Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 09:59:02.449 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55036 10 6452 1 2025-10-08 09:59:31.774 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 09:59:31.998 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 09:59:40.659 00:00:10.330 TCP 23.104.0.1:48820 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:00:02.676 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:47556 10 6452 1 2025-10-08 09:56:39.366 00:05:02.081 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:00:41.020 00:00:10.324 TCP 23.104.0.1:58368 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:01:02.910 00:00:10.242 TCP 1.101.0.1:3000 -> 22.102.0.1:37194 10 6452 1 2025-10-08 09:57:39.370 00:05:02.075 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:01:41.385 00:00:10.363 TCP 23.104.0.1:44516 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:02:03.188 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51298 10 6452 1 2025-10-08 10:02:41.779 00:00:10.370 TCP 23.104.0.1:60540 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:03:03.415 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47556 10 6452 1 2025-10-08 10:03:42.187 00:00:10.700 TCP 23.104.0.1:58384 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:04:03.629 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47932 10 6452 1 2025-10-08 10:04:31.902 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:04:31.602 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:04:42.929 00:00:10.342 TCP 23.104.0.1:54788 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:05:03.843 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45712 10 6452 1 2025-10-08 10:05:43.305 00:00:10.367 TCP 23.104.0.1:42154 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:06:04.078 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39358 10 6452 1 2025-10-08 10:02:39.368 00:05:02.082 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:06:43.706 00:00:10.368 TCP 23.104.0.1:54382 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:07:04.296 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38640 10 6452 1 2025-10-08 10:03:39.371 00:05:02.077 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:07:44.111 00:00:10.372 TCP 23.104.0.1:60954 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:08:04.510 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:46378 10 6452 1 2025-10-08 10:08:44.523 00:00:10.370 TCP 23.104.0.1:37478 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:09:04.679 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:57194 10 6452 1 2025-10-08 10:09:31.910 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:09:31.966 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:09:44.928 00:00:25.287 TCP 23.104.0.1:41058 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:10:04.845 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54798 10 6452 1 2025-10-08 10:11:00.277 00:00:10.361 TCP 23.104.0.1:53036 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:11:05.080 00:00:10.486 TCP 1.101.0.1:3000 -> 22.102.0.1:37142 10 6452 1 2025-10-08 10:12:00.679 00:00:10.360 TCP 23.104.0.1:57714 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:12:05.602 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51646 10 6452 1 2025-10-08 10:08:39.369 00:05:02.082 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:13:01.116 00:00:10.323 TCP 23.104.0.1:39006 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:13:05.826 00:00:10.224 TCP 1.101.0.1:3000 -> 22.102.0.1:35262 10 6452 1 2025-10-08 10:09:39.374 00:05:02.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:14:01.480 00:00:10.326 TCP 23.104.0.1:52616 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:14:06.096 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38034 10 6452 1 2025-10-08 10:14:31.860 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:14:32.160 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:15:01.849 00:00:10.338 TCP 23.104.0.1:60548 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:15:06.316 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:58084 10 6452 1 2025-10-08 10:16:02.226 00:00:10.362 TCP 23.104.0.1:56286 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:16:06.544 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33486 10 6452 1 2025-10-08 10:17:06.760 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48940 10 6452 1 2025-10-08 10:17:02.629 00:00:10.328 TCP 23.104.0.1:39506 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:18:02.996 00:00:10.361 TCP 23.104.0.1:51460 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:18:06.982 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:36168 10 6452 1 2025-10-08 10:14:39.372 00:05:02.082 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:19:03.399 00:00:10.366 TCP 23.104.0.1:58568 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:19:07.214 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54218 10 6452 1 2025-10-08 10:19:31.977 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:19:32.060 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:15:39.375 00:05:02.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:20:03.806 00:00:10.340 TCP 23.104.0.1:34082 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:20:07.429 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57456 10 6452 1 2025-10-08 10:21:04.181 00:00:10.365 TCP 23.104.0.1:39680 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:21:07.647 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45666 10 6452 1 2025-10-08 10:22:04.583 00:00:10.326 TCP 23.104.0.1:34634 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:22:07.865 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:33398 10 6452 1 2025-10-08 10:23:04.943 00:00:10.365 TCP 23.104.0.1:55072 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:23:08.096 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:46230 10 6452 1 2025-10-08 10:24:05.345 00:00:10.326 TCP 23.104.0.1:33884 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:24:08.279 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:41870 10 6452 1 2025-10-08 10:24:32.121 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:24:32.191 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:20:39.373 00:05:02.082 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:25:05.709 00:00:10.322 TCP 23.104.0.1:33344 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:25:08.457 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47622 10 6452 1 2025-10-08 10:21:39.376 00:05:02.077 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:26:06.101 00:00:10.420 TCP 23.104.0.1:37832 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:26:08.671 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:59636 10 6452 1 2025-10-08 10:27:06.561 00:00:10.362 TCP 23.104.0.1:41780 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:27:08.908 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58332 10 6452 1 2025-10-08 10:28:06.961 00:00:10.370 TCP 23.104.0.1:60588 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:28:09.121 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:42216 10 6452 1 2025-10-08 10:29:09.298 00:00:10.318 TCP 1.101.0.1:3000 -> 22.102.0.1:57970 10 6452 1 2025-10-08 10:29:07.365 00:00:10.366 TCP 23.104.0.1:45268 