Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 15:54:52.529 00:05:03.100 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 15:58:45.708 00:00:10.367 TCP 23.104.0.1:44468 -> 1.101.0.1:3000 11 1507 1 2025-11-04 15:59:28.435 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50286 10 6452 1 2025-11-04 15:59:46.117 00:00:10.328 TCP 23.104.0.1:50340 -> 1.101.0.1:3000 11 1507 1 2025-11-04 15:55:52.531 00:05:03.096 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:00:28.648 00:00:10.709 TCP 1.101.0.1:3000 -> 22.102.0.1:53998 10 6452 1 2025-11-04 16:00:46.481 00:00:10.365 TCP 23.104.0.1:38198 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:01:29.435 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:45714 10 6452 1 2025-11-04 16:01:46.885 00:00:10.334 TCP 23.104.0.1:50968 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:02:39.057 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:02:29.605 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53136 10 6452 1 2025-11-04 16:02:39.051 00:00:00.038 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:02:47.265 00:00:10.405 TCP 23.104.0.1:58372 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:03:29.833 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34718 10 6452 1 2025-11-04 16:03:47.794 00:00:10.363 TCP 23.104.0.1:49356 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:04:30.065 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42696 10 6452 1 2025-11-04 16:00:52.529 00:05:03.103 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 16:04:48.194 00:00:10.364 TCP 23.104.0.1:53294 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:05:30.288 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43568 10 6452 1 2025-11-04 16:01:52.533 00:05:03.096 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:05:48.595 00:00:10.367 TCP 23.104.0.1:41228 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:06:30.500 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:60390 14 14286 1 2025-11-04 16:06:49.006 00:00:10.479 TCP 23.104.0.1:34668 -> 1.101.0.1:3000 17 2241 1 2025-11-04 16:07:39.199 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:07:30.766 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37986 10 6452 1 2025-11-04 16:07:39.308 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:07:49.524 00:00:10.373 TCP 23.104.0.1:38174 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:08:30.972 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:45158 10 6452 1 2025-11-04 16:08:49.936 00:00:10.378 TCP 23.104.0.1:47076 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:09:31.216 00:00:10.266 TCP 1.101.0.1:3000 -> 22.102.0.1:53472 10 6452 1 2025-11-04 16:09:50.355 00:00:10.714 TCP 23.104.0.1:43648 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:10:31.530 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58368 10 6452 1 2025-11-04 16:06:52.534 00:05:03.099 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 16:10:51.109 00:00:10.362 TCP 23.104.0.1:40998 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:11:31.755 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:46644 10 6452 1 2025-11-04 16:07:52.537 00:05:03.093 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:11:51.510 00:00:10.375 TCP 23.104.0.1:59344 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:12:39.252 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:12:39.469 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:12:31.981 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:32852 10 6452 1 2025-11-04 16:12:51.914 00:00:10.389 TCP 23.104.0.1:49336 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:13:32.219 00:00:10.494 TCP 1.101.0.1:3000 -> 22.102.0.1:60996 10 6452 1 2025-11-04 16:13:52.338 00:00:10.332 TCP 23.104.0.1:55328 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:14:32.753 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:42508 10 6452 1 2025-11-04 16:14:52.698 00:00:10.367 TCP 23.104.0.1:60464 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:15:32.979 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:39196 10 6452 1 2025-11-04 16:15:53.104 00:00:10.373 TCP 23.104.0.1:40150 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:16:33.217 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:39692 10 6452 1 2025-11-04 16:12:52.536 00:05:03.099 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 16:16:53.509 00:00:10.361 TCP 23.104.0.1:56492 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:17:39.731 00:00:00.013 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:17:39.725 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:17:33.436 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50920 10 6452 1 2025-11-04 16:13:52.537 00:05:03.093 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:17:53.913 00:00:10.364 TCP 23.104.0.1:38768 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:18:33.648 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50790 10 6452 1 2025-11-04 16:18:54.319 00:00:10.365 TCP 23.104.0.1:53640 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:19:33.865 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:34614 10 6452 1 2025-11-04 16:19:54.722 00:00:10.374 TCP 23.104.0.1:49912 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:20:34.100 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47408 10 6452 1 2025-11-04 16:20:55.137 00:00:10.329 TCP 23.104.0.1:52084 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:21:34.315 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53242 10 6452 1 2025-11-04 16:21:55.504 00:00:10.364 TCP 23.104.0.1:42908 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:22:39.602 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:22:39.524 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:22:34.540 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35576 10 6452 1 2025-11-04 16:18:52.539 00:05:03.096 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 16:22:55.908 00:00:10.367 TCP 23.104.0.1:51344 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:23:34.750 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:51870 10 6452 1 2025-11-04 16:19:52.542 00:05:03.091 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:23:56.311 00:00:10.371 TCP 23.104.0.1:49994 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:24:34.934 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:39560 10 6452 1 2025-11-04 16:24:56.723 00:00:13.865 TCP 23.104.0.1:44554 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:25:35.201 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56784 10 6452 1 2025-11-04 16:26:00.654 00:00:10.362 TCP 23.104.0.1:47376 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:26:35.412 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:34024 10 6452 1 2025-11-04 16:27:01.058 00:00:10.366 TCP 23.104.0.1:46526 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:27:39.718 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:27:39.818 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:27:35.642 00:00:10.234 TCP 1.101.0.1:3000 -> 22.102.0.1:57986 10 6452 1 2025-11-04 16:28:01.463 00:00:10.360 TCP 23.104.0.1:41946 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:28:35.924 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:59398 10 6452 1 2025-11-04 16:24:52.539 00:05:03.097 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 