Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 18:59:00.785 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48180 10 6452 1 2025-10-15 18:59:37.751 00:00:10.360 TCP 23.104.0.1:56768 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:00:00.996 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:59246 10 6452 1 2025-10-15 18:56:42.734 00:05:02.584 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 18:56:42.736 00:05:02.579 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:00:38.154 00:00:10.365 TCP 23.104.0.1:45028 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:01:01.215 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39914 10 6452 1 2025-10-15 19:01:38.557 00:00:10.322 TCP 23.104.0.1:35998 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:02:01.428 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52488 10 6452 1 2025-10-15 19:02:38.917 00:00:10.368 TCP 23.104.0.1:50238 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:03:04.973 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:03:04.533 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:03:01.638 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39278 10 6452 1 2025-10-15 19:03:39.321 00:00:10.321 TCP 23.104.0.1:53448 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:04:01.857 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59744 10 6452 1 2025-10-15 19:04:39.682 00:00:10.363 TCP 23.104.0.1:48328 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:05:02.083 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44864 10 6452 1 2025-10-15 19:05:40.105 00:00:10.364 TCP 23.104.0.1:44576 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:06:02.295 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44040 10 6452 1 2025-10-15 19:02:42.736 00:05:02.585 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 19:02:42.741 00:05:02.579 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:06:40.508 00:00:10.444 TCP 23.104.0.1:41738 -> 1.101.0.1:3000 15 1926 1 2025-10-15 19:07:02.512 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:41942 12 10375 1 2025-10-15 19:07:40.989 00:00:10.325 TCP 23.104.0.1:46482 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:08:04.720 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:08:04.754 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:08:02.765 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46238 10 6452 1 2025-10-15 19:08:41.353 00:00:10.368 TCP 23.104.0.1:58842 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:09:02.975 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:55974 10 6452 1 2025-10-15 19:09:41.785 00:00:10.711 TCP 23.104.0.1:56888 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:10:03.206 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54814 10 6452 1 2025-10-15 19:10:42.535 00:00:10.371 TCP 23.104.0.1:43514 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:11:03.417 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:56760 10 6452 1 2025-10-15 19:11:42.945 00:00:10.338 TCP 23.104.0.1:49278 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:12:03.640 00:00:10.474 TCP 1.101.0.1:3000 -> 22.102.0.1:53330 10 6452 1 2025-10-15 19:08:42.741 00:05:02.585 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 19:08:42.743 00:05:02.580 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:12:43.307 00:00:10.367 TCP 23.104.0.1:36028 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:13:04.935 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:13:05.222 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:13:04.156 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44084 10 6452 1 2025-10-15 19:13:43.710 00:00:10.377 TCP 23.104.0.1:44080 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:14:04.374 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:48338 10 6452 1 2025-10-15 19:14:44.125 00:00:10.370 TCP 23.104.0.1:58464 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:15:04.602 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:56764 10 6452 1 2025-10-15 19:15:44.527 00:00:10.363 TCP 23.104.0.1:43678 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:16:04.780 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39732 10 6452 1 2025-10-15 19:16:44.926 00:00:10.381 TCP 23.104.0.1:48594 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:17:05.003 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55432 10 6452 1 2025-10-15 19:17:45.341 00:00:10.372 TCP 23.104.0.1:60562 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:18:05.148 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:18:05.110 00:00:00.045 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:18:05.221 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46364 10 6452 1 2025-10-15 19:14:42.741 00:05:02.585 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 19:14:42.744 00:05:02.580 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:18:45.746 00:00:10.327 TCP 23.104.0.1:36908 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:19:05.435 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36922 10 6452 1 2025-10-15 19:19:46.112 00:00:10.366 TCP 23.104.0.1:56998 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:20:05.648 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36204 10 6452 1 2025-10-15 19:20:46.515 00:00:10.372 TCP 23.104.0.1:47370 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:21:05.860 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:60768 10 6452 1 2025-10-15 19:21:46.927 00:00:10.396 TCP 23.104.0.1:32902 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:22:06.041 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51682 10 6452 1 2025-10-15 19:22:47.368 00:00:10.366 TCP 23.104.0.1:35850 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:23:05.095 00:00:00.047 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:23:05.342 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:23:06.252 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:41118 10 6452 1 2025-10-15 19:23:47.777 00:00:10.374 TCP 23.104.0.1:42904 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:24:06.429 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44606 10 6452 1 2025-10-15 19:20:42.744 00:05:02.583 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 19:20:42.748 00:05:02.578 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:24:48.192 00:00:10.376 TCP 23.104.0.1:35938 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:25:06.653 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56934 10 6452 1 2025-10-15 19:25:48.603 00:00:10.371 TCP 23.104.0.1:52380 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:26:06.866 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:51760 10 6452 1 2025-10-15 19:26:49.013 00:00:10.358 TCP 23.104.0.1:33088 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:27:07.087 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39800 10 6452 1 2025-10-15 19:27:49.413 00:00:10.366 TCP 23.104.0.1:46812 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:28:05.242 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:28:05.293 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:28:07.303 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41256 10 6452 1 2025-10-15 19:28:49.820 00:00:10.369 TCP 23.104.0.1:38266 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:29:07.511 