Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 19:58:45.911 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40998 10 6452 1 2025-10-20 19:59:20.995 00:00:10.364 TCP 23.104.0.1:58790 -> 1.101.0.1:3000 11 1507 1 2025-10-20 19:59:46.122 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51366 10 6452 1 2025-10-20 20:00:30.400 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:00:21.403 00:00:10.337 TCP 23.104.0.1:59188 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:00:30.514 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 19:55:47.885 00:05:57.299 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 19:56:45.181 00:05:02.709 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:00:46.333 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59880 10 6452 1 2025-10-20 20:01:21.781 00:00:10.324 TCP 23.104.0.1:49454 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:01:46.544 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:51956 10 6452 1 2025-10-20 20:02:22.142 00:00:10.325 TCP 23.104.0.1:53040 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:02:46.765 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42520 10 6452 1 2025-10-20 20:03:22.503 00:00:10.359 TCP 23.104.0.1:36964 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:03:46.981 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:52652 10 6452 1 2025-10-20 20:04:22.897 00:00:10.337 TCP 23.104.0.1:42694 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:04:47.202 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56980 10 6452 1 2025-10-20 20:05:30.672 00:00:00.028 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:05:30.745 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:05:23.272 00:00:10.325 TCP 23.104.0.1:52286 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:05:47.412 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:54478 10 6452 1 2025-10-20 20:06:23.635 00:00:10.366 TCP 23.104.0.1:60008 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:01:47.887 00:05:57.299 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 20:02:45.182 00:05:02.709 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:06:47.593 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39690 10 6452 1 2025-10-20 20:07:24.035 00:00:10.367 TCP 23.104.0.1:44404 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:07:47.806 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:41408 10 6452 1 2025-10-20 20:08:24.439 00:00:10.361 TCP 23.104.0.1:35518 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:08:48.015 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:55438 10 6452 1 2025-10-20 20:09:24.835 00:00:10.337 TCP 23.104.0.1:51210 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:09:48.239 00:00:10.356 TCP 1.101.0.1:3000 -> 22.102.0.1:48444 10 6452 1 2025-10-20 20:10:30.641 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:10:30.603 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:10:25.209 00:00:10.362 TCP 23.104.0.1:58702 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:10:48.633 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56460 10 6452 1 2025-10-20 20:11:25.606 00:00:10.361 TCP 23.104.0.1:60886 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:11:48.856 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36670 10 6452 1 2025-10-20 20:12:26.016 00:00:10.365 TCP 23.104.0.1:52872 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:07:47.889 00:05:57.305 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 20:08:45.187 00:05:02.705 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:12:49.091 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35438 10 6452 1 2025-10-20 20:13:26.419 00:00:10.372 TCP 23.104.0.1:55984 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:13:49.304 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50018 10 6452 1 2025-10-20 20:14:26.830 00:00:10.760 TCP 23.104.0.1:37046 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:14:49.519 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37400 10 6452 1 2025-10-20 20:15:30.725 00:00:00.014 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:15:30.797 00:00:00.029 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:15:27.628 00:00:10.364 TCP 23.104.0.1:32898 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:15:49.740 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35300 10 6452 1 2025-10-20 20:16:28.027 00:00:10.365 TCP 23.104.0.1:49584 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:16:49.956 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:41336 10 6452 1 2025-10-20 20:17:28.435 00:00:10.368 TCP 23.104.0.1:52046 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:17:50.182 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35890 10 6452 1 2025-10-20 20:18:28.837 00:00:10.377 TCP 23.104.0.1:33296 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:13:47.890 00:05:57.305 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 20:14:45.191 00:05:02.704 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:18:50.402 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56010 10 6452 1 2025-10-20 20:19:29.249 00:00:10.370 TCP 23.104.0.1:52062 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:19:50.615 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54286 10 6452 1 2025-10-20 20:20:30.800 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:20:30.682 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:20:29.654 00:00:10.374 TCP 23.104.0.1:35284 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:20:50.786 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:50130 10 6452 1 2025-10-20 20:21:30.094 00:00:10.370 TCP 23.104.0.1:49312 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:21:51.003 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:45660 10 6452 1 2025-10-20 20:22:30.506 00:00:10.527 TCP 23.104.0.1:33084 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:22:51.175 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:50326 10 6452 1 2025-10-20 20:23:31.091 00:00:10.364 TCP 23.104.0.1:57862 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:23:51.345 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40896 10 6452 1 2025-10-20 20:24:31.492 00:00:10.325 TCP 23.104.0.1:43212 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:19:47.891 00:05:57.304 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 20:20:45.192 00:05:02.704 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:24:51.564 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40212 10 6452 1 2025-10-20 20:25:30.493 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:25:30.528 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:25:31.858 00:00:12.656 TCP 23.104.0.1:56812 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:25:51.779 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:36352 10 6452 1 2025-10-20 20:26:34.595 00:00:10.359 TCP 23.104.0.1:57514 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:26:51.950 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:39978 12 6556 1 2025-10-20 20:27:34.993 00:00:10.433 TCP 23.104.0.1:33354 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:27:52.184 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:60500 10 6452 1 2025-10-20 20:28:35.452 00:00:10.381 TCP 23.104.0.1:33562 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:28:52.356 00:00:10.234 TCP 1.101.0.1:3000 -> 