Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 15:59:08.246 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33744 10 6452 1 2025-10-15 15:59:12.139 00:00:10.330 TCP 23.104.0.1:39760 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:00:08.467 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43382 10 6452 1 2025-10-15 16:00:12.505 00:00:10.368 TCP 23.104.0.1:39630 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:56:42.685 00:05:02.525 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:56:42.682 00:05:02.530 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:01:08.676 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:49026 10 6452 1 2025-10-15 16:01:12.910 00:00:10.365 TCP 23.104.0.1:50082 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:02:08.848 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:56308 10 6452 1 2025-10-15 16:02:13.313 00:00:10.323 TCP 23.104.0.1:47576 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:03:00.979 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:03:01.391 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:03:09.088 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39782 10 6452 1 2025-10-15 16:03:13.675 00:00:10.371 TCP 23.104.0.1:46398 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:04:09.307 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40946 10 6452 1 2025-10-15 16:04:14.103 00:00:10.364 TCP 23.104.0.1:44210 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:05:09.519 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58486 10 6452 1 2025-10-15 16:05:14.504 00:00:10.363 TCP 23.104.0.1:44836 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:06:09.731 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:57682 10 6452 1 2025-10-15 16:06:14.909 00:00:10.363 TCP 23.104.0.1:51166 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:02:42.683 00:05:02.531 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:02:42.687 00:05:02.525 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 16:07:09.942 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:49714 10 6452 1 2025-10-15 16:07:15.309 00:00:10.363 TCP 23.104.0.1:43902 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:08:01.294 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:08:01.143 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:08:10.175 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32876 10 6452 1 2025-10-15 16:08:15.718 00:00:10.328 TCP 23.104.0.1:34766 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:09:10.388 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:52836 10 6452 1 2025-10-15 16:09:16.104 00:00:10.327 TCP 23.104.0.1:46956 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:10:10.557 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49538 10 6452 1 2025-10-15 16:10:16.475 00:00:10.327 TCP 23.104.0.1:48106 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:11:10.771 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44332 10 6452 1 2025-10-15 16:11:16.839 00:00:10.387 TCP 23.104.0.1:51410 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:12:10.986 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:60232 10 6452 1 2025-10-15 16:12:17.261 00:00:10.324 TCP 23.104.0.1:44642 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:08:42.688 00:05:02.526 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 16:08:42.686 00:05:02.531 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:13:01.425 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:13:01.545 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:13:11.210 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:44466 10 6452 1 2025-10-15 16:13:17.618 00:00:10.367 TCP 23.104.0.1:50008 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:14:11.386 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54132 10 6452 1 2025-10-15 16:14:18.026 00:00:10.363 TCP 23.104.0.1:46746 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:15:11.602 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35396 10 6452 1 2025-10-15 16:15:18.426 00:00:10.366 TCP 23.104.0.1:42596 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:16:11.822 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60754 10 6452 1 2025-10-15 16:16:18.833 00:00:10.389 TCP 23.104.0.1:58936 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:17:12.064 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:54336 10 6452 1 2025-10-15 16:17:19.264 00:00:10.366 TCP 23.104.0.1:52374 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:18:01.515 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:18:01.577 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:18:12.239 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51176 10 6452 1 2025-10-15 16:18:19.668 00:00:10.365 TCP 23.104.0.1:55776 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:14:42.689 00:05:02.528 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 16:14:42.687 00:05:02.533 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:19:12.455 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:58458 10 6452 1 2025-10-15 16:19:20.113 00:00:10.366 TCP 23.104.0.1:40648 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:20:12.630 00:00:10.567 TCP 1.101.0.1:3000 -> 22.102.0.1:51630 10 6452 1 2025-10-15 16:20:20.514 00:00:10.993 TCP 23.104.0.1:50900 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:21:13.250 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57908 10 6452 1 2025-10-15 16:21:21.547 00:00:10.325 TCP 23.104.0.1:52310 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:22:13.460 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:34736 10 6452 1 2025-10-15 16:22:21.911 00:00:10.364 TCP 23.104.0.1:39428 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:23:01.568 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:23:01.342 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:23:13.635 00:00:10.461 TCP 1.101.0.1:3000 -> 22.102.0.1:56806 10 6452 1 2025-10-15 16:23:22.310 00:00:10.369 TCP 23.104.0.1:54660 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:24:14.150 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45188 10 6452 1 2025-10-15 16:24:22.715 00:00:10.845 TCP 23.104.0.1:36988 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:20:42.690 00:05:02.532 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 16:20:42.689 00:05:02.537 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:25:14.369 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43574 10 6452 1 2025-10-15 16:25:23.600 00:00:10.323 TCP 23.104.0.1:52890 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:26:14.587 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38764 10 6452 1 2025-10-15 16:26:23.961 00:00:10.371 TCP 23.104.0.1:59728 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:27:14.796 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:57976 10 6452 1 2025-10-15 16:27:24.400 00:00:10.326 TCP 23.104.0.1:40876 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:28:01.742 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:28:01.750 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:28:14.965 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40410 10 6452 1 2025-10-15 16:28:24.763 00:00:10.329 TCP 23.104.0.1:41202 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:29:15.189 00:00:10.619 TCP 1.101.0.1:3000 -> 22.102.0.1:56432 