Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 11:58:55.878 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:58410 10 6452 1 2025-10-28 11:59:11.957 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 11:59:11.984 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 11:59:26.365 00:00:10.370 TCP 23.104.0.1:60482 -> 1.101.0.1:3000 11 1507 1 2025-10-28 11:55:48.645 00:05:03.287 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 11:59:56.105 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55942 10 6452 1 2025-10-28 12:00:26.771 00:00:10.371 TCP 23.104.0.1:60914 -> 1.101.0.1:3000 11 1507 1 2025-10-28 11:56:48.645 00:05:03.290 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:00:56.328 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34868 10 6452 1 2025-10-28 12:01:27.177 00:00:10.327 TCP 23.104.0.1:58150 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:01:56.540 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58082 10 6452 1 2025-10-28 12:02:27.542 00:00:10.363 TCP 23.104.0.1:55844 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:02:56.758 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33112 10 6452 1 2025-10-28 12:03:27.948 00:00:10.367 TCP 23.104.0.1:38548 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:03:56.975 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:35784 10 6452 1 2025-10-28 12:04:12.199 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:04:12.169 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:04:28.356 00:00:10.367 TCP 23.104.0.1:52418 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:04:57.225 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:58036 10 6452 1 2025-10-28 12:05:28.757 00:00:10.374 TCP 23.104.0.1:56248 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:01:48.649 00:05:03.287 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 12:05:57.446 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:44738 10 6452 1 2025-10-28 12:06:29.164 00:00:10.364 TCP 23.104.0.1:40648 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:02:48.647 00:05:03.293 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:06:57.669 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:41440 10 6452 1 2025-10-28 12:07:29.566 00:00:10.322 TCP 23.104.0.1:35828 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:07:57.916 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57396 10 6452 1 2025-10-28 12:08:29.928 00:00:10.347 TCP 23.104.0.1:41158 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:08:58.136 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:50180 10 6452 1 2025-10-28 12:09:12.291 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:09:12.396 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:09:30.317 00:00:10.372 TCP 23.104.0.1:44328 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:09:58.364 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40500 10 6452 1 2025-10-28 12:10:30.729 00:00:10.327 TCP 23.104.0.1:56078 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:10:58.582 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:49336 10 6452 1 2025-10-28 12:11:31.109 00:00:10.364 TCP 23.104.0.1:41638 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:07:48.651 00:05:03.288 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 12:11:58.836 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40320 10 6452 1 2025-10-28 12:12:31.512 00:00:10.324 TCP 23.104.0.1:42772 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:08:48.648 00:05:03.293 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:12:59.072 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60848 10 6452 1 2025-10-28 12:13:31.874 00:00:10.348 TCP 23.104.0.1:38034 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:13:59.290 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:54554 10 6452 1 2025-10-28 12:14:12.479 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:14:12.441 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:14:32.268 00:00:10.324 TCP 23.104.0.1:45764 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:14:59.467 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37718 10 6452 1 2025-10-28 12:15:32.631 00:00:10.360 TCP 23.104.0.1:33370 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:15:59.682 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51606 10 6452 1 2025-10-28 12:16:33.030 00:00:10.374 TCP 23.104.0.1:54382 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:16:59.891 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:41890 12 10375 1 2025-10-28 12:17:33.441 00:00:10.434 TCP 23.104.0.1:46556 -> 1.101.0.1:3000 15 1926 1 2025-10-28 12:13:48.651 00:05:03.288 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 12:18:00.141 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:33570 10 6452 1 2025-10-28 12:18:33.913 00:00:10.358 TCP 23.104.0.1:42104 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:14:48.648 00:05:03.293 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:19:00.323 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:37278 10 6452 1 2025-10-28 12:19:12.586 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:19:12.494 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:19:34.310 00:00:10.323 TCP 23.104.0.1:39624 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:20:00.492 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43462 10 6452 1 2025-10-28 12:20:34.674 00:00:10.359 TCP 23.104.0.1:36988 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:21:00.706 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51686 10 6452 1 2025-10-28 12:21:35.106 00:00:10.357 TCP 23.104.0.1:37654 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:22:00.920 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:48204 10 6452 1 2025-10-28 12:22:35.501 00:00:10.364 TCP 23.104.0.1:60042 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:23:01.112 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39614 10 6452 1 2025-10-28 12:23:35.905 00:00:10.366 TCP 23.104.0.1:33728 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:19:48.652 00:05:03.288 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 12:24:01.323 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39802 10 6452 1 2025-10-28 12:24:12.630 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:24:12.676 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:24:36.308 00:00:10.367 TCP 23.104.0.1:60584 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:20:48.650 00:05:03.293 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:25:01.492 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:56934 10 6452 1 2025-10-28 12:25:36.716 00:00:10.376 TCP 23.104.0.1:33092 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:26:01.711 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46526 10 6452 1 2025-10-28 12:26:37.130 00:00:10.361 TCP 23.104.0.1:59776 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:27:01.923 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44126 11 6813 1 2025-10-28 12:27:37.532 00:00:10.359 TCP 23.104.0.1:38126 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:28:02.133 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35540 10 6452 1 2025-10-28 12:28:37.925 00:00:10.383 TCP 23.104.0.1:42718 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:29:02.348 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54426 