22.102.0.1:41986 10 6452 1 2025-10-20 20:29:35.872 00:00:10.369 TCP 23.104.0.1:46188 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:29:52.647 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57812 10 6452 1 2025-10-20 20:30:31.000 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:30:31.073 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:30:36.275 00:00:10.365 TCP 23.104.0.1:33034 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:25:47.895 00:05:57.304 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 20:26:45.193 00:05:02.705 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:30:52.859 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:48508 10 6452 1 2025-10-20 20:31:36.678 00:00:10.364 TCP 23.104.0.1:33224 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:31:53.041 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43034 10 6452 1 2025-10-20 20:32:37.101 00:00:10.362 TCP 23.104.0.1:47062 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:32:53.256 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38948 10 6452 1 2025-10-20 20:33:37.500 00:00:10.366 TCP 23.104.0.1:45898 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:33:53.472 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45688 10 6452 1 2025-10-20 20:34:37.900 00:00:10.336 TCP 23.104.0.1:50824 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:34:53.679 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59484 10 6452 1 2025-10-20 20:35:30.822 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:35:31.052 00:00:00.037 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:35:38.288 00:00:10.365 TCP 23.104.0.1:45918 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:35:53.892 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:48626 10 6452 1 2025-10-20 20:31:47.895 00:05:57.304 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 20:36:38.693 00:00:10.367 TCP 23.104.0.1:45282 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:32:45.196 00:05:02.708 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:36:54.115 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55106 10 6452 1 2025-10-20 20:37:39.109 00:00:10.362 TCP 23.104.0.1:60056 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:37:54.335 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36126 10 6452 1 2025-10-20 20:38:39.515 00:00:10.364 TCP 23.104.0.1:34262 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:38:54.546 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38318 10 6452 1 2025-10-20 20:39:39.922 00:00:10.336 TCP 23.104.0.1:52370 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:39:54.762 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33502 10 6452 1 2025-10-20 20:40:30.988 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:40:31.334 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:40:40.298 00:00:10.362 TCP 23.104.0.1:52254 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:40:54.971 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:41594 10 6452 1 2025-10-20 20:41:40.699 00:00:10.959 TCP 23.104.0.1:37602 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:41:55.198 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39220 10 6452 1 2025-10-20 20:37:47.901 00:05:57.300 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 20:38:45.198 00:05:02.707 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:42:41.700 00:00:10.363 TCP 23.104.0.1:57074 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:42:55.417 00:00:10.533 TCP 1.101.0.1:3000 -> 22.102.0.1:43302 10 6452 1 2025-10-20 20:43:42.106 00:00:10.362 TCP 23.104.0.1:56448 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:43:55.986 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:33266 10 6452 1 2025-10-20 20:44:42.510 00:00:10.635 TCP 23.104.0.1:51592 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:44:56.209 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51764 10 6452 1 2025-10-20 20:45:31.398 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:45:31.295 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:45:43.190 00:00:10.533 TCP 23.104.0.1:49526 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:45:56.384 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35006 10 6452 1 2025-10-20 20:46:43.771 00:00:10.372 TCP 23.104.0.1:48560 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:46:56.605 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:38992 10 6452 1 2025-10-20 20:47:44.177 00:00:11.790 TCP 23.104.0.1:43036 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:47:56.833 00:00:25.354 TCP 1.101.0.1:3000 -> 22.102.0.1:50370 10 6452 1 2025-10-20 20:43:47.904 00:05:57.301 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 20:44:45.199 00:05:02.707 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:48:46.019 00:00:10.366 TCP 23.104.0.1:39728 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:49:12.228 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53064 10 6452 1 2025-10-20 20:49:46.421 00:00:10.322 TCP 23.104.0.1:35238 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:50:12.436 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39434 10 6452 1 2025-10-20 20:50:31.309 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:50:31.492 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:50:46.790 00:00:10.362 TCP 23.104.0.1:48224 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:51:12.649 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54020 10 6452 1 2025-10-20 20:51:47.199 00:00:10.367 TCP 23.104.0.1:47506 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:52:12.867 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:46288 10 6452 1 2025-10-20 20:52:47.613 00:00:10.324 TCP 23.104.0.1:40414 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:53:13.099 00:00:10.845 TCP 1.101.0.1:3000 -> 22.102.0.1:44574 10 6452 1 2025-10-20 20:53:47.975 00:00:10.328 TCP 23.104.0.1:33202 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:54:13.978 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:60432 10 6452 1 2025-10-20 20:49:47.903 00:05:57.300 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-20 20:50:45.200 00:05:02.707 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-20 20:54:48.337 00:00:10.363 TCP 23.104.0.1:41972 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:55:14.208 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34880 10 6452 1 2025-10-20 20:55:31.408 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-20 20:55:31.628 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:55:48.740 00:00:10.328 TCP 23.104.0.1:54914 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:56:14.418 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49294 10 6452 1 2025-10-20 20:56:49.109 00:00:10.360 TCP 23.104.0.1:50618 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:57:14.632 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:42440 10 6452 1 2025-10-20 20:57:49.506 00:00:10.334 TCP 23.104.0.1:50056 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:58:14.838 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44366 10 6452 1 Summary: total flows: 163, total bytes: 496945, total packets: 1563, avg bps: 1058, avg pps: 0, avg bpp: 317 Time window: 2025-10-20 19:55:47 - 2025-10-20 20:58:25 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0010s User: 0.0041s Wall: 0.0026s flows/second: 62739.4 Runtime: 0.0026s