Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 12:59:14.835 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57192 10 6452 1 2025-10-08 12:59:20.927 00:00:10.379 TCP 23.104.0.1:46290 -> 1.101.0.1:3000 11 1507 1 2025-10-08 12:59:35.293 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 12:59:35.365 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:00:15.074 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:55078 10 6452 1 2025-10-08 13:00:21.344 00:00:10.370 TCP 23.104.0.1:48792 -> 1.101.0.1:3000 11 1507 1 2025-10-08 12:56:39.423 00:05:02.075 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:01:15.311 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42576 10 6452 1 2025-10-08 13:01:21.755 00:00:10.376 TCP 23.104.0.1:41518 -> 1.101.0.1:3000 11 1507 1 2025-10-08 12:57:39.425 00:05:02.070 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:02:15.527 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37474 10 6452 1 2025-10-08 13:02:22.169 00:00:10.364 TCP 23.104.0.1:39544 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:03:15.750 00:00:10.521 TCP 1.101.0.1:3000 -> 22.102.0.1:45656 10 6452 1 2025-10-08 13:03:22.574 00:00:10.366 TCP 23.104.0.1:51132 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:04:16.308 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59704 10 6452 1 2025-10-08 13:04:35.332 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:04:22.977 00:00:10.372 TCP 23.104.0.1:40052 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:04:35.284 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:05:16.526 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52780 10 6452 1 2025-10-08 13:05:23.384 00:00:10.368 TCP 23.104.0.1:60438 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:06:16.749 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58516 10 6452 1 2025-10-08 13:06:23.787 00:00:10.328 TCP 23.104.0.1:43410 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:02:39.424 00:05:02.074 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:07:16.968 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:37520 10 6452 1 2025-10-08 13:07:24.150 00:00:10.369 TCP 23.104.0.1:38738 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:03:39.426 00:05:02.071 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:08:17.211 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56876 10 6452 1 2025-10-08 13:08:24.558 00:00:10.359 TCP 23.104.0.1:44914 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:09:17.427 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34670 10 6452 1 2025-10-08 13:09:35.413 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:09:24.953 00:00:10.367 TCP 23.104.0.1:45382 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:09:35.510 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:10:17.647 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55546 10 6452 1 2025-10-08 13:10:25.357 00:00:10.358 TCP 23.104.0.1:52542 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:11:17.868 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55786 10 6452 1 2025-10-08 13:11:25.755 00:00:10.376 TCP 23.104.0.1:50982 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:12:18.089 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37874 10 6452 1 2025-10-08 13:12:26.162 00:00:10.364 TCP 23.104.0.1:53790 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:08:39.425 00:05:02.086 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:13:18.307 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44512 10 6452 1 2025-10-08 13:13:26.566 00:00:10.326 TCP 23.104.0.1:52924 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:09:39.427 00:05:02.081 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:14:18.530 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:59548 10 6452 1 2025-10-08 13:14:35.408 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:14:35.418 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:14:26.933 00:00:10.374 TCP 23.104.0.1:38940 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:15:18.754 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:33464 10 6452 1 2025-10-08 13:15:27.346 00:00:10.369 TCP 23.104.0.1:40852 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:16:18.990 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51150 10 6452 1 2025-10-08 13:16:27.749 00:00:10.369 TCP 23.104.0.1:51058 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:17:19.208 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45290 10 6452 1 2025-10-08 13:17:28.157 00:00:10.360 TCP 23.104.0.1:32814 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:18:19.423 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:44798 10 6452 1 2025-10-08 13:14:39.426 00:05:02.086 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:18:28.557 00:00:10.363 TCP 23.104.0.1:47426 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:19:19.606 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:49998 10 6452 1 2025-10-08 13:19:35.904 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:19:35.646 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:19:28.960 00:00:10.327 TCP 23.104.0.1:60764 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:15:39.431 00:05:02.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:20:19.797 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47310 10 6452 1 2025-10-08 13:20:29.326 00:00:10.369 TCP 23.104.0.1:34294 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:21:20.012 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36796 10 6452 1 2025-10-08 13:21:29.729 00:00:10.366 TCP 23.104.0.1:44838 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:22:20.224 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:49420 10 6452 1 2025-10-08 13:22:30.131 00:00:10.368 TCP 23.104.0.1:42452 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:23:20.409 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45382 10 6452 1 2025-10-08 13:23:30.533 00:00:10.568 TCP 23.104.0.1:51152 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:24:20.620 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:43278 12 10369 1 2025-10-08 13:24:35.905 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:24:35.833 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:24:31.151 00:00:10.399 TCP 23.104.0.1:55292 -> 1.101.0.1:3000 15 1926 1 2025-10-08 13:20:39.430 00:05:02.085 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:25:20.860 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:37046 10 6452 1 2025-10-08 13:25:31.588 00:00:10.370 TCP 23.104.0.1:50218 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:21:39.434 00:05:02.