Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 21:59:35.429 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:38886 10 6452 1 2025-11-20 21:59:37.834 00:00:10.350 TCP 23.104.0.1:46078 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:00:30.206 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:00:29.910 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:00:35.604 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:50212 10 6452 1 2025-11-20 22:00:38.222 00:00:10.368 TCP 23.104.0.1:37456 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:01:35.830 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:37850 10 6452 1 2025-11-20 22:01:38.628 00:00:10.365 TCP 23.104.0.1:47336 -> 1.101.0.1:3000 11 1507 1 2025-11-20 21:58:01.147 00:05:04.311 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 21:58:01.150 00:05:04.305 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:02:36.080 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46002 10 6452 1 2025-11-20 22:02:39.031 00:00:10.366 TCP 23.104.0.1:60012 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:03:36.290 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:49236 10 6452 1 2025-11-20 22:03:39.440 00:00:10.326 TCP 23.104.0.1:38246 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:04:36.507 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:51856 10 6452 1 2025-11-20 22:04:39.803 00:00:10.366 TCP 23.104.0.1:44016 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:05:30.238 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:05:30.063 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:05:36.734 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45968 10 6452 1 2025-11-20 22:05:40.205 00:00:10.325 TCP 23.104.0.1:51494 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:06:36.953 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:45296 10 6452 1 2025-11-20 22:06:40.569 00:00:10.364 TCP 23.104.0.1:32818 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:07:37.187 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:46092 10 6452 1 2025-11-20 22:07:40.980 00:00:10.367 TCP 23.104.0.1:47962 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:04:01.149 00:05:04.311 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 22:04:01.151 00:05:04.306 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:08:37.421 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56690 10 6452 1 2025-11-20 22:08:41.387 00:00:10.367 TCP 23.104.0.1:59350 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:09:37.637 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:49812 10 6452 1 2025-11-20 22:09:41.791 00:00:10.330 TCP 23.104.0.1:39828 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:10:30.401 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:10:30.481 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:10:37.825 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45372 10 6452 1 2025-11-20 22:10:42.161 00:00:10.368 TCP 23.104.0.1:53008 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:11:38.055 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:33500 10 6452 1 2025-11-20 22:11:42.566 00:00:10.368 TCP 23.104.0.1:41626 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:12:38.233 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57282 10 6452 1 2025-11-20 22:12:42.970 00:00:10.368 TCP 23.104.0.1:50636 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:13:38.455 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:44638 10 6452 1 2025-11-20 22:13:43.381 00:00:10.369 TCP 23.104.0.1:39792 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:10:01.152 00:05:04.307 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:10:01.149 00:05:04.313 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 22:14:38.677 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59464 10 6452 1 2025-11-20 22:14:43.787 00:00:10.375 TCP 23.104.0.1:57946 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:15:30.170 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:15:30.251 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:15:38.892 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:40504 10 6452 1 2025-11-20 22:15:44.195 00:00:10.364 TCP 23.104.0.1:53678 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:16:39.121 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:36148 10 6452 1 2025-11-20 22:16:44.598 00:00:10.365 TCP 23.104.0.1:33410 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:17:39.350 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:33444 10 6452 1 2025-11-20 22:17:45.003 00:00:10.423 TCP 23.104.0.1:40834 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:18:39.586 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:55456 10 6452 1 2025-11-20 22:18:45.468 00:00:10.335 TCP 23.104.0.1:34748 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:19:39.835 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38560 10 6452 1 2025-11-20 22:19:45.829 00:00:10.392 TCP 23.104.0.1:58400 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:16:01.153 00:05:04.315 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:16:01.151 00:05:04.321 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 22:20:30.510 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:20:30.524 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:20:40.074 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:41262 10 6452 1 2025-11-20 22:20:46.260 00:00:10.381 TCP 23.104.0.1:51384 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:21:40.246 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:45048 10 6452 1 2025-11-20 22:21:46.692 00:00:10.385 TCP 23.104.0.1:46910 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:22:40.459 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:56020 12 10375 1 2025-11-20 22:22:47.112 00:00:10.447 TCP 23.104.0.1:37926 -> 1.101.0.1:3000 15 1926 1 2025-11-20 22:23:40.696 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:34832 10 6452 1 2025-11-20 22:23:47.598 00:00:10.324 TCP 23.104.0.1:47174 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:24:40.919 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:34598 10 6452 1 2025-11-20 22:24:47.959 00:00:10.364 TCP 23.104.0.1:36746 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:25:30.575 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:25:30.724 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:25:48.362 00:00:13.370 TCP 23.104.0.1:38402 -> 1.101.0.1:3000 12 1559 1 2025-11-20 22:25:41.125 00:00:20.509 TCP 1.101.0.1:3000 -> 22.102.0.1:40184 10 6452 1 2025-11-20 22:22:01.156 00:05:04.315 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:22:01.154 00:05:04.320 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 22:26:51.701 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37126 10 6452 1 2025-11-20 22:26:51.813 00:00:10.366 TCP 23.104.0.1:43000 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:27:52.216 00:00:10.438 TCP 23.104.0.1:56186 -> 1.101.0.1:3000 15 1926 1 2025-11-20 22:27:51.882 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:48916 12 10375 1 2025-11-20 22:28:52.689 00:00:10.366 TCP 23.104.0.1:33822 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:28:52.091 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35374 10 6452 1 2025-11-20 22:29:53.103 00:00:10.319 TCP 