Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 11:58:54.816 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:36828 10 6452 1 2025-10-04 11:59:16.351 00:00:10.577 TCP 23.104.0.1:42586 -> 1.101.0.1:3000 11 1507 1 2025-10-04 11:59:54.997 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36510 10 6452 1 2025-10-04 12:00:16.966 00:00:10.365 TCP 23.104.0.1:58762 -> 1.101.0.1:3000 11 1507 1 2025-10-04 11:56:37.503 00:05:01.951 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:00:55.220 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38734 10 6452 1 2025-10-04 12:01:17.366 00:00:10.432 TCP 23.104.0.1:50814 -> 1.101.0.1:3000 11 1507 1 2025-10-04 11:57:37.506 00:05:01.946 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:01:55.435 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:35800 10 6452 1 2025-10-04 12:02:17.837 00:00:10.329 TCP 23.104.0.1:51854 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:02:38.982 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:02:38.798 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:02:55.643 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58258 10 6452 1 2025-10-04 12:03:18.212 00:00:10.368 TCP 23.104.0.1:41268 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:03:55.855 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:42878 10 6452 1 2025-10-04 12:04:18.619 00:00:10.331 TCP 23.104.0.1:40052 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:04:56.099 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:44534 10 6452 1 2025-10-04 12:05:18.988 00:00:10.363 TCP 23.104.0.1:60020 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:05:56.269 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49822 10 6452 1 2025-10-04 12:06:19.391 00:00:10.325 TCP 23.104.0.1:35418 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:02:37.506 00:05:01.950 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:06:56.483 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33496 10 6452 1 2025-10-04 12:07:19.765 00:00:10.381 TCP 23.104.0.1:58318 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:07:38.655 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:03:37.509 00:05:01.944 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:07:38.713 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:07:56.699 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41904 10 6452 1 2025-10-04 12:08:20.195 00:00:10.446 TCP 23.104.0.1:45256 -> 1.101.0.1:3000 15 1926 1 2025-10-04 12:08:56.919 00:00:10.242 TCP 1.101.0.1:3000 -> 22.102.0.1:53032 12 10369 1 2025-10-04 12:09:20.685 00:00:10.325 TCP 23.104.0.1:50084 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:09:57.200 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55320 10 6452 1 2025-10-04 12:10:21.047 00:00:10.367 TCP 23.104.0.1:47946 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:10:57.411 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:53120 10 6452 1 2025-10-04 12:11:21.450 00:00:10.366 TCP 23.104.0.1:34104 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:11:57.582 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:37284 10 6452 1 2025-10-04 12:12:21.851 00:00:10.374 TCP 23.104.0.1:41780 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:12:38.732 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:08:37.507 00:05:01.949 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:12:38.818 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:12:57.795 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45372 10 6452 1 2025-10-04 12:13:22.268 00:00:10.365 TCP 23.104.0.1:38976 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:09:37.509 00:05:01.945 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:13:57.977 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:50576 13 6608 1 2025-10-04 12:14:22.681 00:00:10.321 TCP 23.104.0.1:51276 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:14:58.244 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:59888 10 6452 1 2025-10-04 12:15:23.069 00:00:10.940 TCP 23.104.0.1:37870 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:15:58.451 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38510 10 6452 1 2025-10-04 12:16:24.056 00:00:10.361 TCP 23.104.0.1:48134 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:16:58.666 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41228 10 6452 1 2025-10-04 12:17:24.462 00:00:10.365 TCP 23.104.0.1:39536 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:17:39.275 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:17:39.407 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:17:58.883 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45214 11 6492 1 2025-10-04 12:18:24.867 00:00:10.366 TCP 23.104.0.1:43836 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:14:37.509 00:05:01.952 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:18:59.101 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:32894 10 6452 1 2025-10-04 12:19:25.275 00:00:10.657 TCP 23.104.0.1:43572 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:15:37.511 00:05:01.947 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:19:59.317 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33042 10 6452 1 2025-10-04 12:20:25.972 00:00:10.333 TCP 23.104.0.1:37570 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:20:59.537 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39982 10 6452 1 2025-10-04 12:21:26.341 00:00:10.327 TCP 23.104.0.1:50020 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:21:59.752 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:34410 10 6452 1 2025-10-04 12:22:39.210 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:22:26.706 00:00:10.707 TCP 23.104.0.1:38604 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:22:39.190 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:22:59.925 00:00:10.381 TCP 1.101.0.1:3000 -> 22.102.0.1:33898 10 6452 1 2025-10-04 12:23:27.449 00:00:10.368 TCP 23.104.0.1:37680 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:24:00.348 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:43162 10 6452 1 2025-10-04 12:24:27.878 00:00:10.369 TCP 23.104.0.1:58724 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:20:37.509 00:05:01.954 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:25:00.557 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:56190 10 6452 1 2025-10-04 12:21:37.512 00:05:01.949 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:25:28.284 00:00:10.368 TCP 23.104.0.1:41612 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:26:00.761 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:47560 10 6452 1 2025-10-04 12:26:28.689 00:00:10.370 TCP 23.104.0.1:42272 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:27:00.933 00:00:10.702 TCP 1.101.0.1:3000 -> 22.102.0.1:56270 11 6504 1 2025-10-04 12:27:39.016 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:27:29.102 00:00:10.363 TCP 23.104.0.1:37724 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:27:39.045 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:28:01.673 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56818 10 6452 1 2025-10-04 12:28:29.503 00:00:10.324 TCP 23.104.0.1:58440 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:29:01.891 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:35708 10 