Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 00:59:01.987 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:41550 10 6452 1 2025-10-17 00:59:30.799 00:00:10.367 TCP 23.104.0.1:48522 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:00:02.225 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:43116 10 6452 1 2025-10-17 01:00:31.203 00:00:10.363 TCP 23.104.0.1:38416 -> 1.101.0.1:3000 11 1507 1 2025-10-17 00:56:43.388 00:05:02.576 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 00:56:43.385 00:05:02.582 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:01:02.395 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:44796 10 6452 1 2025-10-17 01:01:31.603 00:00:10.804 TCP 23.104.0.1:38820 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:02:02.611 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44654 10 6452 1 2025-10-17 01:02:32.440 00:00:10.360 TCP 23.104.0.1:36252 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:03:02.826 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54710 10 6452 1 2025-10-17 01:03:41.135 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:03:41.212 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:03:32.847 00:00:10.382 TCP 23.104.0.1:42810 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:04:03.061 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55562 10 6452 1 2025-10-17 01:04:33.270 00:00:10.363 TCP 23.104.0.1:57454 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:05:03.284 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42250 10 6452 1 2025-10-17 01:05:33.676 00:00:10.367 TCP 23.104.0.1:47490 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:06:03.504 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60216 10 6452 1 2025-10-17 01:02:43.410 00:05:02.559 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:02:43.414 00:05:02.555 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 01:06:34.108 00:00:10.327 TCP 23.104.0.1:41586 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:07:03.723 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34966 10 6452 1 2025-10-17 01:07:34.470 00:00:10.492 TCP 23.104.0.1:56386 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:08:03.936 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:56354 10 6452 1 2025-10-17 01:08:40.837 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:08:40.904 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:08:34.996 00:00:10.367 TCP 23.104.0.1:46410 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:09:04.168 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:42332 10 6452 1 2025-10-17 01:09:35.402 00:00:10.363 TCP 23.104.0.1:57088 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:10:04.342 00:00:10.263 TCP 1.101.0.1:3000 -> 22.102.0.1:42334 10 6452 1 2025-10-17 01:10:35.802 00:00:10.363 TCP 23.104.0.1:53306 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:11:04.647 00:00:10.347 TCP 1.101.0.1:3000 -> 22.102.0.1:33920 10 6452 1 2025-10-17 01:11:36.203 00:00:10.365 TCP 23.104.0.1:37974 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:12:05.048 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46336 10 6452 1 2025-10-17 01:08:43.411 00:05:02.561 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:08:43.415 00:05:02.555 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 01:12:36.602 00:00:10.909 TCP 23.104.0.1:38008 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:13:05.263 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57662 10 6452 1 2025-10-17 01:13:40.950 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:13:40.918 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:13:37.550 00:00:10.322 TCP 23.104.0.1:44626 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:14:05.475 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45376 10 6452 1 2025-10-17 01:14:37.911 00:00:10.366 TCP 23.104.0.1:45998 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:15:05.692 00:00:10.730 TCP 1.101.0.1:3000 -> 22.102.0.1:45954 10 6452 1 2025-10-17 01:15:38.318 00:00:10.366 TCP 23.104.0.1:47248 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:16:06.459 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:43432 10 6452 1 2025-10-17 01:16:38.720 00:00:10.372 TCP 23.104.0.1:54248 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:17:06.665 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:37370 10 6452 1 2025-10-17 01:17:39.139 00:00:11.136 TCP 23.104.0.1:50318 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:18:06.836 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40104 10 6452 1 2025-10-17 01:18:41.135 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:18:41.187 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:14:43.415 00:05:02.557 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:14:43.417 00:05:02.552 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 01:18:40.307 00:00:10.369 TCP 23.104.0.1:60598 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:19:07.069 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58798 10 6452 1 2025-10-17 01:19:40.713 00:00:10.377 TCP 23.104.0.1:46676 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:20:07.280 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54248 10 6452 1 2025-10-17 01:20:41.128 00:00:10.362 TCP 23.104.0.1:60788 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:21:07.499 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54870 10 6452 1 2025-10-17 01:21:41.525 00:00:10.362 TCP 23.104.0.1:39636 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:22:07.717 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55904 10 6452 1 2025-10-17 01:22:41.926 00:00:10.391 TCP 23.104.0.1:39004 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:23:07.936 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:54886 10 6452 1 2025-10-17 01:23:41.411 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:23:41.356 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:23:42.357 00:00:10.370 TCP 23.104.0.1:52490 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:24:08.178 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:39450 10 6452 1 2025-10-17 01:20:43.416 00:05:02.558 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:20:43.418 00:05:02.554 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 01:24:42.768 00:00:10.368 TCP 23.104.0.1:59002 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:25:08.404 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:32968 10 6452 1 2025-10-17 01:25:43.176 00:00:10.364 TCP 23.104.0.1:60324 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:26:08.639 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37022 10 6452 1 2025-10-17 01:26:43.578 00:00:10.440 TCP 23.104.0.1:56228 -> 1.101.0.1:3000 15 1926 1 2025-10-17 01:27:08.856 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:57602 12 10375 1 2025-10-17 01:27:44.083 00:00:10.364 TCP 23.104.0.1:49342 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:28:09.109 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48134 10 6452 1 2025-10-17 01:28:41.426 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:28:41.441 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:28:44.489 00:00:10.365 TCP 23.104.0.1:36664 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:29:09.330 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47300 10 6452 1 