Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 03:59:03.437 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:37886 10 6452 1 2025-10-24 03:59:29.695 00:00:10.363 TCP 23.104.0.1:54614 -> 1.101.0.1:3000 11 1507 1 2025-10-24 03:55:46.632 00:05:02.986 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:00:03.606 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54272 10 6452 1 2025-10-24 04:00:30.111 00:00:10.369 TCP 23.104.0.1:33528 -> 1.101.0.1:3000 11 1507 1 2025-10-24 03:56:46.630 00:05:02.990 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:01:03.821 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42820 10 6452 1 2025-10-24 04:01:30.515 00:00:10.326 TCP 23.104.0.1:58760 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:02:06.813 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:02:06.673 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:02:04.066 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60690 10 6452 1 2025-10-24 04:02:30.879 00:00:10.375 TCP 23.104.0.1:49396 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:03:04.282 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53662 10 6452 1 2025-10-24 04:03:31.296 00:00:10.325 TCP 23.104.0.1:54772 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:04:04.495 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:43228 10 6452 1 2025-10-24 04:04:31.658 00:00:10.325 TCP 23.104.0.1:34718 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:05:04.675 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:49372 12 10578 1 2025-10-24 04:05:32.025 00:00:10.453 TCP 23.104.0.1:59282 -> 1.101.0.1:3000 15 1926 1 2025-10-24 04:01:46.634 00:05:02.987 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:06:04.913 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57874 10 6661 1 2025-10-24 04:06:32.517 00:00:10.368 TCP 23.104.0.1:48318 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:02:46.632 00:05:02.992 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:07:06.760 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:07:06.863 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:07:05.127 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36626 10 6661 1 2025-10-24 04:07:32.927 00:00:10.397 TCP 23.104.0.1:57754 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:08:05.341 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49072 10 6661 1 2025-10-24 04:08:33.382 00:00:10.368 TCP 23.104.0.1:36440 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:09:05.566 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53988 10 6661 1 2025-10-24 04:09:33.779 00:00:10.372 TCP 23.104.0.1:57714 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:10:05.788 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:46364 12 10793 1 2025-10-24 04:10:34.188 00:00:10.451 TCP 23.104.0.1:43560 -> 1.101.0.1:3000 15 1926 1 2025-10-24 04:11:06.043 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53124 10 6870 1 2025-10-24 04:11:34.683 00:00:10.370 TCP 23.104.0.1:56900 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:07:46.637 00:05:02.986 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:12:07.519 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:12:07.668 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:12:06.270 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:51162 10 6870 1 2025-10-24 04:12:35.108 00:00:10.368 TCP 23.104.0.1:57788 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:08:46.634 00:05:02.991 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:13:06.507 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:50766 10 6870 1 2025-10-24 04:13:35.511 00:00:10.328 TCP 23.104.0.1:55660 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:14:06.678 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52408 10 6870 1 2025-10-24 04:14:35.877 00:00:10.371 TCP 23.104.0.1:48564 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:15:06.891 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50580 10 6870 1 2025-10-24 04:15:36.290 00:00:10.326 TCP 23.104.0.1:44306 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:16:07.108 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:46276 10 6870 1 2025-10-24 04:16:36.650 00:00:10.372 TCP 23.104.0.1:42706 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:17:06.950 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:17:07.013 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:17:07.326 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:54298 10 6870 1 2025-10-24 04:13:46.637 00:05:02.986 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:17:37.090 00:00:10.367 TCP 23.104.0.1:54796 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:18:07.556 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45122 10 6870 1 2025-10-24 04:18:37.490 00:00:10.338 TCP 23.104.0.1:40604 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:14:46.635 00:05:02.991 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:19:07.779 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:32882 10 6870 1 2025-10-24 04:19:37.857 00:00:10.363 TCP 23.104.0.1:38372 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:20:07.987 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55368 10 6870 1 2025-10-24 04:20:38.261 00:00:10.367 TCP 23.104.0.1:53480 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:21:08.207 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53042 10 6870 1 2025-10-24 04:21:38.667 00:00:10.324 TCP 23.104.0.1:43858 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:22:06.940 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:22:07.201 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:22:08.422 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:36516 10 6870 1 2025-10-24 04:22:39.030 00:00:10.364 TCP 23.104.0.1:55632 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:23:08.670 00:00:10.810 TCP 1.101.0.1:3000 -> 22.102.0.1:46606 10 6870 1 2025-10-24 04:23:39.432 00:00:10.366 TCP 23.104.0.1:47910 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:19:46.639 00:05:02.984 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:24:09.521 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:43744 10 6870 1 2025-10-24 04:24:39.834 00:00:10.347 TCP 23.104.0.1:40106 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:20:46.637 00:05:02.989 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:25:09.697 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:40072 10 6870 1 2025-10-24 04:25:40.219 00:00:10.368 TCP 23.104.0.1:56586 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:26:09.872 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:39870 10 6870 1 2025-10-24 04:26:40.625 00:00:10.363 TCP 23.104.0.1:59806 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:27:07.319 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:27:07.047 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:27:10.100 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42438 10 6870 1 2025-10-24 04:27:41.031 00:00:10.362 TCP 23.104.0.1:57246 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:28:10.317 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39516 10 6870 1 2025-10-24 04:28:41.428 00:00:10.324 TCP 23.104.0.1:59124 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:29:10.534 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55744 10 