Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 07:59:08.080 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59464 10 6452 1 2025-10-03 07:59:31.009 00:00:10.363 TCP 23.104.0.1:60994 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:00:08.299 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43060 10 6452 1 2025-10-03 07:56:36.987 00:05:01.831 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:00:31.412 00:00:10.361 TCP 23.104.0.1:51264 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:01:08.508 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47262 10 6452 1 2025-10-03 07:57:36.990 00:05:01.825 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:01:31.812 00:00:10.369 TCP 23.104.0.1:53638 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:02:05.086 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:02:05.122 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:02:08.731 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59924 10 6452 1 2025-10-03 08:02:32.217 00:00:10.366 TCP 23.104.0.1:42860 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:03:08.943 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:60624 10 6452 1 2025-10-03 08:03:32.614 00:00:10.326 TCP 23.104.0.1:60490 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:04:09.183 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:54870 10 6452 1 2025-10-03 08:04:32.980 00:00:10.368 TCP 23.104.0.1:58162 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:05:09.408 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51788 10 6452 1 2025-10-03 08:05:33.388 00:00:10.363 TCP 23.104.0.1:53424 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:06:09.630 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:35332 10 6452 1 2025-10-03 08:02:36.989 00:05:01.829 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:06:33.793 00:00:10.367 TCP 23.104.0.1:53340 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:07:05.640 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:07:05.152 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:07:09.852 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39958 10 6452 1 2025-10-03 08:03:36.992 00:05:01.824 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:07:34.202 00:00:10.328 TCP 23.104.0.1:51792 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:08:10.080 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40036 10 6452 1 2025-10-03 08:08:34.570 00:00:10.336 TCP 23.104.0.1:39572 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:09:10.295 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:59764 10 6452 1 2025-10-03 08:09:34.944 00:00:10.378 TCP 23.104.0.1:39184 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:10:10.502 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42642 10 6452 1 2025-10-03 08:10:35.360 00:00:10.366 TCP 23.104.0.1:45934 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:11:10.720 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52678 10 6452 1 2025-10-03 08:11:35.759 00:00:10.380 TCP 23.104.0.1:33970 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:12:05.409 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:12:05.030 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:12:10.939 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:41404 10 6452 1 2025-10-03 08:08:36.996 00:05:01.822 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:12:36.179 00:00:10.361 TCP 23.104.0.1:54658 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:13:11.131 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:49542 10 6452 1 2025-10-03 08:09:36.995 00:05:01.821 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:13:36.577 00:00:10.364 TCP 23.104.0.1:58570 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:14:11.307 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42682 10 6452 1 2025-10-03 08:14:36.980 00:00:10.361 TCP 23.104.0.1:60214 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:15:11.525 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43594 10 6452 1 2025-10-03 08:15:37.382 00:00:10.374 TCP 23.104.0.1:44194 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:16:11.739 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48610 10 6452 1 2025-10-03 08:16:37.800 00:00:10.339 TCP 23.104.0.1:51808 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:17:05.375 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:17:05.330 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:17:11.911 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:40372 10 6452 1 2025-10-03 08:17:38.171 00:00:10.368 TCP 23.104.0.1:50824 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:18:12.098 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53630 10 6452 1 2025-10-03 08:14:36.994 00:05:01.828 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:18:38.570 00:00:10.363 TCP 23.104.0.1:45318 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:19:12.310 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:56296 10 6452 1 2025-10-03 08:15:36.998 00:05:01.822 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:19:38.970 00:00:10.375 TCP 23.104.0.1:38486 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:20:12.488 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:51552 10 6452 1 2025-10-03 08:20:39.385 00:00:10.366 TCP 23.104.0.1:34606 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:21:12.654 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:40430 10 6452 1 2025-10-03 08:21:39.789 00:00:10.363 TCP 23.104.0.1:46066 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:22:05.454 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:22:05.368 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:22:12.876 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:52270 10 6452 1 2025-10-03 08:22:40.191 00:00:10.364 TCP 23.104.0.1:35598 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:23:13.107 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38160 10 6452 1 2025-10-03 08:23:40.594 00:00:10.365 TCP 23.104.0.1:42262 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:24:13.322 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49048 10 6452 1 2025-10-03 08:20:36.996 00:05:01.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:24:40.995 00:00:10.372 TCP 23.104.0.1:50068 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:25:13.537 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:38710 10 6452 1 2025-10-03 08:21:37.000 00:05:01.821 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:25:41.400 00:00:10.379 TCP 23.104.0.1:34614 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:26:13.710 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35054 10 6452 1 2025-10-03 08:26:41.805 00:00:10.369 TCP 23.104.0.1:60912 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:27:05.555 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:27:05.434 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:27:13.922 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:36024 10 6452 1 2025-10-03 08:27:42.213 00:00:10.363 TCP 23.104.0.1:36820 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:28:14.150 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43874 10 6452 1 2025-10-03 08:28:42.611 00:00:10.377 TCP 23.104.0.1:46494 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:29:14.361 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:37984 