Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 05:59:01.481 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:49414 10 6452 1 2025-10-01 05:59:36.836 00:00:10.378 TCP 23.104.0.1:33464 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:00:01.703 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36556 10 6452 1 2025-10-01 05:56:36.043 00:05:01.703 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:00:37.246 00:00:10.412 TCP 23.104.0.1:38202 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:01:04.866 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:01:04.699 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:01:01.922 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:40662 10 6452 1 2025-10-01 05:57:36.045 00:05:01.698 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:01:37.705 00:00:10.363 TCP 23.104.0.1:45946 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:02:02.102 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:59168 10 6452 1 2025-10-01 06:02:38.115 00:00:10.417 TCP 23.104.0.1:44224 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:03:02.327 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:53538 10 6452 1 2025-10-01 06:03:38.574 00:00:10.390 TCP 23.104.0.1:44544 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:04:02.501 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46986 10 6452 1 2025-10-01 06:04:39.005 00:00:10.319 TCP 23.104.0.1:49070 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:05:02.711 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55336 10 6452 1 2025-10-01 06:05:39.365 00:00:10.366 TCP 23.104.0.1:41224 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:06:04.880 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:06:04.813 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:06:02.925 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:55748 10 6452 1 2025-10-01 06:02:36.043 00:05:01.705 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:06:39.766 00:00:10.379 TCP 23.104.0.1:43486 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:07:03.130 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:56568 10 6452 1 2025-10-01 06:03:36.045 00:05:01.701 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:07:40.182 00:00:10.364 TCP 23.104.0.1:43936 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:08:03.301 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34888 10 6452 1 2025-10-01 06:08:40.583 00:00:10.831 TCP 23.104.0.1:49694 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:09:03.527 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:41680 10 6452 1 2025-10-01 06:09:41.455 00:00:10.323 TCP 23.104.0.1:37488 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:10:03.768 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36550 10 6452 1 2025-10-01 06:10:41.822 00:00:10.326 TCP 23.104.0.1:53086 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:11:05.101 00:00:00.049 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:11:04.900 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:11:03.987 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:42782 10 6452 1 2025-10-01 06:11:42.187 00:00:10.370 TCP 23.104.0.1:49552 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:12:04.223 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33694 10 6452 1 2025-10-01 06:08:36.043 00:05:01.705 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:12:42.592 00:00:10.369 TCP 23.104.0.1:50272 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:13:04.439 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34508 10 6452 1 2025-10-01 06:09:36.046 00:05:01.703 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:13:43.001 00:00:10.365 TCP 23.104.0.1:54196 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:14:04.665 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55816 10 6452 1 2025-10-01 06:14:43.402 00:00:10.359 TCP 23.104.0.1:49652 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:15:04.886 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:58762 10 6452 1 2025-10-01 06:15:43.803 00:00:10.363 TCP 23.104.0.1:56520 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:16:05.114 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:16:04.985 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:16:05.129 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48134 10 6452 1 2025-10-01 06:16:44.205 00:00:10.365 TCP 23.104.0.1:42622 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:17:05.346 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56244 10 6452 1 2025-10-01 06:17:44.610 00:00:10.363 TCP 23.104.0.1:40446 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:18:05.556 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35726 10 6452 1 2025-10-01 06:14:36.046 00:05:01.707 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:18:45.014 00:00:10.390 TCP 23.104.0.1:49454 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:19:05.773 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47604 10 6452 1 2025-10-01 06:15:36.050 00:05:01.702 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:19:45.452 00:00:10.372 TCP 23.104.0.1:42728 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:20:05.988 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:39342 10 6452 1 2025-10-01 06:20:45.859 00:00:10.382 TCP 23.104.0.1:58916 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:21:05.321 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:21:05.002 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:21:06.215 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53924 10 6452 1 2025-10-01 06:21:46.284 00:00:10.368 TCP 23.104.0.1:33506 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:22:06.428 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37276 10 6452 1 2025-10-01 06:22:46.688 00:00:10.333 TCP 23.104.0.1:52542 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:23:06.653 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:57248 10 6452 1 2025-10-01 06:23:47.080 00:00:10.368 TCP 23.104.0.1:42418 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:24:06.835 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:45532 10 6452 1 2025-10-01 06:20:36.046 00:05:01.708 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:24:47.485 00:00:10.365 TCP 23.104.0.1:44924 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:25:07.012 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50276 10 6452 1 2025-10-01 06:21:36.049 00:05:01.702 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:25:47.890 00:00:10.378 TCP 23.104.0.1:48820 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:26:05.182 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:26:05.537 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:26:07.238 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:43986 10 6452 1 2025-10-01 06:26:48.306 00:00:10.366 TCP 23.104.0.1:57824 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:27:07.466 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54206 10 6452 1 2025-10-01 06:27:48.705 00:00:10.381 TCP 23.104.0.1:39586 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:28:07.686 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35778 10 6452 1 2025-10-01 06:28:49.111 00:00:10.326 TCP 23.104.0.1:56448 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:29:07.903 