Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 15:59:05.351 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:54446 10 6452 1 2025-10-08 15:59:38.582 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 15:59:38.729 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 15:59:35.140 00:00:10.368 TCP 23.104.0.1:33302 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:00:05.576 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53476 12 6556 1 2025-10-08 15:56:39.477 00:05:02.100 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:00:35.550 00:00:10.372 TCP 23.104.0.1:35802 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:01:05.799 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:46654 10 6452 1 2025-10-08 15:57:39.478 00:05:02.095 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:01:35.959 00:00:10.373 TCP 23.104.0.1:49102 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:02:06.039 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:48844 10 6452 1 2025-10-08 16:02:36.376 00:00:10.325 TCP 23.104.0.1:36506 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:03:06.211 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:41806 10 6452 1 2025-10-08 16:03:36.739 00:00:10.325 TCP 23.104.0.1:51014 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:04:06.387 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50460 10 6452 1 2025-10-08 16:04:39.326 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:04:39.262 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:04:37.105 00:00:10.454 TCP 23.104.0.1:40622 -> 1.101.0.1:3000 15 1926 1 2025-10-08 16:05:06.602 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:52998 12 10369 1 2025-10-08 16:05:37.603 00:00:10.365 TCP 23.104.0.1:53760 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:06:06.846 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:47628 10 6452 1 2025-10-08 16:02:39.478 00:05:02.104 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:06:38.010 00:00:10.371 TCP 23.104.0.1:57220 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:07:07.037 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60456 10 6452 1 2025-10-08 16:03:39.480 00:05:02.098 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:07:38.422 00:00:10.324 TCP 23.104.0.1:45106 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:08:07.254 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:39674 10 6452 1 2025-10-08 16:08:38.787 00:00:10.363 TCP 23.104.0.1:45214 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:09:07.425 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:41596 10 6452 1 2025-10-08 16:09:38.988 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:09:39.263 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:09:39.190 00:00:10.362 TCP 23.104.0.1:44764 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:10:07.602 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56084 10 6452 1 2025-10-08 16:10:39.590 00:00:10.386 TCP 23.104.0.1:57992 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:11:07.810 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59196 10 6452 1 2025-10-08 16:11:40.016 00:00:10.360 TCP 23.104.0.1:50248 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:12:08.026 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56124 10 6452 1 2025-10-08 16:08:39.480 00:05:02.102 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:12:40.416 00:00:10.365 TCP 23.104.0.1:57760 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:13:08.244 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:38328 10 6452 1 2025-10-08 16:09:39.483 00:05:02.097 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:13:40.822 00:00:10.369 TCP 23.104.0.1:56382 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:14:08.467 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:51698 10 6452 1 2025-10-08 16:14:39.166 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:14:39.349 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:14:41.230 00:00:10.361 TCP 23.104.0.1:51278 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:15:08.696 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34544 10 6452 1 2025-10-08 16:15:41.626 00:00:10.367 TCP 23.104.0.1:49822 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:16:08.912 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47726 10 6452 1 2025-10-08 16:16:42.034 00:00:10.331 TCP 23.104.0.1:39750 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:17:09.133 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:58174 10 6452 1 2025-10-08 16:17:42.404 00:00:11.058 TCP 23.104.0.1:41736 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:18:09.338 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33070 10 6452 1 2025-10-08 16:14:39.480 00:05:02.105 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:18:43.510 00:00:10.361 TCP 23.104.0.1:33608 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:19:09.554 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:50626 10 6452 1 2025-10-08 16:19:39.531 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:19:39.424 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:15:39.482 00:05:02.101 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:19:43.913 00:00:10.367 TCP 23.104.0.1:50208 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:20:09.773 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:32960 10 6452 1 2025-10-08 16:20:44.314 00:00:10.367 TCP 23.104.0.1:38790 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:21:09.990 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:40240 12 6556 1 2025-10-08 16:21:44.715 00:00:10.376 TCP 23.104.0.1:36976 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:22:10.220 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:38802 10 6452 1 2025-10-08 16:22:45.125 00:00:10.363 TCP 23.104.0.1:40454 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:23:10.452 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49446 10 6452 1 2025-10-08 16:23:45.523 00:00:10.359 TCP 23.104.0.1:38226 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:24:10.665 00:00:10.837 TCP 1.101.0.1:3000 -> 22.102.0.1:41844 10 6452 1 2025-10-08 16:24:39.414 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:24:39.322 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:20:39.482 00:05:02.106 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:24:45.916 00:00:10.360 TCP 23.104.0.1:56296 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:25:11.541 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36962 10 6452 1 2025-10-08 16:21:39.485 00:05:02.100 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:25:46.314 00:00:10.366 TCP 23.104.0.1:46282 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:26:11.762 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60882 10 6452 1 2025-10-08 16:26:46.719 00:00:10.377 TCP 23.104.0.1:45656 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:27:11.976 00:00:10.163 TCP 1.101.0.1:3000 -> 22.102.0.1:37500 10 6452 1 2025-10-08 16:27:47.135 00:00:10.366 TCP 23.104.0.1:60476 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:28:12.183 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50642 10 6452 1 2025-10-08 16:28:47.542 00:00:10.365 TCP 23.104.0.1:43256 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:29:12.394 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46058 