Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 21:58:53.439 00:00:10.367 TCP 23.104.0.1:50784 -> 1.101.0.1:3000 11 1507 1 2025-11-29 21:55:05.508 00:05:04.738 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 21:55:05.505 00:05:04.743 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 21:59:28.507 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41578 10 6452 1 2025-11-29 21:59:49.943 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 21:59:49.789 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 21:59:53.842 00:00:10.377 TCP 23.104.0.1:42590 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:00:28.717 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42260 10 6452 1 2025-11-29 22:00:54.253 00:00:10.369 TCP 23.104.0.1:55546 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:01:28.929 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:47534 10 6452 1 2025-11-29 22:01:54.656 00:00:10.367 TCP 23.104.0.1:58536 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:02:29.170 00:00:10.799 TCP 1.101.0.1:3000 -> 22.102.0.1:42600 10 6452 1 2025-11-29 22:02:55.100 00:00:10.373 TCP 23.104.0.1:39420 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:03:30.007 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48554 10 6452 1 2025-11-29 22:03:55.514 00:00:10.365 TCP 23.104.0.1:59110 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:04:30.225 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:54286 10 6452 1 2025-11-29 22:04:50.163 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:04:50.237 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:04:55.915 00:00:10.319 TCP 23.104.0.1:46116 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:01:05.509 00:05:04.737 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 22:01:05.507 00:05:04.742 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 22:05:30.413 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:53478 10 6452 1 2025-11-29 22:05:56.268 00:00:10.368 TCP 23.104.0.1:33436 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:06:30.584 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55198 10 6452 1 2025-11-29 22:06:56.677 00:00:11.153 TCP 23.104.0.1:59898 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:07:30.805 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:54942 10 6452 1 2025-11-29 22:07:57.863 00:00:10.369 TCP 23.104.0.1:33138 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:08:30.978 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:39952 10 6452 1 2025-11-29 22:08:58.268 00:00:10.369 TCP 23.104.0.1:55520 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:09:31.214 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53606 10 6452 1 2025-11-29 22:09:50.478 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:09:50.523 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:09:58.680 00:00:10.385 TCP 23.104.0.1:33236 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:10:31.427 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:42076 10 6452 1 2025-11-29 22:10:59.119 00:00:10.368 TCP 23.104.0.1:40556 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:07:05.512 00:05:04.737 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 22:07:05.510 00:05:04.741 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 22:11:31.598 00:00:10.598 TCP 1.101.0.1:3000 -> 22.102.0.1:37674 10 6452 1 2025-11-29 22:11:59.528 00:00:10.366 TCP 23.104.0.1:37482 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:12:32.243 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50566 10 6452 1 2025-11-29 22:12:59.931 00:00:10.378 TCP 23.104.0.1:44744 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:13:32.461 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45470 10 6452 1 2025-11-29 22:14:00.349 00:00:10.321 TCP 23.104.0.1:36728 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:14:32.677 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56818 10 6452 1 2025-11-29 22:14:50.471 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:14:50.148 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:15:00.710 00:00:10.363 TCP 23.104.0.1:58764 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:15:32.901 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:51084 10 6452 1 2025-11-29 22:16:01.113 00:00:10.376 TCP 23.104.0.1:36392 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:16:33.080 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53396 10 6452 1 2025-11-29 22:13:05.517 00:05:04.733 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 22:17:01.511 00:00:10.336 TCP 23.104.0.1:35322 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:13:05.513 00:05:04.739 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 22:17:33.290 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:51896 10 6452 1 2025-11-29 22:18:01.886 00:00:10.385 TCP 23.104.0.1:35200 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:18:33.475 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:40858 10 6452 1 2025-11-29 22:19:02.309 00:00:10.364 TCP 23.104.0.1:48668 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:19:33.643 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54950 10 6452 1 2025-11-29 22:19:50.487 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:19:50.530 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:20:02.709 00:00:10.390 TCP 23.104.0.1:42336 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:20:33.862 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:60754 10 6452 1 2025-11-29 22:21:03.132 00:00:10.366 TCP 23.104.0.1:51844 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:21:34.099 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55598 10 6452 1 2025-11-29 22:22:03.537 00:00:10.388 TCP 23.104.0.1:60140 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:22:34.311 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57856 10 6452 1 2025-11-29 22:19:05.515 00:05:04.735 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 22:19:05.514 00:05:04.739 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 22:23:03.965 00:00:10.383 TCP 23.104.0.1:59016 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:23:34.523 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:34640 10 6452 1 2025-11-29 22:24:04.387 00:00:10.414 TCP 23.104.0.1:35584 -> 1.101.0.1:3000 12 1559 1 2025-11-29 22:24:34.698 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34942 10 6452 1 2025-11-29 22:24:50.517 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:24:50.737 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:25:04.841 00:00:10.385 TCP 23.104.0.1:40598 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:25:34.914 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54036 10 6452 1 2025-11-29 22:26:05.266 00:00:11.197 TCP 23.104.0.1:48480 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:26:35.130 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:40050 10 6452 1 2025-11-29 22:27:06.498 00:00:10.367 TCP 23.104.0.1:40362 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:27:35.306 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45346 10 6452 1 2025-11-29 22:28:06.901 00:00:10.331 TCP 23.104.0.1:34952 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:28:35.518 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37862 12 6556 1 2025-11-29 22:25:05.516 00:05:04.735 