10 6452 1 2025-10-15 16:29:25.136 00:00:10.330 TCP 23.104.0.1:60338 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:30:15.850 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53028 10 6452 1 2025-10-15 16:30:25.504 00:00:10.372 TCP 23.104.0.1:50196 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:26:42.692 00:05:02.540 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:26:42.693 00:05:02.535 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 16:31:16.083 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54042 10 6452 1 2025-10-15 16:31:25.930 00:00:10.374 TCP 23.104.0.1:38130 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:32:16.297 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45638 10 6452 1 2025-10-15 16:32:26.343 00:00:10.369 TCP 23.104.0.1:48902 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:33:02.291 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:33:02.394 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:33:16.511 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:49012 10 6452 1 2025-10-15 16:33:26.751 00:00:10.361 TCP 23.104.0.1:46444 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:34:16.683 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:56294 10 6452 1 2025-10-15 16:34:27.151 00:00:10.363 TCP 23.104.0.1:44936 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:35:16.895 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:36278 10 6452 1 2025-10-15 16:35:27.550 00:00:10.370 TCP 23.104.0.1:55656 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:36:17.091 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:39344 10 6452 1 2025-10-15 16:36:27.958 00:00:10.422 TCP 23.104.0.1:35548 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:32:42.694 00:05:02.536 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 16:32:42.690 00:05:02.542 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:37:17.263 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33150 10 6452 1 2025-10-15 16:37:28.417 00:00:10.366 TCP 23.104.0.1:38128 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:38:01.721 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:38:01.851 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:38:17.475 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56708 10 6452 1 2025-10-15 16:38:28.819 00:00:10.363 TCP 23.104.0.1:55828 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:39:17.684 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60592 10 6452 1 2025-10-15 16:39:29.221 00:00:10.319 TCP 23.104.0.1:56458 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:40:17.902 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:45756 10 6452 1 2025-10-15 16:40:29.578 00:00:10.370 TCP 23.104.0.1:36652 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:41:18.091 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:33706 12 10375 1 2025-10-15 16:41:29.987 00:00:10.439 TCP 23.104.0.1:47822 -> 1.101.0.1:3000 15 1926 1 2025-10-15 16:42:18.325 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55380 10 6452 1 2025-10-15 16:42:30.462 00:00:10.359 TCP 23.104.0.1:38530 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:38:42.691 00:05:02.543 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:38:42.693 00:05:02.537 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 16:43:01.932 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:43:01.736 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:43:18.543 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55528 10 6452 1 2025-10-15 16:43:30.862 00:00:10.329 TCP 23.104.0.1:58952 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:44:18.755 00:00:10.341 TCP 1.101.0.1:3000 -> 22.102.0.1:48294 10 6452 1 2025-10-15 16:44:31.229 00:00:15.789 TCP 23.104.0.1:50052 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:45:19.146 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42208 10 6452 1 2025-10-15 16:45:37.071 00:00:10.365 TCP 23.104.0.1:50156 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:46:19.358 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48638 10 6452 1 2025-10-15 16:46:37.477 00:00:10.362 TCP 23.104.0.1:33414 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:47:19.526 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55302 10 6452 1 2025-10-15 16:47:37.880 00:00:10.378 TCP 23.104.0.1:46530 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:48:01.862 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:48:02.011 00:00:00.019 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:48:19.740 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45820 10 6452 1 2025-10-15 16:44:42.695 00:05:02.537 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 16:44:42.694 00:05:02.542 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:48:38.298 00:00:10.365 TCP 23.104.0.1:43220 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:49:19.957 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:52614 10 6452 1 2025-10-15 16:49:38.705 00:00:10.365 TCP 23.104.0.1:33410 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:50:20.191 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51412 10 6452 1 2025-10-15 16:50:39.109 00:00:10.369 TCP 23.104.0.1:56426 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:51:20.415 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:55438 10 6452 1 2025-10-15 16:51:39.515 00:00:10.324 TCP 23.104.0.1:60346 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:52:20.634 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60834 10 6452 1 2025-10-15 16:52:39.880 00:00:10.381 TCP 23.104.0.1:46238 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:53:02.317 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:53:02.606 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:53:20.847 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49036 10 6452 1 2025-10-15 16:53:40.302 00:00:10.363 TCP 23.104.0.1:49558 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:54:21.082 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46178 10 6452 1 2025-10-15 16:50:42.693 00:05:02.543 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 16:50:42.696 00:05:02.538 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 16:54:40.698 00:00:10.323 TCP 23.104.0.1:32990 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:55:21.294 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:39228 10 6452 1 2025-10-15 16:55:41.064 00:00:10.363 TCP 23.104.0.1:53596 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:56:21.466 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40032 10 6452 1 2025-10-15 16:56:41.465 00:00:10.362 TCP 23.104.0.1:40104 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:57:21.674 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:38882 10 6452 1 2025-10-15 16:57:41.864 00:00:10.364 TCP 23.104.0.1:39238 -> 1.101.0.1:3000 11 1507 1 2025-10-15 16:58:02.260 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 16:58:02.389 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 16:58:21.848 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:48052 10 6452 1 Summary: total flows: 163, total bytes: 501183, total packets: 1567, avg bps: 1080, avg pps: 0, avg bpp: 319 Time window: 2025-10-15 15:56:42 - 2025-10-15 16:58:31 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0032s User: 0.0024s Wall: 0.0021s flows/second: 78818.5 Runtime: 0.0021s