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:29:32.280 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:29:32.195 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:30:07.770 00:00:10.373 TCP 23.104.0.1:56010 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:30:09.654 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52406 10 6452 1 2025-10-08 10:26:39.374 00:05:02.082 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:31:08.178 00:00:10.365 TCP 23.104.0.1:40772 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:31:09.872 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:45098 10 6452 1 2025-10-08 10:27:39.376 00:05:02.077 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:32:08.580 00:00:10.367 TCP 23.104.0.1:40596 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:32:10.103 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58376 10 6452 1 2025-10-08 10:33:08.981 00:00:10.366 TCP 23.104.0.1:42484 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:33:10.328 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34630 10 6452 1 2025-10-08 10:34:09.384 00:00:10.372 TCP 23.104.0.1:56992 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:34:10.549 00:00:10.289 TCP 1.101.0.1:3000 -> 22.102.0.1:56870 10 6452 1 2025-10-08 10:34:32.322 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:34:32.588 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:35:09.789 00:00:10.378 TCP 23.104.0.1:36844 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:35:10.882 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:50440 10 6452 1 2025-10-08 10:36:10.215 00:00:10.369 TCP 23.104.0.1:33776 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:36:11.111 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:39530 10 6452 1 2025-10-08 10:32:39.377 00:05:02.082 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:37:10.618 00:00:10.376 TCP 23.104.0.1:44804 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:37:11.352 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60938 10 6452 1 2025-10-08 10:33:39.378 00:05:02.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:38:11.033 00:00:10.365 TCP 23.104.0.1:34650 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:38:11.569 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42312 10 6452 1 2025-10-08 10:39:11.437 00:00:10.325 TCP 23.104.0.1:36906 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:39:11.791 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42396 10 6452 1 2025-10-08 10:39:32.373 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:39:32.621 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:40:11.810 00:00:10.361 TCP 23.104.0.1:45682 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:40:12.015 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60778 10 6452 1 2025-10-08 10:41:12.210 00:00:10.366 TCP 23.104.0.1:59864 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:41:12.234 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:38858 10 6452 1 2025-10-08 10:42:12.454 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:43312 10 6452 1 2025-10-08 10:42:12.616 00:00:10.321 TCP 23.104.0.1:45288 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:38:39.376 00:05:02.083 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:43:12.671 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52000 10 6452 1 2025-10-08 10:43:12.972 00:00:10.377 TCP 23.104.0.1:35234 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:39:39.380 00:05:02.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:44:12.895 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:49660 10 6452 1 2025-10-08 10:44:13.384 00:00:10.321 TCP 23.104.0.1:37360 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:44:32.628 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:44:32.827 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:45:13.112 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:59124 12 10375 1 2025-10-08 10:45:13.751 00:00:10.438 TCP 23.104.0.1:39500 -> 1.101.0.1:3000 15 1926 1 2025-10-08 10:46:13.365 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35818 10 6452 1 2025-10-08 10:46:14.222 00:00:10.373 TCP 23.104.0.1:37696 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:47:13.580 00:00:10.542 TCP 1.101.0.1:3000 -> 22.102.0.1:45172 10 6452 1 2025-10-08 10:47:14.633 00:00:10.328 TCP 23.104.0.1:40666 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:48:14.996 00:00:10.361 TCP 23.104.0.1:57548 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:48:14.160 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42658 10 6452 1 2025-10-08 10:44:39.376 00:05:02.085 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:49:15.396 00:00:10.328 TCP 23.104.0.1:44282 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:49:14.370 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36154 10 6452 1 2025-10-08 10:49:32.806 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:49:32.746 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:45:39.380 00:05:02.080 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:50:14.580 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:59674 10 6452 1 2025-10-08 10:50:15.759 00:00:10.376 TCP 23.104.0.1:54314 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:51:14.823 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:45570 10 6452 1 2025-10-08 10:51:16.171 00:00:10.329 TCP 23.104.0.1:58172 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:52:15.079 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60762 10 6452 1 2025-10-08 10:52:16.543 00:00:10.369 TCP 23.104.0.1:60880 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:53:15.308 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39162 10 6452 1 2025-10-08 10:53:16.951 00:00:10.364 TCP 23.104.0.1:45134 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:54:15.519 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50452 10 6452 1 2025-10-08 10:54:17.359 00:00:10.375 TCP 23.104.0.1:59720 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:54:32.924 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:54:32.844 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 10:50:39.378 00:05:02.086 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 10:55:15.737 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35266 10 6452 1 2025-10-08 10:55:17.761 00:00:10.373 TCP 23.104.0.1:35770 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:51:39.381 00:05:02.080 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 10:56:15.955 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:35326 10 6452 1 2025-10-08 10:56:18.172 00:00:10.378 TCP 23.104.0.1:40408 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:57:16.145 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:47826 10 6452 1 2025-10-08 10:57:18.589 00:00:10.370 TCP 23.104.0.1:47838 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:58:16.313 00:00:10.300 TCP 1.101.0.1:3000 -> 22.102.0.1:54690 10 6452 1 2025-10-08 10:58:18.997 00:00:10.363 TCP 23.104.0.1:46634 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 501183, total packets: 1567, avg bps: 1080, avg pps: 0, avg bpp: 319 Time window: 2025-10-08 09:56:39 - 2025-10-08 10:58:29 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0035s User: 0.0017s Wall: 0.0029s flows/second: 55956.1 Runtime: 0.0029s