Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 09:58:59.732 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49586 10 6452 1 2025-10-14 09:59:35.768 00:00:10.375 TCP 23.104.0.1:58754 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:59:59.944 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:45044 10 6452 1 2025-10-14 10:00:36.182 00:00:10.321 TCP 23.104.0.1:57498 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:56:42.126 00:05:02.428 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:56:42.124 00:05:02.432 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:01:00.176 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38496 10 6452 1 2025-10-14 10:01:36.543 00:00:10.322 TCP 23.104.0.1:38476 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:02:00.385 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39762 10 6452 1 2025-10-14 10:02:25.108 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:02:25.065 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:02:36.903 00:00:10.368 TCP 23.104.0.1:38846 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:03:00.602 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50062 10 6452 1 2025-10-14 10:03:37.304 00:00:10.364 TCP 23.104.0.1:40076 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:04:00.818 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:52030 10 6452 1 2025-10-14 10:04:37.705 00:00:10.366 TCP 23.104.0.1:41656 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:05:01.034 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52216 10 6452 1 2025-10-14 10:05:38.134 00:00:10.329 TCP 23.104.0.1:51074 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:06:01.246 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:52302 10 6452 1 2025-10-14 10:02:42.132 00:05:02.425 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 10:02:42.130 00:05:02.430 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:06:38.501 00:00:10.366 TCP 23.104.0.1:55038 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:07:01.417 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43982 10 6452 1 2025-10-14 10:07:25.459 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:07:25.396 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:07:38.902 00:00:10.329 TCP 23.104.0.1:46566 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:08:01.627 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:47586 10 6452 1 2025-10-14 10:08:39.267 00:00:10.330 TCP 23.104.0.1:40676 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:09:01.797 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40018 10 6452 1 2025-10-14 10:09:39.632 00:00:10.363 TCP 23.104.0.1:50114 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:10:02.013 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39090 10 6452 1 2025-10-14 10:10:40.032 00:00:10.368 TCP 23.104.0.1:48768 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:11:02.230 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:53100 12 10369 1 2025-10-14 10:11:40.434 00:00:10.440 TCP 23.104.0.1:43440 -> 1.101.0.1:3000 15 1926 1 2025-10-14 10:12:02.469 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41336 10 6452 1 2025-10-14 10:12:25.294 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:12:25.426 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:08:42.131 00:05:02.435 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:08:42.133 00:05:02.430 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 10:12:40.914 00:00:10.326 TCP 23.104.0.1:40066 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:13:02.689 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58642 10 6452 1 2025-10-14 10:13:41.277 00:00:10.371 TCP 23.104.0.1:58620 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:14:02.919 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54138 10 6452 1 2025-10-14 10:14:41.683 00:00:10.367 TCP 23.104.0.1:60152 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:15:03.158 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:58146 10 6452 1 2025-10-14 10:15:42.106 00:00:10.366 TCP 23.104.0.1:54984 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:16:03.332 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58846 10 6452 1 2025-10-14 10:16:42.509 00:00:10.482 TCP 23.104.0.1:50002 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:17:03.555 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45266 10 6452 1 2025-10-14 10:17:25.335 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:17:25.339 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:17:43.033 00:00:10.326 TCP 23.104.0.1:37402 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:18:03.772 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:40358 10 6452 1 2025-10-14 10:14:42.134 00:05:02.435 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 10:14:42.133 00:05:02.440 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:18:43.413 00:00:10.370 TCP 23.104.0.1:38016 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:19:03.961 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:51152 10 6452 1 2025-10-14 10:19:43.819 00:00:10.329 TCP 23.104.0.1:54740 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:20:04.189 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37244 10 6452 1 2025-10-14 10:20:44.187 00:00:10.320 TCP 23.104.0.1:53128 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:21:04.396 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:32852 10 6452 1 2025-10-14 10:21:44.545 00:00:10.363 TCP 23.104.0.1:52940 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:22:04.614 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50130 10 6452 1 2025-10-14 10:22:25.604 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:22:25.522 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:22:44.943 00:00:10.369 TCP 23.104.0.1:36844 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:23:04.822 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52608 10 6452 1 2025-10-14 10:23:45.359 00:00:10.415 TCP 23.104.0.1:54966 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:24:05.049 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:53816 10 6452 1 2025-10-14 10:20:42.133 00:05:02.436 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 10:20:42.132 00:05:02.441 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:24:45.815 00:00:10.367 TCP 23.104.0.1:33890 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:25:05.221 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58166 10 6452 1 2025-10-14 10:25:46.223 00:00:10.370 TCP 23.104.0.1:44574 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:26:05.438 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55500 10 6452 1 2025-10-14 10:26:46.635 00:00:10.367 TCP 23.104.0.1:35822 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:27:05.661 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:44828 10 6452 1 2025-10-14 10:27:25.699 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:27:25.574 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:27:47.052 00:00:10.364 TCP 23.104.0.1:35452 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:28:05.843 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60402 10 6452 1 2025-10-14 10:28:47.456 00:00:10.365 TCP 23.104.0.1:48190 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:29:06.082 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32894 