Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 12:59:10.404 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 12:59:10.395 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 12:59:03.439 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:54886 10 6452 1 2025-11-28 12:59:40.744 00:00:10.364 TCP 23.104.0.1:45960 -> 1.101.0.1:3000 11 1507 1 2025-11-28 12:56:04.926 00:05:04.601 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 12:56:04.928 00:05:04.596 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:00:03.672 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51938 10 6452 1 2025-11-28 13:00:41.141 00:00:10.368 TCP 23.104.0.1:48140 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:01:03.888 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:37350 12 6556 1 2025-11-28 13:01:41.549 00:00:10.443 TCP 23.104.0.1:40204 -> 1.101.0.1:3000 15 1926 1 2025-11-28 13:02:04.119 00:00:10.273 TCP 1.101.0.1:3000 -> 22.102.0.1:35798 14 10479 1 2025-11-28 13:02:42.036 00:00:10.362 TCP 23.104.0.1:54054 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:03:04.436 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:50796 10 6452 1 2025-11-28 13:03:42.439 00:00:10.371 TCP 23.104.0.1:54584 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:04:10.492 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:04:10.518 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:04:04.612 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57816 10 6452 1 2025-11-28 13:04:42.853 00:00:10.376 TCP 23.104.0.1:57694 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:05:04.821 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:35386 10 6452 1 2025-11-28 13:05:43.269 00:00:10.362 TCP 23.104.0.1:36498 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:02:04.926 00:05:04.604 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 13:02:04.929 00:05:04.599 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:06:05.077 00:00:10.754 TCP 1.101.0.1:3000 -> 22.102.0.1:44396 10 6452 1 2025-11-28 13:06:43.685 00:00:10.378 TCP 23.104.0.1:50118 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:07:05.872 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:56654 10 6452 1 2025-11-28 13:07:44.107 00:00:10.369 TCP 23.104.0.1:50132 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:08:06.099 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59220 10 6452 1 2025-11-28 13:08:44.515 00:00:10.371 TCP 23.104.0.1:53126 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:09:10.502 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:09:10.399 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:09:06.313 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37422 10 6452 1 2025-11-28 13:09:44.933 00:00:10.385 TCP 23.104.0.1:47326 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:10:06.530 00:00:10.231 TCP 1.101.0.1:3000 -> 22.102.0.1:50082 10 6452 1 2025-11-28 13:10:45.357 00:00:10.366 TCP 23.104.0.1:43150 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:11:06.815 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:43404 10 6452 1 2025-11-28 13:11:45.765 00:00:10.374 TCP 23.104.0.1:37268 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:08:04.931 00:05:04.599 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:08:04.927 00:05:04.604 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 13:12:06.984 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:53094 10 6452 1 2025-11-28 13:12:46.178 00:00:10.359 TCP 23.104.0.1:46490 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:13:07.174 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40148 12 6556 1 2025-11-28 13:13:46.585 00:00:10.325 TCP 23.104.0.1:41600 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:14:10.713 00:00:00.013 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:14:10.670 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:14:07.385 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57134 10 6452 1 2025-11-28 13:14:46.950 00:00:10.375 TCP 23.104.0.1:46976 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:15:07.601 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41696 10 6452 1 2025-11-28 13:15:47.356 00:00:10.371 TCP 23.104.0.1:38538 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:16:07.819 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56104 10 6452 1 2025-11-28 13:16:47.765 00:00:10.474 TCP 23.104.0.1:56700 -> 1.101.0.1:3000 15 1926 1 2025-11-28 13:17:08.068 00:00:11.583 TCP 1.101.0.1:3000 -> 22.102.0.1:35632 12 10375 1 2025-11-28 13:17:48.278 00:00:10.364 TCP 23.104.0.1:40116 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:14:04.930 00:05:04.607 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 13:14:04.932 00:05:04.602 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:18:09.680 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:58126 10 6452 1 2025-11-28 13:18:48.680 00:00:10.327 TCP 23.104.0.1:37732 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:19:10.756 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:19:10.622 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:19:09.908 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36510 10 6452 1 2025-11-28 13:19:49.052 00:00:10.376 TCP 23.104.0.1:51970 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:20:10.123 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33608 10 6452 1 2025-11-28 13:20:49.467 00:00:10.331 TCP 23.104.0.1:44682 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:21:10.339 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47210 10 6452 1 2025-11-28 13:21:49.833 00:00:10.391 TCP 23.104.0.1:49976 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:22:10.552 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:44374 10 6452 1 2025-11-28 13:22:50.260 00:00:10.363 TCP 23.104.0.1:55556 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:23:10.732 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41480 10 6452 1 2025-11-28 13:23:50.661 00:00:10.324 TCP 23.104.0.1:59166 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:24:10.902 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:20:04.931 00:05:04.608 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 13:24:10.777 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:20:04.934 00:05:04.603 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:24:10.945 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:59540 10 6452 1 2025-11-28 13:24:51.022 00:00:10.360 TCP 23.104.0.1:37764 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:25:11.184 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41302 10 6452 1 2025-11-28 13:25:51.420 00:00:10.382 TCP 23.104.0.1:50288 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:26:11.404 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45294 10 6452 1 2025-11-28 13:26:51.838 00:00:10.389 TCP 23.104.0.1:33914 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:27:11.623 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:42914 10 6452 1 2025-11-28 13:27:52.269 00:00:10.364 TCP 23.104.0.1:48186 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:28:11.867 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:60568 10 6452 1 2025-11-28 13:29:10.711 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:28:52.677 00:00:10.368 TCP 23.104.0.1:49916 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:29:10.941 