6452 1 2025-10-04 12:29:29.867 00:00:10.449 TCP 23.104.0.1:46972 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:30:02.081 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:58992 10 6452 1 2025-10-04 12:26:37.514 00:05:01.951 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:30:30.358 00:00:10.366 TCP 23.104.0.1:55784 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:31:02.312 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39312 10 6452 1 2025-10-04 12:27:37.517 00:05:01.946 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:31:30.765 00:00:10.376 TCP 23.104.0.1:37940 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:32:02.526 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38768 10 6452 1 2025-10-04 12:32:39.347 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:32:31.180 00:00:10.373 TCP 23.104.0.1:54090 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:32:39.250 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:33:02.738 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:33508 10 6452 1 2025-10-04 12:33:31.588 00:00:10.370 TCP 23.104.0.1:39152 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:34:02.948 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:38208 10 6452 1 2025-10-04 12:34:31.996 00:00:10.324 TCP 23.104.0.1:59914 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:35:03.177 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:37138 10 6452 1 2025-10-04 12:35:32.356 00:00:10.365 TCP 23.104.0.1:42220 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:36:03.406 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:52992 10 6452 1 2025-10-04 12:32:37.516 00:05:01.951 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:36:32.754 00:00:10.340 TCP 23.104.0.1:59766 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:37:03.575 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:57610 10 6452 1 2025-10-04 12:37:39.442 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:37:39.244 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:33:37.519 00:05:01.946 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:37:33.132 00:00:10.328 TCP 23.104.0.1:50260 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:38:03.804 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39264 10 6452 1 2025-10-04 12:38:33.500 00:00:10.368 TCP 23.104.0.1:40072 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:39:04.030 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53776 10 6452 1 2025-10-04 12:39:33.910 00:00:10.328 TCP 23.104.0.1:60014 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:40:04.251 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:51080 10 6452 1 2025-10-04 12:40:34.279 00:00:10.326 TCP 23.104.0.1:60058 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:41:04.461 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58244 10 6452 1 2025-10-04 12:41:34.653 00:00:10.372 TCP 23.104.0.1:59656 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:42:04.676 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58682 10 6452 1 2025-10-04 12:42:39.602 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:38:37.519 00:05:01.953 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:42:39.742 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:42:35.091 00:00:10.326 TCP 23.104.0.1:42726 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:43:04.897 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51608 10 6452 1 2025-10-04 12:39:37.520 00:05:01.947 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:43:35.453 00:00:10.369 TCP 23.104.0.1:48522 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:44:05.119 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40440 10 6452 1 2025-10-04 12:44:35.860 00:00:10.335 TCP 23.104.0.1:34848 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:45:05.332 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59868 10 6452 1 2025-10-04 12:45:36.232 00:00:10.365 TCP 23.104.0.1:47412 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:46:05.544 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42152 10 6452 1 2025-10-04 12:46:36.637 00:00:10.321 TCP 23.104.0.1:57726 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:47:05.758 00:00:10.267 TCP 1.101.0.1:3000 -> 22.102.0.1:54696 10 6452 1 2025-10-04 12:47:39.634 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:47:39.513 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:47:36.997 00:00:10.362 TCP 23.104.0.1:51324 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:48:06.082 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45378 10 6452 1 2025-10-04 12:44:37.519 00:05:01.953 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:48:37.405 00:00:10.365 TCP 23.104.0.1:35142 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:49:06.294 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47724 10 6452 1 2025-10-04 12:45:37.522 00:05:01.947 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:49:37.803 00:00:10.361 TCP 23.104.0.1:56630 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:50:06.469 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:51848 10 6452 1 2025-10-04 12:50:38.202 00:00:10.362 TCP 23.104.0.1:53188 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:51:06.678 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56170 10 6452 1 2025-10-04 12:51:38.600 00:00:10.364 TCP 23.104.0.1:34734 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:52:06.889 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:44202 10 6452 1 2025-10-04 12:52:39.712 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:52:39.864 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:52:39.006 00:00:10.363 TCP 23.104.0.1:39692 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:53:07.078 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42576 10 6452 1 2025-10-04 12:53:39.408 00:00:10.364 TCP 23.104.0.1:54104 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:54:07.293 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53684 10 6452 1 2025-10-04 12:50:37.519 00:05:01.953 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-04 12:54:39.811 00:00:10.367 TCP 23.104.0.1:34082 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:55:07.507 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49684 10 6452 1 2025-10-04 12:51:37.524 00:05:01.948 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-04 12:55:40.224 00:00:10.375 TCP 23.104.0.1:37066 -> 1.101.0.1:3000 11 1507 1 2025-10-04 12:56:07.722 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46808 10 6452 1 2025-10-04 12:57:07.936 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:34382 10 6452 1 2025-10-04 12:57:39.775 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-04 12:57:39.657 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 12:56:40.640 00:01:10.782 TCP 23.104.0.1:60960 -> 1.101.0.1:3000 22 3014 1 2025-10-04 12:58:08.139 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39332 10 6452 1 2025-10-04 12:58:41.460 00:00:10.361 TCP 23.104.0.1:34318 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 502932, total packets: 1583, avg bps: 1077, avg pps: 0, avg bpp: 317 Time window: 2025-10-04 11:56:37 - 2025-10-04 12:58:51 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0046s User: 0.0009s Wall: 0.0023s flows/second: 71641.2 Runtime: 0.0023s