Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 16:59:00.101 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 16:59:00.231 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 16:58:52.516 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:32948 10 6452 1 2025-10-17 16:59:28.896 00:00:10.367 TCP 23.104.0.1:51278 -> 1.101.0.1:3000 11 1507 1 2025-10-17 16:59:52.698 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:35866 10 6452 1 2025-10-17 17:00:29.303 00:00:10.363 TCP 23.104.0.1:60374 -> 1.101.0.1:3000 11 1507 1 2025-10-17 16:56:43.688 00:05:02.636 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 16:56:43.691 00:05:02.630 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:00:52.876 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:53972 10 6452 1 2025-10-17 17:01:29.705 00:00:10.381 TCP 23.104.0.1:50926 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:01:53.104 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:56110 12 10375 1 2025-10-17 17:02:30.124 00:00:10.436 TCP 23.104.0.1:44964 -> 1.101.0.1:3000 15 1926 1 2025-10-17 17:02:53.364 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57030 10 6452 1 2025-10-17 17:03:30.600 00:00:10.371 TCP 23.104.0.1:38002 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:04:00.242 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:04:00.331 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:03:53.580 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:48796 11 6504 1 2025-10-17 17:04:31.010 00:00:10.364 TCP 23.104.0.1:42060 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:04:53.849 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59334 10 6452 1 2025-10-17 17:05:31.412 00:00:10.367 TCP 23.104.0.1:50706 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:05:54.084 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55866 10 6452 1 2025-10-17 17:06:31.821 00:00:10.374 TCP 23.104.0.1:48462 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:02:43.693 00:05:02.629 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:02:43.691 00:05:02.635 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 17:06:54.296 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:37436 10 6452 1 2025-10-17 17:07:32.224 00:00:10.326 TCP 23.104.0.1:35074 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:07:54.466 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35470 10 6452 1 2025-10-17 17:08:32.582 00:00:10.368 TCP 23.104.0.1:60486 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:09:00.335 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:09:00.508 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:08:54.681 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46568 10 6452 1 2025-10-17 17:09:32.991 00:00:10.365 TCP 23.104.0.1:56154 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:09:54.896 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50160 10 6452 1 2025-10-17 17:10:33.398 00:00:10.370 TCP 23.104.0.1:36260 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:10:55.111 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55934 10 6452 1 2025-10-17 17:11:33.802 00:00:10.372 TCP 23.104.0.1:51254 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:11:55.330 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37790 10 6452 1 2025-10-17 17:08:43.693 00:05:02.637 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:12:34.209 00:00:10.375 TCP 23.104.0.1:38220 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:08:43.691 00:05:02.642 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 17:12:55.506 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42462 10 6452 1 2025-10-17 17:13:34.623 00:00:10.374 TCP 23.104.0.1:47852 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:14:00.216 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:14:00.389 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:13:55.722 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51790 10 6452 1 2025-10-17 17:14:35.033 00:00:10.371 TCP 23.104.0.1:38908 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:14:55.939 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:36906 10 6452 1 2025-10-17 17:15:35.442 00:00:10.367 TCP 23.104.0.1:60564 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:15:56.169 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39208 10 6452 1 2025-10-17 17:16:35.848 00:00:10.380 TCP 23.104.0.1:32828 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:16:56.381 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:38472 10 6452 1 2025-10-17 17:17:36.269 00:00:10.366 TCP 23.104.0.1:34368 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:17:56.581 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34734 10 6452 1 2025-10-17 17:14:43.692 00:05:02.642 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 17:18:36.676 00:00:10.358 TCP 23.104.0.1:46676 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:14:43.696 00:05:02.636 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:19:00.491 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:19:00.580 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:18:56.796 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:51616 10 6452 1 2025-10-17 17:19:37.088 00:00:10.367 TCP 23.104.0.1:52756 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:19:57.040 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:35300 10 6452 1 2025-10-17 17:20:37.495 00:00:10.363 TCP 23.104.0.1:41614 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:20:57.250 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:34842 10 6452 1 2025-10-17 17:21:37.897 00:00:11.030 TCP 23.104.0.1:53676 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:21:57.423 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:35674 10 6452 1 2025-10-17 17:22:38.967 00:00:10.363 TCP 23.104.0.1:59354 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:22:57.602 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46918 10 6452 1 2025-10-17 17:23:39.368 00:00:10.366 TCP 23.104.0.1:42596 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:24:00.725 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:24:00.545 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:23:57.816 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50716 10 6452 1 2025-10-17 17:20:43.699 00:05:02.641 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 17:20:43.701 00:05:02.637 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:24:39.770 00:00:10.366 TCP 23.104.0.1:39292 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:24:58.038 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55386 10 6452 1 2025-10-17 17:25:40.172 00:00:10.364 TCP 23.104.0.1:47236 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:25:58.253 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56066 10 6452 1 2025-10-17 17:26:40.573 00:00:10.365 TCP 23.104.0.1:54388 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:26:58.473 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51580 10 6452 1 2025-10-17 17:27:40.975 00:00:10.369 TCP 23.104.0.1:43382 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:27:58.689 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46168 10 6452 1 2025-10-17 17:28:41.386 00:00:10.325 TCP 23.104.0.1:57752 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:29:01.111 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:29:01.159 