Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 10:59:35.355 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41382 10 6452 1 2025-10-05 10:59:32.625 00:00:10.369 TCP 23.104.0.1:35586 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:56:37.927 00:05:02.011 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:00:33.034 00:00:10.361 TCP 23.104.0.1:51368 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:00:35.562 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46476 10 6452 1 2025-10-05 10:57:37.931 00:05:02.006 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:01:33.434 00:00:10.366 TCP 23.104.0.1:40840 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:01:35.773 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:49332 10 6452 1 2025-10-05 11:02:33.838 00:00:10.339 TCP 23.104.0.1:44926 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:02:35.994 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38158 10 6452 1 2025-10-05 11:03:06.232 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:03:06.469 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:03:36.217 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49510 10 6452 1 2025-10-05 11:03:34.218 00:00:10.324 TCP 23.104.0.1:60108 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:04:34.578 00:00:10.369 TCP 23.104.0.1:46020 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:04:36.432 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42324 10 6452 1 2025-10-05 11:05:36.641 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:41944 10 6452 1 2025-10-05 11:05:34.979 00:00:10.953 TCP 23.104.0.1:45996 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:02:37.928 00:05:02.012 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:06:36.818 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56446 10 6452 1 2025-10-05 11:06:35.970 00:00:10.337 TCP 23.104.0.1:58218 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:03:37.932 00:05:02.006 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:07:36.342 00:00:10.365 TCP 23.104.0.1:37484 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:07:37.039 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45846 10 6452 1 2025-10-05 11:08:06.429 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:08:06.363 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:08:36.741 00:00:10.368 TCP 23.104.0.1:35928 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:08:37.253 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59724 10 6452 1 2025-10-05 11:09:37.146 00:00:10.372 TCP 23.104.0.1:53284 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:09:37.473 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45096 12 6556 1 2025-10-05 11:10:37.683 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:55732 10 6452 1 2025-10-05 11:10:37.554 00:00:10.372 TCP 23.104.0.1:60234 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:11:37.856 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:50538 10 6452 1 2025-10-05 11:11:37.966 00:00:10.329 TCP 23.104.0.1:39984 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:08:37.930 00:05:02.013 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:12:38.334 00:00:10.362 TCP 23.104.0.1:57332 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:12:38.099 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50686 10 6452 1 2025-10-05 11:13:06.812 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:13:06.411 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:09:37.933 00:05:02.008 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:13:38.731 00:00:10.336 TCP 23.104.0.1:39672 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:13:38.315 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:47478 10 6452 1 2025-10-05 11:14:38.544 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:50808 10 6452 1 2025-10-05 11:14:39.105 00:00:10.366 TCP 23.104.0.1:41394 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:15:39.504 00:00:10.364 TCP 23.104.0.1:45292 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:15:38.789 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:52522 10 6452 1 2025-10-05 11:16:39.919 00:00:10.358 TCP 23.104.0.1:59578 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:16:39.036 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47302 10 6452 1 2025-10-05 11:17:40.313 00:00:10.367 TCP 23.104.0.1:57708 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:17:39.250 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:54786 10 6452 1 2025-10-05 11:18:06.839 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:18:06.717 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:14:37.933 00:05:02.014 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:18:40.715 00:00:10.374 TCP 23.104.0.1:35794 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:18:39.455 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47372 10 6452 1 2025-10-05 11:15:37.964 00:05:01.982 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:19:41.129 00:00:10.806 TCP 23.104.0.1:47000 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:19:39.663 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:43702 10 6452 1 2025-10-05 11:20:39.834 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48434 10 6452 1 2025-10-05 11:20:41.970 00:00:10.328 TCP 23.104.0.1:56154 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:21:40.074 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41994 10 6452 1 2025-10-05 11:21:42.334 00:00:10.328 TCP 23.104.0.1:54762 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:22:40.281 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43770 10 6452 1 2025-10-05 11:22:42.704 00:00:10.365 TCP 23.104.0.1:34076 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:23:06.860 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:23:06.854 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:23:40.495 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47226 10 6452 1 2025-10-05 11:23:43.116 00:00:10.379 TCP 23.104.0.1:44176 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:20:37.962 00:05:01.988 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:24:40.726 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47262 10 6452 1 2025-10-05 11:24:43.547 00:00:10.358 TCP 23.104.0.1:33122 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:21:37.963 00:05:01.983 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:25:40.936 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:35758 10 6452 1 2025-10-05 11:25:43.945 00:00:10.374 TCP 23.104.0.1:55074 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:26:41.163 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38298 10 6452 1 2025-10-05 11:26:44.359 00:00:10.486 TCP 23.104.0.1:46590 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:27:41.378 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40208 10 6452 1 2025-10-05 11:27:44.882 00:00:10.377 TCP 23.104.0.1:57874 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:28:06.605 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:28:06.875 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:28:41.595 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:42328 12 10369 1 2025-10-05 11:28:45.295 00:00:10.438 TCP 23.104.0.1:45878 -> 1.101.0.1:3000 15 1926 1 2025-10-05 11:29:41.841 