Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 11:58:59.673 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42586 10 6452 1 2025-10-30 11:59:06.561 00:00:10.368 TCP 23.104.0.1:54192 -> 1.101.0.1:3000 11 1507 1 2025-10-30 11:55:49.547 00:05:03.392 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 11:59:59.882 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:36572 10 6452 1 2025-10-30 12:00:09.965 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:00:09.644 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:00:06.964 00:00:10.331 TCP 23.104.0.1:45202 -> 1.101.0.1:3000 11 1507 1 2025-10-30 11:55:52.941 00:05:56.607 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:01:00.115 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57230 10 6452 1 2025-10-30 12:01:07.339 00:00:10.362 TCP 23.104.0.1:58296 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:02:00.326 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34590 10 6452 1 2025-10-30 12:02:07.735 00:00:10.368 TCP 23.104.0.1:50704 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:03:00.551 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:48534 12 6556 1 2025-10-30 12:03:08.140 00:00:10.366 TCP 23.104.0.1:56782 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:04:00.786 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:36386 10 6452 1 2025-10-30 12:04:08.542 00:00:10.360 TCP 23.104.0.1:55458 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:05:09.964 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:05:09.992 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:05:00.970 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:49672 10 6452 1 2025-10-30 12:05:08.939 00:00:10.368 TCP 23.104.0.1:49740 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:01:49.549 00:05:03.391 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 12:06:01.214 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:60506 10 6452 1 2025-10-30 12:06:09.349 00:00:10.368 TCP 23.104.0.1:47138 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:01:52.942 00:05:56.607 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:07:01.456 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:39664 10 6452 1 2025-10-30 12:07:09.754 00:00:10.377 TCP 23.104.0.1:58414 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:08:01.692 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:51536 10 6452 1 2025-10-30 12:08:10.165 00:00:10.327 TCP 23.104.0.1:49718 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:09:01.921 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:56520 10 6452 1 2025-10-30 12:09:10.524 00:00:10.321 TCP 23.104.0.1:45756 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:10:09.922 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:10:10.367 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:10:02.165 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34176 10 6452 1 2025-10-30 12:10:10.888 00:00:10.374 TCP 23.104.0.1:48714 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:11:02.378 00:00:10.360 TCP 1.101.0.1:3000 -> 22.102.0.1:56216 10 6452 1 2025-10-30 12:11:11.300 00:00:10.374 TCP 23.104.0.1:45578 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:07:49.551 00:05:03.390 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 12:12:02.779 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:59752 10 6452 1 2025-10-30 12:12:11.719 00:00:10.373 TCP 23.104.0.1:51172 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:07:52.943 00:05:56.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:13:03.003 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44638 10 6452 1 2025-10-30 12:13:12.132 00:00:10.328 TCP 23.104.0.1:46892 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:14:03.221 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:36586 10 6452 1 2025-10-30 12:14:12.497 00:00:10.370 TCP 23.104.0.1:46350 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:15:10.234 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:15:10.168 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:15:03.391 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57632 10 6452 1 2025-10-30 12:15:12.917 00:00:10.391 TCP 23.104.0.1:41876 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:16:03.607 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:36558 10 6452 1 2025-10-30 12:16:13.358 00:00:10.339 TCP 23.104.0.1:43052 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:17:03.830 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41470 10 6452 1 2025-10-30 12:17:13.746 00:00:10.368 TCP 23.104.0.1:46534 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:13:49.555 00:05:03.396 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 12:18:04.068 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34694 10 6452 1 2025-10-30 12:18:14.153 00:00:10.362 TCP 23.104.0.1:56918 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:13:52.944 00:05:56.607 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:19:04.286 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36522 12 6556 1 2025-10-30 12:19:14.557 00:00:22.990 TCP 23.104.0.1:48574 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:20:09.995 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:20:10.283 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:20:04.498 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:58426 10 6452 1 2025-10-30 12:20:27.611 00:00:10.358 TCP 23.104.0.1:37564 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:21:04.703 00:00:10.534 TCP 1.101.0.1:3000 -> 22.102.0.1:36154 10 6452 1 2025-10-30 12:21:28.011 00:00:10.328 TCP 23.104.0.1:42938 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:22:05.275 00:00:10.326 TCP 1.101.0.1:3000 -> 22.102.0.1:58428 10 6452 1 2025-10-30 12:22:28.373 00:00:10.320 TCP 23.104.0.1:51228 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:23:05.657 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:40240 10 6452 1 2025-10-30 12:23:28.729 00:00:10.368 TCP 23.104.0.1:57900 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:19:49.554 00:05:03.399 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 12:24:05.884 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:58874 10 6452 1 2025-10-30 12:24:29.135 00:00:10.323 TCP 23.104.0.1:48736 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:19:52.955 00:05:56.597 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:25:10.575 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:25:10.584 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:25:06.124 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53342 10 6452 1 2025-10-30 12:25:29.500 00:00:10.363 TCP 23.104.0.1:42182 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:26:06.344 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:55284 10 6452 1 2025-10-30 12:26:29.902 00:00:10.365 TCP 23.104.0.1:60604 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:27:06.586 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:52026 10 6452 1 2025-10-30 12:27:30.312 00:00:10.363 TCP 23.104.0.1:49268 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:28:06.818 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56714 10 6452 1 2025-10-30 12:28:30.714 00:00:10.377 TCP 23.104.0.1:45440 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:29:07.056 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41250 10 