Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 19:59:41.086 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51166 10 6452 1 2025-10-13 19:59:41.357 00:00:10.368 TCP 23.104.0.1:33678 -> 1.101.0.1:3000 11 1507 1 2025-10-13 19:56:41.819 00:05:02.434 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 19:56:41.816 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:00:41.298 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:56140 10 6452 1 2025-10-13 20:00:41.762 00:00:10.332 TCP 23.104.0.1:47442 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:01:41.484 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:47804 10 6452 1 2025-10-13 20:01:42.130 00:00:10.363 TCP 23.104.0.1:53852 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:02:08.481 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:02:08.555 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:02:41.693 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:46312 10 6452 1 2025-10-13 20:02:42.530 00:00:10.327 TCP 23.104.0.1:41770 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:03:41.863 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42524 10 6452 1 2025-10-13 20:03:42.891 00:00:10.373 TCP 23.104.0.1:50126 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:04:42.088 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44752 10 6452 1 2025-10-13 20:04:43.307 00:00:10.363 TCP 23.104.0.1:39518 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:05:43.711 00:00:10.364 TCP 23.104.0.1:41368 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:05:42.300 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50930 10 6452 1 2025-10-13 20:02:41.817 00:05:02.438 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:02:41.820 00:05:02.433 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 20:06:42.515 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34206 10 6452 1 2025-10-13 20:06:44.118 00:00:10.358 TCP 23.104.0.1:47982 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:07:08.432 00:00:00.018 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:07:08.204 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:07:42.741 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57180 10 6452 1 2025-10-13 20:07:44.515 00:00:10.375 TCP 23.104.0.1:40462 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:08:42.952 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:35956 12 6556 1 2025-10-13 20:08:44.934 00:00:10.378 TCP 23.104.0.1:43164 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:09:45.349 00:00:10.361 TCP 23.104.0.1:56678 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:09:43.181 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37882 10 6452 1 2025-10-13 20:10:45.750 00:00:10.831 TCP 23.104.0.1:54306 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:10:43.390 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:33374 10 6452 1 2025-10-13 20:11:43.568 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:46626 12 10369 1 2025-10-13 20:11:46.625 00:00:10.396 TCP 23.104.0.1:48116 -> 1.101.0.1:3000 15 1926 1 2025-10-13 20:12:08.599 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:12:08.603 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:08:41.818 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:08:41.821 00:05:02.433 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 20:12:43.814 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39812 10 6452 1 2025-10-13 20:12:47.095 00:00:10.376 TCP 23.104.0.1:53774 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:13:44.038 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35668 10 6452 1 2025-10-13 20:13:47.507 00:00:10.367 TCP 23.104.0.1:38794 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:14:44.250 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34528 10 6452 1 2025-10-13 20:14:47.914 00:00:10.329 TCP 23.104.0.1:50196 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:15:44.462 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36280 10 6452 1 2025-10-13 20:15:48.280 00:00:10.538 TCP 23.104.0.1:35984 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:16:44.674 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56684 10 6452 1 2025-10-13 20:16:48.857 00:00:10.383 TCP 23.104.0.1:40262 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:17:08.656 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:17:08.740 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:17:44.892 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51242 10 6452 1 2025-10-13 20:17:49.282 00:00:10.369 TCP 23.104.0.1:39976 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:14:41.825 00:05:02.432 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 20:14:41.822 00:05:02.437 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:18:45.113 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44222 10 6452 1 2025-10-13 20:18:49.691 00:00:10.361 TCP 23.104.0.1:59164 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:19:45.329 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44280 10 6452 1 2025-10-13 20:19:50.105 00:00:10.360 TCP 23.104.0.1:51154 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:20:45.546 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:46244 10 6452 1 2025-10-13 20:20:50.505 00:00:10.372 TCP 23.104.0.1:34442 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:21:45.773 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46478 10 6452 1 2025-10-13 20:21:50.912 00:00:10.368 TCP 23.104.0.1:46832 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:22:08.509 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:22:08.639 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:22:45.983 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:43044 10 6452 1 2025-10-13 20:22:51.320 00:00:10.336 TCP 23.104.0.1:57916 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:23:46.205 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:38228 10 6452 1 2025-10-13 20:23:51.696 00:00:10.320 TCP 23.104.0.1:51302 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:20:41.822 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:20:41.825 00:05:02.433 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 20:24:46.375 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:41232 10 6452 1 2025-10-13 20:24:52.060 00:00:10.363 TCP 23.104.0.1:50950 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:25:46.548 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40022 10 6452 1 2025-10-13 20:25:52.465 00:00:10.321 TCP 23.104.0.1:45640 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:26:46.761 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50910 10 6452 1 2025-10-13 20:26:52.826 00:00:10.322 TCP 23.104.0.1:35882 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:27:08.561 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:27:08.714 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:27:46.974 00:00:10.364 TCP 1.101.0.1:3000 -> 22.102.0.1:46030 10 6452 1 2025-10-13 20:27:53.183 00:00:10.363 TCP 23.104.0.1:37442 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:28:47.380 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35828 10 6452 1 2025-10-13 20:28:53.586 00:00:10.326 TCP 23.104.0.1:34220 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:29:47.592 