Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 12:59:03.225 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:37842 12 10375 1 2025-10-05 12:59:23.349 00:00:10.369 TCP 23.104.0.1:52076 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:00:03.462 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41672 10 6452 1 2025-10-05 13:00:23.753 00:00:10.392 TCP 23.104.0.1:46974 -> 1.101.0.1:3000 11 1507 1 2025-10-05 12:56:37.985 00:05:02.005 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:01:03.673 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40446 10 6452 1 2025-10-05 13:01:24.174 00:00:10.360 TCP 23.104.0.1:36988 -> 1.101.0.1:3000 11 1507 1 2025-10-05 12:57:37.987 00:05:02.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:02:03.889 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:46732 10 6452 1 2025-10-05 13:02:24.575 00:00:10.328 TCP 23.104.0.1:47690 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:03:08.916 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:03:08.718 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:03:04.078 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60240 10 6452 1 2025-10-05 13:03:24.942 00:00:10.337 TCP 23.104.0.1:50426 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:04:04.289 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:60118 10 6452 1 2025-10-05 13:04:25.320 00:00:10.366 TCP 23.104.0.1:53326 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:05:04.493 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56462 10 6452 1 2025-10-05 13:05:25.742 00:00:10.369 TCP 23.104.0.1:53388 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:06:04.703 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34982 10 6452 1 2025-10-05 13:06:26.146 00:00:10.320 TCP 23.104.0.1:50626 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:02:37.985 00:05:02.006 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:07:04.920 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57830 10 6452 1 2025-10-05 13:07:26.503 00:00:10.364 TCP 23.104.0.1:45700 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:03:37.988 00:05:02.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:08:08.622 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:08:08.948 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:08:05.135 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43994 10 6452 1 2025-10-05 13:08:26.910 00:00:10.364 TCP 23.104.0.1:54092 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:09:05.342 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56626 10 6452 1 2025-10-05 13:09:27.314 00:00:10.367 TCP 23.104.0.1:37492 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:10:05.557 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:33798 10 6452 1 2025-10-05 13:10:27.720 00:00:10.369 TCP 23.104.0.1:42906 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:11:05.792 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:40484 10 6452 1 2025-10-05 13:11:28.128 00:00:10.364 TCP 23.104.0.1:46536 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:12:06.070 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49678 10 6452 1 2025-10-05 13:08:37.986 00:05:02.008 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:12:28.536 00:00:10.943 TCP 23.104.0.1:34886 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:13:08.786 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:13:09.445 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:13:06.280 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39190 10 6452 1 2025-10-05 13:09:37.988 00:05:02.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:13:29.515 00:00:10.375 TCP 23.104.0.1:52474 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:14:06.450 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35602 10 6452 1 2025-10-05 13:14:29.931 00:00:10.377 TCP 23.104.0.1:33566 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:15:06.663 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51270 10 6452 1 2025-10-05 13:15:30.347 00:00:10.364 TCP 23.104.0.1:54970 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:16:06.873 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:46818 10 6452 1 2025-10-05 13:16:30.755 00:00:10.383 TCP 23.104.0.1:52014 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:17:07.102 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:49186 10 6452 1 2025-10-05 13:17:31.180 00:00:10.362 TCP 23.104.0.1:47026 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:18:09.006 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:18:09.177 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:18:07.285 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57908 10 6452 1 2025-10-05 13:18:31.580 00:00:10.324 TCP 23.104.0.1:58850 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:14:37.990 00:05:02.007 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:19:07.501 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:53328 10 6452 1 2025-10-05 13:15:37.992 00:05:02.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:19:31.942 00:00:10.373 TCP 23.104.0.1:53326 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:20:07.673 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:48874 10 6452 1 2025-10-05 13:20:32.356 00:00:10.362 TCP 23.104.0.1:47934 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:21:07.842 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42244 10 6452 1 2025-10-05 13:21:32.758 00:00:10.376 TCP 23.104.0.1:43624 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:22:08.076 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47724 10 6452 1 2025-10-05 13:22:33.170 00:00:10.319 TCP 23.104.0.1:42494 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:23:08.827 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:23:09.263 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:23:08.290 00:00:10.599 TCP 1.101.0.1:3000 -> 22.102.0.1:48566 10 6452 1 2025-10-05 13:23:33.532 00:00:10.324 TCP 23.104.0.1:50476 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:24:08.921 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:37310 10 6452 1 2025-10-05 13:20:37.993 00:05:02.010 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:24:33.896 00:00:10.373 TCP 23.104.0.1:60872 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:25:09.128 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54248 10 6452 1 2025-10-05 13:21:37.995 00:05:02.005 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:25:34.307 00:00:10.367 TCP 23.104.0.1:32832 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:26:09.348 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44562 10 6452 1 2025-10-05 13:26:34.707 00:00:10.367 TCP 23.104.0.1:54620 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:27:09.563 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53176 10 6452 1 2025-10-05 13:27:35.109 00:00:10.366 TCP 23.104.0.1:51110 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:28:09.316 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:28:09.370 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:28:09.778 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48762 10 6452 1 2025-10-05 13:28:35.514 00:00:10.371 TCP 23.104.0.1:34138 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:29:09.995 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:48038 