Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 23:59:14.989 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:50906 10 6452 1 2025-10-18 23:59:37.377 00:00:00.036 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 23:59:37.340 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 23:59:37.017 00:00:10.360 TCP 23.104.0.1:41204 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:00:15.178 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44306 10 6452 1 2025-10-18 23:56:44.376 00:05:02.576 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 23:56:44.376 00:05:02.572 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:00:37.412 00:00:18.363 TCP 23.104.0.1:57864 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:01:15.392 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:49612 10 6452 1 2025-10-19 00:01:45.823 00:00:10.389 TCP 23.104.0.1:40418 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:02:15.563 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41770 10 6452 1 2025-10-19 00:02:46.250 00:00:10.366 TCP 23.104.0.1:59898 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:03:15.779 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:46648 10 6452 1 2025-10-19 00:03:46.654 00:00:10.367 TCP 23.104.0.1:43562 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:04:15.990 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:56248 10 6452 1 2025-10-19 00:04:37.604 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:04:37.414 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:04:47.078 00:00:10.379 TCP 23.104.0.1:43632 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:05:16.215 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46534 10 6452 1 2025-10-19 00:05:47.496 00:00:10.363 TCP 23.104.0.1:49098 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:06:16.426 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:51758 10 6452 1 2025-10-19 00:02:44.378 00:05:02.572 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-19 00:02:44.381 00:05:02.567 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:06:47.901 00:00:10.372 TCP 23.104.0.1:47020 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:07:16.599 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39110 10 6452 1 2025-10-19 00:07:48.313 00:00:10.332 TCP 23.104.0.1:59682 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:08:16.814 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35056 10 6452 1 2025-10-19 00:08:48.681 00:00:10.324 TCP 23.104.0.1:38942 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:09:17.036 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46228 10 6452 1 2025-10-19 00:09:37.643 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:09:37.603 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:09:49.051 00:00:10.366 TCP 23.104.0.1:55246 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:10:17.247 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40002 10 6452 1 2025-10-19 00:10:49.455 00:00:10.323 TCP 23.104.0.1:53806 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:11:17.460 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:40160 10 6452 1 2025-10-19 00:11:49.817 00:00:10.330 TCP 23.104.0.1:52742 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:12:17.636 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60516 10 6452 1 2025-10-19 00:08:44.383 00:05:02.567 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:08:44.380 00:05:02.573 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-19 00:12:50.184 00:00:10.363 TCP 23.104.0.1:48530 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:13:17.854 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34850 10 6452 1 2025-10-19 00:13:50.586 00:00:10.367 TCP 23.104.0.1:35782 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:14:18.080 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50066 10 6452 1 2025-10-19 00:14:38.014 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:14:38.087 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:14:50.992 00:00:10.323 TCP 23.104.0.1:42858 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:15:18.300 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52708 10 6452 1 2025-10-19 00:15:51.366 00:00:10.363 TCP 23.104.0.1:54188 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:16:18.518 00:00:10.583 TCP 1.101.0.1:3000 -> 22.102.0.1:42724 10 6452 1 2025-10-19 00:16:51.777 00:00:10.372 TCP 23.104.0.1:49420 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:17:19.128 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54188 10 6452 1 2025-10-19 00:17:52.183 00:00:10.327 TCP 23.104.0.1:59036 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:18:19.365 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:44166 10 6452 1 2025-10-19 00:14:44.382 00:05:02.568 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:14:44.381 00:05:02.572 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-19 00:18:52.549 00:00:10.323 TCP 23.104.0.1:57224 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:19:19.541 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35500 10 6452 1 2025-10-19 00:19:37.939 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:19:38.066 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:19:52.916 00:00:10.370 TCP 23.104.0.1:48856 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:20:19.767 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59612 10 6452 1 2025-10-19 00:20:53.328 00:00:10.360 TCP 23.104.0.1:37776 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:21:19.980 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:51128 10 6452 1 2025-10-19 00:21:53.726 00:00:10.367 TCP 23.104.0.1:35132 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:22:20.211 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54624 10 6452 1 2025-10-19 00:22:54.134 00:00:10.359 TCP 23.104.0.1:55222 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:23:20.432 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:58362 10 6452 1 2025-10-19 00:23:54.542 00:00:10.365 TCP 23.104.0.1:38686 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:24:20.663 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:46296 10 6452 1 2025-10-19 00:24:37.679 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:24:37.727 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:20:44.381 00:05:02.574 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-19 00:20:44.384 00:05:02.569 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:24:54.960 00:00:10.936 TCP 23.104.0.1:34820 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:25:20.841 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58306 10 6452 1 2025-10-19 00:25:55.930 00:00:10.379 TCP 23.104.0.1:45778 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:26:21.077 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48194 10 6452 1 2025-10-19 00:26:56.351 00:00:10.362 TCP 23.104.0.1:49298 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:27:21.293 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47530 10 6452 1 2025-10-19 00:27:56.755 00:00:10.382 TCP 23.104.0.1:32822 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:28:21.509 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48616 10 6452 1 2025-10-19 00:28:57.172 00:00:10.370 TCP 23.104.0.1:49160 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:29:21.730 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:44680 