16:29:01.866 00:00:10.364 TCP 23.104.0.1:48970 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:29:36.173 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40786 10 6452 1 2025-11-04 16:25:52.542 00:05:03.092 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:30:02.273 00:00:10.360 TCP 23.104.0.1:59152 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:30:36.385 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:59284 10 6452 1 2025-11-04 16:31:02.671 00:00:10.322 TCP 23.104.0.1:45510 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:31:36.603 00:00:11.823 TCP 1.101.0.1:3000 -> 22.102.0.1:39012 10 6452 1 2025-11-04 16:32:03.033 00:00:10.323 TCP 23.104.0.1:45554 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:32:39.921 00:00:00.019 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:32:39.896 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:32:38.470 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55712 10 6452 1 2025-11-04 16:33:03.386 00:00:10.365 TCP 23.104.0.1:37804 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:33:38.684 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54864 10 6452 1 2025-11-04 16:34:03.792 00:00:10.368 TCP 23.104.0.1:37540 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:34:38.895 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43608 10 6452 1 2025-11-04 16:30:52.539 00:05:03.097 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 16:35:04.209 00:00:10.322 TCP 23.104.0.1:34942 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:35:39.109 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38832 10 6452 1 2025-11-04 16:31:52.541 00:05:03.092 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:36:04.569 00:00:10.416 TCP 23.104.0.1:56308 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:36:39.330 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:40768 12 10375 1 2025-11-04 16:37:05.022 00:00:10.441 TCP 23.104.0.1:56066 -> 1.101.0.1:3000 15 1926 1 2025-11-04 16:37:39.722 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:37:39.896 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:37:39.580 00:00:11.032 TCP 1.101.0.1:3000 -> 22.102.0.1:46576 10 6452 1 2025-11-04 16:38:05.499 00:00:10.371 TCP 23.104.0.1:45856 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:38:40.651 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47912 10 6452 1 2025-11-04 16:39:05.904 00:00:10.371 TCP 23.104.0.1:49322 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:39:40.859 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:45112 10 6452 1 2025-11-04 16:40:06.312 00:00:10.338 TCP 23.104.0.1:57776 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:40:41.104 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36224 10 6452 1 2025-11-04 16:36:52.543 00:05:03.094 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 16:41:06.706 00:00:10.396 TCP 23.104.0.1:41070 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:41:41.315 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:57692 10 6452 1 2025-11-04 16:37:52.547 00:05:03.089 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:42:07.161 00:00:10.372 TCP 23.104.0.1:34738 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:42:40.518 00:00:00.044 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:42:40.370 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:42:41.539 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53068 10 6452 1 2025-11-04 16:43:07.575 00:00:10.379 TCP 23.104.0.1:39936 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:43:41.753 00:00:10.220 TCP 1.101.0.1:3000 -> 22.102.0.1:47762 10 6452 1 2025-11-04 16:44:07.992 00:00:10.366 TCP 23.104.0.1:36316 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:44:42.023 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:35064 10 6452 1 2025-11-04 16:45:08.400 00:00:10.369 TCP 23.104.0.1:46320 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:45:42.204 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41756 10 6452 1 2025-11-04 16:46:08.810 00:00:10.364 TCP 23.104.0.1:56882 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:46:42.418 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48028 10 6452 1 2025-11-04 16:42:52.544 00:05:03.095 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 16:47:09.217 00:00:10.363 TCP 23.104.0.1:34764 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:47:40.219 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:47:39.944 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:47:42.641 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49042 10 6452 1 2025-11-04 16:43:52.547 00:05:03.090 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:48:09.618 00:00:10.324 TCP 23.104.0.1:44504 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:48:42.857 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:47246 10 6452 1 2025-11-04 16:49:09.975 00:00:10.374 TCP 23.104.0.1:33550 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:49:43.086 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35192 10 6452 1 2025-11-04 16:50:10.385 00:00:10.360 TCP 23.104.0.1:48154 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:50:43.299 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:39994 10 6452 1 2025-11-04 16:51:10.785 00:00:10.328 TCP 23.104.0.1:35216 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:51:43.467 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55280 10 6452 1 2025-11-04 16:52:11.154 00:00:10.321 TCP 23.104.0.1:48492 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:52:40.258 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:52:40.293 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:52:43.688 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42462 10 6452 1 2025-11-04 16:48:52.548 00:05:03.094 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 16:53:11.517 00:00:10.363 TCP 23.104.0.1:47038 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:49:52.549 00:05:03.090 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 16:53:43.906 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:51388 10 6452 1 2025-11-04 16:54:11.914 00:00:10.369 TCP 23.104.0.1:54890 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:54:44.106 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50160 10 6452 1 2025-11-04 16:55:12.324 00:00:10.365 TCP 23.104.0.1:48434 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:55:44.326 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:51356 10 6452 1 2025-11-04 16:56:12.732 00:00:10.369 TCP 23.104.0.1:47710 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:56:44.494 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41818 10 6452 1 2025-11-04 16:57:13.139 00:00:10.361 TCP 23.104.0.1:39766 -> 1.101.0.1:3000 11 1507 1 2025-11-04 16:57:40.373 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 16:57:40.436 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 16:57:44.717 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:33038 10 6452 1 2025-11-04 16:58:13.541 00:00:10.487 TCP 23.104.0.1:35984 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 504806, total packets: 1578, avg bps: 1059, avg pps: 0, avg bpp: 319 Time window: 2025-11-04 15:54:52 - 2025-11-04 16:58:24 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0035s User: 0.0026s Wall: 0.0022s flows/second: 74159.0 Runtime: 0.0022s