Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 07:58:45.332 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54836 10 6452 1 2025-10-13 07:59:38.279 00:00:10.372 TCP 23.104.0.1:40482 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:59:45.548 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:59144 10 6452 1 2025-10-13 07:56:41.594 00:05:02.449 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 07:56:41.597 00:05:02.443 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:00:38.690 00:00:10.366 TCP 23.104.0.1:48528 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:00:45.771 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:43860 10 6452 1 2025-10-13 08:01:45.941 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:45052 10 6452 1 2025-10-13 08:01:53.743 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:01:39.107 00:00:10.361 TCP 23.104.0.1:49708 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:01:53.707 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:02:39.511 00:00:10.322 TCP 23.104.0.1:56970 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:02:46.173 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59014 10 6452 1 2025-10-13 08:03:39.873 00:00:10.359 TCP 23.104.0.1:35464 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:03:46.409 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42244 10 6452 1 2025-10-13 08:04:40.270 00:00:10.366 TCP 23.104.0.1:42332 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:04:46.622 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47952 10 6452 1 2025-10-13 08:05:40.678 00:00:10.363 TCP 23.104.0.1:38998 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:05:46.831 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48796 10 6452 1 2025-10-13 08:02:41.596 00:05:02.449 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 08:02:41.599 00:05:02.444 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:06:41.107 00:00:10.360 TCP 23.104.0.1:53958 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:06:53.960 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:06:53.961 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:06:47.068 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58380 10 6452 1 2025-10-13 08:07:41.507 00:00:10.365 TCP 23.104.0.1:52954 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:07:47.279 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39332 10 6452 1 2025-10-13 08:08:41.915 00:00:10.373 TCP 23.104.0.1:48526 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:08:47.450 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54952 10 6452 1 2025-10-13 08:09:42.326 00:00:10.364 TCP 23.104.0.1:40538 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:09:47.664 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48054 10 6452 1 2025-10-13 08:10:42.733 00:00:10.369 TCP 23.104.0.1:57242 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:10:47.872 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:47998 10 6452 1 2025-10-13 08:11:53.885 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:11:53.984 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:11:43.142 00:00:10.366 TCP 23.104.0.1:55226 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:11:48.074 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51240 10 6452 1 2025-10-13 08:08:41.600 00:05:02.445 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:08:41.598 00:05:02.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 08:12:43.552 00:00:10.364 TCP 23.104.0.1:56272 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:12:48.252 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36096 10 6452 1 2025-10-13 08:13:43.958 00:00:10.327 TCP 23.104.0.1:59378 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:13:48.466 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36508 10 6452 1 2025-10-13 08:14:44.319 00:00:10.361 TCP 23.104.0.1:45832 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:14:48.683 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46286 10 6452 1 2025-10-13 08:15:44.719 00:00:10.372 TCP 23.104.0.1:33918 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:15:48.908 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:39442 10 6452 1 2025-10-13 08:16:54.002 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:16:54.024 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:16:45.131 00:00:10.518 TCP 23.104.0.1:41992 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:16:49.097 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:42178 10 6452 1 2025-10-13 08:17:45.689 00:00:10.365 TCP 23.104.0.1:51550 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:17:49.276 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56244 10 6452 1 2025-10-13 08:14:41.598 00:05:02.452 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 08:14:41.600 00:05:02.447 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:18:46.103 00:00:10.362 TCP 23.104.0.1:58656 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:18:49.502 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34088 10 6452 1 2025-10-13 08:19:46.505 00:00:10.329 TCP 23.104.0.1:54300 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:19:49.717 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:33840 10 6452 1 2025-10-13 08:20:49.939 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:37742 10 6452 1 2025-10-13 08:20:46.870 00:00:10.326 TCP 23.104.0.1:50646 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:21:54.234 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:21:54.229 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:21:47.234 00:00:10.365 TCP 23.104.0.1:38058 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:21:50.186 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58800 10 6452 1 2025-10-13 08:22:50.410 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:52420 10 6452 1 2025-10-13 08:22:47.636 00:00:10.324 TCP 23.104.0.1:49708 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:23:50.638 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40682 10 6452 1 2025-10-13 08:23:47.998 00:00:10.366 TCP 23.104.0.1:35814 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:20:41.600 00:05:02.454 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 08:20:41.603 00:05:02.448 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:24:48.397 00:00:10.369 TCP 23.104.0.1:44434 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:24:50.852 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:57810 10 6452 1 2025-10-13 08:25:48.811 00:00:10.366 TCP 23.104.0.1:38634 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:25:51.035 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35584 10 6452 1 2025-10-13 08:26:54.407 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:26:54.200 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:26:51.245 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:49366 12 6556 1 2025-10-13 08:26:49.216 00:00:10.364 TCP 23.104.0.1:50414 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:27:51.484 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41968 10 6452 1 2025-10-13 08:27:49.619 00:00:10.418 TCP 23.104.0.1:43192 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:28:50.105 00:00:10.364 TCP 23.104.0.1:39444 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:28:51.701 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56996 