Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 07:59:13.761 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 07:59:13.685 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 07:59:19.762 00:00:10.224 TCP 1.101.0.1:3000 -> 22.102.0.1:60720 10 6452 1 2025-11-18 07:59:34.541 00:00:10.375 TCP 23.104.0.1:37672 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:00:20.035 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:35584 10 6452 1 2025-11-18 08:00:34.945 00:00:10.338 TCP 23.104.0.1:36474 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:01:20.242 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46854 10 6452 1 2025-11-18 08:01:35.319 00:00:10.368 TCP 23.104.0.1:42622 -> 1.101.0.1:3000 11 1507 1 2025-11-18 07:57:59.234 00:05:04.870 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:02:20.465 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37374 10 6452 1 2025-11-18 08:02:35.725 00:00:10.324 TCP 23.104.0.1:38920 -> 1.101.0.1:3000 11 1507 1 2025-11-18 07:58:59.236 00:05:04.865 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:03:20.682 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:42676 10 6452 1 2025-11-18 08:03:36.106 00:00:10.362 TCP 23.104.0.1:50670 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:04:13.737 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:04:13.850 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:04:20.909 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44180 10 6452 1 2025-11-18 08:04:36.509 00:00:10.362 TCP 23.104.0.1:56338 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:05:21.132 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:39004 10 6452 1 2025-11-18 08:05:36.913 00:00:10.365 TCP 23.104.0.1:56348 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:06:21.361 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36316 10 6452 1 2025-11-18 08:06:37.320 00:00:10.364 TCP 23.104.0.1:40054 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:07:21.584 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44866 10 6452 1 2025-11-18 08:07:37.726 00:00:11.158 TCP 23.104.0.1:43018 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:03:59.234 00:05:04.870 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:08:21.805 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:47086 10 6452 1 2025-11-18 08:08:38.925 00:00:10.385 TCP 23.104.0.1:41854 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:04:59.237 00:05:04.864 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:09:13.833 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:09:13.824 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:09:22.038 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:44142 10 6452 1 2025-11-18 08:09:39.348 00:00:10.368 TCP 23.104.0.1:32860 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:10:22.210 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58094 10 6452 1 2025-11-18 08:10:39.756 00:00:10.377 TCP 23.104.0.1:32824 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:11:22.431 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46314 10 6452 1 2025-11-18 08:11:40.167 00:00:10.367 TCP 23.104.0.1:48468 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:12:22.647 00:00:10.720 TCP 1.101.0.1:3000 -> 22.102.0.1:39900 10 6452 1 2025-11-18 08:12:40.574 00:00:10.326 TCP 23.104.0.1:51900 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:13:23.407 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51262 10 6452 1 2025-11-18 08:13:40.938 00:00:10.375 TCP 23.104.0.1:60622 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:09:59.237 00:05:04.870 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:14:13.934 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:14:14.037 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:14:23.620 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49778 10 6452 1 2025-11-18 08:14:41.353 00:00:10.365 TCP 23.104.0.1:37534 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:10:59.240 00:05:04.864 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:15:23.832 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50934 10 6452 1 2025-11-18 08:15:41.756 00:00:10.390 TCP 23.104.0.1:33620 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:16:24.070 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:50968 10 6452 1 2025-11-18 08:16:42.184 00:00:10.330 TCP 23.104.0.1:44790 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:17:24.241 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57730 10 6452 1 2025-11-18 08:17:42.554 00:00:10.363 TCP 23.104.0.1:42998 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:18:24.456 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34922 10 6452 1 2025-11-18 08:18:42.963 00:00:10.369 TCP 23.104.0.1:41170 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:19:14.056 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:19:14.140 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:19:24.669 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34826 10 6452 1 2025-11-18 08:19:43.372 00:00:10.363 TCP 23.104.0.1:43006 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:15:59.238 00:05:04.869 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:20:24.882 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59004 10 6452 1 2025-11-18 08:20:43.770 00:00:10.369 TCP 23.104.0.1:38150 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:16:59.241 00:05:04.864 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:21:25.099 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:57898 10 6452 1 2025-11-18 08:21:44.176 00:00:10.365 TCP 23.104.0.1:52376 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:22:25.270 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42750 10 6452 1 2025-11-18 08:22:44.578 00:00:10.362 TCP 23.104.0.1:40848 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:23:25.486 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:41854 10 6452 1 2025-11-18 08:23:44.979 00:00:10.371 TCP 23.104.0.1:43270 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:24:13.937 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:24:14.197 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:24:25.658 00:00:10.675 TCP 1.101.0.1:3000 -> 22.102.0.1:37728 10 6452 1 2025-11-18 08:24:45.388 00:00:10.364 TCP 23.104.0.1:53608 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:25:26.374 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42506 10 6452 1 2025-11-18 08:25:45.790 00:00:10.341 TCP 23.104.0.1:42918 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:21:59.239 00:05:04.869 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:26:26.601 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:54444 10 6452 1 2025-11-18 08:26:46.172 00:00:10.325 TCP 23.104.0.1:52576 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:22:59.243 00:05:04.863 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:27:26.771 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60628 10 6452 1 2025-11-18 08:27:46.536 00:00:10.362 TCP 23.104.0.1:34572 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:28:26.993 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:35186 10 6452 1 2025-11-18 08:28:46.942 00:00:10.370 TCP 23.104.0.1:34036 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:29:14.252 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:29:14.229 