Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 23:58:54.669 00:00:10.325 TCP 23.104.0.1:51026 -> 1.101.0.1:3000 11 1507 1 2025-11-28 23:58:59.072 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:43302 10 6452 1 2025-11-28 23:59:23.513 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 23:59:23.734 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 23:55:09.768 00:05:55.376 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 23:55:09.766 00:05:55.382 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 23:59:55.032 00:00:10.366 TCP 23.104.0.1:43700 -> 1.101.0.1:3000 11 1507 1 2025-11-28 23:59:59.258 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:48060 10 6452 1 2025-11-29 00:00:55.438 00:00:10.363 TCP 23.104.0.1:46520 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:00:59.427 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48594 10 6452 1 2025-11-29 00:01:55.840 00:00:10.386 TCP 23.104.0.1:34108 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:01:59.636 00:00:11.538 TCP 1.101.0.1:3000 -> 22.102.0.1:42714 10 6452 1 2025-11-29 00:02:56.258 00:00:10.369 TCP 23.104.0.1:51186 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:03:01.212 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36728 10 6452 1 2025-11-29 00:03:56.661 00:00:10.318 TCP 23.104.0.1:37874 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:04:01.422 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:49792 10 6452 1 2025-11-29 00:04:23.553 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:04:23.709 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:04:57.012 00:00:10.360 TCP 23.104.0.1:47902 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:05:01.647 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55430 10 6452 1 2025-11-29 00:01:09.769 00:05:55.380 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:01:09.768 00:05:55.384 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 00:05:57.425 00:00:10.366 TCP 23.104.0.1:52410 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:06:01.864 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:60414 10 6452 1 2025-11-29 00:06:57.831 00:00:10.384 TCP 23.104.0.1:42476 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:07:02.067 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33642 10 6452 1 2025-11-29 00:07:58.250 00:00:10.366 TCP 23.104.0.1:54564 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:08:02.280 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:57886 10 6452 1 2025-11-29 00:08:58.656 00:00:10.366 TCP 23.104.0.1:42936 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:09:02.498 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43962 10 6452 1 2025-11-29 00:09:23.611 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:09:23.776 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:09:59.085 00:00:10.362 TCP 23.104.0.1:42344 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:10:02.709 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:32804 10 6452 1 2025-11-29 00:10:59.486 00:00:10.362 TCP 23.104.0.1:51206 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:11:02.919 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:60400 10 6452 1 2025-11-29 00:07:09.772 00:05:55.381 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 00:07:09.775 00:05:55.376 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:11:59.886 00:00:10.384 TCP 23.104.0.1:40260 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:12:03.166 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:47956 10 6452 1 2025-11-29 00:13:00.322 00:00:10.363 TCP 23.104.0.1:55748 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:13:03.377 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42006 10 6452 1 2025-11-29 00:14:00.725 00:00:10.323 TCP 23.104.0.1:47060 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:14:03.591 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44382 10 6452 1 2025-11-29 00:14:23.670 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:14:23.764 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:15:01.109 00:00:10.362 TCP 23.104.0.1:45892 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:15:03.808 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38948 10 6452 1 2025-11-29 00:16:01.511 00:00:10.744 TCP 23.104.0.1:42708 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:16:04.039 00:00:10.488 TCP 1.101.0.1:3000 -> 22.102.0.1:51412 10 6452 1 2025-11-29 00:17:04.564 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39536 10 6452 1 2025-11-29 00:17:02.296 00:00:10.324 TCP 23.104.0.1:55254 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:13:09.775 00:05:55.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:13:09.773 00:05:55.380 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 00:18:04.788 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:52740 10 6452 1 2025-11-29 00:18:02.657 00:00:10.368 TCP 23.104.0.1:34464 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:19:04.979 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:54492 10 6452 1 2025-11-29 00:19:03.087 00:00:10.369 TCP 23.104.0.1:33840 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:19:23.784 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:19:23.698 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:20:03.492 00:00:10.365 TCP 23.104.0.1:53878 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:20:05.174 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38540 10 6452 1 2025-11-29 00:21:05.392 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50334 10 6452 1 2025-11-29 00:21:03.895 00:00:10.365 TCP 23.104.0.1:53702 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:22:05.615 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:60132 12 6556 1 2025-11-29 00:22:04.298 00:00:10.364 TCP 23.104.0.1:59686 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:23:05.838 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45254 10 6452 1 2025-11-29 00:23:04.699 00:00:10.767 TCP 23.104.0.1:41310 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:19:09.778 00:05:55.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:19:09.774 00:05:55.380 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 00:24:05.498 00:00:10.323 TCP 23.104.0.1:46622 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:24:06.080 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52294 10 6452 1 2025-11-29 00:24:24.179 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:24:23.990 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:25:05.853 00:00:10.776 TCP 23.104.0.1:41950 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:25:06.301 00:00:10.276 TCP 1.101.0.1:3000 -> 22.102.0.1:53006 10 6452 1 2025-11-29 00:26:06.627 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:60366 10 6452 1 2025-11-29 00:26:06.699 00:00:10.368 TCP 23.104.0.1:39264 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:27:06.837 00:00:10.817 TCP 1.101.0.1:3000 -> 22.102.0.1:49330 10 6452 1 2025-11-29 00:27:07.110 00:00:10.678 TCP 23.104.0.1:34538 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:28:07.829 00:00:10.391 TCP 23.104.0.1:51130 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:28:07.699 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40146 10 6452 1 2025-11-29 00:29:08.253 00:00:10.368 TCP 23.104.0.1:50166 