Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 09:58:46.432 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:46174 12 10369 1 2025-10-20 09:59:27.668 00:00:10.323 TCP 23.104.0.1:57464 -> 1.101.0.1:3000 11 1507 1 2025-10-20 09:59:46.680 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53886 10 6452 1 2025-10-20 10:00:18.505 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:00:18.359 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:00:28.034 00:00:10.333 TCP 23.104.0.1:32866 -> 1.101.0.1:3000 11 1507 1 2025-10-20 09:55:47.638 00:05:57.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 09:56:45.000 00:05:02.642 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:00:46.891 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49362 10 6452 1 2025-10-20 10:01:28.409 00:00:10.364 TCP 23.104.0.1:42490 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:01:47.109 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45746 10 6452 1 2025-10-20 10:02:28.809 00:00:10.368 TCP 23.104.0.1:60006 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:02:47.324 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:54486 10 6452 1 2025-10-20 10:03:29.211 00:00:10.441 TCP 23.104.0.1:40230 -> 1.101.0.1:3000 15 1926 1 2025-10-20 10:03:47.531 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:39912 12 10578 1 2025-10-20 10:04:29.691 00:00:10.366 TCP 23.104.0.1:42380 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:04:47.775 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41118 10 6661 1 2025-10-20 10:05:18.430 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:05:18.482 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:05:30.100 00:00:10.370 TCP 23.104.0.1:45412 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:05:47.986 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:48176 10 6661 1 2025-10-20 10:06:30.509 00:00:10.323 TCP 23.104.0.1:59954 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:01:47.640 00:05:57.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 10:02:45.000 00:05:02.642 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:06:48.179 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55614 10 6661 1 2025-10-20 10:07:30.863 00:00:10.330 TCP 23.104.0.1:56554 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:07:48.389 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40386 10 6661 1 2025-10-20 10:08:31.233 00:00:10.364 TCP 23.104.0.1:40306 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:08:48.597 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:60264 10 6661 1 2025-10-20 10:09:31.643 00:00:10.363 TCP 23.104.0.1:55376 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:09:48.766 00:00:10.328 TCP 1.101.0.1:3000 -> 22.102.0.1:51672 10 6661 1 2025-10-20 10:10:18.767 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:10:18.302 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:10:32.057 00:00:10.367 TCP 23.104.0.1:40906 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:10:49.134 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36080 10 6661 1 2025-10-20 10:11:32.469 00:00:10.359 TCP 23.104.0.1:35168 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:11:49.357 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44716 10 6661 1 2025-10-20 10:12:32.867 00:00:10.331 TCP 23.104.0.1:34532 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:07:47.640 00:05:57.387 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 10:08:45.001 00:05:02.678 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:12:49.566 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33048 10 6661 1 2025-10-20 10:13:33.233 00:00:10.324 TCP 23.104.0.1:35052 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:13:49.778 00:00:10.320 TCP 1.101.0.1:3000 -> 22.102.0.1:51576 10 6661 1 2025-10-20 10:14:33.595 00:00:10.324 TCP 23.104.0.1:52300 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:14:50.133 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58976 10 6661 1 2025-10-20 10:15:18.561 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:15:18.570 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:15:33.960 00:00:10.367 TCP 23.104.0.1:51362 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:15:50.345 00:00:10.352 TCP 1.101.0.1:3000 -> 22.102.0.1:32786 10 6661 1 2025-10-20 10:16:34.365 00:00:10.332 TCP 23.104.0.1:45154 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:16:50.739 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60378 10 6661 1 2025-10-20 10:17:34.726 00:00:10.369 TCP 23.104.0.1:48626 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:17:50.953 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:55810 10 6661 1 2025-10-20 10:13:47.678 00:05:57.356 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 10:18:35.131 00:00:10.370 TCP 23.104.0.1:48828 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:14:45.002 00:05:02.679 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:18:51.135 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39046 10 6661 1 2025-10-20 10:19:35.537 00:00:10.370 TCP 23.104.0.1:51250 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:19:51.347 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:55472 10 6661 1 2025-10-20 10:20:18.682 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:20:18.784 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:20:35.966 00:00:10.337 TCP 23.104.0.1:33798 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:20:51.556 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34448 10 6661 1 2025-10-20 10:21:36.360 00:00:10.325 TCP 23.104.0.1:43776 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:21:51.773 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:43568 10 6661 1 2025-10-20 10:22:36.727 00:00:10.326 TCP 23.104.0.1:39386 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:22:51.994 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52130 10 6661 1 2025-10-20 10:23:37.116 00:00:10.365 TCP 23.104.0.1:33074 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:23:52.214 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:34684 10 6661 1 2025-10-20 10:19:47.678 00:05:57.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 10:24:37.525 00:00:10.362 TCP 23.104.0.1:37504 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:20:45.031 00:05:02.651 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:24:52.383 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:47902 10 6661 1 2025-10-20 10:25:18.878 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:25:18.927 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:25:37.922 00:00:10.336 TCP 23.104.0.1:48846 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:25:52.623 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39826 10 6661 1 2025-10-20 10:26:38.299 00:00:10.362 TCP 23.104.0.1:43210 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:26:52.836 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:47530 10 6661 1 2025-10-20 10:27:38.701 00:00:10.367 TCP 23.104.0.1:53048 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:27:53.014 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39954 10 6661 1 2025-10-20 10:28:39.107 00:00:10.446 TCP 23.104.0.1:37656 -> 1.101.0.1:3000 15 1926 1 2025-10-20 10:28:53.235 00:00:10.240 TCP 1.101.0.1:3000 -> 22.102.0.1:58832 12 10584 1 2025-10-20 10:29:39.592 