Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 12:58:59.086 00:00:10.316 TCP 1.101.0.1:3000 -> 22.102.0.1:44164 10 6452 1 2025-10-13 12:59:41.907 00:00:10.366 TCP 23.104.0.1:49816 -> 1.101.0.1:3000 11 1507 1 2025-10-13 12:59:59.442 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34228 10 6452 1 2025-10-13 12:56:41.697 00:05:02.440 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 12:56:41.700 00:05:02.435 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:00:42.313 00:00:10.329 TCP 23.104.0.1:38326 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:00:59.664 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:43594 10 6452 1 2025-10-13 13:01:59.885 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:01:42.670 00:00:10.364 TCP 23.104.0.1:52286 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:01:59.797 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:01:59.864 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38520 10 6452 1 2025-10-13 13:02:43.102 00:00:10.362 TCP 23.104.0.1:50848 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:03:00.088 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37042 10 6452 1 2025-10-13 13:03:43.500 00:00:10.330 TCP 23.104.0.1:50060 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:04:00.299 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48022 10 6452 1 2025-10-13 13:04:43.864 00:00:10.389 TCP 23.104.0.1:49616 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:05:00.508 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34290 10 6452 1 2025-10-13 13:05:44.287 00:00:10.366 TCP 23.104.0.1:53404 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:06:00.723 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58746 10 6452 1 2025-10-13 13:02:41.698 00:05:02.441 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 13:02:41.702 00:05:02.435 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:06:44.688 00:00:10.395 TCP 23.104.0.1:39590 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:07:00.028 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:06:59.637 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:07:00.934 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:56802 10 6452 1 2025-10-13 13:07:45.116 00:00:10.375 TCP 23.104.0.1:41948 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:08:01.173 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40352 10 6452 1 2025-10-13 13:08:45.526 00:00:10.376 TCP 23.104.0.1:43808 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:09:01.388 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35132 10 6452 1 2025-10-13 13:09:45.939 00:00:10.381 TCP 23.104.0.1:39966 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:10:01.608 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:60262 10 6452 1 2025-10-13 13:10:46.358 00:00:10.364 TCP 23.104.0.1:33162 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:11:01.801 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55096 10 6452 1 2025-10-13 13:12:00.290 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:11:46.759 00:00:10.379 TCP 23.104.0.1:56864 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:12:00.136 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:12:02.015 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54834 10 6452 1 2025-10-13 13:08:41.700 00:05:02.442 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 13:08:41.704 00:05:02.436 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:12:47.184 00:00:10.379 TCP 23.104.0.1:56202 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:13:02.222 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:33598 10 6452 1 2025-10-13 13:13:47.607 00:00:10.365 TCP 23.104.0.1:51990 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:14:02.393 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35336 10 6452 1 2025-10-13 13:14:48.013 00:00:10.362 TCP 23.104.0.1:35972 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:15:02.604 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:54198 10 6452 1 2025-10-13 13:15:48.410 00:00:10.330 TCP 23.104.0.1:37624 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:16:02.837 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36146 10 6452 1 2025-10-13 13:17:00.127 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:17:00.181 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:16:48.774 00:00:10.371 TCP 23.104.0.1:60926 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:17:03.071 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:32972 10 6452 1 2025-10-13 13:17:49.184 00:00:10.361 TCP 23.104.0.1:42098 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:18:03.244 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:52546 10 6452 1 2025-10-13 13:14:41.700 00:05:02.444 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 13:14:41.703 00:05:02.439 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:18:49.582 00:00:10.365 TCP 23.104.0.1:33710 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:19:03.420 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47250 10 6452 1 2025-10-13 13:19:49.985 00:00:10.863 TCP 23.104.0.1:50966 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:20:03.639 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44086 10 6452 1 2025-10-13 13:20:50.884 00:00:10.403 TCP 23.104.0.1:48292 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:21:03.851 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:49440 10 6452 1 2025-10-13 13:22:00.094 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:22:00.084 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:21:51.316 00:00:10.359 TCP 23.104.0.1:57232 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:22:04.074 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42750 10 6452 1 2025-10-13 13:22:51.716 00:00:10.374 TCP 23.104.0.1:53640 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:23:04.299 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:36256 10 6452 1 2025-10-13 13:23:52.128 00:00:10.336 TCP 23.104.0.1:51686 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:24:04.482 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42806 10 6452 1 2025-10-13 13:20:41.703 00:05:02.440 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:20:41.701 00:05:02.445 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 13:24:52.512 00:00:10.363 TCP 23.104.0.1:60106 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:25:04.693 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:49374 10 6452 1 2025-10-13 13:25:52.910 00:00:10.363 TCP 23.104.0.1:39426 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:26:04.942 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:54660 10 6452 1 2025-10-13 13:27:00.320 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:27:00.256 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:26:53.315 00:00:10.371 TCP 23.104.0.1:52922 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:27:05.180 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53330 10 6452 1 2025-10-13 13:27:53.722 00:00:10.365 TCP 23.104.0.1:34128 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:28:05.400 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:52214 10 6452 1 2025-10-13 13:28:54.125 00:00:10.369 TCP 23.104.0.1:38400 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:29:05.626 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36516 