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:29:12.068 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:57070 10 6452 1 2025-11-28 13:29:53.100 00:00:10.359 TCP 23.104.0.1:45994 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:26:04.937 00:05:04.602 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:26:04.935 00:05:04.606 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 13:30:12.297 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44336 10 6452 1 2025-11-28 13:30:53.499 00:00:10.365 TCP 23.104.0.1:45772 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:31:12.518 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:59692 10 6452 1 2025-11-28 13:31:53.902 00:00:10.376 TCP 23.104.0.1:56676 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:32:12.749 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:42750 10 6452 1 2025-11-28 13:32:54.322 00:00:10.324 TCP 23.104.0.1:52562 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:33:12.928 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:45344 10 6452 1 2025-11-28 13:33:54.687 00:00:10.364 TCP 23.104.0.1:51086 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:34:10.894 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:34:11.042 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:34:13.178 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:59518 10 6452 1 2025-11-28 13:34:55.110 00:00:10.365 TCP 23.104.0.1:40280 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:35:13.400 00:00:10.523 TCP 1.101.0.1:3000 -> 22.102.0.1:47346 10 6452 1 2025-11-28 13:35:55.514 00:00:10.319 TCP 23.104.0.1:44170 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:32:04.935 00:05:04.608 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 13:32:04.937 00:05:04.603 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:36:13.961 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:34144 12 6556 1 2025-11-28 13:36:55.875 00:00:10.836 TCP 23.104.0.1:38158 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:37:14.191 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:32968 10 6452 1 2025-11-28 13:37:56.755 00:00:10.374 TCP 23.104.0.1:41842 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:38:14.413 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38696 10 6452 1 2025-11-28 13:39:11.066 00:00:00.032 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:39:10.987 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:38:57.171 00:00:10.360 TCP 23.104.0.1:44390 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:39:14.629 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:34022 10 6452 1 2025-11-28 13:39:57.569 00:00:10.497 TCP 23.104.0.1:51932 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:40:14.836 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50002 10 6452 1 2025-11-28 13:40:58.105 00:00:10.512 TCP 23.104.0.1:45798 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:41:15.068 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59722 10 6452 1 2025-11-28 13:38:04.935 00:05:04.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 13:38:04.939 00:05:04.604 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:41:58.655 00:00:10.359 TCP 23.104.0.1:41002 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:42:15.276 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60090 10 6452 1 2025-11-28 13:42:59.059 00:00:10.364 TCP 23.104.0.1:49758 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:43:15.493 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46166 10 6452 1 2025-11-28 13:44:11.450 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:43:59.464 00:00:10.364 TCP 23.104.0.1:52024 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:44:11.456 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:44:15.703 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:57002 10 6452 1 2025-11-28 13:44:59.867 00:00:10.328 TCP 23.104.0.1:40932 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:45:15.877 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:34950 10 6452 1 2025-11-28 13:46:00.230 00:00:10.326 TCP 23.104.0.1:38062 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:46:16.105 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47700 10 6452 1 2025-11-28 13:47:00.595 00:00:10.364 TCP 23.104.0.1:51880 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:47:16.306 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49900 10 6452 1 2025-11-28 13:44:04.937 00:05:04.611 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 13:48:00.997 00:00:10.322 TCP 23.104.0.1:39108 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:44:04.939 00:05:04.606 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:48:16.521 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:53488 10 6452 1 2025-11-28 13:49:11.311 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:49:01.371 00:00:10.364 TCP 23.104.0.1:51652 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:49:11.345 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:49:16.756 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54634 10 6452 1 2025-11-28 13:50:01.777 00:00:10.373 TCP 23.104.0.1:40526 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:50:16.967 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:45596 10 6452 1 2025-11-28 13:51:02.186 00:00:10.360 TCP 23.104.0.1:56876 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:51:17.199 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37702 10 6452 1 2025-11-28 13:52:02.585 00:00:10.370 TCP 23.104.0.1:43318 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:52:17.411 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46590 10 6452 1 2025-11-28 13:53:02.996 00:00:10.364 TCP 23.104.0.1:57960 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:53:17.632 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55372 10 6452 1 2025-11-28 13:54:11.529 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 13:50:04.938 00:05:04.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 13:54:11.409 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:50:04.941 00:05:04.608 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 13:54:03.398 00:00:10.367 TCP 23.104.0.1:39644 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:54:17.850 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59408 10 6452 1 2025-11-28 13:55:03.806 00:00:10.367 TCP 23.104.0.1:57488 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:55:18.080 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57766 10 6452 1 2025-11-28 13:56:04.206 00:00:10.362 TCP 23.104.0.1:49862 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:56:18.294 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56652 10 6452 1 2025-11-28 13:57:04.608 00:00:10.364 TCP 23.104.0.1:37360 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:57:18.510 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58352 10 6452 1 2025-11-28 13:58:05.011 00:00:10.363 TCP 23.104.0.1:37590 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:58:18.730 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44216 10 6452 1 Summary: total flows: 163, total bytes: 505941, total packets: 1581, avg bps: 1081, avg pps: 0, avg bpp: 320 Time window: 2025-11-28 12:56:04 - 2025-11-28 13:58:28 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0032s User: 0.0021s Wall: 0.0025s flows/second: 63924.4 Runtime: 0.0026s