10 6452 1 2025-10-14 10:29:47.856 00:00:10.346 TCP 23.104.0.1:38932 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:30:06.298 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57792 10 6452 1 2025-10-14 10:26:42.133 00:05:02.441 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:26:42.135 00:05:02.437 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 10:30:48.237 00:00:10.733 TCP 23.104.0.1:35194 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:31:06.519 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34630 10 6452 1 2025-10-14 10:31:49.007 00:00:10.315 TCP 23.104.0.1:34110 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:32:06.730 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35898 10 6452 1 2025-10-14 10:32:25.642 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:32:25.773 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:32:49.360 00:00:10.363 TCP 23.104.0.1:53232 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:33:06.950 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:59308 10 6452 1 2025-10-14 10:33:49.759 00:00:11.156 TCP 23.104.0.1:59542 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:34:07.147 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:34626 10 6452 1 2025-10-14 10:34:50.954 00:00:10.363 TCP 23.104.0.1:56058 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:35:07.323 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:39740 10 6452 1 2025-10-14 10:35:51.354 00:00:10.363 TCP 23.104.0.1:37542 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:36:07.503 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49284 10 6452 1 2025-10-14 10:32:42.134 00:05:02.442 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:32:42.138 00:05:02.437 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 10:36:51.759 00:00:10.376 TCP 23.104.0.1:60724 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:37:07.722 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41874 10 6452 1 2025-10-14 10:37:25.770 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:37:25.881 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:37:52.177 00:00:10.377 TCP 23.104.0.1:57482 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:38:07.933 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:56956 10 6452 1 2025-10-14 10:38:52.590 00:00:10.322 TCP 23.104.0.1:60344 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:39:08.166 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38122 10 6452 1 2025-10-14 10:39:52.947 00:00:10.373 TCP 23.104.0.1:49872 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:40:08.394 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54554 10 6452 1 2025-10-14 10:40:53.358 00:00:10.364 TCP 23.104.0.1:38180 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:41:08.607 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:60882 10 6452 1 2025-10-14 10:41:53.760 00:00:10.371 TCP 23.104.0.1:60322 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:42:08.777 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:59564 10 6452 1 2025-10-14 10:42:25.971 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:42:25.530 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:38:42.165 00:05:02.408 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 10:38:42.163 00:05:02.413 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:42:54.164 00:00:10.649 TCP 23.104.0.1:56914 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:43:08.992 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:40584 10 6452 1 2025-10-14 10:43:54.844 00:00:10.380 TCP 23.104.0.1:55464 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:44:09.219 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:43254 10 6452 1 2025-10-14 10:44:55.263 00:00:10.361 TCP 23.104.0.1:56548 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:45:09.399 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48378 10 6452 1 2025-10-14 10:45:55.669 00:00:10.364 TCP 23.104.0.1:49912 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:46:09.608 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41526 10 6452 1 2025-10-14 10:46:56.092 00:00:10.363 TCP 23.104.0.1:41888 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:47:09.826 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38564 10 6452 1 2025-10-14 10:47:25.922 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:47:26.002 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:47:56.493 00:00:10.370 TCP 23.104.0.1:47400 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:48:10.071 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57414 10 6452 1 2025-10-14 10:44:42.164 00:05:02.413 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:44:42.166 00:05:02.409 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 10:48:56.897 00:00:10.723 TCP 23.104.0.1:40786 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:49:10.284 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:49010 10 6452 1 2025-10-14 10:49:57.657 00:00:10.360 TCP 23.104.0.1:50066 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:50:10.501 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:52204 10 6452 1 2025-10-14 10:50:58.088 00:00:10.371 TCP 23.104.0.1:58926 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:51:10.680 00:00:10.385 TCP 1.101.0.1:3000 -> 22.102.0.1:37336 10 6452 1 2025-10-14 10:51:58.501 00:00:10.368 TCP 23.104.0.1:34128 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:52:26.211 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:52:11.098 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40748 10 6452 1 2025-10-14 10:52:26.214 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:52:58.906 00:00:10.365 TCP 23.104.0.1:46436 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:53:11.308 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:53714 10 6452 1 2025-10-14 10:53:59.311 00:00:10.362 TCP 23.104.0.1:49382 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:54:11.515 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54852 10 6452 1 2025-10-14 10:50:42.167 00:05:02.408 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 10:50:42.164 00:05:02.413 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 10:54:59.714 00:00:10.386 TCP 23.104.0.1:60806 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:55:11.730 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33420 10 6452 1 2025-10-14 10:56:00.141 00:00:10.361 TCP 23.104.0.1:52344 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:56:11.945 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:52504 10 6452 1 2025-10-14 10:57:00.542 00:00:10.366 TCP 23.104.0.1:58382 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:57:26.263 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 10:57:12.179 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:50262 10 6452 1 2025-10-14 10:57:26.144 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 10:58:00.966 00:00:10.378 TCP 23.104.0.1:41650 -> 1.101.0.1:3000 11 1507 1 2025-10-14 10:58:12.359 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33336 10 6452 1 Summary: total flows: 163, total bytes: 501177, total packets: 1567, avg bps: 1083, avg pps: 0, avg bpp: 319 Time window: 2025-10-14 09:56:42 - 2025-10-14 10:58:22 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0035s User: 0.0012s Wall: 0.0030s flows/second: 53478.7 Runtime: 0.0031s