Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 14:59:11.300 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41356 10 6452 1 2025-10-30 14:59:36.228 00:00:10.365 TCP 23.104.0.1:60200 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:55:49.593 00:05:03.452 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:55:49.596 00:05:03.447 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:00:13.486 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:00:13.532 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:00:11.516 00:00:11.809 TCP 1.101.0.1:3000 -> 22.102.0.1:35278 10 6452 1 2025-10-30 15:00:36.633 00:00:10.371 TCP 23.104.0.1:58476 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:01:13.367 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48566 10 6452 1 2025-10-30 15:01:37.036 00:00:10.324 TCP 23.104.0.1:48742 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:02:13.578 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:38264 10 6452 1 2025-10-30 15:02:37.403 00:00:10.325 TCP 23.104.0.1:39932 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:03:13.815 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42948 10 6452 1 2025-10-30 15:03:37.768 00:00:10.331 TCP 23.104.0.1:44520 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:04:14.044 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57432 10 6452 1 2025-10-30 15:04:38.138 00:00:10.364 TCP 23.104.0.1:45150 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:05:13.650 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:05:13.719 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:05:14.256 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:53446 10 6452 1 2025-10-30 15:05:38.540 00:00:10.366 TCP 23.104.0.1:46938 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:01:49.595 00:05:03.454 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 15:01:49.597 00:05:03.449 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:06:14.464 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50100 10 6452 1 2025-10-30 15:06:38.946 00:00:10.377 TCP 23.104.0.1:43534 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:07:14.685 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60060 10 6452 1 2025-10-30 15:07:39.356 00:00:10.369 TCP 23.104.0.1:41686 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:08:14.898 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45870 10 6452 1 2025-10-30 15:08:39.762 00:00:10.375 TCP 23.104.0.1:60350 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:09:15.117 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36492 10 6452 1 2025-10-30 15:09:40.175 00:00:10.360 TCP 23.104.0.1:59184 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:10:13.708 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:10:13.798 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:10:15.330 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:51388 10 6452 1 2025-10-30 15:10:40.578 00:00:10.365 TCP 23.104.0.1:35480 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:11:15.558 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57452 10 6452 1 2025-10-30 15:11:40.977 00:00:10.370 TCP 23.104.0.1:38642 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:07:49.599 00:05:03.452 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 15:07:49.603 00:05:03.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:12:15.770 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:52488 10 6452 1 2025-10-30 15:12:41.384 00:00:10.319 TCP 23.104.0.1:59652 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:13:15.977 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:51766 10 6452 1 2025-10-30 15:13:41.736 00:00:10.369 TCP 23.104.0.1:52688 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:14:16.174 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42272 10 6452 1 2025-10-30 15:14:42.139 00:00:10.367 TCP 23.104.0.1:59624 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:15:13.620 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:15:13.927 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:15:16.394 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:41016 10 6452 1 2025-10-30 15:15:42.546 00:00:10.405 TCP 23.104.0.1:55978 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:16:16.623 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56064 10 6452 1 2025-10-30 15:16:42.959 00:00:10.370 TCP 23.104.0.1:32866 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:17:16.841 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54346 10 6452 1 2025-10-30 15:13:49.603 00:05:03.448 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:17:43.363 00:00:10.365 TCP 23.104.0.1:45244 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:13:49.601 00:05:03.454 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 15:18:17.072 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36170 10 6452 1 2025-10-30 15:18:43.770 00:00:10.331 TCP 23.104.0.1:59090 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:19:17.283 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58566 10 6452 1 2025-10-30 15:19:44.133 00:00:10.331 TCP 23.104.0.1:57458 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:20:14.180 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:20:13.915 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:20:17.493 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58102 10 6452 1 2025-10-30 15:20:44.504 00:00:10.424 TCP 23.104.0.1:45696 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:21:17.706 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:33696 10 6452 1 2025-10-30 15:21:44.975 00:00:10.373 TCP 23.104.0.1:53550 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:22:17.895 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37832 10 6452 1 2025-10-30 15:22:45.383 00:00:10.376 TCP 23.104.0.1:43008 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:23:18.118 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:51976 13 13949 1 2025-10-30 15:19:49.602 00:05:03.454 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 15:23:45.797 00:00:10.419 TCP 23.104.0.1:48516 -> 1.101.0.1:3000 15 1926 1 2025-10-30 15:19:49.605 00:05:03.449 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:24:18.365 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39070 10 6452 1 2025-10-30 15:24:46.263 00:00:10.324 TCP 23.104.0.1:60782 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:25:13.972 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:25:13.875 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:25:18.578 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:51266 10 6452 1 2025-10-30 15:25:46.625 00:00:10.324 TCP 23.104.0.1:60160 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:26:18.755 00:00:10.652 TCP 1.101.0.1:3000 -> 22.102.0.1:38764 10 6452 1 2025-10-30 15:26:46.987 00:00:10.324 TCP 23.104.0.1:53700 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:27:19.456 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35522 10 6452 1 2025-10-30 15:27:47.347 00:00:10.328 TCP 23.104.0.1:57480 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:28:19.668 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56336 10 6452 1 2025-10-30 15:28:47.711 00:00:10.326 TCP 23.104.0.1:33636 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:29:19.881 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34898 