Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 11:59:03.397 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46514 10 6452 1 2025-10-09 11:59:09.503 00:00:10.366 TCP 23.104.0.1:51942 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:00:02.846 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:00:02.989 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:00:03.602 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:38340 10 6452 1 2025-10-09 12:00:09.903 00:00:10.370 TCP 23.104.0.1:48404 -> 1.101.0.1:3000 11 1507 1 2025-10-09 11:56:39.840 00:05:02.245 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:01:03.810 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59994 10 6452 1 2025-10-09 12:01:10.308 00:00:10.361 TCP 23.104.0.1:36882 -> 1.101.0.1:3000 11 1507 1 2025-10-09 11:57:39.842 00:05:02.240 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:02:04.038 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:46954 10 6452 1 2025-10-09 12:02:10.707 00:00:10.369 TCP 23.104.0.1:34638 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:03:04.246 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51296 10 6452 1 2025-10-09 12:03:11.110 00:00:10.362 TCP 23.104.0.1:54818 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:04:04.463 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42912 10 6452 1 2025-10-09 12:04:11.516 00:00:10.370 TCP 23.104.0.1:49696 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:05:03.058 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:05:02.989 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:05:04.681 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42022 10 6452 1 2025-10-09 12:05:11.921 00:00:10.378 TCP 23.104.0.1:50748 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:06:04.895 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:52316 10 6452 1 2025-10-09 12:06:12.337 00:00:10.367 TCP 23.104.0.1:49784 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:02:39.843 00:05:02.243 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:07:05.130 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:36408 10 6452 1 2025-10-09 12:07:12.742 00:00:10.363 TCP 23.104.0.1:57102 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:03:39.847 00:05:02.238 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:08:05.354 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48540 12 6556 1 2025-10-09 12:08:13.154 00:00:10.642 TCP 23.104.0.1:47018 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:09:05.574 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:54974 10 6452 1 2025-10-09 12:09:13.839 00:00:10.340 TCP 23.104.0.1:60390 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:10:03.109 00:00:00.036 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:10:03.311 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:10:05.799 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36984 10 6452 1 2025-10-09 12:10:14.218 00:00:10.371 TCP 23.104.0.1:47536 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:11:06.029 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53834 10 6452 1 2025-10-09 12:11:14.626 00:00:10.371 TCP 23.104.0.1:58944 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:12:06.236 00:00:10.956 TCP 1.101.0.1:3000 -> 22.102.0.1:60546 10 6452 1 2025-10-09 12:12:15.036 00:00:10.367 TCP 23.104.0.1:51726 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:08:39.844 00:05:02.245 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:13:07.253 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:41564 10 6452 1 2025-10-09 12:13:15.441 00:00:10.659 TCP 23.104.0.1:38286 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:09:39.848 00:05:02.239 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:14:07.466 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36286 10 6452 1 2025-10-09 12:14:16.135 00:00:10.327 TCP 23.104.0.1:53116 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:15:03.386 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:15:03.395 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:15:07.689 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58698 10 6452 1 2025-10-09 12:15:16.502 00:00:10.365 TCP 23.104.0.1:33736 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:16:07.913 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48236 10 6452 1 2025-10-09 12:16:16.904 00:00:10.333 TCP 23.104.0.1:37858 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:17:08.125 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:48676 10 6452 1 2025-10-09 12:17:17.272 00:00:10.368 TCP 23.104.0.1:37992 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:18:08.293 00:00:10.288 TCP 1.101.0.1:3000 -> 22.102.0.1:52012 10 6452 1 2025-10-09 12:18:17.678 00:00:10.368 TCP 23.104.0.1:57776 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:14:39.845 00:05:02.251 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:19:08.617 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:42048 10 6452 1 2025-10-09 12:19:18.103 00:00:10.365 TCP 23.104.0.1:48452 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:15:39.848 00:05:02.244 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:20:03.262 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:20:03.386 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:20:08.788 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46062 10 6452 1 2025-10-09 12:20:18.506 00:00:18.839 TCP 23.104.0.1:49648 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:21:09.011 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:46782 10 6452 1 2025-10-09 12:21:27.393 00:00:10.325 TCP 23.104.0.1:57604 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:22:09.240 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:49810 10 6452 1 2025-10-09 12:22:27.758 00:00:10.376 TCP 23.104.0.1:44428 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:23:09.463 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:48732 10 6452 1 2025-10-09 12:23:28.175 00:00:10.367 TCP 23.104.0.1:47048 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:24:09.641 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45468 10 6452 1 2025-10-09 12:24:28.578 00:00:10.327 TCP 23.104.0.1:36102 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:20:39.848 00:05:02.247 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:25:03.798 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:25:03.531 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:25:09.853 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:45330 10 6452 1 2025-10-09 12:25:28.942 00:00:10.370 TCP 23.104.0.1:46484 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:21:39.851 00:05:02.242 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:26:10.039 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50926 10 6452 1 2025-10-09 12:26:29.350 00:00:10.365 TCP 23.104.0.1:36790 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:27:10.249 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:36164 10 6452 1 2025-10-09 12:27:29.761 00:00:10.371 TCP 23.104.0.1:49646 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:28:10.425 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52500 10 6452 1 2025-10-09 12:28:30.165 00:00:10.325 TCP 23.104.0.1:52690 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:29:10.641 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42756 