10 6452 1 2025-10-05 13:29:35.919 00:00:10.383 TCP 23.104.0.1:49314 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:30:10.170 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40834 10 6452 1 2025-10-05 13:26:37.993 00:05:02.011 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:30:36.346 00:00:10.330 TCP 23.104.0.1:49342 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:31:10.380 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38094 10 6452 1 2025-10-05 13:27:37.996 00:05:02.006 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:31:36.713 00:00:10.332 TCP 23.104.0.1:43794 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:32:10.597 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:33410 10 6452 1 2025-10-05 13:32:37.108 00:00:10.373 TCP 23.104.0.1:43430 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:33:09.417 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:33:09.577 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:33:10.767 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51106 10 6452 1 2025-10-05 13:33:37.521 00:00:10.368 TCP 23.104.0.1:38286 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:34:10.935 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:34762 10 6452 1 2025-10-05 13:34:37.928 00:00:10.402 TCP 23.104.0.1:44234 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:35:11.168 00:00:10.342 TCP 1.101.0.1:3000 -> 22.102.0.1:44108 10 6452 1 2025-10-05 13:35:38.370 00:00:10.362 TCP 23.104.0.1:55456 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:36:11.553 00:00:10.407 TCP 1.101.0.1:3000 -> 22.102.0.1:48128 10 6452 1 2025-10-05 13:32:37.996 00:05:02.036 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:36:38.768 00:00:10.370 TCP 23.104.0.1:58336 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:37:11.995 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:55586 10 6452 1 2025-10-05 13:33:38.000 00:05:02.031 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:37:39.180 00:00:10.367 TCP 23.104.0.1:47414 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:38:09.603 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:38:09.363 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:38:12.174 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37914 10 6452 1 2025-10-05 13:38:39.587 00:00:10.358 TCP 23.104.0.1:37496 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:39:12.391 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:38720 10 6452 1 2025-10-05 13:39:39.986 00:00:10.775 TCP 23.104.0.1:37256 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:40:12.564 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46218 10 6452 1 2025-10-05 13:40:40.801 00:00:10.342 TCP 23.104.0.1:51686 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:41:12.780 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:46928 10 6452 1 2025-10-05 13:41:41.181 00:00:10.368 TCP 23.104.0.1:49296 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:42:12.954 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:53260 10 6452 1 2025-10-05 13:38:37.998 00:05:02.038 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:42:41.587 00:00:10.325 TCP 23.104.0.1:38408 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:43:09.746 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:43:09.604 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:43:13.185 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58232 10 6452 1 2025-10-05 13:39:38.003 00:05:02.032 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:43:41.955 00:00:10.324 TCP 23.104.0.1:46726 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:44:13.398 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50838 10 6452 1 2025-10-05 13:44:42.317 00:00:10.365 TCP 23.104.0.1:54836 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:45:13.620 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:51866 10 6452 1 2025-10-05 13:45:42.722 00:00:10.371 TCP 23.104.0.1:42300 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:46:13.787 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51900 10 6452 1 2025-10-05 13:46:43.133 00:00:10.367 TCP 23.104.0.1:59164 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:47:14.001 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43492 10 6452 1 2025-10-05 13:47:43.544 00:00:10.332 TCP 23.104.0.1:37890 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:48:09.584 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:48:09.485 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:48:14.218 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36696 10 6452 1 2025-10-05 13:44:38.002 00:05:02.038 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:48:43.911 00:00:10.323 TCP 23.104.0.1:44534 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:49:14.434 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:43936 10 6452 1 2025-10-05 13:45:38.005 00:05:02.037 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:49:44.269 00:00:10.366 TCP 23.104.0.1:40704 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:50:14.608 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47428 10 6452 1 2025-10-05 13:50:44.674 00:00:10.368 TCP 23.104.0.1:52492 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:51:14.823 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42652 10 6452 1 2025-10-05 13:51:45.102 00:00:10.374 TCP 23.104.0.1:41606 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:52:15.068 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:33426 10 6452 1 2025-10-05 13:52:45.520 00:00:10.369 TCP 23.104.0.1:60136 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:53:09.773 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:53:09.557 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:53:15.245 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53520 10 6452 1 2025-10-05 13:53:45.928 00:00:10.468 TCP 23.104.0.1:36542 -> 1.101.0.1:3000 15 1926 1 2025-10-05 13:54:15.460 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:59846 12 10369 1 2025-10-05 13:50:38.002 00:05:02.049 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 13:54:46.439 00:00:10.326 TCP 23.104.0.1:57304 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:55:15.702 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60036 10 6452 1 2025-10-05 13:51:38.005 00:05:02.045 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 13:55:46.813 00:00:10.368 TCP 23.104.0.1:51640 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:56:15.917 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59018 10 6452 1 2025-10-05 13:56:47.221 00:00:10.321 TCP 23.104.0.1:44244 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:57:16.134 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45868 11 6504 1 2025-10-05 13:57:47.581 00:00:10.363 TCP 23.104.0.1:56348 -> 1.101.0.1:3000 11 1507 1 2025-10-05 13:58:09.916 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 13:58:09.785 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 13:58:16.354 00:00:10.234 TCP 1.101.0.1:3000 -> 22.102.0.1:58310 10 6452 1 Summary: total flows: 163, total bytes: 505152, total packets: 1570, avg bps: 1089, avg pps: 0, avg bpp: 321 Time window: 2025-10-05 12:56:37 - 2025-10-05 13:58:26 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0027s User: 0.0027s Wall: 0.0062s flows/second: 26332.5 Runtime: 0.0062s