10 6452 1 2025-10-03 08:29:43.023 00:00:10.362 TCP 23.104.0.1:56004 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:30:14.529 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42316 10 6452 1 2025-10-03 08:26:36.998 00:05:01.830 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:30:43.428 00:00:10.365 TCP 23.104.0.1:48408 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:31:14.745 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58568 10 6452 1 2025-10-03 08:27:37.002 00:05:01.824 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:31:43.834 00:00:10.390 TCP 23.104.0.1:34494 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:32:05.654 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:32:05.800 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:32:14.964 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:35694 12 6556 1 2025-10-03 08:32:44.265 00:00:10.369 TCP 23.104.0.1:48092 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:33:15.182 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38136 10 6452 1 2025-10-03 08:33:44.671 00:00:10.366 TCP 23.104.0.1:50274 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:34:15.401 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:39520 10 6452 1 2025-10-03 08:34:45.103 00:00:10.328 TCP 23.104.0.1:56502 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:35:15.629 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56144 10 6452 1 2025-10-03 08:35:45.470 00:00:10.368 TCP 23.104.0.1:38008 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:36:15.844 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42068 10 6452 1 2025-10-03 08:32:37.030 00:05:01.801 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:36:45.873 00:00:10.375 TCP 23.104.0.1:42664 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:37:05.844 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:37:05.788 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:37:16.084 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60724 10 6452 1 2025-10-03 08:33:37.033 00:05:01.794 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:37:46.292 00:00:10.560 TCP 23.104.0.1:38342 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:38:16.295 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:32938 10 6452 1 2025-10-03 08:38:46.893 00:00:10.378 TCP 23.104.0.1:56424 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:39:16.507 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:35552 10 6452 1 2025-10-03 08:39:47.307 00:00:10.363 TCP 23.104.0.1:34372 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:40:16.750 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:57810 10 6452 1 2025-10-03 08:40:47.707 00:00:10.368 TCP 23.104.0.1:55594 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:41:16.919 00:00:10.222 TCP 1.101.0.1:3000 -> 22.102.0.1:33458 10 6452 1 2025-10-03 08:41:48.117 00:00:10.368 TCP 23.104.0.1:56702 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:42:06.049 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:42:05.898 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:42:17.180 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45706 10 6452 1 2025-10-03 08:38:37.035 00:05:01.796 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:42:48.524 00:00:10.364 TCP 23.104.0.1:50458 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:43:17.392 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:60214 10 6452 1 2025-10-03 08:39:37.038 00:05:01.790 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:43:48.925 00:00:10.336 TCP 23.104.0.1:49300 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:44:17.615 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38804 10 6452 1 2025-10-03 08:44:49.305 00:00:10.365 TCP 23.104.0.1:58176 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:45:17.832 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:51632 10 6452 1 2025-10-03 08:45:49.709 00:00:10.378 TCP 23.104.0.1:56348 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:46:18.087 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42024 10 6452 1 2025-10-03 08:47:05.940 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:46:50.131 00:00:10.371 TCP 23.104.0.1:55368 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:47:06.174 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:47:18.305 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:42044 10 6452 1 2025-10-03 08:47:50.537 00:00:10.362 TCP 23.104.0.1:41136 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:48:18.474 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:57298 10 6452 1 2025-10-03 08:44:37.038 00:05:01.795 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:48:50.938 00:00:10.378 TCP 23.104.0.1:52794 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:49:18.697 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53126 10 6452 1 2025-10-03 08:45:37.040 00:05:01.790 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:49:51.356 00:00:10.367 TCP 23.104.0.1:48892 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:50:18.921 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:42424 10 6452 1 2025-10-03 08:50:51.764 00:00:10.325 TCP 23.104.0.1:50254 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:51:19.161 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37942 10 6452 1 2025-10-03 08:52:06.092 00:00:00.050 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:51:52.129 00:00:10.367 TCP 23.104.0.1:55668 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:52:06.321 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:52:19.377 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60822 10 6452 1 2025-10-03 08:52:52.532 00:00:10.365 TCP 23.104.0.1:50652 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:53:19.585 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59580 10 6452 1 2025-10-03 08:53:52.937 00:00:10.637 TCP 23.104.0.1:58516 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:54:19.805 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58564 10 6452 1 2025-10-03 08:50:37.038 00:05:01.795 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-03 08:54:53.612 00:00:10.323 TCP 23.104.0.1:57376 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:55:20.034 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48406 10 6452 1 2025-10-03 08:51:37.043 00:05:01.788 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-03 08:55:53.975 00:00:10.372 TCP 23.104.0.1:46686 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:56:20.252 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:44034 10 6452 1 2025-10-03 08:57:06.254 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-03 08:56:54.383 00:00:10.326 TCP 23.104.0.1:33364 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:57:06.259 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-03 08:57:20.442 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53532 10 6452 1 2025-10-03 08:57:54.749 00:00:10.376 TCP 23.104.0.1:49004 -> 1.101.0.1:3000 11 1507 1 2025-10-03 08:58:20.649 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37428 10 6452 1 Summary: total flows: 163, total bytes: 496945, total packets: 1563, avg bps: 1070, avg pps: 0, avg bpp: 317 Time window: 2025-10-03 07:56:36 - 2025-10-03 08:58:30 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0042s User: 0.0000s Wall: 0.0021s flows/second: 76132.7 Runtime: 0.0022s