Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 05:59:18.883 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:59342 10 6452 1 2025-10-25 05:59:26.427 00:00:10.368 TCP 23.104.0.1:58432 -> 1.101.0.1:3000 11 1507 1 2025-10-25 05:55:47.123 00:05:03.071 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:00:19.113 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40988 10 6452 1 2025-10-25 06:00:26.833 00:00:10.389 TCP 23.104.0.1:56590 -> 1.101.0.1:3000 11 1507 1 2025-10-25 05:56:47.128 00:05:03.067 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:01:19.328 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53588 10 6452 1 2025-10-25 06:01:27.263 00:00:10.365 TCP 23.104.0.1:40678 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:02:19.543 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:52308 10 6452 1 2025-10-25 06:02:38.160 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:02:38.390 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:02:27.668 00:00:10.321 TCP 23.104.0.1:36308 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:03:19.786 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46908 10 6452 1 2025-10-25 06:03:28.025 00:00:10.369 TCP 23.104.0.1:47698 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:04:20.006 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36388 10 6452 1 2025-10-25 06:04:28.436 00:00:10.365 TCP 23.104.0.1:50954 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:05:20.221 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34168 10 6452 1 2025-10-25 06:05:28.848 00:00:10.380 TCP 23.104.0.1:46016 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:01:47.130 00:05:03.065 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:06:20.439 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41828 10 6452 1 2025-10-25 06:06:29.269 00:00:10.363 TCP 23.104.0.1:49960 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:02:47.129 00:05:03.067 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:07:20.650 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:37514 10 6452 1 2025-10-25 06:07:38.443 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:07:29.670 00:00:10.366 TCP 23.104.0.1:50014 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:07:38.411 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:08:20.822 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39640 10 6452 1 2025-10-25 06:08:30.112 00:00:10.358 TCP 23.104.0.1:45452 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:09:21.040 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53888 10 6452 1 2025-10-25 06:09:30.513 00:00:10.371 TCP 23.104.0.1:48942 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:10:21.253 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34574 10 6452 1 2025-10-25 06:10:30.925 00:00:10.383 TCP 23.104.0.1:50420 -> 1.101.0.1:3000 12 1559 1 2025-10-25 06:11:21.466 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45346 10 6452 1 2025-10-25 06:11:31.351 00:00:10.368 TCP 23.104.0.1:53270 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:07:47.132 00:05:03.062 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:12:21.678 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60706 10 6452 1 2025-10-25 06:12:38.511 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:12:38.392 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:12:31.758 00:00:10.373 TCP 23.104.0.1:52268 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:08:47.130 00:05:03.067 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:13:21.893 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:54602 10 6452 1 2025-10-25 06:13:32.172 00:00:10.327 TCP 23.104.0.1:55818 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:14:22.122 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:44584 10 6452 1 2025-10-25 06:14:32.541 00:00:10.371 TCP 23.104.0.1:57334 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:15:22.346 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:49076 10 6452 1 2025-10-25 06:15:32.957 00:00:10.366 TCP 23.104.0.1:43634 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:16:22.570 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:42404 10 6452 1 2025-10-25 06:16:33.357 00:00:10.318 TCP 23.104.0.1:47400 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:17:22.748 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52520 10 6452 1 2025-10-25 06:17:38.989 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:17:38.793 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:17:33.715 00:00:10.370 TCP 23.104.0.1:42214 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:13:47.133 00:05:03.063 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:18:22.960 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:47704 10 6452 1 2025-10-25 06:18:34.132 00:00:10.364 TCP 23.104.0.1:52478 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:14:47.131 00:05:03.068 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:19:23.143 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:57434 10 6452 1 2025-10-25 06:19:34.537 00:00:10.372 TCP 23.104.0.1:58106 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:20:23.371 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60258 10 6452 1 2025-10-25 06:20:34.946 00:00:19.257 TCP 23.104.0.1:49686 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:21:23.584 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48924 10 6452 1 2025-10-25 06:21:44.290 00:00:10.369 TCP 23.104.0.1:33522 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:22:23.803 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:38918 10 6452 1 2025-10-25 06:22:38.615 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:22:38.789 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:22:44.702 00:00:10.325 TCP 23.104.0.1:50918 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:23:23.983 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52870 10 6452 1 2025-10-25 06:19:47.135 00:05:03.067 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:23:45.085 00:00:10.366 TCP 23.104.0.1:59522 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:24:24.213 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44522 10 6452 1 2025-10-25 06:20:47.133 00:05:03.072 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:24:45.491 00:00:10.363 TCP 23.104.0.1:37676 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:25:24.427 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57468 10 6452 1 2025-10-25 06:25:45.891 00:00:10.367 TCP 23.104.0.1:54540 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:26:24.640 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42590 10 6452 1 2025-10-25 06:26:46.298 00:00:10.364 TCP 23.104.0.1:50820 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:27:24.849 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:44444 10 6452 1 2025-10-25 06:27:38.956 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:27:38.971 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:27:46.694 00:00:10.364 TCP 23.104.0.1:40700 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:28:25.078 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45368 10 6452 1 2025-10-25 06:28:47.109 00:00:10.388 TCP 23.104.0.1:60240 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:29:25.292 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48602 