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:29:07.916 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:41446 10 6452 1 2025-11-29 00:29:24.122 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:29:24.194 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:25:09.778 00:05:55.374 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:25:09.775 00:05:55.379 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 00:30:08.658 00:00:10.374 TCP 23.104.0.1:59680 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:30:08.098 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:35872 10 6452 1 2025-11-29 00:31:08.271 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:46836 10 6452 1 2025-11-29 00:31:09.093 00:00:10.331 TCP 23.104.0.1:53290 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:32:08.444 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:34112 12 10375 1 2025-11-29 00:32:09.460 00:00:10.439 TCP 23.104.0.1:43730 -> 1.101.0.1:3000 15 1926 1 2025-11-29 00:33:08.683 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:59086 10 6452 1 2025-11-29 00:33:09.939 00:00:10.373 TCP 23.104.0.1:59188 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:34:10.351 00:00:10.373 TCP 23.104.0.1:37736 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:34:24.180 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:34:08.903 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41070 10 6452 1 2025-11-29 00:34:24.309 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:35:09.119 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49216 10 6452 1 2025-11-29 00:35:10.767 00:00:10.372 TCP 23.104.0.1:34480 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:31:09.781 00:05:55.373 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:31:09.780 00:05:55.377 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 00:36:09.330 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:42722 10 6452 1 2025-11-29 00:36:11.179 00:00:10.369 TCP 23.104.0.1:57886 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:37:09.508 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:55890 12 10375 1 2025-11-29 00:37:11.584 00:00:10.447 TCP 23.104.0.1:48444 -> 1.101.0.1:3000 15 1926 1 2025-11-29 00:38:12.106 00:00:10.363 TCP 23.104.0.1:39054 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:38:09.754 00:01:10.425 TCP 1.101.0.1:3000 -> 22.102.0.1:53030 20 12904 1 2025-11-29 00:39:24.467 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:39:12.507 00:00:10.371 TCP 23.104.0.1:46884 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:39:24.410 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:40:10.216 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:33768 10 6452 1 2025-11-29 00:40:12.914 00:00:10.364 TCP 23.104.0.1:52548 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:41:10.442 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:32808 10 6452 1 2025-11-29 00:41:13.327 00:00:10.378 TCP 23.104.0.1:45242 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:37:09.782 00:05:55.373 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:37:09.780 00:05:55.378 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 00:42:10.658 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:53088 10 6452 1 2025-11-29 00:42:13.749 00:00:10.391 TCP 23.104.0.1:50036 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:43:10.881 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:37744 10 6452 1 2025-11-29 00:43:14.177 00:00:10.365 TCP 23.104.0.1:46872 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:44:11.107 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:42436 10 6452 1 2025-11-29 00:44:24.354 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:44:24.418 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:44:14.581 00:00:10.360 TCP 23.104.0.1:50102 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:45:11.335 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:40150 10 6452 1 2025-11-29 00:45:14.977 00:00:10.335 TCP 23.104.0.1:51470 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:46:11.563 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56242 10 6452 1 2025-11-29 00:46:15.354 00:00:10.327 TCP 23.104.0.1:54826 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:47:11.778 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:50264 10 6452 1 2025-11-29 00:47:15.719 00:00:10.373 TCP 23.104.0.1:56118 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:43:09.783 00:05:55.376 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:43:09.781 00:05:55.381 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 00:48:11.956 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49186 10 6452 1 2025-11-29 00:48:16.132 00:00:10.373 TCP 23.104.0.1:58122 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:49:24.495 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:49:12.179 00:00:10.353 TCP 1.101.0.1:3000 -> 22.102.0.1:36562 10 6452 1 2025-11-29 00:49:24.696 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:49:16.541 00:00:10.949 TCP 23.104.0.1:43240 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:50:12.570 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37114 10 6452 1 2025-11-29 00:50:17.524 00:00:10.369 TCP 23.104.0.1:51624 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:51:12.797 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:52514 10 6452 1 2025-11-29 00:51:17.933 00:00:10.382 TCP 23.104.0.1:58754 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:52:13.028 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57446 10 6452 1 2025-11-29 00:52:18.352 00:00:10.365 TCP 23.104.0.1:37268 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:53:13.255 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:49058 10 6452 1 2025-11-29 00:53:18.755 00:00:10.386 TCP 23.104.0.1:54724 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:49:09.783 00:05:55.380 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 00:49:09.786 00:05:55.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:54:24.584 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:54:13.483 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50378 10 6452 1 2025-11-29 00:54:24.525 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:54:19.182 00:00:10.374 TCP 23.104.0.1:33786 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:55:13.702 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:36598 12 6556 1 2025-11-29 00:55:19.594 00:00:10.365 TCP 23.104.0.1:45754 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:56:13.924 00:00:10.544 TCP 1.101.0.1:3000 -> 22.102.0.1:42592 10 6452 1 2025-11-29 00:56:19.996 00:00:10.363 TCP 23.104.0.1:58520 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:57:14.508 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37880 10 6452 1 2025-11-29 00:57:20.397 00:00:10.377 TCP 23.104.0.1:55918 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:58:14.720 00:00:10.219 TCP 1.101.0.1:3000 -> 22.102.0.1:38378 10 6452 1 2025-11-29 00:58:20.817 00:00:10.357 TCP 23.104.0.1:37968 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 507240, total packets: 1588, avg bps: 1067, avg pps: 0, avg bpp: 319 Time window: 2025-11-28 23:55:09 - 2025-11-29 00:58:31 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0048s User: 0.0019s Wall: 0.0021s flows/second: 77875.8 Runtime: 0.0021s