Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 13:59:10.886 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:50776 10 6452 1 2025-11-20 13:59:27.395 00:00:13.199 TCP 23.104.0.1:55984 -> 1.101.0.1:3000 13 1611 1 2025-11-20 14:00:20.406 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:00:11.079 00:00:10.470 TCP 1.101.0.1:3000 -> 22.102.0.1:43728 10 6452 1 2025-11-20 14:00:20.474 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:00:30.632 00:00:10.369 TCP 23.104.0.1:36722 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:01:11.591 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46284 10 6452 1 2025-11-20 14:01:31.047 00:00:10.319 TCP 23.104.0.1:36376 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:57:05.266 00:05:55.655 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 13:58:00.923 00:05:04.343 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:02:11.815 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38540 10 6452 1 2025-11-20 14:02:31.401 00:00:10.369 TCP 23.104.0.1:46696 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:03:12.042 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38704 10 6452 1 2025-11-20 14:03:31.803 00:00:10.367 TCP 23.104.0.1:45052 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:04:12.263 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45562 10 6452 1 2025-11-20 14:04:32.210 00:00:10.365 TCP 23.104.0.1:35992 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:05:20.448 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:05:20.508 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:05:12.480 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:60588 10 6452 1 2025-11-20 14:05:32.611 00:00:10.371 TCP 23.104.0.1:38060 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:06:12.651 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:57146 10 6452 1 2025-11-20 14:06:33.020 00:00:10.365 TCP 23.104.0.1:59488 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:07:12.859 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:54744 10 6452 1 2025-11-20 14:07:33.423 00:00:10.724 TCP 23.104.0.1:48724 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:03:05.268 00:05:55.658 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 14:04:00.925 00:05:04.343 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:08:13.063 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41900 10 6452 1 2025-11-20 14:08:34.193 00:00:10.365 TCP 23.104.0.1:59800 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:09:13.285 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34040 10 6452 1 2025-11-20 14:09:34.594 00:00:10.369 TCP 23.104.0.1:58838 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:10:20.495 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:10:20.495 00:00:00.030 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:10:13.501 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:41468 10 6452 1 2025-11-20 14:10:34.998 00:00:10.331 TCP 23.104.0.1:56044 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:11:13.688 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42184 10 6452 1 2025-11-20 14:11:35.371 00:00:10.369 TCP 23.104.0.1:43598 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:12:13.901 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57932 10 6452 1 2025-11-20 14:12:35.775 00:00:10.368 TCP 23.104.0.1:48710 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:13:14.118 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:47504 10 6452 1 2025-11-20 14:13:36.176 00:00:10.364 TCP 23.104.0.1:44602 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:09:05.270 00:05:55.658 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 14:10:00.930 00:05:04.343 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:14:36.577 00:00:10.365 TCP 23.104.0.1:43146 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:14:14.293 00:00:30.129 TCP 1.101.0.1:3000 -> 22.102.0.1:42012 10 6452 1 2025-11-20 14:15:20.788 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:15:20.690 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:15:34.467 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42884 10 6452 1 2025-11-20 14:15:36.994 00:00:10.416 TCP 23.104.0.1:36858 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:16:34.681 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:42124 10 6452 1 2025-11-20 14:16:37.458 00:00:10.374 TCP 23.104.0.1:56182 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:17:34.859 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38738 10 6452 1 2025-11-20 14:17:37.866 00:00:10.377 TCP 23.104.0.1:51080 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:18:35.083 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46864 10 6452 1 2025-11-20 14:18:38.285 00:00:10.367 TCP 23.104.0.1:39182 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:19:35.294 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57366 10 6452 1 2025-11-20 14:19:38.683 00:00:10.370 TCP 23.104.0.1:58090 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:15:05.275 00:05:55.657 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 14:16:00.930 00:05:04.344 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:20:20.973 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:20:20.765 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:20:35.508 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57858 10 6452 1 2025-11-20 14:20:39.105 00:00:10.367 TCP 23.104.0.1:56194 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:21:35.723 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60736 10 6452 1 2025-11-20 14:21:39.509 00:00:10.369 TCP 23.104.0.1:34232 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:22:35.942 00:00:11.407 TCP 1.101.0.1:3000 -> 22.102.0.1:59872 10 6452 1 2025-11-20 14:22:39.916 00:00:10.374 TCP 23.104.0.1:33622 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:23:40.327 00:00:10.322 TCP 23.104.0.1:52108 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:23:37.390 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:49086 10 6452 1 2025-11-20 14:24:37.618 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45584 10 6452 1 2025-11-20 14:24:40.688 00:00:10.322 TCP 23.104.0.1:37512 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:25:20.892 00:00:00.030 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:25:21.237 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:25:41.055 00:00:10.887 TCP 23.104.0.1:41806 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:25:37.842 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59202 10 6452 1 2025-11-20 14:21:05.276 00:05:55.657 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 14:22:00.935 00:05:04.341 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:26:38.083 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45638 10 6452 1 2025-11-20 14:26:41.987 00:00:10.368 TCP 23.104.0.1:34920 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:27:38.300 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:32828 10 6452 1 2025-11-20 14:27:42.394 00:00:10.326 TCP 23.104.0.1:55746 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:28:38.523 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47750 10 6452 1 2025-11-20 14:28:42.754 00:00:10.393 TCP 23.104.0.1:52848 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:29:38.742 