Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 14:59:12.574 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 14:59:12.555 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 14:59:31.549 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:44002 10 6452 1 2025-11-28 14:59:29.893 00:00:10.331 TCP 23.104.0.1:43666 -> 1.101.0.1:3000 11 1507 1 2025-11-28 14:56:04.956 00:05:04.620 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 14:56:04.959 00:05:04.615 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:00:30.261 00:00:10.363 TCP 23.104.0.1:42864 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:00:31.721 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34678 10 6452 1 2025-11-28 15:01:30.664 00:00:10.363 TCP 23.104.0.1:55354 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:01:31.933 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:48308 10 6452 1 2025-11-28 15:02:31.100 00:00:10.369 TCP 23.104.0.1:34562 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:02:32.135 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:41106 10 6452 1 2025-11-28 15:03:32.357 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:57678 10 6452 1 2025-11-28 15:03:31.508 00:00:10.962 TCP 23.104.0.1:60682 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:04:12.784 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:04:12.705 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:04:32.517 00:00:10.381 TCP 23.104.0.1:43590 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:04:32.587 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40688 10 6452 1 2025-11-28 15:05:32.800 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56970 10 6452 1 2025-11-28 15:05:32.932 00:00:10.350 TCP 23.104.0.1:43964 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:02:04.959 00:05:04.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 15:02:04.962 00:05:04.611 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:06:33.023 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:47030 12 10375 1 2025-11-28 15:06:33.322 00:00:10.435 TCP 23.104.0.1:37780 -> 1.101.0.1:3000 15 1926 1 2025-11-28 15:07:33.265 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51840 10 6452 1 2025-11-28 15:07:33.796 00:00:10.333 TCP 23.104.0.1:53728 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:08:33.486 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:39718 10 6452 1 2025-11-28 15:08:34.170 00:00:10.364 TCP 23.104.0.1:34182 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:09:12.919 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:09:13.049 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:09:33.714 00:00:10.876 TCP 1.101.0.1:3000 -> 22.102.0.1:53336 10 6452 1 2025-11-28 15:09:34.573 00:00:10.372 TCP 23.104.0.1:56794 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:10:34.636 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35172 10 6452 1 2025-11-28 15:10:34.990 00:00:10.323 TCP 23.104.0.1:46042 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:11:34.855 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:39306 10 6452 1 2025-11-28 15:11:35.350 00:00:10.328 TCP 23.104.0.1:58678 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:08:04.960 00:05:04.617 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 15:08:04.962 00:05:04.611 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:12:35.095 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46538 10 6452 1 2025-11-28 15:12:35.715 00:00:10.374 TCP 23.104.0.1:40206 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:13:35.303 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46522 10 6452 1 2025-11-28 15:13:36.126 00:00:10.361 TCP 23.104.0.1:56814 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:14:13.086 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:14:13.016 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:14:35.518 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:60560 10 6452 1 2025-11-28 15:14:36.531 00:00:10.378 TCP 23.104.0.1:32894 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:15:35.741 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49774 10 6452 1 2025-11-28 15:15:36.947 00:00:10.370 TCP 23.104.0.1:42768 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:16:35.958 00:00:10.352 TCP 1.101.0.1:3000 -> 22.102.0.1:50692 12 6556 1 2025-11-28 15:16:37.354 00:00:10.369 TCP 23.104.0.1:40038 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:17:36.350 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:60102 10 6452 1 2025-11-28 15:17:37.762 00:00:10.373 TCP 23.104.0.1:46966 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:14:04.964 00:05:04.611 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:14:04.962 00:05:04.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 15:18:36.577 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:48850 10 6452 1 2025-11-28 15:18:38.177 00:00:10.357 TCP 23.104.0.1:33024 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:19:13.060 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:19:13.191 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:19:36.750 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57422 10 6452 1 2025-11-28 15:19:38.576 00:00:10.367 TCP 23.104.0.1:35502 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:20:36.978 00:00:10.218 TCP 1.101.0.1:3000 -> 22.102.0.1:37374 13 6608 1 2025-11-28 15:20:38.979 00:00:10.327 TCP 23.104.0.1:55720 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:21:39.345 00:00:10.330 TCP 23.104.0.1:45790 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:21:37.235 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:52268 10 6452 1 2025-11-28 15:22:37.444 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51064 10 6452 1 2025-11-28 15:22:39.714 00:00:10.375 TCP 23.104.0.1:49062 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:23:37.661 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:33140 10 6452 1 2025-11-28 15:23:40.127 00:00:10.358 TCP 23.104.0.1:52446 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:20:04.965 00:05:04.613 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:20:04.963 00:05:04.618 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 15:24:13.189 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:24:13.233 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:24:37.890 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:33238 10 6452 1 2025-11-28 15:24:40.525 00:00:10.367 TCP 23.104.0.1:52642 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:25:38.110 00:00:10.555 TCP 1.101.0.1:3000 -> 22.102.0.1:36464 10 6452 1 2025-11-28 15:25:40.934 00:00:10.380 TCP 23.104.0.1:53682 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:26:38.708 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:44334 10 6452 1 2025-11-28 15:26:41.356 00:00:10.328 TCP 23.104.0.1:49612 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:27:38.919 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36704 10 6452 1 2025-11-28 15:27:41.722 00:00:10.375 TCP 23.104.0.1:50154 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:28:39.127 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:36106 10 6452 1 2025-11-28 15:28:42.133 00:00:10.328 TCP 23.104.0.1:60106 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:29:13.084 