Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 09:59:02.429 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:55214 10 6452 1 2025-10-17 09:59:34.860 00:00:10.373 TCP 23.104.0.1:46284 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:00:02.602 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37600 10 6452 1 2025-10-17 10:00:35.270 00:00:10.364 TCP 23.104.0.1:52838 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:56:43.550 00:05:02.618 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 09:56:43.548 00:05:02.624 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:01:02.816 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45896 10 6452 1 2025-10-17 10:01:35.673 00:00:10.321 TCP 23.104.0.1:46796 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:02:03.049 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54352 10 6452 1 2025-10-17 10:02:36.029 00:00:10.364 TCP 23.104.0.1:35128 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:03:03.260 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41636 10 6452 1 2025-10-17 10:03:36.428 00:00:10.365 TCP 23.104.0.1:49392 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:03:51.857 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:03:51.942 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:04:03.480 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33010 10 6452 1 2025-10-17 10:04:36.831 00:00:10.352 TCP 23.104.0.1:50492 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:05:03.688 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:58398 10 6452 1 2025-10-17 10:05:37.226 00:00:10.370 TCP 23.104.0.1:58254 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:06:03.868 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54128 10 6452 1 2025-10-17 10:02:43.551 00:05:02.618 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 10:06:37.634 00:00:10.614 TCP 23.104.0.1:53540 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:02:43.548 00:05:02.623 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:07:04.086 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39798 10 6452 1 2025-10-17 10:07:38.285 00:00:10.370 TCP 23.104.0.1:43578 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:08:04.291 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37768 10 6452 1 2025-10-17 10:08:51.853 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:08:38.686 00:00:10.327 TCP 23.104.0.1:44844 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:08:51.924 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:09:04.509 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53154 10 6452 1 2025-10-17 10:09:39.064 00:00:10.323 TCP 23.104.0.1:45538 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:10:04.721 00:00:10.227 TCP 1.101.0.1:3000 -> 22.102.0.1:48570 10 6452 1 2025-10-17 10:10:39.428 00:00:10.369 TCP 23.104.0.1:54718 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:11:04.984 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:47178 10 6452 1 2025-10-17 10:11:39.830 00:00:10.377 TCP 23.104.0.1:53846 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:12:05.217 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:60418 10 6452 1 2025-10-17 10:08:43.549 00:05:02.624 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:08:43.553 00:05:02.619 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 10:12:40.245 00:00:10.368 TCP 23.104.0.1:54700 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:13:05.459 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:41996 10 6452 1 2025-10-17 10:13:51.810 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:13:40.650 00:00:10.365 TCP 23.104.0.1:46038 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:13:52.038 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:14:05.675 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:57134 10 6452 1 2025-10-17 10:14:41.062 00:00:10.335 TCP 23.104.0.1:58342 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:15:05.905 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54188 10 6452 1 2025-10-17 10:15:41.469 00:00:10.323 TCP 23.104.0.1:52100 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:16:06.122 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53792 10 6452 1 2025-10-17 10:16:41.833 00:00:10.388 TCP 23.104.0.1:42988 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:17:06.345 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:35710 10 6452 1 2025-10-17 10:17:42.255 00:00:10.367 TCP 23.104.0.1:54530 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:18:06.568 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53586 10 6452 1 2025-10-17 10:14:43.549 00:05:02.625 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:14:43.552 00:05:02.620 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 10:18:52.079 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:18:42.661 00:00:10.363 TCP 23.104.0.1:56836 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:18:52.118 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:19:06.786 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:48138 10 6452 1 2025-10-17 10:19:43.094 00:00:10.366 TCP 23.104.0.1:48638 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:20:07.014 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41078 10 6452 1 2025-10-17 10:20:43.497 00:00:10.364 TCP 23.104.0.1:50470 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:21:07.231 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39052 10 6452 1 2025-10-17 10:21:43.905 00:00:10.366 TCP 23.104.0.1:44336 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:22:07.447 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:41582 10 6452 1 2025-10-17 10:22:44.313 00:00:10.372 TCP 23.104.0.1:51046 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:23:07.619 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:33972 10 6452 1 2025-10-17 10:23:52.362 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:23:44.713 00:00:10.332 TCP 23.104.0.1:39722 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:23:52.237 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:24:07.849 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:32776 10 6452 1 2025-10-17 10:20:43.552 00:05:02.624 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:20:43.554 00:05:02.619 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 10:24:45.106 00:00:10.366 TCP 23.104.0.1:37272 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:25:08.089 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33326 10 6452 1 2025-10-17 10:25:45.513 00:00:10.367 TCP 23.104.0.1:43262 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:26:08.302 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41546 10 6452 1 2025-10-17 10:26:45.920 00:00:10.373 TCP 23.104.0.1:39450 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:27:08.511 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:51658 10 6452 1 2025-10-17 10:27:46.336 00:00:10.366 TCP 23.104.0.1:40896 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:28:08.688 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43754 10 6452 1 2025-10-17 10:28:52.100 00:00:00.040 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:28:52.300 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:28:46.740 00:00:10.366 TCP 23.104.0.1:34876 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:29:08.899 