Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 08:59:09.925 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:53420 10 6452 1 2025-10-15 08:59:19.416 00:00:10.368 TCP 23.104.0.1:59140 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:00:10.166 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55540 10 6452 1 2025-10-15 09:00:19.820 00:00:10.365 TCP 23.104.0.1:51192 -> 1.101.0.1:3000 11 1507 1 2025-10-15 08:56:42.557 00:05:02.516 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 08:56:42.554 00:05:02.521 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:01:10.381 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:42798 10 6452 1 2025-10-15 09:01:20.226 00:00:10.364 TCP 23.104.0.1:59674 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:02:10.557 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:40266 10 6452 1 2025-10-15 09:02:20.626 00:00:10.338 TCP 23.104.0.1:52828 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:02:52.821 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:02:53.171 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:03:10.732 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47348 10 6452 1 2025-10-15 09:03:21.012 00:00:10.372 TCP 23.104.0.1:46080 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:04:10.949 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:48112 10 6452 1 2025-10-15 09:04:21.421 00:00:10.321 TCP 23.104.0.1:41842 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:05:11.178 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51344 10 6452 1 2025-10-15 09:05:21.776 00:00:10.329 TCP 23.104.0.1:53402 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:06:11.350 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52538 10 6452 1 2025-10-15 09:06:22.139 00:00:10.366 TCP 23.104.0.1:47800 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:02:42.558 00:05:02.517 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 09:02:42.555 00:05:02.521 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:07:11.571 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49730 10 6452 1 2025-10-15 09:07:22.543 00:00:10.369 TCP 23.104.0.1:54962 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:07:53.183 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:07:52.725 00:00:00.030 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:08:11.790 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:33260 10 6452 1 2025-10-15 09:08:22.945 00:00:10.337 TCP 23.104.0.1:33660 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:09:12.041 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:43304 10 6452 1 2025-10-15 09:09:23.323 00:00:10.362 TCP 23.104.0.1:55296 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:10:12.210 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58788 10 6452 1 2025-10-15 09:10:23.719 00:00:10.366 TCP 23.104.0.1:55220 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:11:12.425 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45686 10 6452 1 2025-10-15 09:11:24.125 00:00:10.325 TCP 23.104.0.1:37970 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:12:12.641 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45440 10 6452 1 2025-10-15 09:12:24.490 00:00:10.366 TCP 23.104.0.1:60216 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:08:42.558 00:05:02.521 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 09:08:42.557 00:05:02.527 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:12:52.969 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:12:52.941 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:13:12.858 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53008 10 6452 1 2025-10-15 09:13:24.894 00:00:10.373 TCP 23.104.0.1:36364 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:14:13.087 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:35706 10 6452 1 2025-10-15 09:14:25.305 00:00:10.368 TCP 23.104.0.1:34344 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:15:13.260 00:00:10.975 TCP 1.101.0.1:3000 -> 22.102.0.1:43642 10 6452 1 2025-10-15 09:15:25.711 00:00:10.323 TCP 23.104.0.1:50292 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:16:14.276 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:51134 12 10375 1 2025-10-15 09:16:26.098 00:00:10.399 TCP 23.104.0.1:50258 -> 1.101.0.1:3000 15 1926 1 2025-10-15 09:17:14.471 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:50584 10 6452 1 2025-10-15 09:17:26.534 00:00:10.329 TCP 23.104.0.1:33276 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:17:53.277 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:17:52.927 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:18:14.644 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:35130 10 6452 1 2025-10-15 09:14:42.558 00:05:02.526 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:18:26.901 00:00:10.746 TCP 23.104.0.1:37548 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:14:42.561 00:05:02.522 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 09:19:14.813 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:58254 10 6452 1 2025-10-15 09:19:27.680 00:00:10.365 TCP 23.104.0.1:40180 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:20:15.029 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:33872 10 6452 1 2025-10-15 09:20:28.105 00:00:10.371 TCP 23.104.0.1:34674 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:21:15.216 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:43720 10 6452 1 2025-10-15 09:21:28.510 00:00:10.328 TCP 23.104.0.1:58000 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:22:15.394 00:00:10.703 TCP 1.101.0.1:3000 -> 22.102.0.1:42248 10 6452 1 2025-10-15 09:22:28.876 00:00:10.352 TCP 23.104.0.1:52138 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:22:52.916 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:22:53.099 00:00:00.046 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:23:16.137 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40274 10 6452 1 2025-10-15 09:23:29.238 00:00:10.376 TCP 23.104.0.1:33932 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:24:16.349 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38960 10 6452 1 2025-10-15 09:24:29.646 00:00:10.367 TCP 23.104.0.1:51012 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:20:42.558 00:05:02.530 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:20:42.561 00:05:02.525 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 09:25:16.564 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50462 10 6452 1 2025-10-15 09:25:30.068 00:00:10.363 TCP 23.104.0.1:33102 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:26:16.778 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51486 10 6452 1 2025-10-15 09:26:30.470 00:00:10.373 TCP 23.104.0.1:41056 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:27:16.995 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40084 10 6452 1 2025-10-15 09:27:30.879 00:00:10.325 TCP 23.104.0.1:42760 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:27:53.029 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:27:53.179 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:28:17.214 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33694 10 6452 1 2025-10-15 09:28:31.240 00:00:10.381 TCP 23.104.0.1:45550 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:29:17.426 00:00:10.396 TCP 1.101.0.1:3000 -> 22.102.0.1:53054 10 