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:29:27.229 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45250 10 6452 1 2025-11-18 08:29:47.362 00:00:10.317 TCP 23.104.0.1:40564 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:30:27.449 00:00:10.126 TCP 1.101.0.1:3000 -> 22.102.0.1:37606 10 6452 1 2025-11-18 08:30:47.718 00:00:10.363 TCP 23.104.0.1:33314 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:31:27.619 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36396 10 6452 1 2025-11-18 08:31:48.124 00:00:10.365 TCP 23.104.0.1:40446 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:27:59.240 00:05:04.873 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:32:27.831 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43790 10 6452 1 2025-11-18 08:32:48.528 00:00:10.361 TCP 23.104.0.1:42626 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:28:59.243 00:05:04.866 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:33:28.068 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60112 10 6452 1 2025-11-18 08:33:48.928 00:00:10.390 TCP 23.104.0.1:48036 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:34:14.211 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:34:14.631 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:34:28.279 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52756 10 6452 1 2025-11-18 08:34:49.355 00:00:10.363 TCP 23.104.0.1:39228 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:35:28.448 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50370 10 6452 1 2025-11-18 08:35:49.756 00:00:10.387 TCP 23.104.0.1:36114 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:36:28.660 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56178 10 6452 1 2025-11-18 08:36:50.182 00:00:10.360 TCP 23.104.0.1:43286 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:37:28.876 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:41102 10 6452 1 2025-11-18 08:37:50.581 00:00:10.371 TCP 23.104.0.1:34046 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:33:59.243 00:05:04.887 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:38:29.102 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55214 10 6452 1 2025-11-18 08:38:50.995 00:00:10.325 TCP 23.104.0.1:56312 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:34:59.244 00:05:04.882 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:39:14.381 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:39:14.525 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:39:29.320 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34820 10 6452 1 2025-11-18 08:39:51.356 00:00:10.370 TCP 23.104.0.1:40044 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:40:29.537 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39820 10 6452 1 2025-11-18 08:40:51.767 00:00:10.376 TCP 23.104.0.1:40234 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:41:29.706 00:00:10.584 TCP 1.101.0.1:3000 -> 22.102.0.1:33514 10 6452 1 2025-11-18 08:41:52.181 00:00:10.366 TCP 23.104.0.1:57032 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:42:30.333 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33434 10 6452 1 2025-11-18 08:42:52.587 00:00:10.323 TCP 23.104.0.1:50306 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:43:30.546 00:00:10.865 TCP 1.101.0.1:3000 -> 22.102.0.1:36994 10 6452 1 2025-11-18 08:39:59.242 00:05:04.891 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:43:52.943 00:00:10.370 TCP 23.104.0.1:48544 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:44:14.528 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:44:14.598 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:44:31.447 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52324 10 6452 1 2025-11-18 08:40:59.246 00:05:04.885 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:44:53.354 00:00:10.361 TCP 23.104.0.1:47442 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:45:31.666 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60568 10 6452 1 2025-11-18 08:45:53.758 00:00:10.381 TCP 23.104.0.1:44992 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:46:31.877 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:54094 10 6452 1 2025-11-18 08:46:54.222 00:00:10.435 TCP 23.104.0.1:42416 -> 1.101.0.1:3000 15 1926 1 2025-11-18 08:47:32.110 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:33268 12 10375 1 2025-11-18 08:47:54.697 00:00:10.366 TCP 23.104.0.1:39658 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:48:32.350 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54228 10 6452 1 2025-11-18 08:48:55.107 00:00:10.368 TCP 23.104.0.1:52570 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:49:14.738 00:00:00.019 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:49:14.463 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:49:32.561 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46856 10 6452 1 2025-11-18 08:49:55.516 00:00:10.322 TCP 23.104.0.1:46668 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:45:59.244 00:05:04.891 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:50:32.783 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:55998 10 6452 1 2025-11-18 08:50:55.873 00:00:10.414 TCP 23.104.0.1:35226 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:46:59.246 00:05:04.887 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:51:33.044 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:48934 10 6452 1 2025-11-18 08:51:56.329 00:00:10.320 TCP 23.104.0.1:34878 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:52:33.272 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35668 10 6452 1 2025-11-18 08:52:56.691 00:00:10.375 TCP 23.104.0.1:42920 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:53:33.490 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48736 10 6452 1 2025-11-18 08:53:57.107 00:00:10.368 TCP 23.104.0.1:38658 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:54:14.831 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:54:14.582 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:54:33.709 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34996 10 6452 1 2025-11-18 08:54:57.510 00:00:10.332 TCP 23.104.0.1:40346 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:55:33.928 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:45214 11 6504 1 2025-11-18 08:51:59.245 00:05:04.898 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 08:55:57.878 00:00:10.371 TCP 23.104.0.1:43002 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:56:34.181 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:46886 10 6452 1 2025-11-18 08:52:59.247 00:05:04.888 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 08:56:58.283 00:00:10.387 TCP 23.104.0.1:36122 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:57:34.415 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:33860 10 6452 1 2025-11-18 08:57:58.708 00:00:10.385 TCP 23.104.0.1:53382 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:58:34.665 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39420 10 6452 1 Summary: total flows: 163, total bytes: 501235, total packets: 1568, avg bps: 1099, avg pps: 0, avg bpp: 319 Time window: 2025-11-18 07:57:59 - 2025-11-18 08:58:44 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0052s User: 0.0010s Wall: 0.0021s flows/second: 78709.6 Runtime: 0.0021s