Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 03:59:11.558 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:44624 10 6452 1 2025-10-03 03:59:34.815 00:00:10.741 TCP 23.104.0.1:55462 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:00:11.761 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48752 10 6452 1 2025-10-03 03:56:36.896 00:05:01.824 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:00:35.591 00:00:10.369 TCP 23.104.0.1:36360 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:01:11.976 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38908 10 6452 1 2025-10-03 03:57:36.900 00:05:01.819 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:01:35.997 00:00:11.085 TCP 23.104.0.1:48498 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:02:00.295 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:02:00.295 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:02:12.196 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39596 10 6452 1 2025-10-03 04:02:37.121 00:00:10.367 TCP 23.104.0.1:45170 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:03:12.416 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55832 10 6452 1 2025-10-03 04:03:37.528 00:00:10.364 TCP 23.104.0.1:54746 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:04:12.633 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38722 10 6452 1 2025-10-03 04:04:37.930 00:00:10.379 TCP 23.104.0.1:35034 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:05:12.845 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41142 10 6452 1 2025-10-03 04:05:38.348 00:00:10.369 TCP 23.104.0.1:35968 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:06:13.084 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39012 12 6556 1 2025-10-03 04:02:36.897 00:05:01.825 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:06:38.753 00:00:10.372 TCP 23.104.0.1:36856 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:07:00.300 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:07:00.307 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:07:13.307 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:59494 10 6452 1 2025-10-03 04:03:36.900 00:05:01.820 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:07:39.159 00:00:10.365 TCP 23.104.0.1:35912 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:08:13.477 00:00:11.069 TCP 1.101.0.1:3000 -> 22.102.0.1:33680 10 6452 1 2025-10-03 04:08:39.559 00:00:10.365 TCP 23.104.0.1:46368 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:09:14.596 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34100 10 6452 1 2025-10-03 04:09:39.962 00:00:10.370 TCP 23.104.0.1:48586 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:10:14.833 00:00:10.481 TCP 1.101.0.1:3000 -> 22.102.0.1:42996 10 6452 1 2025-10-03 04:10:40.367 00:00:10.371 TCP 23.104.0.1:52328 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:11:15.361 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49328 10 6452 1 2025-10-03 04:11:40.770 00:00:10.376 TCP 23.104.0.1:48206 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:12:00.398 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:12:00.268 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:12:15.576 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:52566 10 6452 1 2025-10-03 04:08:36.898 00:05:01.825 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:12:41.182 00:00:10.371 TCP 23.104.0.1:44740 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:13:15.758 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:57490 10 6452 1 2025-10-03 04:09:36.901 00:05:01.819 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:13:41.583 00:00:10.364 TCP 23.104.0.1:43454 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:14:15.981 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:50650 10 6452 1 2025-10-03 04:14:42.000 00:00:10.387 TCP 23.104.0.1:43914 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:15:16.180 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45288 10 6452 1 2025-10-03 04:15:42.450 00:00:10.365 TCP 23.104.0.1:56602 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:16:16.393 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:48578 10 6452 1 2025-10-03 04:17:00.639 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:16:42.851 00:00:10.334 TCP 23.104.0.1:60214 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:17:00.412 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:17:16.567 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:51078 10 6452 1 2025-10-03 04:17:43.226 00:00:10.327 TCP 23.104.0.1:59152 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:18:16.811 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:41572 10 6452 1 2025-10-03 04:14:36.902 00:05:01.822 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:18:43.588 00:00:10.337 TCP 23.104.0.1:39672 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:19:17.074 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:32898 10 6452 1 2025-10-03 04:15:36.905 00:05:01.818 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:19:43.980 00:00:10.329 TCP 23.104.0.1:57268 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:20:17.282 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46216 10 6452 1 2025-10-03 04:20:44.347 00:00:10.378 TCP 23.104.0.1:36712 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:21:17.498 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:57744 10 6452 1 2025-10-03 04:22:00.555 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:21:44.761 00:00:10.380 TCP 23.104.0.1:33244 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:22:00.553 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:22:17.735 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47552 10 6452 1 2025-10-03 04:22:45.184 00:00:10.365 TCP 23.104.0.1:56194 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:23:17.948 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:40610 10 6452 1 2025-10-03 04:23:45.585 00:00:10.640 TCP 23.104.0.1:33184 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:24:18.171 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:49562 10 6452 1 2025-10-03 04:20:36.904 00:05:01.822 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:24:46.262 00:00:10.363 TCP 23.104.0.1:37282 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:25:18.382 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43316 10 6452 1 2025-10-03 04:21:36.906 00:05:01.817 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:25:46.683 00:00:10.377 TCP 23.104.0.1:36680 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:26:18.594 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55750 12 6556 1 2025-10-03 04:26:47.119 00:00:10.324 TCP 23.104.0.1:54930 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:27:00.974 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:27:00.862 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:27:18.806 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:49552 10 6452 1 2025-10-03 04:27:47.480 00:00:10.366 TCP 23.104.0.1:53228 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:28:19.018 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36976 10 6452 1 2025-10-03 04:28:47.887 00:00:10.384 TCP 23.104.0.1:57464 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:29:19.245 00:00:10.889 TCP 1.101.0.1:3000 -> 