Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-26 15:58:57.816 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39850 10 6452 1 2025-10-26 15:59:25.879 00:00:10.370 TCP 23.104.0.1:57366 -> 1.101.0.1:3000 11 1507 1 2025-10-26 15:55:47.726 00:05:03.216 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 15:59:58.035 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:52216 10 6452 1 2025-10-26 16:00:26.281 00:00:18.244 TCP 23.104.0.1:58736 -> 1.101.0.1:3000 11 1507 1 2025-10-26 15:56:47.724 00:05:03.220 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:00:58.219 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47076 12 10369 1 2025-10-26 16:01:34.596 00:00:10.453 TCP 23.104.0.1:56648 -> 1.101.0.1:3000 15 1926 1 2025-10-26 16:01:58.434 00:00:19.442 TCP 1.101.0.1:3000 -> 22.102.0.1:58666 10 6452 1 2025-10-26 16:02:35.099 00:00:10.335 TCP 23.104.0.1:44218 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:03:07.919 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:59020 10 6452 1 2025-10-26 16:03:19.324 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:03:19.373 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:03:35.464 00:00:10.361 TCP 23.104.0.1:41418 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:04:08.165 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:41746 10 6452 1 2025-10-26 16:04:35.866 00:00:10.367 TCP 23.104.0.1:59358 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:05:08.390 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55478 10 6452 1 2025-10-26 16:05:36.272 00:00:10.361 TCP 23.104.0.1:59450 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:01:47.727 00:05:03.216 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 16:06:08.602 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:57826 10 6452 1 2025-10-26 16:06:36.675 00:00:10.373 TCP 23.104.0.1:39320 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:02:47.725 00:05:03.219 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:07:08.781 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59398 10 6452 1 2025-10-26 16:07:37.107 00:00:10.364 TCP 23.104.0.1:45330 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:08:19.483 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:08:09.004 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53388 10 6452 1 2025-10-26 16:08:19.286 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:08:37.508 00:00:10.329 TCP 23.104.0.1:48568 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:09:09.221 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50144 10 6452 1 2025-10-26 16:09:37.870 00:00:10.368 TCP 23.104.0.1:33156 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:10:09.432 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47898 10 6452 1 2025-10-26 16:10:38.275 00:00:10.371 TCP 23.104.0.1:57646 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:11:09.647 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:51652 10 6452 1 2025-10-26 16:11:38.684 00:00:10.374 TCP 23.104.0.1:36522 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:07:47.745 00:05:03.197 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 16:12:09.869 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:56496 10 6452 1 2025-10-26 16:08:47.743 00:05:03.203 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:12:39.097 00:00:10.326 TCP 23.104.0.1:45496 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:13:19.561 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:13:10.099 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42550 10 6452 1 2025-10-26 16:13:19.303 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:13:39.487 00:00:10.388 TCP 23.104.0.1:49368 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:14:10.319 00:00:10.259 TCP 1.101.0.1:3000 -> 22.102.0.1:44936 10 6452 1 2025-10-26 16:14:39.958 00:00:10.376 TCP 23.104.0.1:33482 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:15:10.651 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37128 10 6452 1 2025-10-26 16:15:40.360 00:00:10.374 TCP 23.104.0.1:45240 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:16:10.865 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37510 10 6452 1 2025-10-26 16:16:40.771 00:00:10.332 TCP 23.104.0.1:45362 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:17:11.085 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:52390 10 6452 1 2025-10-26 16:13:47.747 00:05:03.198 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 16:17:41.141 00:00:10.362 TCP 23.104.0.1:60266 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:18:19.641 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:18:11.267 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39592 10 6452 1 2025-10-26 16:18:19.476 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:18:41.542 00:00:10.323 TCP 23.104.0.1:44786 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:14:47.745 00:05:03.203 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:19:11.484 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:56840 10 6452 1 2025-10-26 16:19:41.906 00:00:10.369 TCP 23.104.0.1:52640 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:20:11.702 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54368 10 6452 1 2025-10-26 16:20:42.317 00:00:10.363 TCP 23.104.0.1:46324 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:21:11.922 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:58988 10 6452 1 2025-10-26 16:21:42.718 00:00:10.319 TCP 23.104.0.1:35380 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:22:12.128 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:34266 10 6452 1 2025-10-26 16:22:43.098 00:00:10.367 TCP 23.104.0.1:44302 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:23:19.697 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:23:19.801 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:23:12.354 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48862 10 6452 1 2025-10-26 16:19:47.750 00:05:03.198 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 16:23:43.500 00:00:10.364 TCP 23.104.0.1:33856 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:24:12.570 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60510 10 6452 1 2025-10-26 16:20:47.748 00:05:03.203 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:24:43.900 00:00:10.371 TCP 23.104.0.1:42618 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:25:12.794 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:39310 10 6452 1 2025-10-26 16:25:44.306 00:00:13.680 TCP 23.104.0.1:49940 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:26:13.004 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53826 10 6452 1 2025-10-26 16:26:48.028 00:00:10.365 TCP 23.104.0.1:41336 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:27:13.209 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:58598 10 6452 1 2025-10-26 16:27:48.432 00:00:10.320 TCP 23.104.0.1:42526 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:28:19.718 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:28:19.719 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:28:13.437 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:59498 10 6452 1 2025-10-26 16:28:48.796 00:00:10.329 TCP 23.104.0.1:49206 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:29:13.659 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37100 10 6452 1 2025-10-26 