Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 21:59:21.035 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 21:59:21.103 00:00:00.045 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 21:59:21.990 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:50886 10 6452 1 2025-11-28 21:59:37.547 00:00:10.368 TCP 23.104.0.1:59922 -> 1.101.0.1:3000 11 1507 1 2025-11-28 21:55:09.726 00:05:55.384 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 21:55:09.728 00:05:55.379 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:00:22.215 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33308 10 6452 1 2025-11-28 22:00:37.957 00:00:10.368 TCP 23.104.0.1:38468 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:01:22.428 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49432 10 6452 1 2025-11-28 22:01:38.367 00:00:10.361 TCP 23.104.0.1:54706 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:02:22.641 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37090 10 6452 1 2025-11-28 22:02:38.764 00:00:10.382 TCP 23.104.0.1:47658 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:03:22.853 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48692 10 6452 1 2025-11-28 22:03:39.181 00:00:10.332 TCP 23.104.0.1:54602 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:04:21.177 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:04:21.266 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:04:23.082 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34394 10 6452 1 2025-11-28 22:04:39.563 00:00:11.478 TCP 23.104.0.1:42436 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:05:23.290 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60232 10 6452 1 2025-11-28 22:05:41.110 00:00:10.323 TCP 23.104.0.1:39730 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:01:09.730 00:05:55.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:01:09.726 00:05:55.384 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 22:06:23.504 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:53086 10 6452 1 2025-11-28 22:06:41.476 00:00:19.548 TCP 23.104.0.1:35154 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:07:23.668 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58888 10 6452 1 2025-11-28 22:07:51.103 00:00:10.329 TCP 23.104.0.1:51372 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:08:23.883 00:00:11.363 TCP 1.101.0.1:3000 -> 22.102.0.1:46610 10 6452 1 2025-11-28 22:08:51.473 00:00:10.366 TCP 23.104.0.1:39368 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:09:21.165 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:09:21.104 00:00:00.046 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:09:25.306 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:39428 10 6452 1 2025-11-28 22:09:51.880 00:00:10.372 TCP 23.104.0.1:38036 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:10:25.538 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:41326 10 6452 1 2025-11-28 22:10:52.292 00:00:10.847 TCP 23.104.0.1:36406 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:11:25.749 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:49084 12 10375 1 2025-11-28 22:07:09.731 00:05:55.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:11:53.178 00:00:10.439 TCP 23.104.0.1:36688 -> 1.101.0.1:3000 15 1926 1 2025-11-28 22:07:09.728 00:05:55.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 22:12:25.995 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:56658 10 6452 1 2025-11-28 22:12:53.658 00:00:11.798 TCP 23.104.0.1:45508 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:13:26.240 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:39286 10 6452 1 2025-11-28 22:13:55.499 00:00:10.359 TCP 23.104.0.1:38346 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:14:21.384 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:14:21.242 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:14:26.447 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41674 10 6452 1 2025-11-28 22:14:55.897 00:00:10.376 TCP 23.104.0.1:36576 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:15:26.663 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50580 10 6452 1 2025-11-28 22:15:56.313 00:00:10.362 TCP 23.104.0.1:46454 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:16:26.878 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52680 10 6452 1 2025-11-28 22:16:56.715 00:00:10.375 TCP 23.104.0.1:40204 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:17:27.105 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48178 10 6452 1 2025-11-28 22:13:09.733 00:05:55.376 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:13:09.731 00:05:55.381 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 22:17:57.129 00:00:10.364 TCP 23.104.0.1:38860 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:18:27.281 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52660 10 6452 1 2025-11-28 22:18:57.535 00:00:10.364 TCP 23.104.0.1:36046 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:19:21.373 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:19:21.608 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:19:27.503 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45664 10 6452 1 2025-11-28 22:19:57.939 00:00:10.380 TCP 23.104.0.1:38596 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:20:27.718 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41306 10 6452 1 2025-11-28 22:20:58.362 00:00:10.364 TCP 23.104.0.1:49164 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:21:27.936 00:00:18.499 TCP 1.101.0.1:3000 -> 22.102.0.1:44258 10 6452 1 2025-11-28 22:21:58.762 00:00:10.400 TCP 23.104.0.1:40934 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:22:36.489 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43420 10 6452 1 2025-11-28 22:22:59.202 00:00:10.369 TCP 23.104.0.1:38528 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:23:36.711 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53316 10 6452 1 2025-11-28 22:19:09.734 00:05:55.379 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:19:09.733 00:05:55.384 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 22:23:59.608 00:00:10.366 TCP 23.104.0.1:38308 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:24:21.832 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:24:21.650 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:24:36.926 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:51576 10 6452 1 2025-11-28 22:25:00.009 00:00:10.370 TCP 23.104.0.1:36716 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:25:37.152 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45066 10 6452 1 2025-11-28 22:26:00.418 00:00:10.366 TCP 23.104.0.1:41228 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:26:37.379 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40772 10 6452 1 2025-11-28 22:27:00.822 00:00:10.363 TCP 23.104.0.1:52864 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:27:37.610 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37400 10 6452 1 2025-11-28 22:28:01.230 00:00:10.361 TCP 23.104.0.1:58694 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:28:37.780 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40910 10 6452 1 2025-11-28 22:29:21.656 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:29:01.641 00:00:10.365 TCP 