Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 11:59:16.124 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:52552 10 6452 1 2025-10-25 11:59:39.484 00:00:10.364 TCP 23.104.0.1:47876 -> 1.101.0.1:3000 11 1507 1 2025-10-25 11:55:47.232 00:05:03.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:00:16.349 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:40458 10 6452 1 2025-10-25 12:00:39.904 00:00:10.363 TCP 23.104.0.1:34928 -> 1.101.0.1:3000 11 1507 1 2025-10-25 11:56:47.230 00:05:03.081 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:01:16.536 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:42602 10 6452 1 2025-10-25 12:01:40.301 00:00:10.363 TCP 23.104.0.1:35334 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:02:16.743 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53050 10 6452 1 2025-10-25 12:02:45.605 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:02:45.575 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:02:40.712 00:00:10.916 TCP 23.104.0.1:43706 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:03:16.959 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:34164 10 6452 1 2025-10-25 12:03:41.665 00:00:10.369 TCP 23.104.0.1:57538 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:04:17.191 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56000 10 6452 1 2025-10-25 12:04:42.099 00:00:10.364 TCP 23.104.0.1:35948 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:05:17.406 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45608 10 6452 1 2025-10-25 12:01:47.233 00:05:03.077 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:05:42.500 00:00:10.327 TCP 23.104.0.1:34944 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:06:17.621 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40174 10 6452 1 2025-10-25 12:02:47.230 00:05:03.082 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:06:42.865 00:00:10.373 TCP 23.104.0.1:40916 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:07:17.836 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55242 10 6452 1 2025-10-25 12:07:45.590 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:07:45.636 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:07:43.275 00:00:10.364 TCP 23.104.0.1:45488 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:08:18.072 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38864 10 6452 1 2025-10-25 12:08:43.677 00:00:10.320 TCP 23.104.0.1:57252 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:09:18.285 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45522 12 6556 1 2025-10-25 12:09:44.036 00:00:10.364 TCP 23.104.0.1:56314 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:10:18.498 00:00:10.419 TCP 1.101.0.1:3000 -> 22.102.0.1:35480 10 6452 1 2025-10-25 12:10:44.437 00:00:10.367 TCP 23.104.0.1:59748 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:11:18.955 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:54498 10 6452 1 2025-10-25 12:07:47.234 00:05:03.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:11:44.846 00:00:10.387 TCP 23.104.0.1:50132 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:12:19.139 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52242 10 6452 1 2025-10-25 12:12:45.847 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:12:45.836 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:08:47.232 00:05:03.081 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:12:45.269 00:00:10.368 TCP 23.104.0.1:46488 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:13:19.352 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:43432 10 6452 1 2025-10-25 12:13:45.682 00:00:10.330 TCP 23.104.0.1:33390 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:14:19.577 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52258 10 6452 1 2025-10-25 12:14:46.056 00:00:10.364 TCP 23.104.0.1:46946 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:15:19.794 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51216 10 6452 1 2025-10-25 12:15:46.457 00:00:10.326 TCP 23.104.0.1:43356 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:16:20.026 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54150 10 6452 1 2025-10-25 12:16:46.820 00:00:10.362 TCP 23.104.0.1:35238 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:17:20.247 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52796 10 6452 1 2025-10-25 12:17:45.616 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:17:45.890 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:13:47.236 00:05:03.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:17:47.219 00:00:10.370 TCP 23.104.0.1:33534 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:18:20.464 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58054 10 6452 1 2025-10-25 12:14:47.234 00:05:03.081 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:18:47.623 00:00:10.367 TCP 23.104.0.1:36748 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:19:20.685 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:42578 12 6556 1 2025-10-25 12:19:48.024 00:00:10.372 TCP 23.104.0.1:49418 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:20:20.903 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:52542 10 6452 1 2025-10-25 12:20:48.433 00:00:10.361 TCP 23.104.0.1:59612 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:21:21.123 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:56494 10 6452 1 2025-10-25 12:21:48.837 00:00:10.400 TCP 23.104.0.1:48522 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:22:21.303 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35938 10 6452 1 2025-10-25 12:22:46.003 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:22:45.982 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:22:49.274 00:00:10.373 TCP 23.104.0.1:43956 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:23:21.524 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47910 10 6452 1 2025-10-25 12:19:47.236 00:05:03.083 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:23:49.695 00:00:10.369 TCP 23.104.0.1:54088 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:24:21.736 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:55700 10 6452 1 2025-10-25 12:20:47.235 00:05:03.085 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:24:50.117 00:00:10.369 TCP 23.104.0.1:38576 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:25:21.975 00:00:10.263 TCP 1.101.0.1:3000 -> 22.102.0.1:35528 11 6504 1 2025-10-25 12:25:50.528 00:00:10.369 TCP 23.104.0.1:33336 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:26:22.284 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:40392 10 6452 1 2025-10-25 12:26:50.933 00:00:10.386 TCP 23.104.0.1:36720 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:27:22.508 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:59092 10 6452 1 2025-10-25 12:27:45.784 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:27:46.061 00:00:00.050 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:27:51.357 00:00:10.362 TCP 23.104.0.1:57634 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:28:22.717 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:46714 10 6452 1 2025-10-25 12:28:51.761 00:00:10.376 TCP 23.104.0.1:38926 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:29:22.950 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:48700 