6452 1 2025-10-30 12:29:31.127 00:00:10.362 TCP 23.104.0.1:34764 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:25:49.554 00:05:03.402 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 12:30:10.356 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:30:10.513 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:30:07.269 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42604 10 6452 1 2025-10-30 12:30:31.524 00:00:10.365 TCP 23.104.0.1:47062 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:25:52.956 00:05:56.600 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:31:07.483 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44008 10 6452 1 2025-10-30 12:31:31.930 00:00:10.376 TCP 23.104.0.1:38406 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:32:07.703 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49574 10 6452 1 2025-10-30 12:32:32.343 00:00:10.364 TCP 23.104.0.1:48628 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:33:07.916 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:56908 10 6452 1 2025-10-30 12:33:32.751 00:00:10.391 TCP 23.104.0.1:41382 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:34:08.133 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53778 10 6452 1 2025-10-30 12:34:33.195 00:00:10.371 TCP 23.104.0.1:60646 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:35:10.571 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:35:10.640 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:35:08.350 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:38178 10 6452 1 2025-10-30 12:35:33.607 00:00:10.365 TCP 23.104.0.1:53292 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:31:49.558 00:05:03.401 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 12:36:08.518 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49510 10 6452 1 2025-10-30 12:36:34.015 00:00:10.328 TCP 23.104.0.1:42628 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:31:52.960 00:05:56.595 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:37:08.732 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:34268 10 6452 1 2025-10-30 12:37:34.383 00:00:10.366 TCP 23.104.0.1:40858 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:38:08.969 00:00:10.219 TCP 1.101.0.1:3000 -> 22.102.0.1:47020 10 6452 1 2025-10-30 12:38:34.787 00:00:10.370 TCP 23.104.0.1:37154 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:39:09.231 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36252 10 6452 1 2025-10-30 12:39:35.203 00:00:10.365 TCP 23.104.0.1:55836 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:40:10.403 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:40:10.354 00:00:00.033 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:40:09.445 00:00:14.000 TCP 1.101.0.1:3000 -> 22.102.0.1:36476 10 6452 1 2025-10-30 12:40:35.609 00:00:10.328 TCP 23.104.0.1:42704 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:41:13.503 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55556 10 6452 1 2025-10-30 12:41:35.971 00:00:10.367 TCP 23.104.0.1:50190 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:37:49.558 00:05:03.400 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 12:42:13.719 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:46180 10 6452 1 2025-10-30 12:42:36.382 00:00:10.364 TCP 23.104.0.1:33212 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:37:52.960 00:05:56.598 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:43:13.946 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35168 10 6452 1 2025-10-30 12:43:36.781 00:00:10.368 TCP 23.104.0.1:50620 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:44:14.174 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46220 10 6452 1 2025-10-30 12:44:37.188 00:00:10.365 TCP 23.104.0.1:34104 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:45:10.827 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:45:10.871 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:45:14.391 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:53240 10 6452 1 2025-10-30 12:45:37.588 00:00:10.369 TCP 23.104.0.1:44992 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:46:14.613 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:59050 10 6452 1 2025-10-30 12:46:37.997 00:00:10.359 TCP 23.104.0.1:36374 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:47:14.789 00:00:10.712 TCP 1.101.0.1:3000 -> 22.102.0.1:35404 10 6452 1 2025-10-30 12:47:38.396 00:00:10.365 TCP 23.104.0.1:43154 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:43:49.562 00:05:03.402 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 12:48:15.541 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42154 10 6452 1 2025-10-30 12:43:52.962 00:05:56.598 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:48:38.796 00:00:10.365 TCP 23.104.0.1:54624 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:49:15.757 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45530 10 6452 1 2025-10-30 12:49:39.206 00:00:10.364 TCP 23.104.0.1:59576 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:50:10.734 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:50:10.730 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:50:15.974 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:58860 10 6452 1 2025-10-30 12:50:39.606 00:00:10.366 TCP 23.104.0.1:39080 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:51:16.167 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55864 10 6452 1 2025-10-30 12:51:40.007 00:00:10.356 TCP 23.104.0.1:34156 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:52:16.380 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44472 10 6452 1 2025-10-30 12:52:40.401 00:00:10.365 TCP 23.104.0.1:59320 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:53:16.591 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55182 10 6452 1 2025-10-30 12:53:40.800 00:00:10.373 TCP 23.104.0.1:54686 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:49:49.563 00:05:03.404 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 12:54:16.806 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:40548 10 6452 1 2025-10-30 12:54:41.205 00:00:10.328 TCP 23.104.0.1:35884 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:49:52.965 00:05:56.597 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 12:55:11.020 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 12:55:10.899 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 12:55:17.036 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50112 10 6452 1 2025-10-30 12:55:41.567 00:00:10.367 TCP 23.104.0.1:43366 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:56:17.252 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44960 10 6452 1 2025-10-30 12:56:41.968 00:00:10.364 TCP 23.104.0.1:33532 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:57:17.477 00:00:11.016 TCP 1.101.0.1:3000 -> 22.102.0.1:48134 10 6452 1 2025-10-30 12:57:42.380 00:00:10.365 TCP 23.104.0.1:49014 -> 1.101.0.1:3000 11 1507 1 2025-10-30 12:58:18.535 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:50098 10 6452 1 Summary: total flows: 163, total bytes: 497049, total packets: 1565, avg bps: 1057, avg pps: 0, avg bpp: 317 Time window: 2025-10-30 11:55:49 - 2025-10-30 12:58:28 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0034s User: 0.0023s Wall: 0.0058s flows/second: 27944.9 Runtime: 0.0059s