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44670 10 6452 1 2025-10-17 10:29:47.140 00:00:10.365 TCP 23.104.0.1:52962 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:30:09.111 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35474 10 6452 1 2025-10-17 10:26:43.555 00:05:02.619 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 10:26:43.551 00:05:02.625 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:30:47.541 00:00:10.368 TCP 23.104.0.1:53324 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:31:09.335 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44416 10 6452 1 2025-10-17 10:31:47.949 00:00:10.369 TCP 23.104.0.1:58696 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:32:09.553 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57120 10 6452 1 2025-10-17 10:32:48.357 00:00:10.366 TCP 23.104.0.1:33342 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:33:09.775 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55796 10 6452 1 2025-10-17 10:33:52.381 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:33:52.259 00:00:00.028 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:33:48.763 00:00:10.325 TCP 23.104.0.1:46726 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:34:09.994 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:38700 10 6452 1 2025-10-17 10:34:49.124 00:00:10.324 TCP 23.104.0.1:49360 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:35:10.223 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57146 10 6452 1 2025-10-17 10:35:49.487 00:00:10.362 TCP 23.104.0.1:33094 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:36:10.444 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:45054 10 6452 1 2025-10-17 10:32:43.554 00:05:02.626 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:32:43.557 00:05:02.621 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 10:36:49.889 00:00:10.374 TCP 23.104.0.1:53620 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:37:10.615 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50570 10 6452 1 2025-10-17 10:37:50.301 00:00:10.370 TCP 23.104.0.1:45614 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:38:10.835 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55864 10 6452 1 2025-10-17 10:38:52.407 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:38:52.257 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:38:50.703 00:00:10.374 TCP 23.104.0.1:36126 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:39:11.075 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55872 10 6452 1 2025-10-17 10:39:51.111 00:00:10.361 TCP 23.104.0.1:36574 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:40:11.292 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54286 10 6452 1 2025-10-17 10:40:51.506 00:00:10.323 TCP 23.104.0.1:56090 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:41:11.515 00:00:10.706 TCP 1.101.0.1:3000 -> 22.102.0.1:46192 10 6452 1 2025-10-17 10:41:51.867 00:00:10.402 TCP 23.104.0.1:36898 -> 1.101.0.1:3000 15 1926 1 2025-10-17 10:42:12.264 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:43036 12 10369 1 2025-10-17 10:38:43.556 00:05:02.628 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:38:43.558 00:05:02.623 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 10:42:52.310 00:00:10.359 TCP 23.104.0.1:41130 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:43:12.509 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60872 10 6452 1 2025-10-17 10:43:52.798 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:43:52.953 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:43:52.710 00:00:10.391 TCP 23.104.0.1:54528 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:44:12.738 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46438 10 6452 1 2025-10-17 10:44:53.132 00:00:10.379 TCP 23.104.0.1:40878 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:45:12.960 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:58914 10 6452 1 2025-10-17 10:45:53.549 00:00:10.325 TCP 23.104.0.1:49478 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:46:13.193 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48576 10 6452 1 2025-10-17 10:46:53.912 00:00:10.363 TCP 23.104.0.1:36386 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:47:13.407 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38334 10 6452 1 2025-10-17 10:47:54.310 00:00:10.321 TCP 23.104.0.1:46394 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:48:13.610 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55440 10 6452 1 2025-10-17 10:44:43.565 00:05:02.618 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 10:44:43.561 00:05:02.623 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:48:52.705 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:48:52.714 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:48:54.668 00:00:10.364 TCP 23.104.0.1:56092 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:49:13.823 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:34908 10 6452 1 2025-10-17 10:49:55.102 00:00:10.366 TCP 23.104.0.1:34428 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:50:13.995 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39766 10 6452 1 2025-10-17 10:50:55.508 00:00:10.870 TCP 23.104.0.1:58086 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:51:14.223 00:00:10.352 TCP 1.101.0.1:3000 -> 22.102.0.1:44692 10 6452 1 2025-10-17 10:51:56.417 00:00:10.368 TCP 23.104.0.1:56230 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:52:14.621 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:49478 10 6452 1 2025-10-17 10:52:56.820 00:00:10.366 TCP 23.104.0.1:55214 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:53:14.831 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59850 10 6452 1 2025-10-17 10:53:52.923 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 10:53:52.826 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 10:53:57.227 00:00:10.317 TCP 23.104.0.1:42354 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:54:15.074 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:39610 11 6492 1 2025-10-17 10:50:43.565 00:05:02.621 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 10:50:43.567 00:05:02.616 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 10:54:57.579 00:00:10.365 TCP 23.104.0.1:59990 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:55:15.282 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43688 10 6452 1 2025-10-17 10:55:57.987 00:00:10.733 TCP 23.104.0.1:44958 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:56:15.494 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50282 10 6452 1 2025-10-17 10:56:58.757 00:00:10.333 TCP 23.104.0.1:45182 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:57:15.709 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41258 10 6452 1 2025-10-17 10:57:59.128 00:00:10.321 TCP 23.104.0.1:52522 -> 1.101.0.1:3000 11 1507 1 2025-10-17 10:58:15.917 00:00:10.566 TCP 1.101.0.1:3000 -> 22.102.0.1:60430 10 6452 1 Summary: total flows: 161, total bytes: 500713, total packets: 1562, avg bps: 1081, avg pps: 0, avg bpp: 320 Time window: 2025-10-17 09:56:43 - 2025-10-17 10:58:26 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0047s User: 0.0009s Wall: 0.0023s flows/second: 68717.1 Runtime: 0.0024s