22.102.0.1:42842 10 6452 1 2025-10-03 04:29:48.315 00:00:10.361 TCP 23.104.0.1:52922 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:30:20.173 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:51728 10 6452 1 2025-10-03 04:26:36.905 00:05:01.828 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:30:48.711 00:00:10.367 TCP 23.104.0.1:41578 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:31:20.357 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:35492 10 6452 1 2025-10-03 04:27:36.908 00:05:01.824 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:32:00.666 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:31:49.113 00:00:10.365 TCP 23.104.0.1:46484 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:32:00.688 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:32:20.540 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:53102 10 6452 1 2025-10-03 04:32:49.516 00:00:10.370 TCP 23.104.0.1:34400 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:33:20.721 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:47654 10 6452 1 2025-10-03 04:33:49.940 00:00:10.368 TCP 23.104.0.1:58444 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:34:20.897 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60266 10 6452 1 2025-10-03 04:34:50.353 00:00:10.326 TCP 23.104.0.1:50780 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:35:21.118 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53342 10 6452 1 2025-10-03 04:35:50.721 00:00:10.382 TCP 23.104.0.1:39666 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:36:21.333 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51960 10 6452 1 2025-10-03 04:32:36.909 00:05:01.825 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:37:00.956 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:37:00.799 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:36:51.142 00:00:10.365 TCP 23.104.0.1:60972 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:37:21.551 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47188 10 6452 1 2025-10-03 04:33:36.913 00:05:01.824 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:37:51.545 00:00:10.373 TCP 23.104.0.1:42040 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:38:21.762 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58568 10 6452 1 2025-10-03 04:38:51.958 00:00:10.370 TCP 23.104.0.1:34010 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:39:21.971 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:51264 10 6452 1 2025-10-03 04:39:52.366 00:00:10.359 TCP 23.104.0.1:46674 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:40:22.198 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45090 10 6452 1 2025-10-03 04:40:52.763 00:00:10.376 TCP 23.104.0.1:38386 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:41:22.411 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34852 10 6452 1 2025-10-03 04:42:01.120 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:42:01.171 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:41:53.179 00:00:10.368 TCP 23.104.0.1:59156 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:42:22.623 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56552 10 6452 1 2025-10-03 04:38:36.912 00:05:01.828 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:42:53.589 00:00:10.374 TCP 23.104.0.1:40720 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:43:22.851 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37180 10 6452 1 2025-10-03 04:39:36.914 00:05:01.823 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:43:54.003 00:00:10.328 TCP 23.104.0.1:53392 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:44:23.089 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50852 10 6452 1 2025-10-03 04:44:54.367 00:00:10.364 TCP 23.104.0.1:60266 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:45:23.302 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:51432 10 6452 1 2025-10-03 04:45:54.771 00:00:16.344 TCP 23.104.0.1:42496 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:46:23.473 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35854 10 6452 1 2025-10-03 04:47:01.006 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:47:01.275 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:47:01.160 00:00:10.324 TCP 23.104.0.1:33494 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:47:23.696 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46942 10 6452 1 2025-10-03 04:48:01.517 00:00:10.367 TCP 23.104.0.1:49188 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:48:23.912 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35338 10 6452 1 2025-10-03 04:44:36.915 00:05:01.828 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:49:01.924 00:00:10.333 TCP 23.104.0.1:54776 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:49:24.123 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47784 10 6452 1 2025-10-03 04:45:36.922 00:05:01.819 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:50:02.298 00:00:10.362 TCP 23.104.0.1:40966 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:50:24.336 00:00:10.680 TCP 1.101.0.1:3000 -> 22.102.0.1:33722 10 6452 1 2025-10-03 04:51:02.700 00:00:10.324 TCP 23.104.0.1:39844 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:51:25.074 00:00:10.298 TCP 1.101.0.1:3000 -> 22.102.0.1:43218 10 6452 1 2025-10-03 04:52:01.200 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:52:01.004 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:52:03.097 00:00:10.361 TCP 23.104.0.1:41806 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:52:25.409 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47420 10 6452 1 2025-10-03 04:53:03.501 00:00:10.368 TCP 23.104.0.1:56818 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:53:25.624 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50256 10 6452 1 2025-10-03 04:54:03.907 00:00:10.366 TCP 23.104.0.1:34370 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:54:25.841 00:00:10.357 TCP 1.101.0.1:3000 -> 22.102.0.1:45982 13 6608 1 2025-10-03 04:50:36.921 00:05:01.825 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 04:55:04.311 00:00:10.373 TCP 23.104.0.1:49160 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:55:26.244 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:37128 10 6452 1 2025-10-03 04:51:36.925 00:05:01.819 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 04:56:04.723 00:00:10.325 TCP 23.104.0.1:36380 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:56:26.415 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50952 10 6452 1 2025-10-03 04:57:01.414 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 04:57:01.397 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 04:57:05.111 00:00:10.370 TCP 23.104.0.1:58776 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:57:26.628 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45728 10 6452 1 2025-10-03 04:58:05.524 00:00:10.372 TCP 23.104.0.1:47026 -> 1.101.0.1:3000 11 1507 1 2025-10-03 04:58:26.846 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37790 10 6452 1 Summary: total flows: 163, total bytes: 497205, total packets: 1568, avg bps: 1069, avg pps: 0, avg bpp: 317 Time window: 2025-10-03 03:56:36 - 2025-10-03 04:58:37 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0032s User: 0.0011s Wall: 0.0015s flows/second: 108674.5 Runtime: 0.0015s