10 6452 1 2025-10-25 12:25:47.237 00:05:03.085 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:29:52.174 00:00:10.363 TCP 23.104.0.1:47186 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:30:23.177 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45124 10 6452 1 2025-10-25 12:26:47.234 00:05:03.091 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:30:52.572 00:00:17.133 TCP 23.104.0.1:51500 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:31:23.398 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56652 10 6452 1 2025-10-25 12:31:59.755 00:00:10.384 TCP 23.104.0.1:35638 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:32:23.616 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44088 10 6452 1 2025-10-25 12:32:46.247 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:32:46.092 00:00:00.047 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:33:00.178 00:00:10.369 TCP 23.104.0.1:47024 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:33:23.829 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:35466 10 6452 1 2025-10-25 12:34:00.577 00:00:10.688 TCP 23.104.0.1:60070 -> 1.101.0.1:3000 13 1611 1 2025-10-25 12:34:24.078 00:00:13.403 TCP 1.101.0.1:3000 -> 22.102.0.1:57412 10 6452 1 2025-10-25 12:35:01.315 00:00:10.364 TCP 23.104.0.1:57644 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:35:27.515 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:43902 12 10375 1 2025-10-25 12:31:47.237 00:05:03.087 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:36:01.719 00:00:10.442 TCP 23.104.0.1:51254 -> 1.101.0.1:3000 15 1926 1 2025-10-25 12:36:27.757 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:50096 10 6452 1 2025-10-25 12:32:47.235 00:05:03.092 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:37:02.200 00:00:10.364 TCP 23.104.0.1:35328 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:37:27.966 00:00:10.393 TCP 1.101.0.1:3000 -> 22.102.0.1:46658 10 6452 1 2025-10-25 12:37:46.175 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:37:45.975 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:38:02.606 00:00:10.371 TCP 23.104.0.1:34458 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:38:28.396 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42040 10 6452 1 2025-10-25 12:39:03.012 00:00:10.371 TCP 23.104.0.1:59182 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:39:28.619 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:52210 10 6452 1 2025-10-25 12:40:03.418 00:00:10.365 TCP 23.104.0.1:40674 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:40:28.797 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52664 10 6452 1 2025-10-25 12:41:03.822 00:00:10.326 TCP 23.104.0.1:44480 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:41:29.013 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56858 10 6452 1 2025-10-25 12:37:47.237 00:05:03.087 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:42:04.188 00:00:10.330 TCP 23.104.0.1:44380 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:42:46.671 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:42:29.227 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51796 10 6452 1 2025-10-25 12:42:46.478 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:38:47.235 00:05:03.095 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:43:04.557 00:00:10.369 TCP 23.104.0.1:51640 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:43:29.446 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37306 10 6452 1 2025-10-25 12:44:04.961 00:00:10.366 TCP 23.104.0.1:41596 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:44:29.656 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36846 10 6452 1 2025-10-25 12:45:05.367 00:00:10.365 TCP 23.104.0.1:48996 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:45:29.880 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:41144 10 6452 1 2025-10-25 12:46:05.767 00:00:10.369 TCP 23.104.0.1:54630 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:46:30.112 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:33542 10 6452 1 2025-10-25 12:47:06.174 00:00:10.322 TCP 23.104.0.1:47112 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:47:30.289 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48454 10 6452 1 2025-10-25 12:47:46.427 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:47:46.511 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:43:47.251 00:05:03.075 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:48:06.536 00:00:10.374 TCP 23.104.0.1:38112 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:48:30.502 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:36794 10 6452 1 2025-10-25 12:44:47.248 00:05:03.081 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:49:06.952 00:00:10.372 TCP 23.104.0.1:54192 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:49:30.671 00:00:10.372 TCP 1.101.0.1:3000 -> 22.102.0.1:56632 10 6452 1 2025-10-25 12:50:07.362 00:00:10.322 TCP 23.104.0.1:51022 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:50:31.086 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:36700 10 6452 1 2025-10-25 12:51:07.724 00:00:10.374 TCP 23.104.0.1:50488 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:51:31.258 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44856 10 6452 1 2025-10-25 12:52:08.134 00:00:10.498 TCP 23.104.0.1:59398 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:52:31.478 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:54896 10 6452 1 2025-10-25 12:52:46.576 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:52:46.442 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:53:08.671 00:00:10.374 TCP 23.104.0.1:38966 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:53:31.709 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60008 10 6452 1 2025-10-25 12:49:47.253 00:05:03.074 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 12:54:09.097 00:00:10.336 TCP 23.104.0.1:47730 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:54:31.926 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:38946 10 6452 1 2025-10-25 12:50:47.251 00:05:03.079 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 12:55:09.467 00:00:10.366 TCP 23.104.0.1:56572 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:55:32.168 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:57874 10 6452 1 2025-10-25 12:56:09.873 00:00:10.364 TCP 23.104.0.1:54820 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:56:32.346 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:35442 10 6452 1 2025-10-25 12:57:10.277 00:00:10.365 TCP 23.104.0.1:39744 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:57:32.518 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44670 10 6452 1 2025-10-25 12:57:46.683 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 12:57:46.608 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 12:58:10.685 00:00:10.371 TCP 23.104.0.1:47806 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:58:32.726 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44664 10 6452 1 Summary: total flows: 163, total bytes: 501547, total packets: 1574, avg bps: 1062, avg pps: 0, avg bpp: 318 Time window: 2025-10-25 11:55:47 - 2025-10-25 12:58:42 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0048s User: 0.0000s Wall: 0.0025s flows/second: 66074.4 Runtime: 0.0025s