Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 07:59:17.639 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52890 10 6452 1 2025-10-20 07:59:24.180 00:00:10.368 TCP 23.104.0.1:57980 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:00:15.973 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:00:16.047 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:00:17.847 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:55224 10 6452 1 2025-10-20 08:00:24.586 00:00:10.320 TCP 23.104.0.1:46484 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:56:44.966 00:05:02.639 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 07:56:44.963 00:05:02.644 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:01:18.086 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57026 10 6452 1 2025-10-20 08:01:24.944 00:00:10.342 TCP 23.104.0.1:37612 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:02:18.301 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33656 10 6452 1 2025-10-20 08:02:25.325 00:00:10.362 TCP 23.104.0.1:57750 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:03:18.512 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51164 10 6452 1 2025-10-20 08:03:25.725 00:00:10.378 TCP 23.104.0.1:38940 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:04:18.721 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40782 10 6452 1 2025-10-20 08:04:26.142 00:00:10.364 TCP 23.104.0.1:51468 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:05:15.936 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:05:16.011 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:05:18.935 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:49524 10 6452 1 2025-10-20 08:05:26.542 00:00:10.366 TCP 23.104.0.1:55840 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:06:19.171 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36450 10 6452 1 2025-10-20 08:06:26.947 00:00:10.371 TCP 23.104.0.1:38146 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:02:44.969 00:05:02.637 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 08:02:44.967 00:05:02.642 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:07:19.387 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43712 10 6452 1 2025-10-20 08:07:27.353 00:00:10.364 TCP 23.104.0.1:50442 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:08:19.600 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46282 10 6452 1 2025-10-20 08:08:27.756 00:00:10.326 TCP 23.104.0.1:48096 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:09:19.813 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:36184 10 6452 1 2025-10-20 08:09:28.124 00:00:10.362 TCP 23.104.0.1:43856 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:10:15.899 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:10:16.262 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:10:19.979 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:48142 10 6452 1 2025-10-20 08:10:28.531 00:00:10.378 TCP 23.104.0.1:52012 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:11:20.211 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46426 10 6452 1 2025-10-20 08:11:28.940 00:00:10.371 TCP 23.104.0.1:60846 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:12:20.425 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42718 10 6452 1 2025-10-20 08:12:29.350 00:00:10.368 TCP 23.104.0.1:40930 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:08:44.969 00:05:02.641 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:08:44.972 00:05:02.636 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 08:13:20.645 00:00:13.247 TCP 1.101.0.1:3000 -> 22.102.0.1:50866 11 6504 1 2025-10-20 08:13:29.756 00:00:10.374 TCP 23.104.0.1:48174 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:14:23.935 00:00:10.158 TCP 1.101.0.1:3000 -> 22.102.0.1:55528 10 6452 1 2025-10-20 08:14:30.165 00:00:10.365 TCP 23.104.0.1:47464 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:15:16.283 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:15:16.124 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:15:24.132 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37658 10 6452 1 2025-10-20 08:15:30.575 00:00:10.362 TCP 23.104.0.1:41638 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:16:24.347 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:56300 10 6452 1 2025-10-20 08:16:30.976 00:00:10.368 TCP 23.104.0.1:60678 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:17:24.566 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:38436 10 6452 1 2025-10-20 08:17:31.383 00:00:10.367 TCP 23.104.0.1:47918 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:18:24.741 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46206 10 6452 1 2025-10-20 08:18:31.781 00:00:10.328 TCP 23.104.0.1:58160 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:14:44.970 00:05:02.643 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:14:44.972 00:05:02.637 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 08:19:24.967 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:49810 10 6452 1 2025-10-20 08:19:32.144 00:00:10.365 TCP 23.104.0.1:49626 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:20:16.308 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:20:16.306 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:20:25.159 00:00:10.232 TCP 1.101.0.1:3000 -> 22.102.0.1:58404 10 6452 1 2025-10-20 08:20:32.551 00:00:19.512 TCP 23.104.0.1:37068 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:21:25.441 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40448 10 6452 1 2025-10-20 08:21:42.121 00:00:10.363 TCP 23.104.0.1:41554 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:22:25.651 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:46956 10 6452 1 2025-10-20 08:22:42.524 00:00:10.323 TCP 23.104.0.1:36624 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:23:25.873 00:00:10.220 TCP 1.101.0.1:3000 -> 22.102.0.1:33834 12 10375 1 2025-10-20 08:23:42.889 00:00:16.532 TCP 23.104.0.1:43678 -> 1.101.0.1:3000 15 1926 1 2025-10-20 08:24:26.133 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46648 10 6452 1 2025-10-20 08:20:44.970 00:05:02.643 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:20:44.973 00:05:02.638 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 08:24:49.461 00:00:10.362 TCP 23.104.0.1:48394 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:25:16.264 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:25:16.490 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:25:26.355 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44864 10 6452 1 2025-10-20 08:25:49.863 00:00:10.372 TCP 23.104.0.1:43650 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:26:26.579 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40228 10 6452 1 2025-10-20 08:26:50.274 00:00:10.367 TCP 23.104.0.1:48388 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:27:26.797 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58336 10 6452 1 2025-10-20 08:27:50.681 00:00:10.364 TCP 23.104.0.1:58152 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:28:27.024 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:49534 10 6452 1 2025-10-20 08:28:51.096 00:00:10.363 TCP 23.104.0.1:48478 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:29:27.192 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42238 