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:28:58.895 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:39256 10 6452 1 2025-10-17 17:29:41.748 00:00:10.364 TCP 23.104.0.1:38228 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:29:59.122 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50670 10 6452 1 2025-10-17 17:26:43.699 00:05:02.642 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 17:26:43.701 00:05:02.637 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:30:42.152 00:00:10.364 TCP 23.104.0.1:42112 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:30:59.333 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35744 10 6452 1 2025-10-17 17:31:42.550 00:00:10.368 TCP 23.104.0.1:37514 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:31:59.550 00:00:10.233 TCP 1.101.0.1:3000 -> 22.102.0.1:42086 14 14298 1 2025-10-17 17:32:42.948 00:00:10.491 TCP 23.104.0.1:40350 -> 1.101.0.1:3000 17 2241 1 2025-10-17 17:32:59.823 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:43396 10 6452 1 2025-10-17 17:33:43.478 00:00:10.367 TCP 23.104.0.1:53160 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:34:00.800 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:34:00.848 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:34:00.069 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53506 10 6452 1 2025-10-17 17:34:43.883 00:00:10.384 TCP 23.104.0.1:55626 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:35:00.295 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51848 10 6452 1 2025-10-17 17:35:44.311 00:00:10.364 TCP 23.104.0.1:38618 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:36:00.510 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:55254 10 6452 1 2025-10-17 17:32:43.700 00:05:02.641 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 17:32:43.703 00:05:02.636 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:36:44.715 00:00:10.429 TCP 23.104.0.1:52224 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:37:00.720 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48002 10 6452 1 2025-10-17 17:37:45.187 00:00:10.368 TCP 23.104.0.1:48804 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:38:00.941 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:52314 10 6452 1 2025-10-17 17:38:45.589 00:00:10.324 TCP 23.104.0.1:38640 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:39:00.924 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:39:00.943 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:39:01.181 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:32794 10 6452 1 2025-10-17 17:39:45.949 00:00:10.372 TCP 23.104.0.1:56402 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:40:01.391 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46168 10 6452 1 2025-10-17 17:40:46.357 00:00:10.341 TCP 23.104.0.1:53926 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:41:01.616 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46834 10 6452 1 2025-10-17 17:41:46.740 00:00:10.369 TCP 23.104.0.1:33482 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:42:01.830 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:47664 10 6452 1 2025-10-17 17:38:43.703 00:05:02.636 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:38:43.702 00:05:02.641 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 17:42:47.144 00:00:10.367 TCP 23.104.0.1:35254 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:43:02.003 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:37326 10 6452 1 2025-10-17 17:44:01.007 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:44:00.952 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:43:47.546 00:00:10.410 TCP 23.104.0.1:37988 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:44:02.225 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:41406 10 6452 1 2025-10-17 17:44:47.994 00:00:10.370 TCP 23.104.0.1:54814 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:45:02.403 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39804 10 6452 1 2025-10-17 17:45:48.401 00:00:10.370 TCP 23.104.0.1:35062 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:46:02.616 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:43138 10 6452 1 2025-10-17 17:46:48.819 00:00:10.353 TCP 23.104.0.1:40150 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:47:02.794 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58404 10 6452 1 2025-10-17 17:47:49.219 00:00:10.361 TCP 23.104.0.1:38506 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:48:03.015 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:50250 10 6452 1 2025-10-17 17:44:43.701 00:05:02.647 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 17:44:43.705 00:05:02.642 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:49:01.295 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:49:01.419 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:48:49.618 00:00:10.690 TCP 23.104.0.1:47556 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:49:03.192 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54706 10 6452 1 2025-10-17 17:49:50.357 00:00:10.365 TCP 23.104.0.1:43560 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:50:03.404 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:41912 10 6452 1 2025-10-17 17:50:50.772 00:00:10.370 TCP 23.104.0.1:38854 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:51:03.602 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35292 10 6452 1 2025-10-17 17:51:51.183 00:00:10.402 TCP 23.104.0.1:53044 -> 1.101.0.1:3000 15 1926 1 2025-10-17 17:52:03.811 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:35316 12 10375 1 2025-10-17 17:52:51.631 00:00:10.360 TCP 23.104.0.1:50886 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:53:04.071 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:57506 10 6452 1 2025-10-17 17:54:01.062 00:00:00.046 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 17:54:01.255 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 17:53:52.033 00:00:10.324 TCP 23.104.0.1:48522 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:54:04.241 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:33286 10 6452 1 2025-10-17 17:50:43.706 00:05:02.641 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 17:50:43.703 00:05:02.646 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 17:54:52.397 00:00:10.364 TCP 23.104.0.1:36328 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:55:04.456 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46294 10 6452 1 2025-10-17 17:55:52.799 00:00:10.384 TCP 23.104.0.1:36032 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:56:04.669 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56008 10 6452 1 2025-10-17 17:56:53.213 00:00:10.340 TCP 23.104.0.1:42892 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:57:04.884 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:40624 10 6452 1 2025-10-17 17:57:53.579 00:00:10.363 TCP 23.104.0.1:48954 -> 1.101.0.1:3000 11 1507 1 2025-10-17 17:58:05.080 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:35610 10 6452 1 Summary: total flows: 163, total bytes: 514157, total packets: 1584, avg bps: 1114, avg pps: 0, avg bpp: 324 Time window: 2025-10-17 16:56:43 - 2025-10-17 17:58:15 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0027s User: 0.0027s Wall: 0.0022s flows/second: 72607.4 Runtime: 0.0023s