16:25:47.751 00:05:03.199 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 16:29:49.162 00:00:10.354 TCP 23.104.0.1:55494 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:30:13.881 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47954 10 6452 1 2025-10-26 16:26:47.748 00:05:03.204 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:30:49.557 00:00:10.366 TCP 23.104.0.1:52688 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:31:14.099 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37948 10 6452 1 2025-10-26 16:31:49.965 00:00:10.364 TCP 23.104.0.1:60398 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:32:14.321 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:54644 10 6452 1 2025-10-26 16:32:50.368 00:00:10.362 TCP 23.104.0.1:46888 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:33:19.542 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:33:19.511 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:33:14.546 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36128 10 6452 1 2025-10-26 16:33:50.764 00:00:10.373 TCP 23.104.0.1:55594 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:34:14.766 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:50512 10 6452 1 2025-10-26 16:34:51.180 00:00:10.358 TCP 23.104.0.1:37784 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:35:15.001 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:46540 10 6452 1 2025-10-26 16:31:47.752 00:05:03.198 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 16:35:51.575 00:00:10.365 TCP 23.104.0.1:44512 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:36:15.280 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:41952 10 6452 1 2025-10-26 16:32:47.752 00:05:03.202 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:36:51.981 00:00:10.375 TCP 23.104.0.1:33192 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:37:15.469 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:58472 10 6452 1 2025-10-26 16:37:52.391 00:00:10.365 TCP 23.104.0.1:51718 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:38:19.772 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:38:20.383 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:38:15.705 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:52556 10 6452 1 2025-10-26 16:38:52.800 00:00:10.335 TCP 23.104.0.1:50864 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:39:15.921 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59222 10 6452 1 2025-10-26 16:39:53.173 00:00:10.325 TCP 23.104.0.1:54488 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:40:16.135 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40906 10 6452 1 2025-10-26 16:40:53.542 00:00:10.385 TCP 23.104.0.1:57200 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:41:16.354 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58858 10 6452 1 2025-10-26 16:37:47.754 00:05:03.200 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 16:41:53.971 00:00:10.330 TCP 23.104.0.1:33690 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:42:16.572 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:36480 10 6452 1 2025-10-26 16:38:47.751 00:05:03.206 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:42:54.337 00:00:10.368 TCP 23.104.0.1:33792 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:43:20.142 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:43:20.119 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:43:16.754 00:00:10.519 TCP 1.101.0.1:3000 -> 22.102.0.1:42380 10 6452 1 2025-10-26 16:43:54.742 00:00:10.396 TCP 23.104.0.1:33220 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:44:17.311 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:36862 10 6452 1 2025-10-26 16:44:55.176 00:00:10.367 TCP 23.104.0.1:49518 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:45:17.491 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55514 10 6452 1 2025-10-26 16:45:55.583 00:00:10.323 TCP 23.104.0.1:45892 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:46:17.703 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59270 10 6452 1 2025-10-26 16:46:55.945 00:00:10.377 TCP 23.104.0.1:35950 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:47:17.924 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:44706 10 6452 1 2025-10-26 16:43:47.760 00:05:03.197 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 16:47:56.358 00:00:10.369 TCP 23.104.0.1:40044 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:48:20.103 00:00:00.051 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:48:20.267 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:48:18.170 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33306 10 6452 1 2025-10-26 16:44:47.756 00:05:03.203 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:48:56.774 00:00:10.369 TCP 23.104.0.1:44092 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:49:18.388 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:58280 10 6452 1 2025-10-26 16:49:57.179 00:00:10.369 TCP 23.104.0.1:55568 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:50:18.610 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57894 10 6452 1 2025-10-26 16:50:57.584 00:00:10.360 TCP 23.104.0.1:42930 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:51:18.830 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57184 10 6452 1 2025-10-26 16:51:57.986 00:00:10.369 TCP 23.104.0.1:56720 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:52:19.070 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52406 10 6452 1 2025-10-26 16:52:58.396 00:00:10.363 TCP 23.104.0.1:46002 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:53:20.368 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:53:20.248 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:53:19.289 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57840 10 6452 1 2025-10-26 16:49:47.759 00:05:03.198 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-26 16:53:58.800 00:00:10.341 TCP 23.104.0.1:45176 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:54:19.515 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42814 10 6452 1 2025-10-26 16:50:47.756 00:05:03.204 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-26 16:54:59.179 00:00:10.361 TCP 23.104.0.1:54258 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:55:19.734 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58618 10 6452 1 2025-10-26 16:55:59.580 00:00:10.363 TCP 23.104.0.1:36578 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:56:19.952 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:41846 10 6452 1 2025-10-26 16:57:00.000 00:00:10.355 TCP 23.104.0.1:50612 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:57:20.128 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:43172 10 6452 1 2025-10-26 16:58:00.403 00:00:10.325 TCP 23.104.0.1:60874 -> 1.101.0.1:3000 11 1507 1 2025-10-26 16:58:20.290 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-26 16:58:20.332 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-26 16:58:20.337 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49776 10 6452 1 Summary: total flows: 163, total bytes: 501177, total packets: 1567, avg bps: 1065, avg pps: 0, avg bpp: 319 Time window: 2025-10-26 15:55:47 - 2025-10-26 16:58:30 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0039s User: 0.0010s Wall: 0.0020s flows/second: 79672.7 Runtime: 0.0021s