10 6452 1 2025-10-13 08:29:50.506 00:00:10.326 TCP 23.104.0.1:41906 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:29:51.915 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45010 10 6452 1 2025-10-13 08:26:41.605 00:05:02.450 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:26:41.602 00:05:02.456 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 08:30:50.871 00:00:10.364 TCP 23.104.0.1:36052 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:30:52.137 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36082 10 6452 1 2025-10-13 08:31:54.435 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:31:54.220 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:31:51.271 00:00:10.365 TCP 23.104.0.1:53072 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:31:52.358 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37452 10 6452 1 2025-10-13 08:32:52.584 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:43512 10 6452 1 2025-10-13 08:32:51.676 00:00:10.366 TCP 23.104.0.1:42418 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:33:52.766 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49448 11 6492 1 2025-10-13 08:33:52.103 00:00:10.369 TCP 23.104.0.1:47786 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:34:52.980 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:50618 10 6452 1 2025-10-13 08:34:52.513 00:00:10.322 TCP 23.104.0.1:37076 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:35:52.879 00:00:10.381 TCP 23.104.0.1:42728 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:35:53.231 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53658 10 6452 1 2025-10-13 08:32:41.605 00:05:02.454 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 08:32:41.607 00:05:02.448 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:36:54.389 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:36:54.466 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:36:53.438 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:49298 10 6452 1 2025-10-13 08:36:53.295 00:00:10.365 TCP 23.104.0.1:33434 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:37:53.666 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53856 10 6452 1 2025-10-13 08:37:53.705 00:00:10.364 TCP 23.104.0.1:51502 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:38:54.112 00:00:10.371 TCP 23.104.0.1:45240 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:38:53.885 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:35890 10 6452 1 2025-10-13 08:39:54.523 00:00:10.370 TCP 23.104.0.1:57354 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:39:54.082 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52968 10 6452 1 2025-10-13 08:40:54.946 00:00:10.893 TCP 23.104.0.1:52380 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:40:54.301 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:36904 10 6452 1 2025-10-13 08:41:54.656 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:41:54.508 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:41:55.880 00:00:10.378 TCP 23.104.0.1:53804 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:41:54.527 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:35084 10 6452 1 2025-10-13 08:38:41.603 00:05:02.458 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 08:38:41.607 00:05:02.453 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:42:56.291 00:00:10.325 TCP 23.104.0.1:36854 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:42:54.736 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50778 10 6452 1 2025-10-13 08:43:54.955 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:42536 10 6452 1 2025-10-13 08:43:56.658 00:00:10.367 TCP 23.104.0.1:34212 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:44:55.180 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56230 10 6452 1 2025-10-13 08:44:57.095 00:00:10.331 TCP 23.104.0.1:44318 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:45:55.387 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58372 10 6452 1 2025-10-13 08:45:57.461 00:00:10.376 TCP 23.104.0.1:52272 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:46:54.701 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:46:54.726 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:46:55.602 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41888 10 6452 1 2025-10-13 08:46:57.865 00:00:10.370 TCP 23.104.0.1:38440 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:47:55.807 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50226 10 6452 1 2025-10-13 08:47:58.274 00:00:10.367 TCP 23.104.0.1:60484 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:44:41.605 00:05:02.459 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 08:44:41.608 00:05:02.453 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:48:56.029 00:00:10.426 TCP 1.101.0.1:3000 -> 22.102.0.1:35680 10 6452 1 2025-10-13 08:48:58.678 00:00:10.428 TCP 23.104.0.1:49776 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:49:56.490 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39472 10 6452 1 2025-10-13 08:49:59.147 00:00:10.363 TCP 23.104.0.1:42820 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:50:56.709 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:49308 10 6452 1 2025-10-13 08:50:59.552 00:00:10.367 TCP 23.104.0.1:33574 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:51:54.738 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:51:54.684 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:51:56.917 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55936 10 6452 1 2025-10-13 08:51:59.959 00:00:10.365 TCP 23.104.0.1:37316 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:52:57.135 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42648 10 6452 1 2025-10-13 08:53:00.367 00:00:10.366 TCP 23.104.0.1:48284 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:54:00.771 00:00:10.335 TCP 23.104.0.1:38820 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:53:57.355 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:56450 10 6452 1 2025-10-13 08:50:41.609 00:05:02.453 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 08:50:41.606 00:05:02.459 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 08:54:57.563 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48214 10 6452 1 2025-10-13 08:55:01.155 00:00:10.370 TCP 23.104.0.1:38344 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:56:01.561 00:00:10.367 TCP 23.104.0.1:54930 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:55:57.789 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57876 10 6452 1 2025-10-13 08:56:54.828 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 08:56:54.807 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 08:56:58.010 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:56436 10 6452 1 2025-10-13 08:57:01.966 00:00:10.377 TCP 23.104.0.1:41848 -> 1.101.0.1:3000 11 1507 1 2025-10-13 08:57:58.192 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:35654 10 6452 1 2025-10-13 08:58:02.385 00:00:10.370 TCP 23.104.0.1:43944 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496985, total packets: 1564, avg bps: 1077, avg pps: 0, avg bpp: 317 Time window: 2025-10-13 07:56:41 - 2025-10-13 08:58:12 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0023s User: 0.0034s Wall: 0.0025s flows/second: 65592.6 Runtime: 0.0025s