6452 1 2025-10-15 09:29:31.659 00:00:10.321 TCP 23.104.0.1:54860 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:30:17.862 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36506 10 6452 1 2025-10-15 09:26:42.559 00:05:02.529 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:30:32.018 00:00:10.365 TCP 23.104.0.1:59742 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:26:42.563 00:05:02.523 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 09:31:18.082 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60086 10 6452 1 2025-10-15 09:31:32.423 00:00:10.370 TCP 23.104.0.1:41946 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:32:18.297 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55330 12 6556 1 2025-10-15 09:32:32.834 00:00:10.389 TCP 23.104.0.1:50090 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:32:53.425 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:32:53.365 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:33:18.513 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35206 10 6452 1 2025-10-15 09:33:33.266 00:00:10.368 TCP 23.104.0.1:58340 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:34:18.727 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42078 10 6452 1 2025-10-15 09:34:33.673 00:00:10.364 TCP 23.104.0.1:39890 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:35:18.944 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:33884 10 6452 1 2025-10-15 09:35:34.098 00:00:10.371 TCP 23.104.0.1:48994 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:36:19.173 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34220 10 6452 1 2025-10-15 09:36:34.507 00:00:10.370 TCP 23.104.0.1:37314 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:32:42.563 00:05:02.526 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 09:32:42.560 00:05:02.531 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:37:19.384 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51002 10 6452 1 2025-10-15 09:37:34.920 00:00:10.373 TCP 23.104.0.1:33916 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:37:53.634 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:37:53.616 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:38:19.594 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45330 10 6452 1 2025-10-15 09:38:35.338 00:00:10.363 TCP 23.104.0.1:50246 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:39:19.806 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37618 10 6452 1 2025-10-15 09:39:35.738 00:00:10.369 TCP 23.104.0.1:43168 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:40:20.036 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48018 10 6452 1 2025-10-15 09:40:36.148 00:00:10.366 TCP 23.104.0.1:42690 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:41:20.248 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:56736 10 6452 1 2025-10-15 09:41:36.550 00:00:10.371 TCP 23.104.0.1:59528 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:42:20.420 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60034 10 6452 1 2025-10-15 09:38:42.562 00:05:02.532 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:38:42.564 00:05:02.526 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 09:42:36.956 00:00:10.329 TCP 23.104.0.1:49450 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:42:53.482 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:42:53.441 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:43:20.587 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:57188 10 6452 1 2025-10-15 09:43:37.322 00:00:10.369 TCP 23.104.0.1:59234 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:44:20.757 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48288 10 6452 1 2025-10-15 09:44:37.736 00:00:10.372 TCP 23.104.0.1:58650 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:45:20.964 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:54626 10 6452 1 2025-10-15 09:45:38.148 00:00:10.366 TCP 23.104.0.1:49898 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:46:21.191 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:57684 10 6452 1 2025-10-15 09:46:38.551 00:00:10.321 TCP 23.104.0.1:52986 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:47:21.365 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59364 10 6452 1 2025-10-15 09:47:38.913 00:00:10.322 TCP 23.104.0.1:34812 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:47:53.711 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:47:53.427 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:48:21.574 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:52120 10 6452 1 2025-10-15 09:44:42.566 00:05:02.527 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 09:44:42.564 00:05:02.532 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:48:39.271 00:00:10.321 TCP 23.104.0.1:60160 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:49:21.782 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54964 10 6452 1 2025-10-15 09:49:39.629 00:00:10.322 TCP 23.104.0.1:43310 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:50:22.001 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:60690 10 6452 1 2025-10-15 09:50:39.989 00:00:10.371 TCP 23.104.0.1:33278 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:51:22.228 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40762 10 6452 1 2025-10-15 09:51:40.392 00:00:10.364 TCP 23.104.0.1:42990 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:52:22.445 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39354 10 6452 1 2025-10-15 09:52:40.791 00:00:10.366 TCP 23.104.0.1:55572 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:52:53.649 00:00:00.016 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:52:53.921 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:53:22.618 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51982 10 6452 1 2025-10-15 09:53:41.203 00:00:10.361 TCP 23.104.0.1:48564 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:54:22.790 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37976 10 6452 1 2025-10-15 09:50:42.565 00:05:02.532 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 09:50:42.567 00:05:02.527 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 09:54:41.606 00:00:10.333 TCP 23.104.0.1:43262 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:55:23.009 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55442 10 6452 1 2025-10-15 09:55:41.978 00:00:10.326 TCP 23.104.0.1:42084 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:56:23.225 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54554 10 6452 1 2025-10-15 09:56:42.339 00:00:10.324 TCP 23.104.0.1:58182 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:57:23.434 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:56018 10 6452 1 2025-10-15 09:57:53.687 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 09:57:42.703 00:00:10.362 TCP 23.104.0.1:48054 -> 1.101.0.1:3000 11 1507 1 2025-10-15 09:57:53.830 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 09:58:23.645 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34368 10 6452 1 Summary: total flows: 163, total bytes: 501287, total packets: 1569, avg bps: 1080, avg pps: 0, avg bpp: 319 Time window: 2025-10-15 08:56:42 - 2025-10-15 09:58:33 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0048s User: 0.0000s Wall: 0.0026s flows/second: 62814.4 Runtime: 0.0026s