6870 1 2025-10-24 04:25:46.641 00:05:02.984 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:29:41.790 00:00:10.378 TCP 23.104.0.1:37742 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:30:10.752 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:38534 10 6870 1 2025-10-24 04:26:46.640 00:05:02.988 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:30:42.211 00:00:10.363 TCP 23.104.0.1:40376 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:31:10.978 00:00:10.240 TCP 1.101.0.1:3000 -> 22.102.0.1:34510 13 7026 1 2025-10-24 04:31:42.616 00:00:10.361 TCP 23.104.0.1:54510 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:32:07.174 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:32:07.147 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:32:11.272 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:34052 10 6870 1 2025-10-24 04:32:43.021 00:00:10.382 TCP 23.104.0.1:55692 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:33:11.509 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56164 10 6870 1 2025-10-24 04:33:43.457 00:00:10.367 TCP 23.104.0.1:41924 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:34:11.727 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:60806 10 6870 1 2025-10-24 04:34:43.864 00:00:10.367 TCP 23.104.0.1:50612 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:35:11.956 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:36042 10 6870 1 2025-10-24 04:31:46.645 00:05:02.982 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:35:44.270 00:00:10.369 TCP 23.104.0.1:53026 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:36:12.180 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51246 10 6870 1 2025-10-24 04:32:46.642 00:05:02.987 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:36:44.684 00:00:10.350 TCP 23.104.0.1:40692 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:37:07.409 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:37:07.374 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:37:12.397 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50900 10 6870 1 2025-10-24 04:37:45.103 00:00:10.370 TCP 23.104.0.1:33790 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:38:12.608 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56228 10 6870 1 2025-10-24 04:38:45.512 00:00:10.332 TCP 23.104.0.1:60610 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:39:12.815 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35886 10 6870 1 2025-10-24 04:39:45.880 00:00:10.368 TCP 23.104.0.1:49850 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:40:13.056 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40480 10 6870 1 2025-10-24 04:40:46.285 00:00:10.554 TCP 23.104.0.1:44764 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:41:13.271 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33812 10 6870 1 2025-10-24 04:37:46.645 00:05:02.986 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:41:46.879 00:00:10.376 TCP 23.104.0.1:48564 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:42:07.454 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:42:07.388 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:42:13.487 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39386 10 6870 1 2025-10-24 04:38:46.643 00:05:02.992 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:42:47.293 00:00:10.363 TCP 23.104.0.1:32962 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:43:13.708 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57072 10 6870 1 2025-10-24 04:43:47.693 00:00:10.370 TCP 23.104.0.1:51322 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:44:13.926 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37570 10 6870 1 2025-10-24 04:44:48.107 00:00:10.366 TCP 23.104.0.1:54230 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:45:14.141 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:49470 10 6870 1 2025-10-24 04:45:48.510 00:00:10.369 TCP 23.104.0.1:43806 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:46:14.357 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36712 10 6870 1 2025-10-24 04:46:48.918 00:00:10.371 TCP 23.104.0.1:50496 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:47:07.720 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:47:07.694 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:47:14.562 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:39738 10 6870 1 2025-10-24 04:43:46.646 00:05:02.987 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:47:49.327 00:00:10.365 TCP 23.104.0.1:52346 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:48:14.735 00:00:10.350 TCP 1.101.0.1:3000 -> 22.102.0.1:35340 10 6870 1 2025-10-24 04:44:46.644 00:05:02.991 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:48:49.730 00:00:10.375 TCP 23.104.0.1:60510 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:49:15.140 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:33670 10 6870 1 2025-10-24 04:49:50.137 00:00:10.368 TCP 23.104.0.1:43476 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:50:15.367 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:58676 10 6870 1 2025-10-24 04:50:50.546 00:00:10.379 TCP 23.104.0.1:43520 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:51:15.621 00:00:10.273 TCP 1.101.0.1:3000 -> 22.102.0.1:54172 10 6870 1 2025-10-24 04:51:50.961 00:00:10.367 TCP 23.104.0.1:44426 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:52:07.549 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:52:07.672 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:52:15.932 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:34254 10 6870 1 2025-10-24 04:52:51.371 00:00:10.361 TCP 23.104.0.1:43392 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:53:16.174 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39444 10 6870 1 2025-10-24 04:49:46.648 00:05:02.992 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 04:53:51.778 00:00:10.394 TCP 23.104.0.1:48362 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:54:16.403 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:57466 10 6870 1 2025-10-24 04:50:46.647 00:05:02.996 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 04:54:52.226 00:00:23.670 TCP 23.104.0.1:34054 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:55:16.630 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33892 10 6870 1 2025-10-24 04:56:05.953 00:00:10.364 TCP 23.104.0.1:36414 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:56:16.846 00:00:10.533 TCP 1.101.0.1:3000 -> 22.102.0.1:43080 10 6870 1 2025-10-24 04:57:07.832 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 04:57:07.756 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 04:57:06.360 00:00:10.361 TCP 23.104.0.1:43600 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:57:17.416 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39646 10 6870 1 2025-10-24 04:58:06.760 00:00:10.370 TCP 23.104.0.1:35746 -> 1.101.0.1:3000 11 1507 1 2025-10-24 04:58:17.627 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:49510 10 6870 1 Summary: total flows: 163, total bytes: 527202, total packets: 1576, avg bps: 1121, avg pps: 0, avg bpp: 334 Time window: 2025-10-24 03:55:46 - 2025-10-24 04:58:27 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0030s User: 0.0020s Wall: 0.0020s flows/second: 82909.5 Runtime: 0.0020s