Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 10:59:16.652 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:50318 10 6452 1 2025-10-08 10:59:19.399 00:00:10.362 TCP 23.104.0.1:56574 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:59:32.979 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 10:59:32.924 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:00:16.879 00:00:24.195 TCP 1.101.0.1:3000 -> 22.102.0.1:52892 10 6452 1 2025-10-08 10:56:39.381 00:05:02.087 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:00:19.801 00:00:21.344 TCP 23.104.0.1:45770 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:01:31.122 00:00:10.522 TCP 1.101.0.1:3000 -> 22.102.0.1:45446 10 6452 1 2025-10-08 11:01:31.207 00:00:10.496 TCP 23.104.0.1:54668 -> 1.101.0.1:3000 11 1507 1 2025-10-08 10:57:39.382 00:05:02.082 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:02:31.681 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58696 10 6452 1 2025-10-08 11:02:31.740 00:00:10.364 TCP 23.104.0.1:42086 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:03:32.143 00:00:10.329 TCP 23.104.0.1:56232 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:03:31.902 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53806 10 6452 1 2025-10-08 11:04:32.897 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:04:33.057 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:04:32.128 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38820 10 6452 1 2025-10-08 11:04:32.509 00:00:10.324 TCP 23.104.0.1:51678 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:05:32.341 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50992 10 6452 1 2025-10-08 11:05:32.868 00:00:10.371 TCP 23.104.0.1:33746 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:02:39.383 00:05:02.086 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:06:32.553 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52258 10 6452 1 2025-10-08 11:06:33.276 00:00:10.367 TCP 23.104.0.1:37230 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:07:32.770 00:00:10.682 TCP 1.101.0.1:3000 -> 22.102.0.1:46744 10 6452 1 2025-10-08 11:03:39.385 00:05:02.080 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:07:33.677 00:00:10.368 TCP 23.104.0.1:32800 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:08:34.106 00:00:10.367 TCP 23.104.0.1:38238 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:08:33.494 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38064 10 6452 1 2025-10-08 11:09:33.174 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:09:33.246 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:09:33.722 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:59630 10 6452 1 2025-10-08 11:09:34.517 00:00:10.365 TCP 23.104.0.1:44366 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:10:34.921 00:00:10.385 TCP 23.104.0.1:43898 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:10:33.896 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43462 10 6452 1 2025-10-08 11:11:34.118 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52602 10 6452 1 2025-10-08 11:11:35.349 00:00:10.362 TCP 23.104.0.1:35952 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:08:39.383 00:05:02.086 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:12:34.347 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39826 10 6452 1 2025-10-08 11:12:35.748 00:00:10.324 TCP 23.104.0.1:43244 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:13:36.116 00:00:10.362 TCP 23.104.0.1:60246 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:09:39.386 00:05:02.081 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:13:34.558 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:46268 10 6452 1 2025-10-08 11:14:33.241 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:14:33.394 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:14:36.520 00:00:10.369 TCP 23.104.0.1:40088 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:14:34.778 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52526 10 6452 1 2025-10-08 11:15:35.001 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:47896 10 6452 1 2025-10-08 11:15:36.920 00:00:10.381 TCP 23.104.0.1:48666 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:16:35.221 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:45768 10 6452 1 2025-10-08 11:16:37.343 00:00:10.369 TCP 23.104.0.1:53324 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:17:35.452 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56698 10 6452 1 2025-10-08 11:17:37.752 00:00:10.377 TCP 23.104.0.1:43146 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:18:35.667 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44402 10 6452 1 2025-10-08 11:14:39.386 00:05:02.085 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:18:38.168 00:00:10.631 TCP 23.104.0.1:51314 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:19:33.315 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:19:33.513 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:15:39.388 00:05:02.080 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:19:35.889 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:45168 10 6452 1 2025-10-08 11:19:38.839 00:00:10.445 TCP 23.104.0.1:48836 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:20:36.084 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44718 12 6556 1 2025-10-08 11:20:39.331 00:00:10.368 TCP 23.104.0.1:54844 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:21:36.295 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:43248 10 6452 1 2025-10-08 11:21:39.733 00:00:10.374 TCP 23.104.0.1:46868 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:22:36.472 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44744 10 6452 1 2025-10-08 11:22:40.144 00:00:10.363 TCP 23.104.0.1:48836 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:23:36.685 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:54008 10 6452 1 2025-10-08 11:23:40.545 00:00:10.360 TCP 23.104.0.1:59474 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:24:33.487 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:24:33.420 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:20:39.387 00:05:02.089 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:24:40.944 00:00:10.408 TCP 23.104.0.1:50056 -> 1.101.0.1:3000 15 1926 1 2025-10-08 11:24:36.918 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:37114 12 10375 1 2025-10-08 11:21:39.389 00:05:02.084 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:25:41.395 00:00:10.367 TCP 23.104.0.1:59398 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:25:37.160 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:57894 10 6452 1 2025-10-08 11:26:37.370 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57138 10 6452 1 2025-10-08 11:26:41.798 00:00:10.365 TCP 23.104.0.1:45436 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:27:37.586 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37244 10 6452 1 2025-10-08 11:27:42.196 00:00:10.323 TCP 23.104.0.1:33922 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:28:37.807 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50714 10 6452 1 2025-10-08 11:28:42.554 00:00:10.322 TCP 23.104.0.1:57496 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:29:33.530 