10 6452 1 2025-10-19 00:29:38.199 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:29:38.293 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:29:57.585 00:00:10.367 TCP 23.104.0.1:33670 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:30:21.948 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:47240 10 6452 1 2025-10-19 00:26:44.386 00:05:02.569 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:26:44.383 00:05:02.574 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-19 00:30:57.989 00:00:10.364 TCP 23.104.0.1:49066 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:31:22.175 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:41340 10 6452 1 2025-10-19 00:31:58.402 00:00:10.339 TCP 23.104.0.1:34306 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:32:22.392 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46384 10 6452 1 2025-10-19 00:32:58.765 00:00:10.370 TCP 23.104.0.1:60010 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:33:22.612 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:42234 10 6452 1 2025-10-19 00:33:59.171 00:00:10.368 TCP 23.104.0.1:52078 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:34:38.107 00:00:00.028 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:34:22.789 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36972 10 6452 1 2025-10-19 00:34:38.250 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:34:59.574 00:00:10.361 TCP 23.104.0.1:38516 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:35:23.007 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42030 10 6452 1 2025-10-19 00:35:59.975 00:00:10.390 TCP 23.104.0.1:37032 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:36:23.226 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39256 10 6452 1 2025-10-19 00:32:44.384 00:05:02.574 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-19 00:32:44.387 00:05:02.568 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:37:00.401 00:00:10.369 TCP 23.104.0.1:57716 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:37:23.437 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56248 10 6452 1 2025-10-19 00:38:00.807 00:00:10.369 TCP 23.104.0.1:58654 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:38:23.651 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45396 10 6452 1 2025-10-19 00:39:01.216 00:00:10.368 TCP 23.104.0.1:43300 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:39:23.874 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:54246 10 6452 1 2025-10-19 00:39:38.168 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:39:38.256 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:40:01.621 00:00:10.324 TCP 23.104.0.1:39936 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:40:24.072 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58038 10 6452 1 2025-10-19 00:41:01.984 00:00:10.326 TCP 23.104.0.1:50788 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:41:24.291 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:48788 10 6452 1 2025-10-19 00:42:02.353 00:00:10.374 TCP 23.104.0.1:46766 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:42:24.535 00:00:10.227 TCP 1.101.0.1:3000 -> 22.102.0.1:58490 10 6452 1 2025-10-19 00:38:44.390 00:05:02.567 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:38:44.389 00:05:02.572 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-19 00:43:02.762 00:00:10.384 TCP 23.104.0.1:53030 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:43:24.806 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:59258 10 6452 1 2025-10-19 00:44:03.185 00:00:10.318 TCP 23.104.0.1:59228 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:44:25.038 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59558 10 6452 1 2025-10-19 00:44:38.221 00:00:00.010 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:44:38.453 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:45:03.540 00:00:10.361 TCP 23.104.0.1:43886 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:45:25.253 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57596 12 6556 1 2025-10-19 00:46:03.940 00:00:10.331 TCP 23.104.0.1:57278 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:46:25.472 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35350 10 6452 1 2025-10-19 00:47:04.311 00:00:10.327 TCP 23.104.0.1:53740 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:47:25.691 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55868 10 6452 1 2025-10-19 00:48:04.675 00:00:10.360 TCP 23.104.0.1:40862 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:48:25.903 00:00:10.820 TCP 1.101.0.1:3000 -> 22.102.0.1:41728 10 6452 1 2025-10-19 00:44:44.389 00:05:02.574 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-19 00:44:44.393 00:05:02.569 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:49:05.100 00:00:11.045 TCP 23.104.0.1:35470 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:49:26.762 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:37398 10 6452 1 2025-10-19 00:49:38.445 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:49:38.502 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:50:06.183 00:00:10.367 TCP 23.104.0.1:45512 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:50:26.945 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:36382 10 6452 1 2025-10-19 00:51:06.582 00:00:10.369 TCP 23.104.0.1:43114 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:51:27.176 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35548 10 6452 1 2025-10-19 00:52:06.986 00:00:10.370 TCP 23.104.0.1:43242 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:52:27.399 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:42292 10 6452 1 2025-10-19 00:53:07.389 00:00:10.366 TCP 23.104.0.1:50752 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:53:27.579 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45864 10 6452 1 2025-10-19 00:54:07.791 00:00:10.321 TCP 23.104.0.1:38456 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:54:38.632 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-19 00:54:27.796 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45662 10 6452 1 2025-10-19 00:54:38.576 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-19 00:50:44.397 00:05:02.568 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-19 00:50:44.396 00:05:02.573 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-19 00:55:08.153 00:00:10.325 TCP 23.104.0.1:55328 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:55:28.014 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37110 10 6452 1 2025-10-19 00:56:08.518 00:00:10.324 TCP 23.104.0.1:39616 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:56:28.235 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45274 10 6452 1 2025-10-19 00:57:08.882 00:00:10.378 TCP 23.104.0.1:45454 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:57:28.449 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:38058 10 6452 1 2025-10-19 00:58:09.294 00:00:10.365 TCP 23.104.0.1:57176 -> 1.101.0.1:3000 11 1507 1 2025-10-19 00:58:28.675 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:47858 10 6452 1 Summary: total flows: 163, total bytes: 496945, total packets: 1563, avg bps: 1070, avg pps: 0, avg bpp: 317 Time window: 2025-10-18 23:56:44 - 2025-10-19 00:58:38 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0052s User: 0.0009s Wall: 0.0022s flows/second: 74669.2 Runtime: 0.0022s