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:56730 10 6452 1 2025-11-20 14:29:43.187 00:00:10.366 TCP 23.104.0.1:56696 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:30:20.872 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:30:20.908 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:30:38.968 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:37220 10 6452 1 2025-11-20 14:30:43.593 00:00:10.360 TCP 23.104.0.1:47236 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:31:39.195 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53712 10 6452 1 2025-11-20 14:31:43.992 00:00:10.365 TCP 23.104.0.1:48078 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:27:05.277 00:05:55.660 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 14:28:00.935 00:05:04.342 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:32:39.417 00:00:10.749 TCP 1.101.0.1:3000 -> 22.102.0.1:44588 10 6452 1 2025-11-20 14:32:44.398 00:00:10.370 TCP 23.104.0.1:47252 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:33:40.207 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:40080 10 6452 1 2025-11-20 14:33:44.804 00:00:10.370 TCP 23.104.0.1:50946 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:34:40.426 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38176 10 6452 1 2025-11-20 14:34:45.209 00:00:10.366 TCP 23.104.0.1:54006 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:35:21.222 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:35:21.098 00:00:00.029 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:35:40.650 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34480 10 6452 1 2025-11-20 14:35:45.613 00:00:10.364 TCP 23.104.0.1:52434 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:36:40.870 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:51188 10 6452 1 2025-11-20 14:36:46.058 00:00:10.397 TCP 23.104.0.1:50260 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:37:41.101 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48692 10 6452 1 2025-11-20 14:37:46.504 00:00:10.327 TCP 23.104.0.1:37726 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:33:05.280 00:05:55.660 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 14:34:00.940 00:05:04.340 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:38:41.322 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49508 10 6452 1 2025-11-20 14:38:46.874 00:00:10.367 TCP 23.104.0.1:42658 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:39:41.535 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43142 10 6452 1 2025-11-20 14:39:47.279 00:00:10.368 TCP 23.104.0.1:58972 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:40:21.167 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:40:21.269 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:40:41.756 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51362 10 6452 1 2025-11-20 14:40:47.688 00:00:10.372 TCP 23.104.0.1:59938 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:41:41.966 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:42332 10 6452 1 2025-11-20 14:41:48.105 00:00:10.363 TCP 23.104.0.1:55908 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:42:42.203 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55368 10 6452 1 2025-11-20 14:42:48.504 00:00:10.326 TCP 23.104.0.1:35608 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:43:42.419 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49342 10 6452 1 2025-11-20 14:43:48.865 00:00:10.366 TCP 23.104.0.1:60224 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:39:05.283 00:05:55.658 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 14:40:00.942 00:05:04.339 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:44:42.637 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:38820 10 6452 1 2025-11-20 14:44:49.276 00:00:10.361 TCP 23.104.0.1:45498 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:45:21.350 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:45:21.246 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:45:42.806 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50082 10 6452 1 2025-11-20 14:45:49.677 00:00:10.372 TCP 23.104.0.1:49374 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:46:43.027 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:41608 10 6452 1 2025-11-20 14:46:50.104 00:00:10.361 TCP 23.104.0.1:46922 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:47:43.267 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50992 10 6452 1 2025-11-20 14:47:50.505 00:00:10.360 TCP 23.104.0.1:43432 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:48:43.484 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:37980 10 6452 1 2025-11-20 14:48:50.907 00:00:10.328 TCP 23.104.0.1:36266 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:49:43.708 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37346 10 6452 1 2025-11-20 14:45:05.285 00:05:55.659 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 14:49:51.277 00:00:10.331 TCP 23.104.0.1:45234 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:46:00.944 00:05:04.339 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:50:21.583 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:50:21.358 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:50:43.939 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:59108 10 6452 1 2025-11-20 14:50:51.644 00:00:10.366 TCP 23.104.0.1:46802 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:51:44.187 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:34082 10 6452 1 2025-11-20 14:51:52.064 00:00:10.363 TCP 23.104.0.1:37200 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:52:44.400 00:00:10.473 TCP 1.101.0.1:3000 -> 22.102.0.1:48268 10 6452 1 2025-11-20 14:52:52.468 00:00:10.382 TCP 23.104.0.1:36062 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:53:44.913 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40464 10 6452 1 2025-11-20 14:53:52.893 00:00:10.375 TCP 23.104.0.1:32916 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:54:45.124 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40136 10 6452 1 2025-11-20 14:54:53.305 00:00:10.365 TCP 23.104.0.1:53596 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:55:21.635 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 14:55:21.874 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 14:55:45.291 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33606 10 6452 1 2025-11-20 14:51:05.285 00:05:55.658 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 14:55:53.707 00:00:10.370 TCP 23.104.0.1:51136 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:52:00.945 00:05:04.337 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 14:56:45.507 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52862 10 6452 1 2025-11-20 14:56:54.113 00:00:10.328 TCP 23.104.0.1:33148 -> 1.101.0.1:3000 11 1507 1 2025-11-20 14:57:45.730 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35212 10 6452 1 2025-11-20 14:57:54.479 00:00:10.327 TCP 23.104.0.1:51118 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 490493, total packets: 1553, avg bps: 1072, avg pps: 0, avg bpp: 315 Time window: 2025-11-20 13:57:05 - 2025-11-20 14:58:04 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0059s User: 0.0000s Wall: 0.0015s flows/second: 106085.4 Runtime: 0.0015s