Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 00:59:04.132 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59218 10 6452 1 2025-10-13 00:59:41.203 00:00:10.372 TCP 23.104.0.1:40534 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:00:04.342 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:56804 10 6452 1 2025-10-13 00:56:41.460 00:05:02.419 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 00:56:41.458 00:05:02.425 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:00:41.612 00:00:10.331 TCP 23.104.0.1:55992 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:01:04.515 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37450 10 6452 1 2025-10-13 01:01:45.387 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:01:45.557 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:01:41.987 00:00:10.374 TCP 23.104.0.1:55326 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:02:04.747 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:49146 10 6452 1 2025-10-13 01:02:42.418 00:00:10.320 TCP 23.104.0.1:41734 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:03:04.919 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:57622 10 6452 1 2025-10-13 01:03:42.778 00:00:10.370 TCP 23.104.0.1:43418 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:04:05.170 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38920 10 6452 1 2025-10-13 01:04:43.185 00:00:10.379 TCP 23.104.0.1:45840 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:05:05.393 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42442 10 6452 1 2025-10-13 01:05:43.597 00:00:10.443 TCP 23.104.0.1:41722 -> 1.101.0.1:3000 15 1926 1 2025-10-13 01:06:05.606 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:38446 12 10369 1 2025-10-13 01:06:45.536 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:02:41.462 00:05:02.419 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 01:06:45.570 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:02:41.460 00:05:02.425 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:06:44.107 00:00:10.366 TCP 23.104.0.1:50782 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:07:05.851 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49836 10 6452 1 2025-10-13 01:07:44.507 00:00:10.368 TCP 23.104.0.1:42456 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:08:06.083 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41222 10 6452 1 2025-10-13 01:08:44.910 00:00:10.374 TCP 23.104.0.1:54548 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:09:06.295 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35892 10 6452 1 2025-10-13 01:09:45.321 00:00:10.365 TCP 23.104.0.1:47548 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:10:06.506 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44442 10 6452 1 2025-10-13 01:10:45.720 00:00:10.326 TCP 23.104.0.1:59842 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:11:06.712 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45914 10 6452 1 2025-10-13 01:11:45.536 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:11:45.679 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:11:46.102 00:00:10.323 TCP 23.104.0.1:60726 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:12:06.928 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:33278 10 6452 1 2025-10-13 01:08:41.461 00:05:02.424 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:08:41.465 00:05:02.420 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 01:12:46.460 00:00:10.319 TCP 23.104.0.1:43382 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:13:07.158 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43338 10 6452 1 2025-10-13 01:13:46.822 00:00:10.328 TCP 23.104.0.1:35664 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:14:07.373 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37124 10 6452 1 2025-10-13 01:14:47.181 00:00:10.363 TCP 23.104.0.1:60640 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:15:07.597 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51902 10 6452 1 2025-10-13 01:15:47.582 00:00:10.367 TCP 23.104.0.1:34884 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:16:07.807 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58654 10 6452 1 2025-10-13 01:16:45.719 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:16:45.600 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:16:47.984 00:00:10.327 TCP 23.104.0.1:46582 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:17:08.026 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41632 10 6452 1 2025-10-13 01:17:48.356 00:00:10.364 TCP 23.104.0.1:53856 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:18:08.240 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45532 10 6452 1 2025-10-13 01:14:41.465 00:05:02.427 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:14:41.468 00:05:02.422 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 01:18:48.757 00:00:10.382 TCP 23.104.0.1:57026 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:19:08.457 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47774 10 6452 1 2025-10-13 01:19:49.182 00:00:10.367 TCP 23.104.0.1:45848 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:20:08.672 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:44996 10 6452 1 2025-10-13 01:20:49.584 00:00:10.364 TCP 23.104.0.1:33842 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:21:08.864 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:51234 10 6452 1 2025-10-13 01:21:45.847 00:00:00.029 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:21:45.927 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:21:49.988 00:00:10.322 TCP 23.104.0.1:39848 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:22:09.103 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:54470 10 6452 1 2025-10-13 01:22:50.348 00:00:10.744 TCP 23.104.0.1:59342 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:23:09.279 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45434 10 6452 1 2025-10-13 01:23:51.130 00:00:10.362 TCP 23.104.0.1:41622 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:24:09.490 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46412 10 6452 1 2025-10-13 01:20:41.469 00:05:02.421 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 01:20:41.467 00:05:02.426 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:24:51.533 00:00:10.488 TCP 23.104.0.1:41150 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:25:09.705 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40844 10 6452 1 2025-10-13 01:25:52.085 00:00:10.363 TCP 23.104.0.1:47046 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:26:09.918 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:49658 10 6452 1 2025-10-13 01:26:45.927 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:26:45.907 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:26:52.494 00:00:10.365 TCP 23.104.0.1:56026 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:27:10.137 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51882 10 6452 1 2025-10-13 01:27:52.902 00:00:10.372 TCP 23.104.0.1:37892 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:28:10.349 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48942 10 6452 1 2025-10-13 01:28:53.313 00:00:10.376 TCP 23.104.0.1:46434 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:29:10.560 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50034 