Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 13:58:46.580 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:50586 12 10369 1 2025-10-20 13:59:11.254 00:00:10.370 TCP 23.104.0.1:45388 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:59:46.832 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42856 10 6452 1 2025-10-20 14:00:23.350 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:00:11.664 00:00:10.368 TCP 23.104.0.1:38594 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:00:23.302 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 13:55:47.738 00:05:57.357 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 13:56:45.091 00:05:02.652 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:00:47.078 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44026 10 6452 1 2025-10-20 14:01:12.100 00:00:16.753 TCP 23.104.0.1:50264 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:01:47.287 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44642 10 6452 1 2025-10-20 14:02:18.891 00:00:10.383 TCP 23.104.0.1:40368 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:02:47.505 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55666 10 6452 1 2025-10-20 14:03:19.311 00:00:10.365 TCP 23.104.0.1:37644 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:03:47.722 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51252 10 6452 1 2025-10-20 14:04:19.714 00:00:10.374 TCP 23.104.0.1:53712 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:04:47.935 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:48242 10 6452 1 2025-10-20 14:05:23.275 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:05:23.285 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:05:20.130 00:00:10.362 TCP 23.104.0.1:32850 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:05:48.181 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46508 10 6452 1 2025-10-20 14:06:20.535 00:00:10.324 TCP 23.104.0.1:57730 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:01:47.740 00:05:57.355 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 14:02:45.092 00:05:02.652 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:06:48.401 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45888 10 6452 1 2025-10-20 14:07:20.893 00:00:10.368 TCP 23.104.0.1:36626 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:07:48.630 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:33378 10 6452 1 2025-10-20 14:08:21.300 00:00:10.324 TCP 23.104.0.1:43208 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:08:48.806 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:59072 10 6452 1 2025-10-20 14:09:21.668 00:00:10.361 TCP 23.104.0.1:36044 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:09:48.978 00:00:10.492 TCP 1.101.0.1:3000 -> 22.102.0.1:38352 10 6452 1 2025-10-20 14:10:23.331 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:10:23.446 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:10:22.100 00:00:10.370 TCP 23.104.0.1:45104 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:10:49.506 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36132 10 6452 1 2025-10-20 14:11:22.507 00:00:14.527 TCP 23.104.0.1:35768 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:11:49.719 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:57010 10 6452 1 2025-10-20 14:12:27.111 00:00:10.358 TCP 23.104.0.1:34834 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:07:47.741 00:05:57.357 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 14:08:45.093 00:05:02.652 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:12:49.942 00:00:11.051 TCP 1.101.0.1:3000 -> 22.102.0.1:58624 10 6452 1 2025-10-20 14:13:27.510 00:00:10.360 TCP 23.104.0.1:47788 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:13:51.035 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:48354 10 6452 1 2025-10-20 14:14:27.912 00:00:10.410 TCP 23.104.0.1:35290 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:14:51.271 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:59256 10 6452 1 2025-10-20 14:15:23.339 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:15:23.408 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:15:28.348 00:00:10.326 TCP 23.104.0.1:47702 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:15:51.444 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59126 10 6452 1 2025-10-20 14:16:28.713 00:00:10.320 TCP 23.104.0.1:40968 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:16:51.655 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58872 10 6452 1 2025-10-20 14:17:29.099 00:00:10.530 TCP 23.104.0.1:43456 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:17:51.865 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:56326 10 6452 1 2025-10-20 14:18:29.671 00:00:10.364 TCP 23.104.0.1:57576 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:13:47.742 00:05:57.358 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 14:14:45.097 00:05:02.648 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:18:52.040 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47040 10 6452 1 2025-10-20 14:19:30.105 00:00:10.328 TCP 23.104.0.1:46552 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:19:52.277 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44940 10 6452 1 2025-10-20 14:20:23.699 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:20:23.488 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:20:30.471 00:00:10.364 TCP 23.104.0.1:51642 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:20:52.491 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34662 10 6452 1 2025-10-20 14:21:30.867 00:00:10.327 TCP 23.104.0.1:52944 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:21:52.708 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34518 10 6452 1 2025-10-20 14:22:31.233 00:00:10.359 TCP 23.104.0.1:51410 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:22:52.920 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40676 10 6452 1 2025-10-20 14:23:31.631 00:00:10.361 TCP 23.104.0.1:47428 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:23:53.128 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:44368 10 6452 1 2025-10-20 14:19:47.743 00:05:57.359 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 14:24:32.031 00:00:10.370 TCP 23.104.0.1:42710 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:20:45.098 00:05:02.649 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:24:53.300 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59470 10 6452 1 2025-10-20 14:25:23.704 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:25:23.691 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:25:32.439 00:00:10.364 TCP 23.104.0.1:59080 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:25:53.512 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:46648 10 6452 1 2025-10-20 14:26:32.841 00:00:10.349 TCP 23.104.0.1:36798 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:26:53.738 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53232 10 6452 1 2025-10-20 14:27:33.238 00:00:10.362 TCP 23.104.0.1:41830 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:27:53.956 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:36022 10 6452 1 2025-10-20 14:28:33.642 00:00:10.376 TCP 23.104.0.1:34760 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:28:54.181 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:37002 10 6452 