Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 03:59:31.442 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34316 10 6452 1 2025-11-01 03:59:40.890 00:00:10.372 TCP 23.104.0.1:55524 -> 1.101.0.1:3000 11 1507 1 2025-11-01 03:54:53.910 00:05:56.607 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 03:54:53.912 00:05:56.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:00:31.657 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41600 10 6452 1 2025-11-01 04:00:41.303 00:00:10.366 TCP 23.104.0.1:35460 -> 1.101.0.1:3000 12 1559 1 2025-11-01 04:00:57.987 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:00:57.904 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:01:31.873 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:35428 10 6452 1 2025-11-01 04:01:41.706 00:00:10.365 TCP 23.104.0.1:37608 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:02:32.070 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60306 10 6452 1 2025-11-01 04:02:42.109 00:00:10.326 TCP 23.104.0.1:38468 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:03:32.283 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:51840 10 6452 1 2025-11-01 04:03:42.476 00:00:10.367 TCP 23.104.0.1:60656 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:04:32.456 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53980 10 6452 1 2025-11-01 04:04:42.883 00:00:10.397 TCP 23.104.0.1:34158 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:05:32.665 00:00:10.219 TCP 1.101.0.1:3000 -> 22.102.0.1:46406 10 6452 1 2025-11-01 04:00:53.922 00:05:56.593 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:00:53.920 00:05:56.598 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 04:05:43.314 00:00:10.363 TCP 23.104.0.1:45516 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:05:58.216 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:05:57.892 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:06:32.937 00:00:11.665 TCP 1.101.0.1:3000 -> 22.102.0.1:50786 10 6452 1 2025-11-01 04:06:43.718 00:00:10.383 TCP 23.104.0.1:38278 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:07:34.645 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39664 10 6452 1 2025-11-01 04:07:44.140 00:00:10.366 TCP 23.104.0.1:42518 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:08:34.866 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:44764 11 6492 1 2025-11-01 04:08:44.543 00:00:10.365 TCP 23.104.0.1:33210 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:09:35.093 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:58506 10 6452 1 2025-11-01 04:09:44.945 00:00:10.374 TCP 23.104.0.1:40264 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:10:35.303 00:00:15.140 TCP 1.101.0.1:3000 -> 22.102.0.1:55662 10 6452 1 2025-11-01 04:10:45.359 00:00:10.346 TCP 23.104.0.1:60172 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:10:58.928 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:10:58.749 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:06:53.923 00:05:56.596 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:11:40.486 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60676 10 6452 1 2025-11-01 04:06:53.918 00:05:56.602 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 04:11:45.732 00:00:10.370 TCP 23.104.0.1:44702 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:12:40.705 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46208 10 6452 1 2025-11-01 04:12:46.142 00:00:10.365 TCP 23.104.0.1:49726 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:13:40.929 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:43682 10 6452 1 2025-11-01 04:13:46.547 00:00:10.443 TCP 23.104.0.1:46280 -> 1.101.0.1:3000 15 1926 1 2025-11-01 04:14:41.178 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:37468 12 10375 1 2025-11-01 04:14:47.029 00:00:10.361 TCP 23.104.0.1:42310 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:15:41.386 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:34964 10 6452 1 2025-11-01 04:15:58.346 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:15:47.429 00:00:10.366 TCP 23.104.0.1:43808 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:15:58.197 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:16:41.559 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:46098 10 6452 1 2025-11-01 04:16:47.836 00:00:10.347 TCP 23.104.0.1:37034 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:12:53.920 00:05:56.601 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 04:12:53.924 00:05:56.596 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:17:41.804 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39470 10 6452 1 2025-11-01 04:17:48.221 00:00:10.367 TCP 23.104.0.1:43294 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:18:42.027 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35646 10 6452 1 2025-11-01 04:18:48.634 00:00:10.316 TCP 23.104.0.1:34992 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:19:42.244 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37772 10 6452 1 2025-11-01 04:19:48.989 00:00:10.364 TCP 23.104.0.1:36142 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:20:42.461 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56690 10 6452 1 2025-11-01 04:20:58.551 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:20:49.396 00:00:10.321 TCP 23.104.0.1:46624 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:20:59.032 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:21:42.674 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:41944 10 6452 1 2025-11-01 04:21:49.759 00:00:10.369 TCP 23.104.0.1:49606 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:22:42.848 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42994 10 6452 1 2025-11-01 04:22:50.177 00:00:10.382 TCP 23.104.0.1:35954 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:18:53.928 00:05:56.610 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:18:53.925 00:05:56.615 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 04:23:43.078 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55402 10 6452 1 2025-11-01 04:23:50.598 00:00:10.329 TCP 23.104.0.1:42222 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:24:43.287 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45044 10 6452 1 2025-11-01 04:24:50.964 00:00:10.367 TCP 23.104.0.1:51572 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:25:43.498 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:43420 10 6452 1 2025-11-01 04:25:58.449 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:25:51.373 00:00:10.324 TCP 23.104.0.1:47514 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:25:58.700 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:26:43.709 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:33330 10 6452 1 2025-11-01 04:26:51.731 00:00:10.364 TCP 23.104.0.1:39330 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:27:43.896 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:35392 10 6452 1 2025-11-01 04:27:52.139 00:00:10.322 TCP 23.104.0.1:58932 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:28:44.086 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34432 10 6452 1 2025-11-01 04:28:52.498 00:00:10.362 TCP 23.104.0.1:46330 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:24:53.928 00:05:56.614 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 04:24:53.932 00:05:56.