23.104.0.1:33212 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:29:52.300 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43064 10 6452 1 2025-11-20 22:30:30.446 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:30:30.715 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:30:53.460 00:00:10.323 TCP 23.104.0.1:56530 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:30:52.516 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:60380 10 6452 1 2025-11-20 22:31:53.821 00:00:10.364 TCP 23.104.0.1:41696 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:28:01.155 00:05:04.316 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:31:52.740 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41954 10 6452 1 2025-11-20 22:28:01.154 00:05:04.321 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 22:32:54.223 00:00:10.362 TCP 23.104.0.1:47608 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:32:52.967 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:59536 10 6452 1 2025-11-20 22:33:54.622 00:00:10.364 TCP 23.104.0.1:44146 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:33:53.196 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45080 10 6452 1 2025-11-20 22:34:53.379 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:37506 10 6452 1 2025-11-20 22:34:55.026 00:00:10.372 TCP 23.104.0.1:33174 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:35:30.810 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:35:30.477 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:35:53.582 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:60910 10 6452 1 2025-11-20 22:35:55.440 00:00:10.369 TCP 23.104.0.1:40878 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:36:53.764 00:00:10.238 TCP 1.101.0.1:3000 -> 22.102.0.1:41764 10 6452 1 2025-11-20 22:36:55.844 00:00:10.352 TCP 23.104.0.1:55674 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:37:56.234 00:00:10.334 TCP 23.104.0.1:43960 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:34:01.158 00:05:04.316 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:37:54.071 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:59368 12 6556 1 2025-11-20 22:34:01.155 00:05:04.321 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 22:38:56.628 00:00:10.366 TCP 23.104.0.1:42006 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:38:54.279 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:58908 10 6452 1 2025-11-20 22:39:54.451 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57054 10 6452 1 2025-11-20 22:39:57.035 00:00:10.366 TCP 23.104.0.1:38944 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:40:30.864 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:40:31.136 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:40:54.668 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:46298 10 6452 1 2025-11-20 22:40:57.446 00:00:10.362 TCP 23.104.0.1:49384 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:41:54.879 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:42944 10 6452 1 2025-11-20 22:41:57.869 00:00:10.326 TCP 23.104.0.1:38078 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:42:55.106 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:41768 10 6452 1 2025-11-20 22:42:58.228 00:00:10.364 TCP 23.104.0.1:56794 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:43:55.332 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38358 10 6452 1 2025-11-20 22:40:01.157 00:05:04.322 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 22:40:01.160 00:05:04.316 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:43:58.632 00:00:10.369 TCP 23.104.0.1:57190 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:44:55.547 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33104 10 6452 1 2025-11-20 22:44:59.059 00:00:10.364 TCP 23.104.0.1:54960 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:45:30.885 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:45:30.950 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:45:55.764 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41596 10 6452 1 2025-11-20 22:45:59.465 00:00:10.364 TCP 23.104.0.1:40314 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:46:55.975 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55774 10 6452 1 2025-11-20 22:46:59.867 00:00:10.368 TCP 23.104.0.1:48348 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:47:56.205 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59462 10 6452 1 2025-11-20 22:48:00.276 00:00:10.362 TCP 23.104.0.1:57090 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:48:56.421 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45378 10 6452 1 2025-11-20 22:49:00.677 00:00:10.326 TCP 23.104.0.1:45704 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:49:56.643 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:36710 10 6452 1 2025-11-20 22:46:01.159 00:05:04.321 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 22:46:01.162 00:05:04.316 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:50:01.053 00:00:10.363 TCP 23.104.0.1:49092 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:50:31.123 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:50:31.023 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:51:01.454 00:00:10.362 TCP 23.104.0.1:39526 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:50:56.876 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:58714 10 6452 1 2025-11-20 22:51:57.121 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35604 10 6452 1 2025-11-20 22:52:01.865 00:00:10.329 TCP 23.104.0.1:32970 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:52:57.338 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41870 10 6452 1 2025-11-20 22:53:02.230 00:00:10.383 TCP 23.104.0.1:33384 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:53:57.549 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54578 10 6452 1 2025-11-20 22:54:02.660 00:00:10.362 TCP 23.104.0.1:45464 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:54:57.769 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59206 10 6452 1 2025-11-20 22:55:03.103 00:00:10.330 TCP 23.104.0.1:51286 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:55:31.099 00:00:00.044 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 22:55:31.201 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 22:52:01.162 00:05:04.317 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 22:52:01.159 00:05:04.322 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 22:55:57.989 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:52536 10 6452 1 2025-11-20 22:56:03.472 00:00:10.373 TCP 23.104.0.1:35968 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:56:58.163 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45668 10 6452 1 2025-11-20 22:57:03.891 00:00:10.337 TCP 23.104.0.1:41450 -> 1.101.0.1:3000 11 1507 1 2025-11-20 22:57:58.386 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:35306 12 10369 1 2025-11-20 22:58:04.265 00:00:10.439 TCP 23.104.0.1:50330 -> 1.101.0.1:3000 15 1926 1 Summary: total flows: 162, total bytes: 503565, total packets: 1572, avg bps: 1114, avg pps: 0, avg bpp: 320 Time window: 2025-11-20 21:58:01 - 2025-11-20 22:58:14 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0033s User: 0.0025s Wall: 0.0028s flows/second: 58505.0 Runtime: 0.0028s