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40190 10 6452 1 2025-10-13 20:29:53.952 00:00:10.837 TCP 23.104.0.1:48154 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:26:41.823 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:26:41.826 00:05:02.434 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 20:30:47.801 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54226 10 6452 1 2025-10-13 20:30:54.826 00:00:10.364 TCP 23.104.0.1:56316 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:31:48.041 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:47474 10 6452 1 2025-10-13 20:31:55.230 00:00:10.363 TCP 23.104.0.1:36102 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:32:08.787 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:32:08.678 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:32:48.277 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38266 10 6452 1 2025-10-13 20:32:55.634 00:00:10.363 TCP 23.104.0.1:55712 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:33:48.493 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34350 10 6452 1 2025-10-13 20:33:56.044 00:00:10.361 TCP 23.104.0.1:43566 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:34:48.715 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36514 10 6452 1 2025-10-13 20:34:56.440 00:00:10.367 TCP 23.104.0.1:58136 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:35:48.936 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:44140 10 6452 1 2025-10-13 20:35:56.845 00:00:10.342 TCP 23.104.0.1:40624 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:32:41.825 00:05:02.438 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:32:41.828 00:05:02.433 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 20:36:49.162 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39614 10 6452 1 2025-10-13 20:37:09.082 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:36:57.224 00:00:10.320 TCP 23.104.0.1:33718 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:37:08.970 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:37:49.373 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37934 10 6452 1 2025-10-13 20:37:57.584 00:00:10.378 TCP 23.104.0.1:34106 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:38:49.585 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:55082 10 6452 1 2025-10-13 20:38:58.005 00:00:10.364 TCP 23.104.0.1:56362 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:39:49.756 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:49318 10 6452 1 2025-10-13 20:39:58.406 00:00:10.362 TCP 23.104.0.1:39854 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:40:49.988 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:45560 10 6452 1 2025-10-13 20:40:58.809 00:00:10.361 TCP 23.104.0.1:48258 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:41:50.178 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47050 10 6452 1 2025-10-13 20:41:59.210 00:00:10.359 TCP 23.104.0.1:35674 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:42:08.804 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:42:09.018 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:38:41.826 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:38:41.830 00:05:02.433 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 20:42:50.390 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51996 10 6452 1 2025-10-13 20:42:59.607 00:00:10.366 TCP 23.104.0.1:49230 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:43:50.602 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57274 10 6452 1 2025-10-13 20:44:00.015 00:00:10.321 TCP 23.104.0.1:49844 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:44:50.818 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39126 10 6452 1 2025-10-13 20:45:00.383 00:00:10.370 TCP 23.104.0.1:50004 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:45:51.052 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49806 10 6452 1 2025-10-13 20:46:00.794 00:00:10.362 TCP 23.104.0.1:34310 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:46:51.265 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41088 10 6452 1 2025-10-13 20:47:09.172 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:47:01.191 00:00:10.364 TCP 23.104.0.1:50362 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:47:09.169 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:47:51.474 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54712 10 6452 1 2025-10-13 20:48:01.594 00:00:10.361 TCP 23.104.0.1:59226 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:44:41.830 00:05:02.434 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 20:44:41.827 00:05:02.439 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:48:51.693 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54876 10 6452 1 2025-10-13 20:49:01.998 00:00:10.321 TCP 23.104.0.1:48480 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:49:51.903 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:35944 10 6452 1 2025-10-13 20:50:02.364 00:00:10.324 TCP 23.104.0.1:51272 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:50:52.101 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46460 10 6452 1 2025-10-13 20:51:02.727 00:00:10.374 TCP 23.104.0.1:58670 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:52:09.396 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:51:52.314 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51578 10 6452 1 2025-10-13 20:52:09.134 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:52:03.138 00:00:10.368 TCP 23.104.0.1:38310 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:52:52.487 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42060 10 6452 1 2025-10-13 20:53:03.552 00:00:10.319 TCP 23.104.0.1:40366 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:53:52.698 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40294 10 6452 1 2025-10-13 20:54:03.913 00:00:10.396 TCP 23.104.0.1:45682 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:50:41.828 00:05:02.443 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-13 20:50:41.832 00:05:02.438 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-13 20:54:52.915 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33420 10 6452 1 2025-10-13 20:55:04.350 00:00:10.365 TCP 23.104.0.1:44508 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:55:53.125 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57092 10 6452 1 2025-10-13 20:56:04.752 00:00:10.370 TCP 23.104.0.1:60904 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:56:53.345 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60338 10 6452 1 2025-10-13 20:57:09.501 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-13 20:57:09.400 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 20:57:05.153 00:00:10.362 TCP 23.104.0.1:40834 -> 1.101.0.1:3000 11 1507 1 2025-10-13 20:57:53.566 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37176 10 6452 1 2025-10-13 20:58:05.552 00:00:10.431 TCP 23.104.0.1:46968 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 494829, total packets: 1559, avg bps: 1071, avg pps: 0, avg bpp: 317 Time window: 2025-10-13 19:56:41 - 2025-10-13 20:58:15 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0048s User: 0.0010s Wall: 0.0022s flows/second: 73007.1 Runtime: 0.0022s