Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 12:59:00.530 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51246 10 6452 1 2025-10-12 12:59:15.992 00:00:10.365 TCP 23.104.0.1:49114 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:00:00.744 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:36032 10 6452 1 2025-10-12 13:00:16.392 00:00:10.368 TCP 23.104.0.1:57428 -> 1.101.0.1:3000 11 1507 1 2025-10-12 12:56:41.206 00:05:02.436 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 12:56:41.203 00:05:02.441 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:01:00.967 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:54486 10 6452 1 2025-10-12 13:01:30.778 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:01:30.941 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:01:16.798 00:00:10.347 TCP 23.104.0.1:48406 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:02:01.148 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42442 10 6452 1 2025-10-12 13:02:17.180 00:00:10.360 TCP 23.104.0.1:39784 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:03:01.364 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51476 10 6452 1 2025-10-12 13:03:17.582 00:00:10.365 TCP 23.104.0.1:56860 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:04:01.574 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39680 10 6452 1 2025-10-12 13:04:17.984 00:00:10.339 TCP 23.104.0.1:54664 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:05:01.749 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:51886 10 6452 1 2025-10-12 13:05:18.357 00:00:10.368 TCP 23.104.0.1:54954 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:06:01.956 00:00:10.221 TCP 1.101.0.1:3000 -> 22.102.0.1:45602 12 10375 1 2025-10-12 13:06:31.050 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:06:18.762 00:00:10.452 TCP 23.104.0.1:47058 -> 1.101.0.1:3000 15 1926 1 2025-10-12 13:06:30.995 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:02:41.207 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:02:41.210 00:05:02.434 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 13:07:02.219 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:47980 10 6452 1 2025-10-12 13:07:19.253 00:00:10.368 TCP 23.104.0.1:51434 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:08:02.471 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49358 10 6452 1 2025-10-12 13:08:19.657 00:00:10.365 TCP 23.104.0.1:42322 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:09:02.683 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33304 10 6452 1 2025-10-12 13:09:20.090 00:00:10.364 TCP 23.104.0.1:46132 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:10:02.897 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:42814 10 6452 1 2025-10-12 13:10:20.492 00:00:10.328 TCP 23.104.0.1:43014 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:11:03.090 00:00:10.290 TCP 1.101.0.1:3000 -> 22.102.0.1:44118 10 6452 1 2025-10-12 13:11:30.992 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:11:31.047 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:11:20.854 00:00:11.077 TCP 23.104.0.1:54266 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:12:03.416 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:53426 10 6452 1 2025-10-12 13:12:21.970 00:00:10.366 TCP 23.104.0.1:49086 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:08:41.208 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:08:41.211 00:05:02.435 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 13:13:03.593 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35468 10 6452 1 2025-10-12 13:13:22.377 00:00:10.365 TCP 23.104.0.1:58058 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:14:03.808 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45702 10 6452 1 2025-10-12 13:14:22.783 00:00:10.326 TCP 23.104.0.1:35876 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:15:04.024 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33416 10 6452 1 2025-10-12 13:15:23.147 00:00:10.368 TCP 23.104.0.1:50440 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:16:04.238 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42728 10 6452 1 2025-10-12 13:16:31.304 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:16:31.297 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:16:23.549 00:00:10.367 TCP 23.104.0.1:50430 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:17:04.449 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43728 10 6452 1 2025-10-12 13:17:23.952 00:00:10.367 TCP 23.104.0.1:49338 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:18:04.661 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51102 10 6452 1 2025-10-12 13:18:24.362 00:00:10.327 TCP 23.104.0.1:57340 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:14:41.211 00:05:02.434 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 13:14:41.210 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:19:04.877 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:32774 10 6452 1 2025-10-12 13:19:24.721 00:00:10.366 TCP 23.104.0.1:35920 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:20:05.099 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:43808 10 6452 1 2025-10-12 13:20:25.126 00:00:10.330 TCP 23.104.0.1:50798 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:21:05.310 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37740 10 6452 1 2025-10-12 13:21:31.382 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:21:31.177 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:21:25.499 00:00:10.364 TCP 23.104.0.1:59838 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:22:05.521 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54078 10 6452 1 2025-10-12 13:22:25.901 00:00:10.367 TCP 23.104.0.1:32856 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:23:05.737 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:44754 10 6452 1 2025-10-12 13:23:26.307 00:00:10.365 TCP 23.104.0.1:37650 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:24:05.949 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40178 10 6452 1 2025-10-12 13:24:26.711 00:00:10.376 TCP 23.104.0.1:41372 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:20:41.213 00:05:02.434 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 13:20:41.210 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:25:06.170 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52082 10 6452 1 2025-10-12 13:25:27.133 00:00:10.374 TCP 23.104.0.1:34568 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:26:06.384 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54512 10 6452 1 2025-10-12 13:26:31.688 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:26:31.495 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:26:27.549 00:00:10.367 TCP 23.104.0.1:46348 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:27:06.590 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51704 10 6452 1 2025-10-12 13:27:27.952 00:00:10.327 TCP 23.104.0.1:47662 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:28:06.807 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39890 10 6452 1 2025-10-12 13:28:28.320 00:00:10.322 TCP 23.104.0.1:43840 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:29:07.037 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:55652 10 6452 1 2025-10-12 13:29:28.678 