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 22:25:05.515 00:05:04.739 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 22:29:07.276 00:00:10.326 TCP 23.104.0.1:45722 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:29:35.731 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44330 10 6452 1 2025-11-29 22:29:50.340 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:29:50.623 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:30:07.639 00:00:10.358 TCP 23.104.0.1:36228 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:30:35.951 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43854 10 6452 1 2025-11-29 22:31:08.058 00:00:10.364 TCP 23.104.0.1:44512 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:31:36.167 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:59032 10 6452 1 2025-11-29 22:32:08.468 00:00:10.328 TCP 23.104.0.1:54170 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:32:36.379 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42034 10 6452 1 2025-11-29 22:33:08.837 00:00:10.386 TCP 23.104.0.1:54506 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:33:36.595 00:00:10.457 TCP 1.101.0.1:3000 -> 22.102.0.1:52952 10 6452 1 2025-11-29 22:34:09.264 00:00:10.367 TCP 23.104.0.1:53586 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:34:50.835 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:34:37.085 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51636 10 6452 1 2025-11-29 22:34:50.721 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:31:05.516 00:05:04.739 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 22:31:05.519 00:05:04.735 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 22:35:09.667 00:00:10.367 TCP 23.104.0.1:39324 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:35:37.298 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:51492 10 6452 1 2025-11-29 22:36:10.101 00:00:10.361 TCP 23.104.0.1:36368 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:36:37.483 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53276 10 6452 1 2025-11-29 22:37:10.496 00:00:10.367 TCP 23.104.0.1:54464 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:37:37.695 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50150 10 6452 1 2025-11-29 22:38:10.899 00:00:10.368 TCP 23.104.0.1:57596 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:38:37.906 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:36914 10 6452 1 2025-11-29 22:39:11.313 00:00:10.359 TCP 23.104.0.1:58892 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:39:38.093 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:52898 10 6452 1 2025-11-29 22:39:50.725 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:39:50.734 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:40:11.710 00:00:10.326 TCP 23.104.0.1:42176 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:40:38.333 00:00:10.856 TCP 1.101.0.1:3000 -> 22.102.0.1:37968 10 6452 1 2025-11-29 22:37:05.517 00:05:04.739 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 22:37:05.520 00:05:04.735 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 22:41:12.106 00:00:10.364 TCP 23.104.0.1:58226 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:41:39.228 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:33246 10 6452 1 2025-11-29 22:42:12.511 00:00:10.361 TCP 23.104.0.1:41218 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:42:39.403 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:43184 10 6452 1 2025-11-29 22:43:12.910 00:00:10.336 TCP 23.104.0.1:34286 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:43:39.612 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54832 10 6452 1 2025-11-29 22:44:13.290 00:00:10.361 TCP 23.104.0.1:54014 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:44:50.834 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:44:39.825 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43116 10 6452 1 2025-11-29 22:44:51.164 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:45:13.690 00:00:10.370 TCP 23.104.0.1:34396 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:45:40.069 00:00:10.479 TCP 1.101.0.1:3000 -> 22.102.0.1:39996 10 6452 1 2025-11-29 22:46:14.108 00:00:10.373 TCP 23.104.0.1:54892 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:46:40.586 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54882 10 6452 1 2025-11-29 22:43:05.521 00:05:04.734 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 22:43:05.519 00:05:04.739 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 22:47:14.512 00:00:10.370 TCP 23.104.0.1:40430 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:47:40.799 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:46304 10 6452 1 2025-11-29 22:48:14.916 00:00:10.378 TCP 23.104.0.1:60966 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:48:40.978 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:33762 13 6608 1 2025-11-29 22:49:15.332 00:00:10.366 TCP 23.104.0.1:48360 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:49:41.224 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:58078 10 6452 1 2025-11-29 22:49:50.856 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:49:50.932 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:50:15.736 00:00:10.326 TCP 23.104.0.1:36870 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:50:41.408 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48626 10 6452 1 2025-11-29 22:51:16.105 00:00:10.344 TCP 23.104.0.1:46208 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:51:41.631 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37824 10 6452 1 2025-11-29 22:52:16.486 00:00:10.380 TCP 23.104.0.1:56258 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:52:41.839 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58316 10 6452 1 2025-11-29 22:49:05.524 00:05:04.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 22:49:05.522 00:05:04.736 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 22:53:16.885 00:00:10.334 TCP 23.104.0.1:59664 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:53:42.083 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:45876 10 6452 1 2025-11-29 22:54:17.254 00:00:10.370 TCP 23.104.0.1:47806 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:54:51.429 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 22:54:51.483 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 22:54:42.317 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59116 10 6452 1 2025-11-29 22:55:17.659 00:00:10.364 TCP 23.104.0.1:59306 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:55:42.525 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52208 10 6452 1 2025-11-29 22:56:18.091 00:00:10.370 TCP 23.104.0.1:50796 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:56:42.737 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38098 10 6452 1 2025-11-29 22:57:18.497 00:00:11.110 TCP 23.104.0.1:48356 -> 1.101.0.1:3000 11 1507 1 2025-11-29 22:57:42.949 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:51374 10 6452 1 2025-11-29 22:58:19.650 00:00:10.322 TCP 23.104.0.1:40882 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 492208, total packets: 1568, avg bps: 1035, avg pps: 0, avg bpp: 313 Time window: 2025-11-29 21:55:05 - 2025-11-29 22:58:29 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0010s User: 0.0040s Wall: 0.0030s flows/second: 54169.4 Runtime: 0.0030s