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:29:13.128 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:29:39.305 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60162 10 6452 1 2025-11-28 15:29:42.499 00:00:10.326 TCP 23.104.0.1:40110 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:26:04.965 00:05:04.614 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:26:04.964 00:05:04.619 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 15:30:39.516 00:00:10.313 TCP 1.101.0.1:3000 -> 22.102.0.1:56088 10 6452 1 2025-11-28 15:30:42.866 00:00:10.373 TCP 23.104.0.1:54226 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:31:39.870 00:00:10.266 TCP 1.101.0.1:3000 -> 22.102.0.1:38946 14 14292 1 2025-11-28 15:31:43.282 00:00:10.522 TCP 23.104.0.1:40974 -> 1.101.0.1:3000 17 2241 1 2025-11-28 15:32:40.178 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:33526 10 6452 1 2025-11-28 15:32:43.841 00:00:10.394 TCP 23.104.0.1:43502 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:33:40.358 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40970 10 6452 1 2025-11-28 15:33:44.271 00:00:10.364 TCP 23.104.0.1:54548 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:34:13.397 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:34:13.334 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:34:40.570 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:33142 10 6452 1 2025-11-28 15:34:44.672 00:00:10.380 TCP 23.104.0.1:40954 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:35:40.752 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:43646 10 6452 1 2025-11-28 15:35:45.108 00:00:10.322 TCP 23.104.0.1:60484 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:32:04.967 00:05:04.618 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 15:32:04.968 00:05:04.613 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:36:40.928 00:00:10.219 TCP 1.101.0.1:3000 -> 22.102.0.1:57924 10 6452 1 2025-11-28 15:36:45.470 00:00:10.365 TCP 23.104.0.1:50622 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:37:41.188 00:00:10.221 TCP 1.101.0.1:3000 -> 22.102.0.1:50408 10 6452 1 2025-11-28 15:37:45.875 00:00:10.366 TCP 23.104.0.1:48056 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:38:41.452 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:59948 10 6452 1 2025-11-28 15:38:46.285 00:00:10.360 TCP 23.104.0.1:55448 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:39:13.702 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:39:13.649 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:39:41.630 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57110 10 6452 1 2025-11-28 15:39:46.685 00:00:10.368 TCP 23.104.0.1:46408 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:40:41.851 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:40686 10 6452 1 2025-11-28 15:40:47.101 00:00:10.361 TCP 23.104.0.1:46572 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:41:42.085 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:41638 10 6452 1 2025-11-28 15:41:47.503 00:00:10.365 TCP 23.104.0.1:45550 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:38:04.967 00:05:04.617 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 15:38:04.970 00:05:04.612 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:42:42.298 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45056 10 6452 1 2025-11-28 15:42:47.908 00:00:10.375 TCP 23.104.0.1:49290 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:43:42.521 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:60952 10 6452 1 2025-11-28 15:43:48.320 00:00:10.364 TCP 23.104.0.1:53046 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:44:13.350 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:44:13.590 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:44:42.709 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48300 10 6452 1 2025-11-28 15:44:48.722 00:00:10.333 TCP 23.104.0.1:47686 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:45:42.926 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:58824 10 6452 1 2025-11-28 15:45:49.098 00:00:10.366 TCP 23.104.0.1:56710 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:46:43.174 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:40322 12 10375 1 2025-11-28 15:46:49.510 00:00:10.438 TCP 23.104.0.1:58886 -> 1.101.0.1:3000 15 1926 1 2025-11-28 15:47:43.415 00:00:11.209 TCP 1.101.0.1:3000 -> 22.102.0.1:43324 10 6452 1 2025-11-28 15:47:49.984 00:00:10.362 TCP 23.104.0.1:37902 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:44:04.972 00:05:04.614 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:44:04.969 00:05:04.619 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 15:48:44.662 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47368 10 6452 1 2025-11-28 15:48:50.395 00:00:10.365 TCP 23.104.0.1:36422 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:49:13.544 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:49:13.633 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:49:44.870 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:36574 10 6452 1 2025-11-28 15:49:50.797 00:00:10.364 TCP 23.104.0.1:53826 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:50:45.068 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42194 10 6452 1 2025-11-28 15:50:51.213 00:00:10.366 TCP 23.104.0.1:49104 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:51:45.280 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57944 10 6452 1 2025-11-28 15:51:51.619 00:00:10.369 TCP 23.104.0.1:33082 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:52:45.497 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38704 10 6452 1 2025-11-28 15:52:52.031 00:00:10.368 TCP 23.104.0.1:54622 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:53:45.708 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40700 10 6452 1 2025-11-28 15:50:04.974 00:05:04.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 15:53:52.434 00:00:10.365 TCP 23.104.0.1:56960 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:50:04.976 00:05:04.612 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 15:54:13.502 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 15:54:13.826 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 15:54:45.917 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34468 10 6452 1 2025-11-28 15:54:52.840 00:00:10.384 TCP 23.104.0.1:56662 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:55:46.132 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56028 10 6452 1 2025-11-28 15:55:53.262 00:00:10.365 TCP 23.104.0.1:47974 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:56:46.344 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52850 10 6452 1 2025-11-28 15:56:53.664 00:00:10.327 TCP 23.104.0.1:38356 -> 1.101.0.1:3000 11 1507 1 2025-11-28 15:57:46.560 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:49522 10 6452 1 2025-11-28 15:57:54.030 00:00:10.372 TCP 23.104.0.1:51138 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 507907, total packets: 1578, avg bps: 1092, avg pps: 0, avg bpp: 321 Time window: 2025-11-28 14:56:04 - 2025-11-28 15:58:04 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0038s User: 0.0015s Wall: 0.0020s flows/second: 79174.7 Runtime: 0.0021s