00:00:10.367 TCP 23.104.0.1:56118 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:30:07.246 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53194 10 6452 1 2025-10-12 13:30:29.107 00:00:10.366 TCP 23.104.0.1:36064 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:26:41.215 00:05:02.433 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 13:26:41.212 00:05:02.438 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:31:07.457 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43414 10 6452 1 2025-10-12 13:31:31.525 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:31:31.469 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:31:29.512 00:00:10.378 TCP 23.104.0.1:50516 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:32:07.670 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:33596 10 6452 1 2025-10-12 13:32:29.929 00:00:10.392 TCP 23.104.0.1:34174 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:33:07.851 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36632 10 6452 1 2025-10-12 13:33:30.357 00:00:10.322 TCP 23.104.0.1:53696 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:34:08.084 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51082 10 6452 1 2025-10-12 13:34:30.718 00:00:10.317 TCP 23.104.0.1:47444 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:35:08.296 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49158 10 6452 1 2025-10-12 13:35:31.098 00:00:10.322 TCP 23.104.0.1:58190 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:36:08.507 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57720 10 6452 1 2025-10-12 13:36:31.578 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:36:31.579 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:36:31.457 00:00:10.366 TCP 23.104.0.1:53260 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:32:41.215 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:32:41.218 00:05:02.434 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 13:37:08.719 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33352 10 6452 1 2025-10-12 13:37:31.858 00:00:10.367 TCP 23.104.0.1:49164 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:38:08.936 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:34038 10 6452 1 2025-10-12 13:38:32.263 00:00:10.367 TCP 23.104.0.1:51900 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:39:09.136 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45328 10 6452 1 2025-10-12 13:39:32.669 00:00:10.366 TCP 23.104.0.1:46920 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:40:09.351 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39942 10 6452 1 2025-10-12 13:40:33.099 00:00:10.369 TCP 23.104.0.1:36176 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:41:09.568 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50506 10 6452 1 2025-10-12 13:41:31.583 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:41:31.804 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:41:33.509 00:00:10.366 TCP 23.104.0.1:34720 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:42:09.781 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:50578 10 6452 1 2025-10-12 13:38:41.218 00:05:02.443 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:42:33.915 00:00:10.331 TCP 23.104.0.1:40224 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:38:41.219 00:05:02.439 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 13:43:10.052 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40952 10 6452 1 2025-10-12 13:43:34.282 00:00:11.397 TCP 23.104.0.1:54406 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:44:10.264 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44400 10 6452 1 2025-10-12 13:44:35.722 00:00:10.371 TCP 23.104.0.1:44022 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:45:10.480 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34466 10 6452 1 2025-10-12 13:45:36.132 00:00:10.362 TCP 23.104.0.1:47506 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:46:10.703 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:57074 10 6452 1 2025-10-12 13:46:31.673 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:46:32.019 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:46:36.532 00:00:10.370 TCP 23.104.0.1:34224 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:47:10.876 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:43986 10 6452 1 2025-10-12 13:47:36.932 00:00:11.496 TCP 23.104.0.1:56662 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:48:11.110 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52014 10 6452 1 2025-10-12 13:44:41.218 00:05:02.443 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:44:41.220 00:05:02.439 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 13:48:38.465 00:00:10.323 TCP 23.104.0.1:52504 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:49:11.324 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42102 10 6452 1 2025-10-12 13:49:38.828 00:00:10.340 TCP 23.104.0.1:42980 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:50:11.537 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46022 10 6452 1 2025-10-12 13:50:39.202 00:00:10.368 TCP 23.104.0.1:40224 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:51:11.748 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44778 10 6452 1 2025-10-12 13:51:31.794 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:51:32.027 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:51:39.607 00:00:10.366 TCP 23.104.0.1:40028 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:52:11.967 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:47530 12 6556 1 2025-10-12 13:52:40.015 00:00:10.368 TCP 23.104.0.1:44158 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:53:12.197 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35970 10 6452 1 2025-10-12 13:53:40.419 00:00:10.328 TCP 23.104.0.1:58730 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:54:12.426 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47972 10 6452 1 2025-10-12 13:50:41.222 00:05:02.439 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-12 13:50:41.220 00:05:02.444 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-12 13:54:40.783 00:00:10.373 TCP 23.104.0.1:48248 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:55:12.640 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37912 10 6452 1 2025-10-12 13:55:41.196 00:00:10.363 TCP 23.104.0.1:43780 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:56:12.851 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48320 10 6452 1 2025-10-12 13:56:31.961 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-12 13:56:32.031 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-12 13:56:41.599 00:00:10.379 TCP 23.104.0.1:55378 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:57:13.086 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:41938 10 6452 1 2025-10-12 13:57:42.020 00:00:10.365 TCP 23.104.0.1:44286 -> 1.101.0.1:3000 11 1507 1 2025-10-12 13:58:13.307 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41686 10 6452 1 Summary: total flows: 163, total bytes: 501287, total packets: 1569, avg bps: 1083, avg pps: 0, avg bpp: 319 Time window: 2025-10-12 12:56:41 - 2025-10-12 13:58:23 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0030s User: 0.0020s Wall: 0.0023s flows/second: 72155.3 Runtime: 0.0023s