.1:53468 10 6452 1 2025-10-30 16:48:38.865 00:00:10.366 TCP 23.104.0.1:56726 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:49:39.269 00:00:10.323 TCP 23.104.0.1:56790 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:49:38.084 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32880 10 6452 1 2025-10-30 16:50:15.630 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:50:15.753 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:50:39.630 00:00:10.363 TCP 23.104.0.1:50676 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:50:38.296 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:42270 10 6452 1 2025-10-30 16:51:40.032 00:00:10.359 TCP 23.104.0.1:40786 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:51:38.519 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52920 10 6452 1 2025-10-30 16:52:38.738 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35846 10 6452 1 2025-10-30 16:52:40.425 00:00:10.363 TCP 23.104.0.1:50166 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:53:39.010 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58472 10 6452 1 2025-10-30 16:53:40.827 00:00:10.362 TCP 23.104.0.1:50916 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:49:49.640 00:05:03.445 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:49:49.639 00:05:03.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 16:54:41.229 00:00:10.365 TCP 23.104.0.1:49958 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:54:39.224 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:46402 10 6452 1 2025-10-30 16:55:15.740 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 16:55:15.675 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 16:55:39.456 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43800 10 6452 1 2025-10-30 16:55:41.632 00:00:10.372 TCP 23.104.0.1:41904 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:56:39.676 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:42774 10 6452 1 2025-10-30 16:56:42.037 00:00:10.370 TCP 23.104.0.1:53516 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:57:39.853 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:36658 10 6452 1 2025-10-30 16:57:42.446 00:00:10.363 TCP 23.104.0.1:57594 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:58:40.100 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34340 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1051, avg pps: 0, avg bpp: 318 Time window: 2025-10-30 15:55:49 - 2025-10-30 16:58:50 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0051s User: 0.0017s Wall: 0.0025s flows/second: 65674.5 Runtime: 0.0025s