23.104.0.1:40720 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:29:21.730 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:29:37.991 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:56522 10 6452 1 2025-11-28 22:25:09.735 00:05:55.379 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:25:09.733 00:05:55.384 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 22:30:02.054 00:00:10.319 TCP 23.104.0.1:40716 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:30:38.175 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40620 10 6452 1 2025-11-28 22:31:02.415 00:00:10.366 TCP 23.104.0.1:47230 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:31:38.387 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48882 10 6452 1 2025-11-28 22:32:02.820 00:00:10.321 TCP 23.104.0.1:48810 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:32:38.601 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35536 10 6452 1 2025-11-28 22:33:03.181 00:00:10.365 TCP 23.104.0.1:46644 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:33:38.813 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:54078 10 6452 1 2025-11-28 22:34:03.584 00:00:10.373 TCP 23.104.0.1:35376 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:34:21.860 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:34:21.799 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:34:39.030 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:39010 10 6452 1 2025-11-28 22:35:04.025 00:00:10.369 TCP 23.104.0.1:58920 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:35:39.242 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57288 10 6452 1 2025-11-28 22:31:09.738 00:05:55.377 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:31:09.735 00:05:55.382 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 22:36:04.434 00:00:10.369 TCP 23.104.0.1:53256 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:36:39.451 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:54388 10 6452 1 2025-11-28 22:37:04.839 00:00:10.391 TCP 23.104.0.1:60698 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:37:39.624 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:49852 10 6452 1 2025-11-28 22:38:05.270 00:00:10.367 TCP 23.104.0.1:35120 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:38:39.797 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40574 10 6452 1 2025-11-28 22:39:05.680 00:00:10.365 TCP 23.104.0.1:41996 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:39:21.732 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:39:21.989 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:39:40.048 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:53100 10 6452 1 2025-11-28 22:40:06.108 00:00:10.357 TCP 23.104.0.1:39006 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:40:40.227 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:51688 10 6452 1 2025-11-28 22:41:06.505 00:00:10.368 TCP 23.104.0.1:50122 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:41:40.461 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60940 10 6452 1 2025-11-28 22:37:09.737 00:05:55.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 22:37:09.740 00:05:55.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:42:06.918 00:00:10.375 TCP 23.104.0.1:50388 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:42:40.676 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:50042 10 6452 1 2025-11-28 22:43:07.333 00:00:10.332 TCP 23.104.0.1:33882 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:43:40.903 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:58910 10 6452 1 2025-11-28 22:44:21.967 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:44:07.708 00:00:10.324 TCP 23.104.0.1:58098 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:44:21.906 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:44:41.100 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:52980 10 6452 1 2025-11-28 22:45:08.100 00:00:10.368 TCP 23.104.0.1:59224 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:45:41.363 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:34868 10 6452 1 2025-11-28 22:46:08.505 00:00:10.366 TCP 23.104.0.1:48078 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:46:41.583 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39134 10 6452 1 2025-11-28 22:47:08.912 00:00:10.322 TCP 23.104.0.1:55086 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:47:41.803 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39056 10 6452 1 2025-11-28 22:43:09.744 00:05:55.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:43:09.743 00:05:55.380 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 22:48:09.278 00:00:10.368 TCP 23.104.0.1:36734 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:48:41.975 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:34318 10 6452 1 2025-11-28 22:49:09.688 00:00:10.330 TCP 23.104.0.1:34798 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:49:21.906 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:49:22.280 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:49:42.212 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:46568 10 6452 1 2025-11-28 22:50:10.062 00:00:10.321 TCP 23.104.0.1:35906 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:50:42.379 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56868 10 6452 1 2025-11-28 22:51:10.429 00:00:10.322 TCP 23.104.0.1:47968 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:51:42.595 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47938 10 6452 1 2025-11-28 22:52:10.799 00:00:10.335 TCP 23.104.0.1:47374 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:52:42.811 00:00:10.527 TCP 1.101.0.1:3000 -> 22.102.0.1:50362 10 6452 1 2025-11-28 22:53:11.174 00:00:10.373 TCP 23.104.0.1:50966 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:53:43.377 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:33778 10 6452 1 2025-11-28 22:49:09.744 00:05:55.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 22:49:09.742 00:05:55.379 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 22:54:22.308 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 22:54:11.588 00:00:10.367 TCP 23.104.0.1:52332 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:54:22.214 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 22:54:43.554 00:00:10.416 TCP 1.101.0.1:3000 -> 22.102.0.1:33654 10 6452 1 2025-11-28 22:55:11.993 00:00:10.366 TCP 23.104.0.1:57668 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:55:44.011 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48378 10 6452 1 2025-11-28 22:56:12.393 00:00:10.325 TCP 23.104.0.1:39842 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:56:44.231 00:00:10.483 TCP 1.101.0.1:3000 -> 22.102.0.1:35678 10 6452 1 2025-11-28 22:57:12.768 00:00:10.374 TCP 23.104.0.1:53688 -> 1.101.0.1:3000 11 1507 1 2025-11-28 22:57:44.755 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:53306 10 6452 1 2025-11-28 22:58:13.175 00:00:10.365 TCP 23.104.0.1:55530 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 494731, total packets: 1557, avg bps: 1043, avg pps: 0, avg bpp: 317 Time window: 2025-11-28 21:55:09 - 2025-11-28 22:58:23 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0046s User: 0.0018s Wall: 0.0021s flows/second: 77698.9 Runtime: 0.0021s