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:59554 10 6452 1 2025-10-05 11:29:45.770 00:00:10.372 TCP 23.104.0.1:38476 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:26:37.964 00:05:01.987 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:30:46.182 00:00:10.438 TCP 23.104.0.1:37472 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:30:42.077 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:46952 10 6452 1 2025-10-05 11:27:37.966 00:05:01.983 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:31:42.254 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54044 10 6452 1 2025-10-05 11:31:46.663 00:00:10.368 TCP 23.104.0.1:51352 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:32:42.429 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44466 10 6452 1 2025-10-05 11:32:47.105 00:00:10.359 TCP 23.104.0.1:55888 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:33:07.169 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:33:07.180 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:33:42.639 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:40028 10 6452 1 2025-10-05 11:33:47.501 00:00:10.366 TCP 23.104.0.1:48738 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:34:42.812 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50914 10 6452 1 2025-10-05 11:34:47.909 00:00:10.323 TCP 23.104.0.1:44102 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:35:43.034 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60016 10 6452 1 2025-10-05 11:35:48.272 00:00:10.366 TCP 23.104.0.1:39410 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:32:37.964 00:05:01.990 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:36:43.258 00:00:10.406 TCP 1.101.0.1:3000 -> 22.102.0.1:60472 10 6452 1 2025-10-05 11:36:48.674 00:00:10.640 TCP 23.104.0.1:51544 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:33:37.967 00:05:01.985 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:37:43.703 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49386 10 6452 1 2025-10-05 11:37:49.356 00:00:10.361 TCP 23.104.0.1:41744 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:38:06.934 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:38:06.930 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:38:43.926 00:00:10.250 TCP 1.101.0.1:3000 -> 22.102.0.1:46954 12 10375 1 2025-10-05 11:38:49.759 00:00:10.457 TCP 23.104.0.1:52830 -> 1.101.0.1:3000 15 1926 1 2025-10-05 11:39:44.214 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55576 10 6452 1 2025-10-05 11:39:50.261 00:00:10.366 TCP 23.104.0.1:43512 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:40:44.439 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33534 10 6452 1 2025-10-05 11:40:50.662 00:00:10.322 TCP 23.104.0.1:43844 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:41:44.651 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45052 10 6452 1 2025-10-05 11:41:51.024 00:00:10.369 TCP 23.104.0.1:38064 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:38:37.968 00:05:01.987 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:42:44.863 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52562 10 6452 1 2025-10-05 11:42:51.436 00:00:10.366 TCP 23.104.0.1:42126 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:43:07.234 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:43:07.180 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:39:37.970 00:05:01.982 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:43:45.086 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50908 10 6452 1 2025-10-05 11:43:51.836 00:00:10.344 TCP 23.104.0.1:43416 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:44:45.301 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46112 10 6452 1 2025-10-05 11:44:52.223 00:00:10.376 TCP 23.104.0.1:49954 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:45:45.514 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45926 10 6452 1 2025-10-05 11:45:52.652 00:00:10.350 TCP 23.104.0.1:56234 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:46:45.729 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54600 10 6452 1 2025-10-05 11:46:53.059 00:00:10.326 TCP 23.104.0.1:49612 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:47:45.944 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:56434 10 6452 1 2025-10-05 11:47:53.428 00:00:10.365 TCP 23.104.0.1:59066 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:48:07.018 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:48:07.091 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:44:37.970 00:05:01.987 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:48:46.143 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:58276 10 6452 1 2025-10-05 11:48:53.846 00:00:10.340 TCP 23.104.0.1:48880 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:45:37.972 00:05:01.984 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:49:46.322 00:00:10.526 TCP 1.101.0.1:3000 -> 22.102.0.1:34526 10 6452 1 2025-10-05 11:49:54.226 00:00:10.363 TCP 23.104.0.1:41904 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:50:46.889 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:39058 10 6452 1 2025-10-05 11:50:54.627 00:00:10.370 TCP 23.104.0.1:41740 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:51:47.081 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49002 10 6452 1 2025-10-05 11:51:55.044 00:00:10.367 TCP 23.104.0.1:50530 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:52:47.291 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:59086 10 6452 1 2025-10-05 11:52:55.449 00:00:10.370 TCP 23.104.0.1:42120 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:53:07.433 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 11:53:07.391 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:53:47.469 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48204 10 6452 1 2025-10-05 11:53:55.858 00:00:10.374 TCP 23.104.0.1:59012 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:50:37.971 00:05:01.989 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 11:54:47.683 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:42114 10 6452 1 2025-10-05 11:54:56.271 00:00:10.436 TCP 23.104.0.1:46996 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:51:37.972 00:05:01.984 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 11:55:47.850 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55580 10 6452 1 2025-10-05 11:55:56.751 00:00:10.328 TCP 23.104.0.1:56404 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:56:48.081 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44530 10 6452 1 2025-10-05 11:56:57.114 00:00:10.362 TCP 23.104.0.1:36010 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:57:48.320 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46392 10 6452 1 2025-10-05 11:58:07.489 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 11:57:57.513 00:00:10.323 TCP 23.104.0.1:60126 -> 1.101.0.1:3000 11 1507 1 2025-10-05 11:58:07.411 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 Summary: total flows: 162, total bytes: 499171, total packets: 1565, avg bps: 1082, avg pps: 0, avg bpp: 318 Time window: 2025-10-05 10:56:37 - 2025-10-05 11:58:07 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0012s User: 0.0037s Wall: 0.0029s flows/second: 55708.6 Runtime: 0.0029s