Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 01:59:21.921 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45286 10 6452 1 2025-10-05 01:59:37.200 00:00:10.374 TCP 23.104.0.1:57136 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:00:22.129 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:45408 10 6452 1 2025-10-05 01:56:37.759 00:05:02.007 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:00:37.612 00:00:10.325 TCP 23.104.0.1:35872 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:01:22.305 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58156 10 6452 1 2025-10-05 01:57:37.761 00:05:02.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:01:37.974 00:00:10.365 TCP 23.104.0.1:49708 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:02:22.514 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:50644 10 6452 1 2025-10-05 02:02:38.376 00:00:10.389 TCP 23.104.0.1:42172 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:02:55.593 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:02:55.594 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:03:22.685 00:00:10.868 TCP 1.101.0.1:3000 -> 22.102.0.1:50024 10 6452 1 2025-10-05 02:03:38.794 00:00:10.334 TCP 23.104.0.1:44718 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:04:23.594 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36112 10 6452 1 2025-10-05 02:04:39.161 00:00:10.364 TCP 23.104.0.1:50572 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:05:23.804 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:57262 10 6452 1 2025-10-05 02:05:39.561 00:00:10.370 TCP 23.104.0.1:52482 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:06:24.027 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:39166 10 6452 1 2025-10-05 02:02:37.760 00:05:02.009 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:06:39.963 00:00:10.338 TCP 23.104.0.1:51238 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:07:24.258 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:35842 10 6452 1 2025-10-05 02:03:37.761 00:05:02.004 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:07:55.831 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:07:40.342 00:00:10.366 TCP 23.104.0.1:43236 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:07:55.672 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:08:24.467 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:53010 10 6452 1 2025-10-05 02:08:40.751 00:00:10.391 TCP 23.104.0.1:45622 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:09:24.644 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:43104 10 6452 1 2025-10-05 02:09:41.177 00:00:10.363 TCP 23.104.0.1:45466 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:10:24.818 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:59822 10 6452 1 2025-10-05 02:10:41.578 00:00:10.371 TCP 23.104.0.1:35572 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:11:24.984 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:52302 10 6452 1 2025-10-05 02:11:42.002 00:00:10.333 TCP 23.104.0.1:53960 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:12:25.210 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53784 10 6452 1 2025-10-05 02:08:37.760 00:05:02.009 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:12:55.721 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:12:42.374 00:00:10.365 TCP 23.104.0.1:38272 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:12:55.811 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:13:25.425 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39508 10 6452 1 2025-10-05 02:09:37.762 00:05:02.006 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:13:42.780 00:00:10.364 TCP 23.104.0.1:44994 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:14:25.602 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40436 10 6452 1 2025-10-05 02:14:43.183 00:00:10.367 TCP 23.104.0.1:37414 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:15:25.820 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33344 10 6452 1 2025-10-05 02:15:43.588 00:00:10.363 TCP 23.104.0.1:60758 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:16:26.039 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46772 10 6452 1 2025-10-05 02:16:43.989 00:00:10.321 TCP 23.104.0.1:53680 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:17:26.251 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:58940 10 6452 1 2025-10-05 02:17:55.741 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:17:55.890 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:17:44.349 00:00:10.372 TCP 23.104.0.1:35334 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:18:26.424 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33384 10 6452 1 2025-10-05 02:14:37.762 00:05:02.010 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:18:44.758 00:00:10.340 TCP 23.104.0.1:36316 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:19:26.643 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:44854 10 6452 1 2025-10-05 02:15:37.765 00:05:02.005 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:19:45.135 00:00:10.363 TCP 23.104.0.1:35724 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:20:26.813 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:54478 10 6452 1 2025-10-05 02:20:45.537 00:00:10.362 TCP 23.104.0.1:39304 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:21:27.047 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33638 10 6452 1 2025-10-05 02:21:45.941 00:00:10.367 TCP 23.104.0.1:49770 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:22:27.265 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60394 10 6452 1 2025-10-05 02:22:55.814 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:22:46.345 00:00:10.361 TCP 23.104.0.1:44922 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:22:56.103 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:23:27.486 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:55594 10 6452 1 2025-10-05 02:23:46.738 00:00:10.365 TCP 23.104.0.1:48572 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:20:37.763 00:05:02.010 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:24:27.723 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41972 10 6452 1 2025-10-05 02:24:47.142 00:00:10.369 TCP 23.104.0.1:49896 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:21:37.766 00:05:02.005 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:25:27.936 00:00:10.226 TCP 1.101.0.1:3000 -> 22.102.0.1:46590 10 6452 1 2025-10-05 02:25:47.543 00:00:12.564 TCP 23.104.0.1:34166 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:26:28.202 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52754 10 6452 1 2025-10-05 02:26:50.151 00:00:10.321 TCP 23.104.0.1:54738 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:27:28.416 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:55616 10 6452 1 2025-10-05 02:27:56.140 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:27:56.146 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:27:50.513 00:00:10.364 TCP 23.104.0.1:60076 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:28:28.600 00:00:10.837 TCP 1.101.0.1:3000 -> 22.102.0.1:40446 10 6452 1 2025-10-05 02:28:50.912 00:00:10.360 TCP 23.104.0.1:37042 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:29:29.475 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36402 