10 6452 1 2025-10-28 12:29:12.654 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:29:12.828 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:29:38.350 00:00:10.367 TCP 23.104.0.1:36392 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:25:48.652 00:05:03.288 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 12:30:02.561 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46824 10 6452 1 2025-10-28 12:30:38.761 00:00:10.376 TCP 23.104.0.1:39564 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:26:48.650 00:05:03.294 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:31:02.740 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:38442 10 6452 1 2025-10-28 12:31:39.180 00:00:10.356 TCP 23.104.0.1:45118 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:32:02.914 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57674 10 6452 1 2025-10-28 12:32:39.572 00:00:11.051 TCP 23.104.0.1:50852 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:33:03.132 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33742 10 6452 1 2025-10-28 12:33:40.664 00:00:10.366 TCP 23.104.0.1:59172 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:34:03.344 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48518 10 6452 1 2025-10-28 12:34:12.764 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:34:12.638 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:34:41.100 00:00:10.361 TCP 23.104.0.1:57936 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:35:03.561 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46934 10 6452 1 2025-10-28 12:35:41.502 00:00:10.364 TCP 23.104.0.1:59236 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:31:48.654 00:05:03.291 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 12:36:03.782 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:38740 10 6452 1 2025-10-28 12:32:48.652 00:05:03.295 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:36:41.909 00:00:10.345 TCP 23.104.0.1:36262 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:37:03.962 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42048 10 6452 1 2025-10-28 12:37:42.297 00:00:10.373 TCP 23.104.0.1:46038 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:38:04.181 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45842 10 6452 1 2025-10-28 12:38:42.707 00:00:10.378 TCP 23.104.0.1:42946 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:39:13.056 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:39:04.394 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38156 10 6452 1 2025-10-28 12:39:12.986 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:39:43.116 00:00:10.374 TCP 23.104.0.1:54464 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:40:04.609 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:57232 10 6452 1 2025-10-28 12:40:43.531 00:00:10.362 TCP 23.104.0.1:50290 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:41:04.780 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:60754 10 6452 1 2025-10-28 12:41:43.935 00:00:10.336 TCP 23.104.0.1:37622 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:37:48.655 00:05:03.291 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 12:42:04.947 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:49332 10 6452 1 2025-10-28 12:42:44.303 00:00:10.321 TCP 23.104.0.1:54946 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:38:48.653 00:05:03.295 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:43:05.170 00:00:10.582 TCP 1.101.0.1:3000 -> 22.102.0.1:33774 10 6452 1 2025-10-28 12:43:44.661 00:00:11.230 TCP 23.104.0.1:48126 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:44:13.069 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:44:05.793 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:38140 10 6452 1 2025-10-28 12:44:12.882 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:44:45.924 00:00:10.389 TCP 23.104.0.1:41116 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:45:05.971 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:43540 10 6452 1 2025-10-28 12:45:46.351 00:00:10.368 TCP 23.104.0.1:35676 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:46:06.194 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:50238 10 6452 1 2025-10-28 12:46:46.750 00:00:10.374 TCP 23.104.0.1:45162 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:47:06.372 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:45324 10 6452 1 2025-10-28 12:43:48.658 00:05:03.290 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 12:47:47.179 00:00:10.364 TCP 23.104.0.1:46380 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:48:06.542 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38774 10 6452 1 2025-10-28 12:44:48.656 00:05:03.295 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:48:47.581 00:00:10.366 TCP 23.104.0.1:48628 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:49:06.758 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49998 10 6452 1 2025-10-28 12:49:12.867 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:49:13.045 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:49:47.983 00:00:10.368 TCP 23.104.0.1:40038 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:50:06.970 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:55022 10 6452 1 2025-10-28 12:50:48.392 00:00:10.364 TCP 23.104.0.1:41204 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:51:07.169 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:59102 10 6452 1 2025-10-28 12:51:48.795 00:00:10.337 TCP 23.104.0.1:45084 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:52:07.341 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48370 10 6452 1 2025-10-28 12:52:49.172 00:00:10.371 TCP 23.104.0.1:41058 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:53:07.552 00:00:10.752 TCP 1.101.0.1:3000 -> 22.102.0.1:51746 10 6452 1 2025-10-28 12:49:48.658 00:05:03.293 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 12:53:49.587 00:00:10.327 TCP 23.104.0.1:43670 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:54:13.327 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:54:13.254 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 12:54:08.340 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56230 10 6452 1 2025-10-28 12:50:48.657 00:05:03.302 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 12:54:49.951 00:00:11.672 TCP 23.104.0.1:38058 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:55:08.557 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48116 10 6452 1 2025-10-28 12:55:51.664 00:00:10.372 TCP 23.104.0.1:60910 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:56:08.772 00:00:10.520 TCP 1.101.0.1:3000 -> 22.102.0.1:41950 10 6452 1 2025-10-28 12:56:52.104 00:00:10.398 TCP 23.104.0.1:48492 -> 1.101.0.1:3000 15 1926 1 2025-10-28 12:57:09.331 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:52000 13 13949 1 2025-10-28 12:57:52.542 00:00:10.370 TCP 23.104.0.1:36520 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:58:09.570 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:34316 10 6452 1 Summary: total flows: 163, total bytes: 509460, total packets: 1575, avg bps: 1086, avg pps: 0, avg bpp: 323 Time window: 2025-10-28 11:55:48 - 2025-10-28 12:58:19 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0027s User: 0.0018s Wall: 0.0023s flows/second: 72026.1 Runtime: 0.0023s