10 6452 1 2025-10-13 01:29:53.732 00:00:10.342 TCP 23.104.0.1:56844 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:30:10.771 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:43814 10 6452 1 2025-10-13 01:26:41.468 00:05:02.426 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:26:41.469 00:05:02.421 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 01:30:54.130 00:00:10.333 TCP 23.104.0.1:35678 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:31:10.985 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42792 10 6452 1 2025-10-13 01:31:45.849 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:31:45.965 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:31:54.503 00:00:10.366 TCP 23.104.0.1:50966 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:32:11.207 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41336 10 6452 1 2025-10-13 01:32:54.907 00:00:10.368 TCP 23.104.0.1:51286 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:33:11.422 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50330 10 6452 1 2025-10-13 01:33:55.308 00:00:10.367 TCP 23.104.0.1:35538 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:34:11.639 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43790 10 6452 1 2025-10-13 01:34:55.709 00:00:10.360 TCP 23.104.0.1:57494 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:35:11.858 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33482 10 6452 1 2025-10-13 01:35:56.111 00:00:10.367 TCP 23.104.0.1:56054 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:36:12.081 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53514 10 6452 1 2025-10-13 01:36:46.225 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:32:41.473 00:05:02.421 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 01:36:45.989 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:32:41.471 00:05:02.426 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:36:56.515 00:00:10.368 TCP 23.104.0.1:44278 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:37:12.290 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51230 10 6452 1 2025-10-13 01:37:56.925 00:00:10.388 TCP 23.104.0.1:49266 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:38:12.503 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54474 10 6452 1 2025-10-13 01:38:57.352 00:00:10.364 TCP 23.104.0.1:56664 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:39:12.716 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:52692 10 6452 1 2025-10-13 01:39:57.753 00:00:10.383 TCP 23.104.0.1:45534 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:40:12.939 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:42506 10 6452 1 2025-10-13 01:40:58.173 00:00:10.363 TCP 23.104.0.1:40568 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:41:13.172 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44724 10 6452 1 2025-10-13 01:41:46.439 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:41:45.910 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:41:58.578 00:00:10.363 TCP 23.104.0.1:52292 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:42:13.386 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36122 10 6452 1 2025-10-13 01:38:41.471 00:05:02.427 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:38:41.473 00:05:02.422 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 01:42:58.981 00:00:10.370 TCP 23.104.0.1:34742 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:43:13.601 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45028 10 6452 1 2025-10-13 01:43:59.390 00:00:10.371 TCP 23.104.0.1:50882 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:44:13.812 00:00:10.332 TCP 1.101.0.1:3000 -> 22.102.0.1:32996 10 6452 1 2025-10-13 01:44:59.800 00:00:10.365 TCP 23.104.0.1:36748 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:45:14.192 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44664 10 6452 1 2025-10-13 01:46:00.210 00:00:10.366 TCP 23.104.0.1:38184 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:46:14.411 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:46654 10 6452 1 2025-10-13 01:46:46.621 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:46:46.536 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:47:00.609 00:00:10.320 TCP 23.104.0.1:41098 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:47:14.642 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:44384 10 6452 1 2025-10-13 01:48:00.967 00:00:10.378 TCP 23.104.0.1:54318 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:48:14.822 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:48960 10 6452 1 2025-10-13 01:44:41.473 00:05:02.425 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:44:41.476 00:05:02.419 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 01:49:01.419 00:00:10.365 TCP 23.104.0.1:50872 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:49:14.996 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:53954 10 6452 1 2025-10-13 01:50:01.820 00:00:10.407 TCP 23.104.0.1:52954 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:50:15.222 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:36372 10 6452 1 2025-10-13 01:51:02.261 00:00:10.368 TCP 23.104.0.1:52594 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:51:15.440 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50246 10 6452 1 2025-10-13 01:51:46.446 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:51:46.379 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:52:02.664 00:00:10.324 TCP 23.104.0.1:39360 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:52:15.646 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48470 10 6452 1 2025-10-13 01:53:03.026 00:00:10.321 TCP 23.104.0.1:38236 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:53:15.855 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40290 10 6452 1 2025-10-13 01:54:03.390 00:00:10.364 TCP 23.104.0.1:40354 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:54:16.085 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:35292 10 6452 1 2025-10-13 01:50:41.475 00:05:02.425 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 01:50:41.478 00:05:02.420 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 01:55:03.791 00:00:10.349 TCP 23.104.0.1:52168 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:55:16.259 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44578 10 6452 1 2025-10-13 01:56:04.180 00:00:10.366 TCP 23.104.0.1:47458 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:56:16.471 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:47990 10 6452 1 2025-10-13 01:56:46.602 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 01:56:46.426 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 01:57:04.596 00:00:10.367 TCP 23.104.0.1:45224 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:57:16.641 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:50204 10 6452 1 2025-10-13 01:58:05.021 00:00:10.379 TCP 23.104.0.1:51630 -> 1.101.0.1:3000 11 1507 1 2025-10-13 01:58:16.813 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37192 10 6452 1 Summary: total flows: 163, total bytes: 501177, total packets: 1567, avg bps: 1082, avg pps: 0, avg bpp: 319 Time window: 2025-10-13 00:56:41 - 2025-10-13 01:58:26 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0038s User: 0.0009s Wall: 0.0019s flows/second: 87258.7 Runtime: 0.0019s