2025-10-17 01:29:44.889 00:00:10.384 TCP 23.104.0.1:46092 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:30:09.548 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56976 10 6452 1 2025-10-17 01:26:43.418 00:05:02.558 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:26:43.421 00:05:02.553 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 01:30:45.312 00:00:10.368 TCP 23.104.0.1:40098 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:31:09.758 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56812 10 6452 1 2025-10-17 01:31:45.727 00:00:10.366 TCP 23.104.0.1:38330 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:32:09.978 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:59004 10 6452 1 2025-10-17 01:32:46.131 00:00:10.417 TCP 23.104.0.1:38222 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:33:10.219 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35454 10 6452 1 2025-10-17 01:33:41.543 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:33:41.300 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:33:46.588 00:00:10.363 TCP 23.104.0.1:47540 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:34:10.429 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52858 10 6452 1 2025-10-17 01:34:46.992 00:00:13.381 TCP 23.104.0.1:59202 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:35:10.641 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49920 10 6452 1 2025-10-17 01:35:50.417 00:00:11.165 TCP 23.104.0.1:56798 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:36:10.851 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:57766 10 6452 1 2025-10-17 01:32:43.421 00:05:02.553 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 01:32:43.418 00:05:02.558 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:36:51.623 00:00:10.323 TCP 23.104.0.1:52902 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:37:11.091 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40746 10 6452 1 2025-10-17 01:37:51.987 00:00:11.459 TCP 23.104.0.1:43392 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:38:11.302 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58666 10 6452 1 2025-10-17 01:38:41.635 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:38:41.687 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:38:53.485 00:00:10.358 TCP 23.104.0.1:51852 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:39:11.518 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53512 10 6452 1 2025-10-17 01:39:53.879 00:00:10.385 TCP 23.104.0.1:52580 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:40:11.730 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41844 10 6452 1 2025-10-17 01:40:54.301 00:00:10.326 TCP 23.104.0.1:33516 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:41:11.948 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:34232 10 6452 1 2025-10-17 01:41:54.665 00:00:10.331 TCP 23.104.0.1:34798 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:42:12.124 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45150 10 6452 1 2025-10-17 01:38:43.419 00:05:02.559 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:38:43.422 00:05:02.553 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 01:42:55.031 00:00:10.366 TCP 23.104.0.1:38672 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:43:12.336 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:41840 10 6452 1 2025-10-17 01:43:41.727 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:43:41.784 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:43:55.432 00:00:10.364 TCP 23.104.0.1:57548 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:44:12.542 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:45292 10 6452 1 2025-10-17 01:44:55.834 00:00:10.382 TCP 23.104.0.1:49052 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:45:12.753 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47364 10 6452 1 2025-10-17 01:45:56.252 00:00:10.384 TCP 23.104.0.1:60854 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:46:12.973 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:49380 10 6452 1 2025-10-17 01:46:56.674 00:00:10.326 TCP 23.104.0.1:40604 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:47:13.164 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47390 10 6452 1 2025-10-17 01:47:57.035 00:00:10.367 TCP 23.104.0.1:58590 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:48:13.380 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:35734 10 6452 1 2025-10-17 01:48:41.798 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:48:41.945 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:44:43.425 00:05:02.552 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 01:44:43.422 00:05:02.558 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:48:57.440 00:00:10.325 TCP 23.104.0.1:53202 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:49:13.548 00:00:10.492 TCP 1.101.0.1:3000 -> 22.102.0.1:39712 10 6452 1 2025-10-17 01:49:57.805 00:00:10.342 TCP 23.104.0.1:37490 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:50:14.087 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49820 10 6452 1 2025-10-17 01:50:58.190 00:00:10.386 TCP 23.104.0.1:58566 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:51:14.307 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42456 10 6452 1 2025-10-17 01:51:58.611 00:00:10.386 TCP 23.104.0.1:40772 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:52:14.526 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:48876 10 6452 1 2025-10-17 01:52:59.037 00:00:10.368 TCP 23.104.0.1:54924 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:53:14.758 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:39790 10 6452 1 2025-10-17 01:53:41.825 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 01:53:41.878 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:53:59.444 00:00:10.370 TCP 23.104.0.1:37604 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:54:14.937 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:42240 10 6452 1 2025-10-17 01:50:43.427 00:05:02.554 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 01:50:43.431 00:05:02.548 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 01:54:59.850 00:00:10.340 TCP 23.104.0.1:34952 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:55:15.142 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35320 10 6452 1 2025-10-17 01:56:00.229 00:00:10.369 TCP 23.104.0.1:50002 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:56:15.357 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51098 10 6452 1 2025-10-17 01:57:00.638 00:00:10.373 TCP 23.104.0.1:45990 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:57:15.573 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52422 10 6452 1 2025-10-17 01:58:01.062 00:00:10.368 TCP 23.104.0.1:52138 -> 1.101.0.1:3000 11 1507 1 2025-10-17 01:58:15.791 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58046 10 6452 1 2025-10-17 01:58:42.589 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 01:58:42.661 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 Summary: total flows: 163, total bytes: 501183, total packets: 1567, avg bps: 1078, avg pps: 0, avg bpp: 319 Time window: 2025-10-17 00:56:43 - 2025-10-17 01:58:42 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0040s User: 0.0008s Wall: 0.0020s flows/second: 80812.2 Runtime: 0.0020s