00:00:10.327 TCP 23.104.0.1:46860 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:29:53.541 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47644 10 6661 1 2025-10-20 10:30:18.902 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:30:19.001 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:25:47.679 00:05:57.366 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 10:30:39.963 00:00:10.365 TCP 23.104.0.1:54636 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:26:45.043 00:05:02.641 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:30:53.758 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38278 10 6661 1 2025-10-20 10:31:40.366 00:00:10.332 TCP 23.104.0.1:55040 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:31:53.974 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:43278 10 6661 1 2025-10-20 10:32:40.736 00:00:10.323 TCP 23.104.0.1:41014 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:32:54.179 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:41514 10 6661 1 2025-10-20 10:33:41.105 00:00:10.360 TCP 23.104.0.1:46512 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:33:54.393 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55972 10 6661 1 2025-10-20 10:34:41.507 00:00:11.335 TCP 23.104.0.1:37304 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:34:54.611 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:55944 10 6661 1 2025-10-20 10:35:18.939 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:35:19.105 00:00:00.045 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:35:42.880 00:00:10.381 TCP 23.104.0.1:37146 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:35:54.781 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:35206 10 6661 1 2025-10-20 10:31:47.681 00:05:57.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 10:32:45.044 00:05:02.642 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:36:43.298 00:00:10.362 TCP 23.104.0.1:47066 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:36:54.962 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:39990 10 6661 1 2025-10-20 10:37:43.707 00:00:10.400 TCP 23.104.0.1:33376 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:37:55.193 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:36634 10 6661 1 2025-10-20 10:38:44.148 00:00:10.358 TCP 23.104.0.1:32802 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:38:55.366 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49038 10 6661 1 2025-10-20 10:39:44.546 00:00:10.367 TCP 23.104.0.1:54418 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:39:55.576 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37870 10 6661 1 2025-10-20 10:40:19.166 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:40:19.161 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:40:44.945 00:00:10.365 TCP 23.104.0.1:45356 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:40:55.747 00:00:10.655 TCP 1.101.0.1:3000 -> 22.102.0.1:49238 10 6661 1 2025-10-20 10:41:45.359 00:00:10.330 TCP 23.104.0.1:33620 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:41:56.437 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:52000 10 6661 1 2025-10-20 10:37:47.684 00:05:57.366 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 10:38:45.046 00:05:02.641 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:42:45.734 00:00:10.373 TCP 23.104.0.1:37076 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:42:56.612 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42648 10 6661 1 2025-10-20 10:43:46.142 00:00:13.067 TCP 23.104.0.1:35514 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:43:56.827 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:49198 10 6661 1 2025-10-20 10:44:49.251 00:00:10.364 TCP 23.104.0.1:41696 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:44:56.997 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:44400 10 6661 1 2025-10-20 10:45:19.328 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:45:19.318 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:45:49.650 00:00:10.371 TCP 23.104.0.1:41362 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:45:57.219 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60700 10 6661 1 2025-10-20 10:46:50.062 00:00:10.321 TCP 23.104.0.1:47200 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:46:57.438 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46894 10 6661 1 2025-10-20 10:47:50.422 00:00:10.368 TCP 23.104.0.1:58038 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:47:57.682 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47062 10 6661 1 2025-10-20 10:43:47.684 00:05:57.369 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 10:44:45.047 00:05:02.640 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:48:50.824 00:00:10.679 TCP 23.104.0.1:35804 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:48:57.862 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59278 10 6661 1 2025-10-20 10:49:51.540 00:00:10.373 TCP 23.104.0.1:59582 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:49:58.084 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34810 10 6661 1 2025-10-20 10:50:19.330 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:50:19.261 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:50:51.944 00:00:10.368 TCP 23.104.0.1:44936 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:50:58.295 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33698 10 6661 1 2025-10-20 10:51:52.351 00:00:10.362 TCP 23.104.0.1:44200 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:51:58.513 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55212 10 6661 1 2025-10-20 10:52:52.751 00:00:10.392 TCP 23.104.0.1:35090 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:52:58.727 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:50766 10 6661 1 2025-10-20 10:53:53.180 00:00:10.326 TCP 23.104.0.1:45822 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:53:58.904 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40482 10 6661 1 2025-10-20 10:49:47.685 00:05:57.368 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 10:50:45.052 00:05:02.640 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 10:54:53.547 00:00:10.379 TCP 23.104.0.1:47180 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:54:59.117 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60896 10 6661 1 2025-10-20 10:55:19.388 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 10:55:19.455 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 10:55:53.968 00:00:10.370 TCP 23.104.0.1:43016 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:55:59.332 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54334 10 6661 1 2025-10-20 10:56:54.378 00:00:10.328 TCP 23.104.0.1:48600 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:56:59.548 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34652 10 6661 1 2025-10-20 10:57:54.751 00:00:10.384 TCP 23.104.0.1:37348 -> 1.101.0.1:3000 11 1507 1 2025-10-20 10:57:59.757 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:55522 10 6661 1 Summary: total flows: 163, total bytes: 520931, total packets: 1575, avg bps: 1113, avg pps: 0, avg bpp: 330 Time window: 2025-10-20 09:55:47 - 2025-10-20 10:58:09 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0032s User: 0.0011s Wall: 0.0018s flows/second: 92039.8 Runtime: 0.0018s