Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 03:59:06.219 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60380 10 6870 1 2025-10-27 03:59:20.982 00:00:10.618 TCP 23.104.0.1:34260 -> 1.101.0.1:3000 11 1507 1 2025-10-27 03:55:47.971 00:05:03.276 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:00:06.445 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:33656 10 6870 1 2025-10-27 04:00:21.642 00:00:10.365 TCP 23.104.0.1:49734 -> 1.101.0.1:3000 11 1507 1 2025-10-27 03:56:47.968 00:05:03.281 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:01:06.658 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55116 10 6870 1 2025-10-27 04:01:22.054 00:00:10.362 TCP 23.104.0.1:50130 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:02:06.866 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35842 10 6870 1 2025-10-27 04:02:22.458 00:00:10.358 TCP 23.104.0.1:55958 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:03:07.084 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52402 10 6870 1 2025-10-27 04:03:22.858 00:00:10.374 TCP 23.104.0.1:46430 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:03:33.978 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:03:33.923 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:04:07.293 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:41382 10 6870 1 2025-10-27 04:04:23.263 00:00:10.361 TCP 23.104.0.1:58106 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:05:07.512 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40124 10 6870 1 2025-10-27 04:05:23.663 00:00:10.362 TCP 23.104.0.1:57950 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:01:47.973 00:05:03.275 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:06:07.724 00:00:10.339 TCP 1.101.0.1:3000 -> 22.102.0.1:40226 10 6870 1 2025-10-27 04:06:24.093 00:00:10.365 TCP 23.104.0.1:59666 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:02:47.969 00:05:03.281 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:07:08.118 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39346 10 6870 1 2025-10-27 04:07:24.494 00:00:10.324 TCP 23.104.0.1:50926 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:08:08.332 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:54406 10 6870 1 2025-10-27 04:08:33.833 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:08:33.839 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:08:24.861 00:00:10.375 TCP 23.104.0.1:49910 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:09:08.501 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:32922 10 6870 1 2025-10-27 04:09:25.276 00:00:10.370 TCP 23.104.0.1:50804 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:10:08.753 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34566 12 6974 1 2025-10-27 04:10:25.684 00:00:10.364 TCP 23.104.0.1:40764 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:11:08.966 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:57822 12 6974 1 2025-10-27 04:11:26.108 00:00:10.326 TCP 23.104.0.1:37542 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:07:47.973 00:05:03.275 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:12:09.190 00:00:10.839 TCP 1.101.0.1:3000 -> 22.102.0.1:48460 10 6870 1 2025-10-27 04:12:26.473 00:00:10.366 TCP 23.104.0.1:41000 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:08:47.971 00:05:03.280 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:13:10.076 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60764 10 6870 1 2025-10-27 04:13:34.168 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:13:34.173 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:13:26.877 00:00:10.364 TCP 23.104.0.1:58842 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:14:10.292 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33870 10 6870 1 2025-10-27 04:14:27.282 00:00:10.324 TCP 23.104.0.1:55912 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:15:10.513 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45906 10 6870 1 2025-10-27 04:15:27.647 00:00:10.366 TCP 23.104.0.1:33960 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:16:10.727 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58824 10 6870 1 2025-10-27 04:16:28.066 00:00:10.367 TCP 23.104.0.1:45814 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:17:10.949 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:35580 10 6870 1 2025-10-27 04:17:28.471 00:00:10.367 TCP 23.104.0.1:35090 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:13:47.977 00:05:03.273 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:18:11.193 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40058 10 6870 1 2025-10-27 04:18:33.913 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:18:33.911 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:18:28.875 00:00:10.369 TCP 23.104.0.1:35990 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:14:47.975 00:05:03.279 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:19:11.414 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36918 10 6870 1 2025-10-27 04:19:29.284 00:00:10.326 TCP 23.104.0.1:40264 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:20:11.636 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:49454 10 6870 1 2025-10-27 04:20:29.648 00:00:10.364 TCP 23.104.0.1:55360 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:21:11.875 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:38960 10 6870 1 2025-10-27 04:21:30.060 00:00:10.366 TCP 23.104.0.1:43688 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:22:12.070 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56330 10 6870 1 2025-10-27 04:22:30.462 00:00:10.369 TCP 23.104.0.1:49554 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:23:12.279 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40168 10 6870 1 2025-10-27 04:23:34.082 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:23:34.167 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:23:30.866 00:00:10.373 TCP 23.104.0.1:47860 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:19:47.977 00:05:03.277 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:24:12.497 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52360 12 6974 1 2025-10-27 04:24:31.273 00:00:10.365 TCP 23.104.0.1:59102 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:20:47.976 00:05:03.281 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:25:12.718 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:34844 10 6870 1 2025-10-27 04:25:31.676 00:00:10.375 TCP 23.104.0.1:57602 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:26:12.892 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:37228 10 6870 1 2025-10-27 04:26:32.122 00:00:10.362 TCP 23.104.0.1:41466 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:27:13.118 00:00:10.694 TCP 1.101.0.1:3000 -> 22.102.0.1:59014 10 6870 1 2025-10-27 04:27:32.525 00:00:10.368 TCP 23.104.0.1:50884 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:28:13.845 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45544 10 6870 1 2025-10-27 04:28:34.233 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:28:34.147 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:28:32.927 00:00:10.383 TCP 23.104.0.1:37246 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:29:14.083 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59228 10 6870 1 2025-10-27 