10 6452 1 2025-10-05 02:29:51.309 00:00:10.369 TCP 23.104.0.1:53520 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:30:29.683 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54718 10 6452 1 2025-10-05 02:26:37.765 00:05:02.009 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:30:51.710 00:00:10.393 TCP 23.104.0.1:57070 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:31:29.896 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46950 10 6452 1 2025-10-05 02:27:37.767 00:05:02.004 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:31:52.125 00:00:10.367 TCP 23.104.0.1:33790 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:32:30.110 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52772 10 6452 1 2025-10-05 02:32:56.286 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:32:56.198 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:32:52.528 00:00:10.365 TCP 23.104.0.1:60904 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:33:30.319 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57934 10 6452 1 2025-10-05 02:33:52.930 00:00:10.386 TCP 23.104.0.1:60642 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:34:30.531 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40086 10 6452 1 2025-10-05 02:34:53.352 00:00:10.363 TCP 23.104.0.1:55086 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:35:30.741 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37660 10 6452 1 2025-10-05 02:35:53.755 00:00:10.380 TCP 23.104.0.1:41278 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:36:30.951 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56420 10 6452 1 2025-10-05 02:32:37.778 00:05:01.997 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:36:54.168 00:00:10.326 TCP 23.104.0.1:52134 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:33:37.781 00:05:01.992 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:37:31.172 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40296 10 6452 1 2025-10-05 02:37:56.252 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:37:56.254 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:37:54.529 00:00:10.367 TCP 23.104.0.1:50710 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:38:31.385 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42820 10 6452 1 2025-10-05 02:38:54.937 00:00:11.638 TCP 23.104.0.1:35562 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:39:31.597 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55584 10 6452 1 2025-10-05 02:39:56.626 00:00:10.359 TCP 23.104.0.1:44722 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:40:31.821 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60178 10 6452 1 2025-10-05 02:40:57.023 00:00:10.373 TCP 23.104.0.1:58814 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:41:31.986 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:38870 10 6452 1 2025-10-05 02:41:57.434 00:00:10.361 TCP 23.104.0.1:48128 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:38:37.782 00:05:01.996 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:42:32.216 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:58702 10 6452 1 2025-10-05 02:42:56.490 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:42:56.282 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:42:57.833 00:00:10.349 TCP 23.104.0.1:40814 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:39:37.785 00:05:01.991 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:43:32.411 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46330 10 6452 1 2025-10-05 02:43:58.218 00:00:10.371 TCP 23.104.0.1:37500 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:44:32.629 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36476 10 6452 1 2025-10-05 02:44:58.627 00:00:10.367 TCP 23.104.0.1:56936 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:45:32.862 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55792 10 6452 1 2025-10-05 02:45:59.034 00:00:10.366 TCP 23.104.0.1:53506 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:46:33.087 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:59976 10 6452 1 2025-10-05 02:46:59.439 00:00:10.380 TCP 23.104.0.1:37282 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:47:33.257 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51260 10 6452 1 2025-10-05 02:47:56.475 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:47:56.543 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:47:59.851 00:00:10.378 TCP 23.104.0.1:45108 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:44:37.784 00:05:01.996 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:48:33.469 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:50574 10 6452 1 2025-10-05 02:49:00.265 00:00:10.324 TCP 23.104.0.1:39384 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:45:37.786 00:05:01.991 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:49:33.642 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:37918 10 6452 1 2025-10-05 02:50:00.628 00:00:10.365 TCP 23.104.0.1:50242 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:50:33.840 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45682 10 6452 1 2025-10-05 02:51:01.031 00:00:10.340 TCP 23.104.0.1:39440 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:51:34.067 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58954 10 6452 1 2025-10-05 02:52:01.411 00:00:10.366 TCP 23.104.0.1:54862 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:52:34.282 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35806 10 6452 1 2025-10-05 02:52:56.666 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:52:56.529 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:53:01.811 00:00:10.361 TCP 23.104.0.1:49752 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:53:34.497 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:40802 10 6452 1 2025-10-05 02:54:02.213 00:00:10.366 TCP 23.104.0.1:37662 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:50:37.784 00:05:01.997 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 02:54:34.737 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45228 10 6452 1 2025-10-05 02:55:02.616 00:00:10.782 TCP 23.104.0.1:34266 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:51:37.787 00:05:01.991 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 02:55:34.947 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:54274 10 6452 1 2025-10-05 02:56:03.435 00:00:10.327 TCP 23.104.0.1:39044 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:56:35.179 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42536 10 6452 1 2025-10-05 02:57:03.800 00:00:10.369 TCP 23.104.0.1:56252 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:57:35.390 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:50474 10 6452 1 2025-10-05 02:57:56.814 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 02:57:56.604 00:00:00.030 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 02:58:04.205 00:00:10.368 TCP 23.104.0.1:45432 -> 1.101.0.1:3000 11 1507 1 2025-10-05 02:58:35.602 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34852 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1066, avg pps: 0, avg bpp: 318 Time window: 2025-10-05 01:56:37 - 2025-10-05 02:58:45 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0029s User: 0.0019s Wall: 0.0030s flows/second: 54733.1 Runtime: 0.0030s