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37482 10 6452 1 2025-10-01 06:29:49.471 00:00:10.357 TCP 23.104.0.1:35816 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:30:08.122 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47876 10 6452 1 2025-10-01 06:26:36.048 00:05:01.708 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:30:49.872 00:00:10.387 TCP 23.104.0.1:55172 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:31:05.357 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:31:05.414 00:00:00.030 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:31:08.342 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48390 10 6452 1 2025-10-01 06:27:36.051 00:05:01.702 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:31:50.295 00:00:10.391 TCP 23.104.0.1:50842 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:32:08.554 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58298 10 6452 1 2025-10-01 06:32:50.721 00:00:10.331 TCP 23.104.0.1:45008 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:33:08.770 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46416 10 6452 1 2025-10-01 06:33:51.102 00:00:10.366 TCP 23.104.0.1:43510 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:34:08.996 00:00:11.949 TCP 1.101.0.1:3000 -> 22.102.0.1:36314 10 6452 1 2025-10-01 06:34:51.516 00:00:10.376 TCP 23.104.0.1:59054 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:35:11.026 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40938 10 6452 1 2025-10-01 06:35:51.925 00:00:10.394 TCP 23.104.0.1:59248 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:36:05.379 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:36:05.269 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:36:11.241 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58130 10 6452 1 2025-10-01 06:32:36.050 00:05:01.706 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:36:52.359 00:00:10.367 TCP 23.104.0.1:47656 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:37:11.466 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48410 10 6452 1 2025-10-01 06:33:36.053 00:05:01.701 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:37:52.763 00:00:10.371 TCP 23.104.0.1:38300 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:38:11.689 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38224 10 6452 1 2025-10-01 06:38:53.174 00:00:10.324 TCP 23.104.0.1:52370 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:39:11.899 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58048 10 6452 1 2025-10-01 06:39:53.539 00:00:10.368 TCP 23.104.0.1:52536 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:40:12.120 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42552 10 6452 1 2025-10-01 06:41:05.666 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:41:05.639 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:40:53.941 00:00:10.380 TCP 23.104.0.1:44328 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:41:12.337 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:56140 10 6452 1 2025-10-01 06:41:54.369 00:00:10.366 TCP 23.104.0.1:41124 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:42:12.563 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45310 10 6452 1 2025-10-01 06:38:36.052 00:05:01.706 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:42:54.774 00:00:10.363 TCP 23.104.0.1:58698 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:43:12.784 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:60344 10 6452 1 2025-10-01 06:39:36.054 00:05:01.701 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:43:55.179 00:00:10.369 TCP 23.104.0.1:39002 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:44:12.964 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:60250 10 6452 1 2025-10-01 06:44:55.585 00:00:10.332 TCP 23.104.0.1:56776 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:45:13.198 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:41450 10 6452 1 2025-10-01 06:46:05.684 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:46:05.741 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:45:55.955 00:00:10.328 TCP 23.104.0.1:58448 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:46:13.367 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37602 10 6452 1 2025-10-01 06:46:56.318 00:00:10.326 TCP 23.104.0.1:51304 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:47:13.587 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43630 10 6452 1 2025-10-01 06:47:56.682 00:00:10.360 TCP 23.104.0.1:60988 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:48:13.795 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53948 10 6452 1 2025-10-01 06:44:36.054 00:05:01.705 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:48:57.105 00:00:10.367 TCP 23.104.0.1:51458 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:49:14.008 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58538 10 6452 1 2025-10-01 06:45:36.056 00:05:01.700 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:49:57.507 00:00:10.368 TCP 23.104.0.1:40340 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:50:14.219 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:50482 10 6452 1 2025-10-01 06:51:06.057 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:51:06.119 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:50:57.908 00:00:10.327 TCP 23.104.0.1:56968 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:51:14.443 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:37616 10 6452 1 2025-10-01 06:51:58.270 00:00:10.371 TCP 23.104.0.1:38326 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:52:14.669 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:57986 10 6452 1 2025-10-01 06:52:58.678 00:00:10.358 TCP 23.104.0.1:40084 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:53:14.891 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:37632 10 6452 1 2025-10-01 06:53:59.105 00:00:10.326 TCP 23.104.0.1:38126 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:54:15.126 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:42978 10 6452 1 2025-10-01 06:50:36.055 00:05:01.707 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 06:54:59.480 00:00:10.366 TCP 23.104.0.1:54722 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:55:15.347 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50050 10 6452 1 2025-10-01 06:51:36.057 00:05:01.701 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 06:56:05.648 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 06:56:05.960 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 06:55:59.886 00:00:10.975 TCP 23.104.0.1:34466 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:56:15.569 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:59918 10 6452 1 2025-10-01 06:57:00.896 00:00:10.326 TCP 23.104.0.1:38994 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:57:15.796 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:53690 10 6452 1 2025-10-01 06:58:01.259 00:00:10.370 TCP 23.104.0.1:42900 -> 1.101.0.1:3000 11 1507 1 2025-10-01 06:58:16.035 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52060 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1071, avg pps: 0, avg bpp: 318 Time window: 2025-10-01 05:56:36 - 2025-10-01 06:58:26 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0019s User: 0.0029s Wall: 0.0024s flows/second: 68572.9 Runtime: 0.0024s