1 2025-10-20 14:29:34.064 00:00:10.366 TCP 23.104.0.1:45474 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:29:54.356 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46256 10 6452 1 2025-10-20 14:30:23.949 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:30:23.941 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:30:34.470 00:00:10.777 TCP 23.104.0.1:45062 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:25:47.745 00:05:57.360 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 14:26:45.100 00:05:02.650 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:30:54.526 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43144 10 6452 1 2025-10-20 14:31:35.289 00:00:10.363 TCP 23.104.0.1:52834 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:31:54.737 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47178 10 6452 1 2025-10-20 14:32:35.691 00:00:10.363 TCP 23.104.0.1:57516 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:32:54.946 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:55844 10 6452 1 2025-10-20 14:33:36.098 00:00:10.329 TCP 23.104.0.1:38224 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:33:55.174 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:33484 10 6452 1 2025-10-20 14:34:36.475 00:00:10.367 TCP 23.104.0.1:35484 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:34:55.346 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:52020 10 6452 1 2025-10-20 14:35:23.630 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:35:23.735 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:35:36.885 00:00:10.381 TCP 23.104.0.1:36368 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:35:55.560 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:53124 10 6452 1 2025-10-20 14:31:47.746 00:05:57.359 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 14:36:37.307 00:00:10.383 TCP 23.104.0.1:56614 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:32:45.103 00:05:02.650 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:36:55.733 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41116 10 6452 1 2025-10-20 14:37:37.735 00:00:10.369 TCP 23.104.0.1:47152 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:37:55.945 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:38482 10 6452 1 2025-10-20 14:38:38.142 00:00:10.366 TCP 23.104.0.1:34782 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:38:56.127 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:42952 10 6452 1 2025-10-20 14:39:38.548 00:00:21.249 TCP 23.104.0.1:51624 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:39:56.302 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53022 10 6452 1 2025-10-20 14:40:24.182 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:40:24.104 00:00:00.047 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:40:49.848 00:00:10.377 TCP 23.104.0.1:48120 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:40:56.520 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35106 10 6452 1 2025-10-20 14:41:50.262 00:00:10.361 TCP 23.104.0.1:41608 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:41:56.735 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:60832 10 6452 1 2025-10-20 14:37:47.750 00:05:57.357 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 14:38:45.104 00:05:02.652 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:42:50.661 00:00:10.365 TCP 23.104.0.1:47840 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:42:56.906 00:00:10.158 TCP 1.101.0.1:3000 -> 22.102.0.1:46372 10 6452 1 2025-10-20 14:43:51.091 00:00:10.362 TCP 23.104.0.1:43598 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:43:57.114 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54430 10 6452 1 2025-10-20 14:44:51.494 00:00:10.365 TCP 23.104.0.1:43166 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:44:57.324 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:53648 10 6452 1 2025-10-20 14:45:24.046 00:00:00.039 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:45:24.207 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:45:51.902 00:00:10.323 TCP 23.104.0.1:56010 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:45:57.505 00:00:10.336 TCP 1.101.0.1:3000 -> 22.102.0.1:46548 10 6452 1 2025-10-20 14:46:52.266 00:00:10.364 TCP 23.104.0.1:50994 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:46:57.880 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:58616 10 6452 1 2025-10-20 14:47:52.667 00:00:10.364 TCP 23.104.0.1:60876 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:47:58.108 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45828 10 6452 1 2025-10-20 14:43:47.752 00:05:57.355 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 14:44:45.104 00:05:02.652 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:48:53.096 00:00:10.324 TCP 23.104.0.1:56620 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:48:58.322 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54424 10 6452 1 2025-10-20 14:49:53.456 00:00:10.446 TCP 23.104.0.1:58096 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:49:58.541 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53480 10 6452 1 2025-10-20 14:50:24.062 00:00:00.042 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:50:24.240 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:50:53.942 00:00:10.368 TCP 23.104.0.1:41650 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:50:58.759 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57166 10 6452 1 2025-10-20 14:51:54.353 00:00:10.359 TCP 23.104.0.1:47602 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:51:58.969 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:48076 10 6452 1 2025-10-20 14:52:54.754 00:00:10.392 TCP 23.104.0.1:50924 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:52:59.192 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:55576 10 6452 1 2025-10-20 14:53:55.181 00:00:10.368 TCP 23.104.0.1:44542 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:53:59.359 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:42626 10 6452 1 2025-10-20 14:49:47.753 00:05:57.355 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 14:50:45.105 00:05:02.652 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 14:54:55.588 00:00:10.606 TCP 23.104.0.1:55172 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:54:59.538 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:36570 10 6452 1 2025-10-20 14:55:24.379 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 14:55:24.382 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 14:55:56.228 00:00:10.364 TCP 23.104.0.1:59232 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:55:59.714 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38188 10 6452 1 2025-10-20 14:56:56.632 00:00:10.322 TCP 23.104.0.1:58606 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:56:59.923 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36950 10 6452 1 2025-10-20 14:57:56.994 00:00:10.361 TCP 23.104.0.1:58914 -> 1.101.0.1:3000 11 1507 1 2025-10-20 14:58:00.130 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39176 10 6452 1 Summary: total flows: 163, total bytes: 500758, total packets: 1563, avg bps: 1070, avg pps: 0, avg bpp: 320 Time window: 2025-10-20 13:55:47 - 2025-10-20 14:58:10 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0049s User: 0.0010s Wall: 0.0021s flows/second: 79092.0 Runtime: 0.0021s