10 6452 1 2025-10-25 06:25:47.135 00:05:03.068 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:29:47.573 00:00:10.374 TCP 23.104.0.1:38476 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:30:25.502 00:00:10.389 TCP 1.101.0.1:3000 -> 22.102.0.1:56732 12 6556 1 2025-10-25 06:26:47.133 00:05:03.072 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:30:47.991 00:00:10.367 TCP 23.104.0.1:37598 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:31:25.931 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:42588 10 6452 1 2025-10-25 06:31:48.401 00:00:10.358 TCP 23.104.0.1:56456 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:32:26.174 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49074 10 6452 1 2025-10-25 06:32:38.993 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:32:38.999 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:32:48.801 00:00:10.362 TCP 23.104.0.1:52078 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:33:26.391 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52890 10 6452 1 2025-10-25 06:33:49.206 00:00:10.366 TCP 23.104.0.1:40228 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:34:26.613 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40940 10 6452 1 2025-10-25 06:34:49.609 00:00:10.367 TCP 23.104.0.1:57216 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:35:26.840 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:44558 10 6452 1 2025-10-25 06:31:47.139 00:05:03.065 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:35:50.015 00:00:10.318 TCP 23.104.0.1:40240 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:36:27.092 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54332 10 6452 1 2025-10-25 06:32:47.136 00:05:03.071 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:36:50.378 00:00:10.361 TCP 23.104.0.1:33862 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:37:39.261 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:37:38.809 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:37:27.308 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:51962 10 6452 1 2025-10-25 06:37:50.776 00:00:10.369 TCP 23.104.0.1:55138 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:38:27.531 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60946 10 6452 1 2025-10-25 06:38:51.185 00:00:10.367 TCP 23.104.0.1:56664 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:39:27.746 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41800 10 6452 1 2025-10-25 06:39:51.589 00:00:10.367 TCP 23.104.0.1:49060 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:40:27.959 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40020 10 6452 1 2025-10-25 06:40:51.996 00:00:10.364 TCP 23.104.0.1:47850 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:41:28.187 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:38170 10 6452 1 2025-10-25 06:37:47.143 00:05:03.062 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:41:52.396 00:00:10.362 TCP 23.104.0.1:45070 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:42:39.163 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:42:28.413 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50942 10 6452 1 2025-10-25 06:42:38.770 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:38:47.140 00:05:03.068 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:42:52.799 00:00:10.363 TCP 23.104.0.1:47140 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:43:28.622 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34176 10 6452 1 2025-10-25 06:43:53.202 00:00:10.365 TCP 23.104.0.1:42216 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:44:28.829 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44412 10 6452 1 2025-10-25 06:44:53.605 00:00:10.365 TCP 23.104.0.1:33400 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:45:29.067 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37386 10 6452 1 2025-10-25 06:45:54.009 00:00:10.360 TCP 23.104.0.1:43466 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:46:29.278 00:00:10.813 TCP 1.101.0.1:3000 -> 22.102.0.1:55124 10 6452 1 2025-10-25 06:46:54.411 00:00:10.358 TCP 23.104.0.1:48388 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:47:39.275 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:47:30.128 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37750 10 6452 1 2025-10-25 06:47:39.279 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:43:47.145 00:05:03.064 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:47:54.814 00:00:22.255 TCP 23.104.0.1:54118 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:48:30.348 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55320 10 6452 1 2025-10-25 06:44:47.142 00:05:03.070 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:49:07.115 00:00:10.370 TCP 23.104.0.1:53130 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:49:30.561 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56398 10 6452 1 2025-10-25 06:50:07.523 00:00:10.364 TCP 23.104.0.1:36950 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:50:30.785 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:52762 12 10375 1 2025-10-25 06:51:07.925 00:00:14.617 TCP 23.104.0.1:39276 -> 1.101.0.1:3000 15 1926 1 2025-10-25 06:51:31.027 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44344 10 6452 1 2025-10-25 06:52:12.584 00:00:10.365 TCP 23.104.0.1:46308 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:52:39.404 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:52:31.234 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56704 10 6452 1 2025-10-25 06:52:39.099 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:53:12.991 00:00:10.364 TCP 23.104.0.1:34582 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:53:31.439 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:60666 10 6452 1 2025-10-25 06:49:47.144 00:05:03.067 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 06:54:13.392 00:00:10.365 TCP 23.104.0.1:37320 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:54:31.617 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50214 10 6452 1 2025-10-25 06:50:47.143 00:05:03.071 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 06:55:13.796 00:00:10.367 TCP 23.104.0.1:50036 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:55:31.828 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:49628 10 6452 1 2025-10-25 06:56:14.202 00:00:10.363 TCP 23.104.0.1:54334 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:56:32.010 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34984 10 6452 1 2025-10-25 06:57:14.606 00:00:10.368 TCP 23.104.0.1:60554 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:57:39.404 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 06:57:39.473 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 06:57:32.229 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54192 10 6452 1 2025-10-25 06:58:15.018 00:00:10.325 TCP 23.104.0.1:34732 -> 1.101.0.1:3000 11 1507 1 2025-10-25 06:58:32.439 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:53458 10 6452 1 Summary: total flows: 163, total bytes: 501339, total packets: 1570, avg bps: 1062, avg pps: 0, avg bpp: 319 Time window: 2025-10-25 05:55:47 - 2025-10-25 06:58:42 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0035s User: 0.0012s Wall: 0.0022s flows/second: 74840.9 Runtime: 0.0022s