10 6452 1 2025-10-13 13:29:54.530 00:00:10.578 TCP 23.104.0.1:58072 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:30:05.847 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48570 10 6452 1 2025-10-13 13:26:41.702 00:05:02.445 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 13:26:41.705 00:05:02.440 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:30:55.131 00:00:10.347 TCP 23.104.0.1:48192 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:31:06.079 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50786 10 6452 1 2025-10-13 13:32:00.478 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:32:00.581 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:31:55.515 00:00:10.372 TCP 23.104.0.1:58144 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:32:06.291 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41626 10 6452 1 2025-10-13 13:32:55.927 00:00:10.379 TCP 23.104.0.1:53454 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:33:06.506 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54600 10 6452 1 2025-10-13 13:33:56.347 00:00:10.363 TCP 23.104.0.1:47104 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:34:06.726 00:00:10.229 TCP 1.101.0.1:3000 -> 22.102.0.1:43310 10 6452 1 2025-10-13 13:34:56.750 00:00:10.363 TCP 23.104.0.1:60992 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:35:06.995 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:36574 10 6452 1 2025-10-13 13:35:57.149 00:00:10.367 TCP 23.104.0.1:60622 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:36:07.231 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53564 10 6452 1 2025-10-13 13:32:41.708 00:05:02.438 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:32:41.706 00:05:02.444 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 13:37:00.586 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:37:00.414 00:00:00.013 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:36:57.556 00:00:10.362 TCP 23.104.0.1:59564 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:37:07.439 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38074 10 6452 1 2025-10-13 13:37:57.958 00:00:10.364 TCP 23.104.0.1:44770 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:38:07.651 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38664 10 6452 1 2025-10-13 13:38:58.362 00:00:10.362 TCP 23.104.0.1:45340 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:39:07.864 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40906 10 6452 1 2025-10-13 13:39:58.761 00:00:10.381 TCP 23.104.0.1:46890 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:40:08.086 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:54298 10 6452 1 2025-10-13 13:40:59.182 00:00:10.331 TCP 23.104.0.1:60574 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:41:08.254 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38014 10 6452 1 2025-10-13 13:42:00.485 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:42:00.526 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:41:59.555 00:00:10.355 TCP 23.104.0.1:50612 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:42:08.481 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35502 10 6452 1 2025-10-13 13:38:41.706 00:05:02.443 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 13:38:41.709 00:05:02.438 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:42:59.955 00:00:10.389 TCP 23.104.0.1:36106 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:43:08.692 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37724 10 6452 1 2025-10-13 13:44:00.381 00:00:10.335 TCP 23.104.0.1:51800 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:44:08.909 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:51384 10 6452 1 2025-10-13 13:45:00.747 00:00:10.363 TCP 23.104.0.1:48186 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:45:09.108 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:32900 10 6452 1 2025-10-13 13:46:01.148 00:00:10.368 TCP 23.104.0.1:58752 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:46:09.324 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43322 10 6452 1 2025-10-13 13:47:00.821 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:47:00.856 00:00:00.029 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:47:01.554 00:00:10.541 TCP 23.104.0.1:37344 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:47:09.545 00:00:10.521 TCP 1.101.0.1:3000 -> 22.102.0.1:51416 10 6452 1 2025-10-13 13:48:02.136 00:00:10.365 TCP 23.104.0.1:53532 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:48:10.101 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45298 10 6452 1 2025-10-13 13:44:41.707 00:05:02.447 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 13:44:41.711 00:05:02.442 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:49:02.541 00:00:10.364 TCP 23.104.0.1:52426 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:49:10.320 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57840 10 6452 1 2025-10-13 13:50:02.945 00:00:10.366 TCP 23.104.0.1:35328 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:50:10.537 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:39826 10 6452 1 2025-10-13 13:51:03.353 00:00:10.361 TCP 23.104.0.1:57432 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:51:10.779 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:44046 10 6452 1 2025-10-13 13:52:00.995 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:52:00.817 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:52:03.754 00:00:10.379 TCP 23.104.0.1:43330 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:52:11.006 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58686 10 6452 1 2025-10-13 13:53:04.172 00:00:10.327 TCP 23.104.0.1:53168 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:53:11.227 00:00:10.820 TCP 1.101.0.1:3000 -> 22.102.0.1:59214 10 6452 1 2025-10-13 13:54:04.533 00:00:10.325 TCP 23.104.0.1:52760 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:54:12.087 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:47364 10 6452 1 2025-10-13 13:50:41.708 00:05:02.447 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 13:50:41.710 00:05:02.443 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 13:55:04.894 00:00:10.328 TCP 23.104.0.1:50958 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:55:12.260 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:34774 10 6452 1 2025-10-13 13:56:05.263 00:00:10.370 TCP 23.104.0.1:59272 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:56:12.433 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48544 10 6452 1 2025-10-13 13:57:00.941 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 13:57:01.049 00:00:00.047 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 13:57:05.665 00:00:10.366 TCP 23.104.0.1:43294 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:57:12.645 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45884 10 6452 1 2025-10-13 13:58:06.096 00:00:10.360 TCP 23.104.0.1:57030 -> 1.101.0.1:3000 11 1507 1 2025-10-13 13:58:12.861 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:58754 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1073, avg pps: 0, avg bpp: 318 Time window: 2025-10-13 12:56:41 - 2025-10-13 13:58:22 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0024s User: 0.0024s Wall: 0.0021s flows/second: 76886.1 Runtime: 0.0021s