04:29:33.349 00:00:10.368 TCP 23.104.0.1:38070 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:25:47.979 00:05:03.277 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:30:14.294 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:56540 10 6870 1 2025-10-27 04:30:33.755 00:00:10.369 TCP 23.104.0.1:47078 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:26:47.976 00:05:03.283 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:31:14.517 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37230 10 6870 1 2025-10-27 04:31:34.167 00:00:10.366 TCP 23.104.0.1:41422 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:32:14.729 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35816 10 6870 1 2025-10-27 04:32:34.569 00:00:10.361 TCP 23.104.0.1:47622 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:33:14.948 00:00:10.162 TCP 1.101.0.1:3000 -> 22.102.0.1:42654 10 6870 1 2025-10-27 04:33:34.286 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:33:34.238 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:33:34.976 00:00:10.329 TCP 23.104.0.1:51942 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:34:15.144 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46500 10 6870 1 2025-10-27 04:34:35.344 00:00:10.370 TCP 23.104.0.1:51646 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:35:15.360 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34100 10 6870 1 2025-10-27 04:35:35.756 00:00:10.381 TCP 23.104.0.1:39868 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:31:47.981 00:05:03.277 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:36:15.583 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34364 10 6870 1 2025-10-27 04:36:36.178 00:00:10.367 TCP 23.104.0.1:47618 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:32:47.977 00:05:03.283 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:37:15.804 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:39782 10 6870 1 2025-10-27 04:37:36.589 00:00:10.330 TCP 23.104.0.1:57950 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:38:16.016 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33146 10 6870 1 2025-10-27 04:38:34.433 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:38:34.345 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:38:36.953 00:00:10.328 TCP 23.104.0.1:44084 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:39:16.232 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36096 10 6870 1 2025-10-27 04:39:37.319 00:00:10.325 TCP 23.104.0.1:53254 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:40:16.453 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:46842 10 6870 1 2025-10-27 04:40:37.682 00:00:10.421 TCP 23.104.0.1:47950 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:41:16.631 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60178 10 6870 1 2025-10-27 04:41:38.152 00:00:10.367 TCP 23.104.0.1:41770 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:37:47.982 00:05:03.277 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:42:16.848 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:46202 10 6870 1 2025-10-27 04:38:47.979 00:05:03.283 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:42:38.554 00:00:10.367 TCP 23.104.0.1:40752 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:43:17.085 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:50704 10 6870 1 2025-10-27 04:43:34.616 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:43:34.473 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:43:38.961 00:00:10.360 TCP 23.104.0.1:59544 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:44:17.286 00:00:10.319 TCP 1.101.0.1:3000 -> 22.102.0.1:36580 10 6870 1 2025-10-27 04:44:39.362 00:00:10.328 TCP 23.104.0.1:56084 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:45:17.645 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:46734 10 6870 1 2025-10-27 04:45:39.728 00:00:10.582 TCP 23.104.0.1:36878 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:46:17.828 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:45024 12 10375 1 2025-10-27 04:46:40.364 00:00:10.459 TCP 23.104.0.1:60564 -> 1.101.0.1:3000 15 1926 1 2025-10-27 04:47:18.082 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49116 10 6452 1 2025-10-27 04:47:40.861 00:00:10.333 TCP 23.104.0.1:55204 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:43:47.984 00:05:03.276 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:48:34.527 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:48:18.296 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:45436 10 6452 1 2025-10-27 04:48:34.491 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:48:41.231 00:00:10.366 TCP 23.104.0.1:49442 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:44:47.982 00:05:03.280 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:49:18.503 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56130 10 6452 1 2025-10-27 04:49:41.637 00:00:10.325 TCP 23.104.0.1:32924 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:50:18.717 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:44354 10 6452 1 2025-10-27 04:50:42.010 00:00:10.321 TCP 23.104.0.1:49406 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:51:18.937 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:42508 10 6452 1 2025-10-27 04:51:42.374 00:00:10.329 TCP 23.104.0.1:53338 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:52:19.135 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:46082 10 6452 1 2025-10-27 04:52:42.747 00:00:10.359 TCP 23.104.0.1:57712 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:53:34.769 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:53:19.396 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45660 10 6452 1 2025-10-27 04:53:34.647 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-27 04:49:47.986 00:05:03.278 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-27 04:53:43.144 00:00:10.322 TCP 23.104.0.1:51212 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:54:19.614 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39782 10 6452 1 2025-10-27 04:50:47.985 00:05:03.283 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-27 04:54:43.509 00:00:10.318 TCP 23.104.0.1:58098 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:55:19.829 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58900 10 6452 1 2025-10-27 04:55:43.868 00:00:10.365 TCP 23.104.0.1:56538 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:56:20.067 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56612 10 6452 1 2025-10-27 04:56:44.270 00:00:10.764 TCP 23.104.0.1:55796 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:57:20.284 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45340 10 6452 1 2025-10-27 04:57:45.115 00:00:10.363 TCP 23.104.0.1:46340 -> 1.101.0.1:3000 11 1507 1 2025-10-27 04:58:34.824 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 04:58:20.505 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:35808 10 6452 1 2025-10-27 04:58:34.771 00:00:00.013 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 Summary: total flows: 163, total bytes: 521141, total packets: 1573, avg bps: 1106, avg pps: 0, avg bpp: 331 Time window: 2025-10-27 03:55:47 - 2025-10-27 04:58:34 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0039s User: 0.0024s Wall: 0.0025s flows/second: 64533.8 Runtime: 0.0025s