10 6452 1 2025-10-08 16:29:39.381 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:29:39.569 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:29:47.944 00:00:10.327 TCP 23.104.0.1:57182 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:30:12.608 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43718 10 6452 1 2025-10-08 16:26:39.483 00:05:02.105 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:30:48.306 00:00:10.321 TCP 23.104.0.1:55002 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:31:12.783 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:36088 10 6452 1 2025-10-08 16:27:39.485 00:05:02.101 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:31:48.671 00:00:10.351 TCP 23.104.0.1:35924 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:32:12.993 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45828 10 6452 1 2025-10-08 16:32:49.075 00:00:10.322 TCP 23.104.0.1:33802 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:33:13.214 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43726 10 6452 1 2025-10-08 16:33:49.436 00:00:10.365 TCP 23.104.0.1:48134 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:34:13.425 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35070 10 6452 1 2025-10-08 16:34:39.786 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:34:39.893 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:34:49.840 00:00:10.421 TCP 23.104.0.1:51780 -> 1.101.0.1:3000 15 1926 1 2025-10-08 16:35:13.640 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:59070 12 10369 1 2025-10-08 16:35:50.302 00:00:10.370 TCP 23.104.0.1:35618 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:36:13.884 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58706 10 6452 1 2025-10-08 16:32:39.485 00:05:02.105 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:36:50.712 00:00:10.324 TCP 23.104.0.1:57530 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:37:14.109 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50390 10 6452 1 2025-10-08 16:33:39.488 00:05:02.099 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:37:51.097 00:00:10.374 TCP 23.104.0.1:53382 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:38:14.328 00:00:10.297 TCP 1.101.0.1:3000 -> 22.102.0.1:53226 10 6452 1 2025-10-08 16:38:51.512 00:00:10.367 TCP 23.104.0.1:33154 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:39:14.666 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34664 10 6452 1 2025-10-08 16:39:39.762 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:39:39.815 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:39:51.917 00:00:10.373 TCP 23.104.0.1:37588 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:40:14.885 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:47282 10 6452 1 2025-10-08 16:40:52.331 00:00:10.360 TCP 23.104.0.1:35144 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:41:15.077 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36968 10 6452 1 2025-10-08 16:41:52.728 00:00:10.379 TCP 23.104.0.1:47564 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:42:15.289 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:52644 10 6452 1 2025-10-08 16:38:39.488 00:05:02.103 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:42:53.143 00:00:10.368 TCP 23.104.0.1:39102 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:43:15.511 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59852 10 6452 1 2025-10-08 16:39:39.489 00:05:02.100 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:43:53.546 00:00:10.368 TCP 23.104.0.1:37214 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:44:15.726 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:50990 10 6452 1 2025-10-08 16:44:39.781 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:44:39.969 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:44:53.950 00:00:10.373 TCP 23.104.0.1:44130 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:45:15.909 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56184 10 6452 1 2025-10-08 16:45:54.360 00:00:10.372 TCP 23.104.0.1:46158 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:46:16.120 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35952 10 6452 1 2025-10-08 16:46:54.769 00:00:10.373 TCP 23.104.0.1:56304 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:47:16.339 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:44774 10 6452 1 2025-10-08 16:47:55.179 00:00:10.372 TCP 23.104.0.1:40880 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:48:16.515 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:33862 10 6452 1 2025-10-08 16:44:39.489 00:05:02.105 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:48:55.599 00:00:10.321 TCP 23.104.0.1:38932 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:49:16.690 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39636 10 6452 1 2025-10-08 16:49:39.881 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:45:39.491 00:05:02.100 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:49:40.001 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:49:55.961 00:00:10.343 TCP 23.104.0.1:51378 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:50:16.905 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42124 10 6452 1 2025-10-08 16:50:56.341 00:00:10.367 TCP 23.104.0.1:45182 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:51:17.131 00:00:11.084 TCP 1.101.0.1:3000 -> 22.102.0.1:35934 10 6452 1 2025-10-08 16:51:56.748 00:00:10.362 TCP 23.104.0.1:56288 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:52:18.251 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39748 10 6452 1 2025-10-08 16:52:57.144 00:00:10.365 TCP 23.104.0.1:33948 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:53:18.469 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34034 10 6452 1 2025-10-08 16:53:57.550 00:00:10.371 TCP 23.104.0.1:46832 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:54:18.675 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50608 10 6452 1 2025-10-08 16:54:40.255 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-08 16:50:39.489 00:05:02.106 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-08 16:54:40.429 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:54:57.957 00:00:10.386 TCP 23.104.0.1:44806 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:55:18.893 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:35492 10 6452 1 2025-10-08 16:51:39.492 00:05:02.102 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-08 16:55:58.382 00:00:10.360 TCP 23.104.0.1:38908 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:56:19.095 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:55702 10 6452 1 2025-10-08 16:56:58.781 00:00:10.332 TCP 23.104.0.1:52716 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:57:19.272 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56488 10 6452 1 2025-10-08 16:57:59.151 00:00:10.363 TCP 23.104.0.1:44166 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:58:19.481 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34944 10 6452 1 Summary: total flows: 163, total bytes: 505721, total packets: 1577, avg bps: 1090, avg pps: 0, avg bpp: 320 Time window: 2025-10-08 15:56:39 - 2025-10-08 16:58:29 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0020s User: 0.0031s Wall: 0.0022s flows/second: 73426.2 Runtime: 0.0022s