10 6452 1 2025-10-20 08:29:51.502 00:00:10.325 TCP 23.104.0.1:48936 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:30:16.536 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:30:16.645 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:30:27.402 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36582 10 6452 1 2025-10-20 08:26:44.973 00:05:02.644 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:26:44.976 00:05:02.639 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 08:30:51.870 00:00:10.364 TCP 23.104.0.1:39056 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:31:27.613 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43482 10 6452 1 2025-10-20 08:31:52.274 00:00:10.364 TCP 23.104.0.1:48982 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:32:27.825 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36756 10 6452 1 2025-10-20 08:32:52.677 00:00:10.365 TCP 23.104.0.1:58406 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:33:28.054 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:51896 10 6452 1 2025-10-20 08:33:53.103 00:00:10.322 TCP 23.104.0.1:59100 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:34:28.227 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43094 10 6452 1 2025-10-20 08:34:53.460 00:00:10.366 TCP 23.104.0.1:55312 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:35:17.215 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:35:17.250 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:35:28.442 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48206 10 6452 1 2025-10-20 08:35:53.863 00:00:10.373 TCP 23.104.0.1:41336 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:36:28.613 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44612 10 6452 1 2025-10-20 08:32:44.975 00:05:02.646 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:32:44.978 00:05:02.640 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 08:36:54.273 00:00:10.370 TCP 23.104.0.1:51706 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:37:28.825 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33630 10 6452 1 2025-10-20 08:37:54.682 00:00:10.370 TCP 23.104.0.1:58308 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:38:29.000 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:43298 10 6452 1 2025-10-20 08:38:55.107 00:00:10.367 TCP 23.104.0.1:41402 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:39:29.230 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58104 10 6452 1 2025-10-20 08:39:55.509 00:00:10.362 TCP 23.104.0.1:38552 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:40:16.888 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:40:16.748 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:40:29.445 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52652 10 6452 1 2025-10-20 08:40:55.914 00:00:10.367 TCP 23.104.0.1:55940 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:41:29.657 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48924 10 6452 1 2025-10-20 08:41:56.324 00:00:10.362 TCP 23.104.0.1:57502 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:42:29.868 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47028 10 6452 1 2025-10-20 08:38:44.981 00:05:02.641 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 08:38:44.978 00:05:02.646 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:42:56.726 00:00:10.377 TCP 23.104.0.1:39320 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:43:30.088 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:55146 10 6452 1 2025-10-20 08:43:57.140 00:00:10.324 TCP 23.104.0.1:38254 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:44:30.295 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41420 10 6452 1 2025-10-20 08:44:57.500 00:00:10.328 TCP 23.104.0.1:54464 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:45:16.644 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:45:16.584 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:45:30.511 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56836 10 6452 1 2025-10-20 08:45:57.865 00:00:10.370 TCP 23.104.0.1:45590 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:46:30.721 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50128 10 6452 1 2025-10-20 08:46:58.273 00:00:10.367 TCP 23.104.0.1:49154 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:47:30.930 00:00:10.162 TCP 1.101.0.1:3000 -> 22.102.0.1:55778 10 6452 1 2025-10-20 08:47:58.682 00:00:10.448 TCP 23.104.0.1:42858 -> 1.101.0.1:3000 15 1926 1 2025-10-20 08:48:31.140 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:59730 12 10375 1 2025-10-20 08:44:44.982 00:05:02.641 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 08:44:44.979 00:05:02.646 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:48:59.168 00:00:10.366 TCP 23.104.0.1:34464 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:49:31.378 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54934 10 6452 1 2025-10-20 08:49:59.576 00:00:10.331 TCP 23.104.0.1:44090 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:50:17.032 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:50:17.083 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:50:31.587 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56514 10 6452 1 2025-10-20 08:50:59.945 00:00:10.375 TCP 23.104.0.1:33136 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:51:31.798 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:43858 10 6452 1 2025-10-20 08:52:00.356 00:00:10.369 TCP 23.104.0.1:57826 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:52:31.976 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:33224 10 6452 1 2025-10-20 08:53:00.757 00:00:10.482 TCP 23.104.0.1:34228 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:53:32.173 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:40352 10 6452 1 2025-10-20 08:54:01.269 00:00:10.329 TCP 23.104.0.1:54386 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:54:32.383 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58946 10 6452 1 2025-10-20 08:50:44.984 00:05:02.640 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 08:50:44.981 00:05:02.645 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 08:55:01.629 00:00:10.366 TCP 23.104.0.1:40860 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:55:16.951 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 08:55:16.914 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 08:55:32.597 00:00:10.353 TCP 1.101.0.1:3000 -> 22.102.0.1:41694 10 6452 1 2025-10-20 08:56:02.029 00:00:10.368 TCP 23.104.0.1:36958 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:56:32.991 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36230 10 6452 1 2025-10-20 08:57:02.434 00:00:10.367 TCP 23.104.0.1:43288 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:57:33.211 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37152 10 6452 1 2025-10-20 08:58:02.842 00:00:10.351 TCP 23.104.0.1:36966 -> 1.101.0.1:3000 11 1507 1 2025-10-20 08:58:33.425 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:35572 10 6452 1 Summary: total flows: 163, total bytes: 505577, total packets: 1574, avg bps: 1087, avg pps: 0, avg bpp: 321 Time window: 2025-10-20 07:56:44 - 2025-10-20 08:58:43 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0029s User: 0.0022s Wall: 0.0021s flows/second: 76955.4 Runtime: 0.0021s