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:26:21.088 00:00:10.570 TCP 1.101.0.1:3000 -> 22.102.0.1:55036 10 6452 1 2025-10-08 13:26:31.994 00:00:10.373 TCP 23.104.0.1:33136 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:27:21.694 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:37090 10 6452 1 2025-10-08 13:27:32.407 00:00:10.370 TCP 23.104.0.1:43136 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:28:21.861 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:49762 10 6452 1 2025-10-08 13:28:32.815 00:00:10.339 TCP 23.104.0.1:60314 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:29:35.922 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:29:22.092 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:53958 10 6452 1 2025-10-08 13:29:35.941 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:29:33.183 00:00:10.364 TCP 23.104.0.1:35326 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:30:22.269 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35514 10 6452 1 2025-10-08 13:26:39.431 00:05:02.085 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:30:33.588 00:00:10.370 TCP 23.104.0.1:42824 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:31:22.478 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51316 10 6452 1 2025-10-08 13:31:33.996 00:00:10.363 TCP 23.104.0.1:43220 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:27:39.434 00:05:02.080 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:32:22.689 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:40612 10 6452 1 2025-10-08 13:32:34.397 00:00:10.361 TCP 23.104.0.1:42740 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:33:22.912 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41744 10 6452 1 2025-10-08 13:33:34.798 00:00:10.362 TCP 23.104.0.1:53612 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:34:35.818 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:34:23.128 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:37294 10 6452 1 2025-10-08 13:34:36.028 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:34:35.201 00:00:10.368 TCP 23.104.0.1:52710 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:35:23.349 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48602 10 6452 1 2025-10-08 13:35:35.608 00:00:10.365 TCP 23.104.0.1:52830 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:36:23.569 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60278 10 6452 1 2025-10-08 13:32:39.434 00:05:02.083 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:36:36.010 00:00:10.362 TCP 23.104.0.1:49220 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:37:23.787 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:38330 10 6452 1 2025-10-08 13:33:39.437 00:05:02.078 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:37:36.411 00:00:10.326 TCP 23.104.0.1:47398 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:38:24.014 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50048 10 6452 1 2025-10-08 13:38:36.777 00:00:10.330 TCP 23.104.0.1:39444 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:39:36.180 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:39:24.232 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:41742 10 6452 1 2025-10-08 13:39:36.015 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:39:37.143 00:00:10.366 TCP 23.104.0.1:49310 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:40:24.473 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:57598 10 6452 1 2025-10-08 13:40:37.550 00:00:10.376 TCP 23.104.0.1:41220 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:41:24.705 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56926 10 6452 1 2025-10-08 13:41:37.968 00:00:10.372 TCP 23.104.0.1:54804 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:42:24.934 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35164 10 6452 1 2025-10-08 13:38:39.436 00:05:02.083 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:42:38.374 00:00:10.363 TCP 23.104.0.1:57550 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:43:25.152 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39346 10 6452 1 2025-10-08 13:39:39.436 00:05:02.078 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:43:38.771 00:00:10.367 TCP 23.104.0.1:51598 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:44:36.210 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:44:25.385 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59070 10 6452 1 2025-10-08 13:44:36.010 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:44:39.176 00:00:10.372 TCP 23.104.0.1:59230 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:45:25.605 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41854 10 6452 1 2025-10-08 13:45:39.582 00:00:10.369 TCP 23.104.0.1:46396 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:46:25.824 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48790 10 6452 1 2025-10-08 13:46:39.990 00:00:10.367 TCP 23.104.0.1:44376 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:47:26.050 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:36470 10 6452 1 2025-10-08 13:47:40.389 00:00:10.365 TCP 23.104.0.1:59462 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:48:26.263 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:40858 10 6452 1 2025-10-08 13:44:39.438 00:05:02.081 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:48:40.789 00:00:10.373 TCP 23.104.0.1:45096 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:49:26.481 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:51604 10 6452 1 2025-10-08 13:49:36.857 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:49:37.127 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:45:39.440 00:05:02.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:49:41.200 00:00:10.365 TCP 23.104.0.1:37510 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:50:26.703 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33918 10 6452 1 2025-10-08 13:50:41.601 00:00:10.364 TCP 23.104.0.1:41112 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:51:26.927 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:46276 10 6452 1 2025-10-08 13:51:42.005 00:00:10.365 TCP 23.104.0.1:33068 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:52:27.159 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34868 10 6452 1 2025-10-08 13:52:42.413 00:00:10.365 TCP 23.104.0.1:37058 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:53:27.372 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45730 10 6452 1 2025-10-08 13:53:42.815 00:00:10.329 TCP 23.104.0.1:35126 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:54:36.284 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 13:54:36.524 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 13:54:27.581 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35270 10 6452 1 2025-10-08 13:50:39.446 00:05:02.074 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 13:54:43.193 00:00:10.363 TCP 23.104.0.1:45324 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:55:27.792 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52010 10 6452 1 2025-10-08 13:51:39.448 00:05:02.069 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 13:55:43.596 00:00:10.368 TCP 23.104.0.1:38666 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:56:28.006 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:40188 10 6452 1 2025-10-08 13:56:44.004 00:00:10.374 TCP 23.104.0.1:55194 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:57:28.228 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:56776 10 6452 1 2025-10-08 13:57:44.420 00:00:10.366 TCP 23.104.0.1:44556 -> 1.101.0.1:3000 11 1507 1 2025-10-08 13:58:28.402 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36486 10 6452 1 Summary: total flows: 163, total bytes: 501177, total packets: 1567, avg bps: 1078, avg pps: 0, avg bpp: 319 Time window: 2025-10-08 12:56:39 - 2025-10-08 13:58:38 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0038s User: 0.0019s Wall: 0.0021s flows/second: 79275.5 Runtime: 0.0021s