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50588 10 6452 1 2025-10-15 19:29:50.226 00:00:10.333 TCP 23.104.0.1:40774 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:30:07.730 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:33682 10 6452 1 2025-10-15 19:26:42.746 00:05:02.582 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 19:26:42.748 00:05:02.577 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:30:50.598 00:00:10.367 TCP 23.104.0.1:52218 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:31:07.944 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:38354 10 6452 1 2025-10-15 19:31:51.002 00:00:10.366 TCP 23.104.0.1:34692 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:32:08.183 00:00:10.325 TCP 1.101.0.1:3000 -> 22.102.0.1:46414 10 6452 1 2025-10-15 19:32:51.407 00:00:10.366 TCP 23.104.0.1:60912 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:33:05.302 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:33:05.338 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:33:08.548 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:41112 10 6452 1 2025-10-15 19:33:51.812 00:00:10.327 TCP 23.104.0.1:50276 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:34:08.727 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35734 10 6452 1 2025-10-15 19:34:52.176 00:00:10.327 TCP 23.104.0.1:44126 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:35:08.947 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:56786 10 6452 1 2025-10-15 19:35:52.541 00:00:10.328 TCP 23.104.0.1:44212 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:36:09.150 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:52620 10 6452 1 2025-10-15 19:32:42.747 00:05:02.581 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 19:32:42.749 00:05:02.577 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:36:52.906 00:00:10.367 TCP 23.104.0.1:52614 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:37:09.388 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:37772 10 6452 1 2025-10-15 19:38:05.579 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:37:53.312 00:00:10.364 TCP 23.104.0.1:38816 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:38:05.529 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:38:09.612 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55518 10 6452 1 2025-10-15 19:38:53.717 00:00:10.371 TCP 23.104.0.1:39600 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:39:09.834 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40738 10 6452 1 2025-10-15 19:39:54.132 00:00:10.374 TCP 23.104.0.1:40034 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:40:10.084 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43234 10 6452 1 2025-10-15 19:40:54.541 00:00:10.362 TCP 23.104.0.1:34944 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:41:10.310 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60914 10 6452 1 2025-10-15 19:41:54.941 00:00:10.339 TCP 23.104.0.1:51650 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:42:10.542 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35966 10 6452 1 2025-10-15 19:38:42.754 00:05:02.576 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:38:42.751 00:05:02.581 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 19:43:05.553 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:43:05.777 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:42:55.315 00:00:10.374 TCP 23.104.0.1:55860 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:43:10.767 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48974 10 6452 1 2025-10-15 19:43:55.732 00:00:10.370 TCP 23.104.0.1:41014 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:44:10.990 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35222 10 6452 1 2025-10-15 19:44:56.139 00:00:10.363 TCP 23.104.0.1:52110 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:45:11.208 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:36728 10 6452 1 2025-10-15 19:45:56.535 00:00:10.386 TCP 23.104.0.1:59114 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:46:11.380 00:00:10.318 TCP 1.101.0.1:3000 -> 22.102.0.1:60122 10 6452 1 2025-10-15 19:46:56.954 00:00:10.443 TCP 23.104.0.1:35746 -> 1.101.0.1:3000 15 1926 1 2025-10-15 19:47:11.732 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:41060 12 10375 1 2025-10-15 19:48:05.411 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:48:05.757 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:47:57.436 00:00:10.366 TCP 23.104.0.1:57456 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:48:11.978 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:33052 10 6452 1 2025-10-15 19:44:42.754 00:05:02.582 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:44:42.753 00:05:02.586 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 19:48:57.844 00:00:11.051 TCP 23.104.0.1:41622 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:49:12.209 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:59092 10 6452 1 2025-10-15 19:49:58.938 00:00:10.367 TCP 23.104.0.1:44862 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:50:12.429 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57034 10 6452 1 2025-10-15 19:50:59.341 00:00:10.322 TCP 23.104.0.1:50718 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:51:12.649 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:40606 10 6452 1 2025-10-15 19:51:59.694 00:00:10.442 TCP 23.104.0.1:44248 -> 1.101.0.1:3000 15 1926 1 2025-10-15 19:52:12.831 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:47968 12 10375 1 2025-10-15 19:53:05.901 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:53:05.907 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:53:00.182 00:00:10.364 TCP 23.104.0.1:53922 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:53:13.039 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50704 10 6452 1 2025-10-15 19:54:00.586 00:00:10.360 TCP 23.104.0.1:41410 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:54:13.256 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38866 10 6452 1 2025-10-15 19:50:42.755 00:05:02.581 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 19:50:42.754 00:05:02.585 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 19:55:00.988 00:00:10.331 TCP 23.104.0.1:35762 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:55:13.467 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:49416 10 6452 1 2025-10-15 19:56:01.356 00:00:10.324 TCP 23.104.0.1:46506 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:56:13.698 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59418 10 6452 1 2025-10-15 19:57:01.725 00:00:10.370 TCP 23.104.0.1:55968 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:57:13.913 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52054 10 6452 1 2025-10-15 19:58:05.916 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 19:58:06.116 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 19:58:02.133 00:00:10.366 TCP 23.104.0.1:34628 -> 1.101.0.1:3000 11 1507 1 2025-10-15 19:58:14.131 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36500 10 6452 1 Summary: total flows: 163, total bytes: 509867, total packets: 1579, avg bps: 1101, avg pps: 0, avg bpp: 322 Time window: 2025-10-15 18:56:42 - 2025-10-15 19:58:24 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0032s User: 0.0022s Wall: 0.0024s flows/second: 67636.7 Runtime: 0.0024s