10 6452 1 2025-10-30 15:25:49.607 00:05:03.449 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:25:49.603 00:05:03.455 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 15:29:48.103 00:00:10.366 TCP 23.104.0.1:41908 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:30:13.830 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:30:14.104 00:00:00.054 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:30:20.098 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45540 10 6452 1 2025-10-30 15:30:48.501 00:00:10.372 TCP 23.104.0.1:58142 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:31:20.316 00:00:10.125 TCP 1.101.0.1:3000 -> 22.102.0.1:46098 10 6452 1 2025-10-30 15:31:48.907 00:00:10.363 TCP 23.104.0.1:58120 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:32:20.482 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:45578 10 6452 1 2025-10-30 15:32:49.313 00:00:10.363 TCP 23.104.0.1:42420 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:33:20.657 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:41926 10 6452 1 2025-10-30 15:33:49.717 00:00:10.376 TCP 23.104.0.1:38462 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:34:20.874 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:44178 10 6452 1 2025-10-30 15:34:50.131 00:00:10.368 TCP 23.104.0.1:58540 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:35:14.124 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:35:14.290 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:35:21.098 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59220 10 6452 1 2025-10-30 15:31:49.605 00:05:03.455 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 15:31:49.608 00:05:03.450 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:35:50.533 00:00:10.367 TCP 23.104.0.1:39410 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:36:21.305 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46326 10 6452 1 2025-10-30 15:36:50.936 00:00:10.328 TCP 23.104.0.1:58888 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:37:21.529 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:50646 12 6556 1 2025-10-30 15:37:51.306 00:00:10.359 TCP 23.104.0.1:36526 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:38:21.761 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56374 10 6452 1 2025-10-30 15:38:51.703 00:00:10.364 TCP 23.104.0.1:49266 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:39:21.995 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:45524 10 6452 1 2025-10-30 15:39:52.109 00:00:10.366 TCP 23.104.0.1:50196 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:40:14.256 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:40:13.949 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:40:22.236 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56652 10 6452 1 2025-10-30 15:40:52.519 00:00:10.362 TCP 23.104.0.1:52372 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:41:22.454 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:32838 10 6452 1 2025-10-30 15:37:49.606 00:05:03.456 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 15:37:49.609 00:05:03.451 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:41:52.919 00:00:17.288 TCP 23.104.0.1:52122 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:42:22.667 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46390 10 6452 1 2025-10-30 15:43:00.280 00:00:10.367 TCP 23.104.0.1:51682 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:43:22.880 00:00:10.575 TCP 1.101.0.1:3000 -> 22.102.0.1:54908 12 10369 1 2025-10-30 15:44:00.684 00:00:10.454 TCP 23.104.0.1:43444 -> 1.101.0.1:3000 15 1926 1 2025-10-30 15:44:23.493 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43684 10 6452 1 2025-10-30 15:45:14.502 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:45:14.315 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:45:01.180 00:00:15.269 TCP 23.104.0.1:39668 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:45:23.708 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47904 10 6452 1 2025-10-30 15:46:06.502 00:00:10.323 TCP 23.104.0.1:33036 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:46:23.928 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:46898 10 6452 1 2025-10-30 15:47:06.867 00:00:10.366 TCP 23.104.0.1:60582 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:47:24.137 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35276 10 6452 1 2025-10-30 15:43:49.610 00:05:03.454 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 15:43:49.613 00:05:03.449 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:48:07.270 00:00:10.327 TCP 23.104.0.1:52462 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:48:24.357 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39134 10 6452 1 2025-10-30 15:49:07.633 00:00:10.322 TCP 23.104.0.1:47136 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:49:24.577 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:35104 10 6452 1 2025-10-30 15:50:14.784 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:50:14.744 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:50:07.996 00:00:10.364 TCP 23.104.0.1:59316 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:50:24.749 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:32820 10 6452 1 2025-10-30 15:51:08.404 00:00:10.369 TCP 23.104.0.1:49226 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:51:24.960 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54796 12 6556 1 2025-10-30 15:52:08.809 00:00:10.717 TCP 23.104.0.1:35404 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:52:25.185 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:53906 10 6452 1 2025-10-30 15:53:09.563 00:00:10.325 TCP 23.104.0.1:44828 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:53:25.362 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50418 10 6452 1 2025-10-30 15:49:49.611 00:05:03.454 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 15:49:49.615 00:05:03.448 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 15:54:09.928 00:00:10.380 TCP 23.104.0.1:38606 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:54:25.569 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48314 10 6452 1 2025-10-30 15:55:14.784 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 15:55:14.629 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 15:55:10.347 00:00:10.329 TCP 23.104.0.1:58302 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:55:25.782 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55516 10 6452 1 2025-10-30 15:56:10.711 00:00:10.373 TCP 23.104.0.1:35152 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:56:25.995 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42734 10 6452 1 2025-10-30 15:57:11.124 00:00:10.376 TCP 23.104.0.1:41762 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:57:26.224 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37226 10 6452 1 2025-10-30 15:58:11.534 00:00:10.366 TCP 23.104.0.1:60022 -> 1.101.0.1:3000 11 1507 1 2025-10-30 15:58:26.449 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55686 10 6452 1 Summary: total flows: 163, total bytes: 509301, total packets: 1578, avg bps: 1081, avg pps: 0, avg bpp: 322 Time window: 2025-10-30 14:55:49 - 2025-10-30 15:58:36 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0046s User: 0.0018s Wall: 0.0024s flows/second: 69127.6 Runtime: 0.0024s