10 6452 1 2025-10-09 12:29:30.525 00:00:10.375 TCP 23.104.0.1:33930 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:30:03.817 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:30:03.548 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:30:10.850 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:48752 10 6452 1 2025-10-09 12:30:30.942 00:00:10.333 TCP 23.104.0.1:49400 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:26:39.850 00:05:02.248 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:31:11.091 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60126 10 6452 1 2025-10-09 12:31:31.318 00:00:10.367 TCP 23.104.0.1:42948 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:27:39.852 00:05:02.243 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:32:11.306 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36218 10 6452 1 2025-10-09 12:32:31.727 00:00:10.375 TCP 23.104.0.1:41700 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:33:11.514 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59540 10 6452 1 2025-10-09 12:33:32.149 00:00:11.079 TCP 23.104.0.1:56322 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:34:11.726 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49832 10 6452 1 2025-10-09 12:34:33.276 00:00:10.361 TCP 23.104.0.1:38948 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:35:03.855 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:35:03.856 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:35:11.937 00:00:10.294 TCP 1.101.0.1:3000 -> 22.102.0.1:34252 10 6452 1 2025-10-09 12:35:33.677 00:00:10.331 TCP 23.104.0.1:58308 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:36:12.276 00:00:10.255 TCP 1.101.0.1:3000 -> 22.102.0.1:44082 13 6608 1 2025-10-09 12:36:34.059 00:00:10.363 TCP 23.104.0.1:39654 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:32:39.849 00:05:02.251 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:37:12.577 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54878 10 6452 1 2025-10-09 12:33:39.853 00:05:02.245 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:37:34.461 00:00:10.320 TCP 23.104.0.1:40820 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:38:12.795 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40170 10 6452 1 2025-10-09 12:38:34.820 00:00:10.369 TCP 23.104.0.1:36026 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:39:12.967 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:47396 12 6556 1 2025-10-09 12:39:35.226 00:00:10.369 TCP 23.104.0.1:51036 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:40:03.880 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:40:03.880 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:40:13.199 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52626 10 6452 1 2025-10-09 12:40:35.630 00:00:10.370 TCP 23.104.0.1:38136 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:41:13.412 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:41646 10 6452 1 2025-10-09 12:41:36.036 00:00:10.368 TCP 23.104.0.1:41318 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:42:13.582 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38088 10 6452 1 2025-10-09 12:38:39.850 00:05:02.250 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:42:36.443 00:00:10.370 TCP 23.104.0.1:49996 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:43:13.795 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41728 10 6452 1 2025-10-09 12:39:39.852 00:05:02.245 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:43:36.846 00:00:10.384 TCP 23.104.0.1:39818 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:44:14.025 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39538 10 6452 1 2025-10-09 12:44:37.270 00:00:10.375 TCP 23.104.0.1:51610 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:45:04.029 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:45:03.873 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:45:14.237 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54754 10 6452 1 2025-10-09 12:45:37.687 00:00:10.328 TCP 23.104.0.1:53952 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:46:14.451 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57838 10 6452 1 2025-10-09 12:46:38.059 00:00:10.328 TCP 23.104.0.1:35776 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:47:14.662 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45442 10 6452 1 2025-10-09 12:47:38.441 00:00:10.368 TCP 23.104.0.1:47170 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:48:14.870 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:47182 10 6452 1 2025-10-09 12:44:39.850 00:05:02.252 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:48:38.853 00:00:10.338 TCP 23.104.0.1:51274 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:49:15.071 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59156 10 6452 1 2025-10-09 12:45:39.853 00:05:02.248 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:49:39.236 00:00:10.364 TCP 23.104.0.1:52482 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:50:04.226 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:50:04.132 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:50:15.280 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:34136 12 10375 1 2025-10-09 12:50:39.638 00:00:10.441 TCP 23.104.0.1:35656 -> 1.101.0.1:3000 15 1926 1 2025-10-09 12:51:15.522 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48756 10 6452 1 2025-10-09 12:51:40.113 00:00:10.366 TCP 23.104.0.1:34028 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:52:15.730 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58868 10 6452 1 2025-10-09 12:52:40.524 00:00:10.360 TCP 23.104.0.1:45218 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:53:15.948 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:41396 10 6452 1 2025-10-09 12:53:40.925 00:00:10.338 TCP 23.104.0.1:45180 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:54:16.180 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:54274 10 6452 1 2025-10-09 12:50:39.857 00:05:02.248 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 12:54:41.301 00:00:10.359 TCP 23.104.0.1:35044 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:55:04.066 00:00:00.038 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 12:55:04.184 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 12:55:16.413 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49226 10 6452 1 2025-10-09 12:51:39.860 00:05:02.243 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 12:55:41.698 00:00:10.323 TCP 23.104.0.1:55792 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:56:16.634 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:49856 10 6452 1 2025-10-09 12:56:42.071 00:00:10.326 TCP 23.104.0.1:37406 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:57:16.848 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55896 10 6452 1 2025-10-09 12:57:42.425 00:00:10.366 TCP 23.104.0.1:36260 -> 1.101.0.1:3000 11 1507 1 2025-10-09 12:58:17.082 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:49902 10 6452 1 Summary: total flows: 163, total bytes: 501547, total packets: 1574, avg bps: 1082, avg pps: 0, avg bpp: 318 Time window: 2025-10-09 11:56:39 - 2025-10-09 12:58:27 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0029s User: 0.0029s Wall: 0.0021s flows/second: 76920.7 Runtime: 0.0021s