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:29:33.604 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:29:38.028 00:00:10.748 TCP 1.101.0.1:3000 -> 22.102.0.1:43454 10 6452 1 2025-10-08 11:29:42.916 00:00:10.603 TCP 23.104.0.1:49922 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:26:39.390 00:05:02.085 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:30:38.811 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:34754 10 6452 1 2025-10-08 11:30:43.571 00:00:10.377 TCP 23.104.0.1:44838 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:27:39.395 00:05:02.078 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:31:38.982 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:34328 10 6452 1 2025-10-08 11:31:43.979 00:00:10.369 TCP 23.104.0.1:52168 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:32:39.204 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:46160 10 6452 1 2025-10-08 11:32:44.387 00:00:10.364 TCP 23.104.0.1:48988 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:33:39.374 00:00:10.717 TCP 1.101.0.1:3000 -> 22.102.0.1:49692 10 6452 1 2025-10-08 11:33:44.783 00:00:11.069 TCP 23.104.0.1:46392 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:34:33.631 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:34:33.800 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:34:40.129 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:56668 10 6452 1 2025-10-08 11:34:45.890 00:00:10.376 TCP 23.104.0.1:47008 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:35:40.345 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57810 10 6452 1 2025-10-08 11:35:46.307 00:00:10.364 TCP 23.104.0.1:41150 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:32:39.392 00:05:02.085 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:36:40.557 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58762 10 6452 1 2025-10-08 11:36:46.710 00:00:10.366 TCP 23.104.0.1:44446 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:33:39.396 00:05:02.080 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:37:40.785 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:43306 10 6452 1 2025-10-08 11:37:47.113 00:00:10.368 TCP 23.104.0.1:53290 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:38:40.960 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:36670 10 6452 1 2025-10-08 11:38:47.521 00:00:10.323 TCP 23.104.0.1:53096 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:39:33.747 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:39:33.578 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:39:41.197 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41052 10 6452 1 2025-10-08 11:39:47.883 00:00:10.377 TCP 23.104.0.1:56206 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:40:41.417 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50068 10 6452 1 2025-10-08 11:40:48.303 00:00:10.360 TCP 23.104.0.1:48590 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:41:41.633 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50964 10 6452 1 2025-10-08 11:41:48.703 00:00:10.368 TCP 23.104.0.1:39034 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:38:39.396 00:05:02.084 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:42:41.839 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:56004 10 6452 1 2025-10-08 11:42:49.112 00:00:10.368 TCP 23.104.0.1:50560 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:39:39.397 00:05:02.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:43:42.015 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52362 10 6452 1 2025-10-08 11:43:49.519 00:00:10.365 TCP 23.104.0.1:60712 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:44:33.611 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:44:33.762 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:44:42.244 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50136 10 6452 1 2025-10-08 11:44:49.923 00:00:10.389 TCP 23.104.0.1:36220 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:45:42.465 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38430 10 6452 1 2025-10-08 11:45:50.354 00:00:10.329 TCP 23.104.0.1:44594 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:46:42.677 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39894 10 6452 1 2025-10-08 11:46:50.718 00:00:10.368 TCP 23.104.0.1:46316 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:47:42.891 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54070 10 6452 1 2025-10-08 11:47:51.131 00:00:10.334 TCP 23.104.0.1:51554 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:44:39.396 00:05:02.084 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:48:43.109 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:35960 10 6452 1 2025-10-08 11:48:51.503 00:00:10.364 TCP 23.104.0.1:58626 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:49:33.869 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:49:33.857 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:45:39.399 00:05:02.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:49:43.319 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:46140 10 6452 1 2025-10-08 11:49:51.903 00:00:10.375 TCP 23.104.0.1:49098 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:50:43.535 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38886 10 6452 1 2025-10-08 11:50:52.316 00:00:10.371 TCP 23.104.0.1:55334 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:51:43.749 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:59808 10 6452 1 2025-10-08 11:51:52.724 00:00:10.330 TCP 23.104.0.1:35692 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:52:43.922 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38604 10 6452 1 2025-10-08 11:52:53.106 00:00:10.325 TCP 23.104.0.1:39068 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:53:44.133 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34362 10 6452 1 2025-10-08 11:53:53.470 00:00:10.364 TCP 23.104.0.1:47930 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:54:34.413 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 11:54:34.320 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 11:50:39.397 00:05:02.084 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 11:54:44.347 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:51446 10 6452 1 2025-10-08 11:54:53.871 00:00:10.365 TCP 23.104.0.1:55074 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:51:39.400 00:05:02.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 11:55:44.524 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50574 10 6452 1 2025-10-08 11:55:54.276 00:00:10.361 TCP 23.104.0.1:45502 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:56:44.735 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58474 10 6452 1 2025-10-08 11:56:54.675 00:00:10.324 TCP 23.104.0.1:42280 -> 1.101.0.1:3000 11 1507 1 2025-10-08 11:57:44.948 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:36686 10 6452 1 2025-10-08 11:57:55.035 00:00:10.361 TCP 23.104.0.1:52834 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 494835, total packets: 1559, avg bps: 1073, avg pps: 0, avg bpp: 317 Time window: 2025-10-08 10:56:39 - 2025-10-08 11:58:05 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0019s User: 0.0028s Wall: 0.0028s flows/second: 57325.3 Runtime: 0.0028s