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:29:52.898 00:00:14.014 TCP 23.104.0.1:57670 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:29:44.299 00:00:22.509 TCP 1.101.0.1:3000 -> 22.102.0.1:56724 10 6452 1 2025-11-01 04:30:58.725 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:30:58.561 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:30:56.854 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:41826 10 6452 1 2025-11-01 04:30:56.972 00:00:10.366 TCP 23.104.0.1:33592 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:31:57.382 00:00:10.323 TCP 23.104.0.1:56788 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:31:57.093 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47326 10 6452 1 2025-11-01 04:32:57.741 00:00:10.366 TCP 23.104.0.1:43490 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:32:57.300 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45958 10 6452 1 2025-11-01 04:33:57.521 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:52772 10 6452 1 2025-11-01 04:33:58.149 00:00:10.369 TCP 23.104.0.1:41800 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:34:57.697 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:44990 10 6452 1 2025-11-01 04:34:58.557 00:00:10.362 TCP 23.104.0.1:43294 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:30:53.932 00:05:56.611 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 04:30:53.935 00:05:56.606 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:35:58.772 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:35:58.839 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:35:57.861 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:33524 10 6452 1 2025-11-01 04:35:58.956 00:00:10.366 TCP 23.104.0.1:45654 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:36:58.102 00:00:12.973 TCP 1.101.0.1:3000 -> 22.102.0.1:46888 10 6452 1 2025-11-01 04:36:59.357 00:00:11.812 TCP 23.104.0.1:39510 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:38:01.213 00:00:10.366 TCP 23.104.0.1:43340 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:38:01.111 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35946 10 6452 1 2025-11-01 04:39:01.335 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60246 10 6452 1 2025-11-01 04:39:01.617 00:00:10.365 TCP 23.104.0.1:46768 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:40:01.552 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:45374 10 6452 1 2025-11-01 04:40:02.025 00:00:10.370 TCP 23.104.0.1:58422 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:40:58.977 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:40:58.711 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:41:01.788 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44342 10 6452 1 2025-11-01 04:41:02.429 00:00:10.367 TCP 23.104.0.1:39006 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:36:53.933 00:05:56.612 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 04:36:53.936 00:05:56.606 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:42:02.836 00:00:10.448 TCP 23.104.0.1:45430 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:42:02.003 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58728 10 6452 1 2025-11-01 04:43:03.323 00:00:10.363 TCP 23.104.0.1:35000 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:43:02.227 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42176 10 6452 1 2025-11-01 04:44:03.727 00:00:10.370 TCP 23.104.0.1:52786 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:44:02.448 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:33102 10 6452 1 2025-11-01 04:45:04.133 00:00:10.719 TCP 23.104.0.1:59604 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:45:02.615 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46458 10 6452 1 2025-11-01 04:45:59.159 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:45:58.962 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:46:02.831 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53030 10 6452 1 2025-11-01 04:46:04.885 00:00:10.388 TCP 23.104.0.1:53102 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:47:03.074 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:48744 10 6452 1 2025-11-01 04:47:05.313 00:00:10.365 TCP 23.104.0.1:35208 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:42:53.936 00:05:56.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:42:53.935 00:05:56.622 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 04:48:05.720 00:00:10.371 TCP 23.104.0.1:60712 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:48:03.297 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46948 10 6452 1 2025-11-01 04:49:06.127 00:00:10.367 TCP 23.104.0.1:41008 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:49:03.511 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35784 10 6452 1 2025-11-01 04:50:06.529 00:00:10.367 TCP 23.104.0.1:53420 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:50:03.733 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36410 10 6452 1 2025-11-01 04:50:59.125 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:50:59.034 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:51:03.947 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:48506 10 6452 1 2025-11-01 04:51:06.935 00:00:10.371 TCP 23.104.0.1:47934 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:52:04.180 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41388 10 6452 1 2025-11-01 04:52:07.344 00:00:10.366 TCP 23.104.0.1:36212 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:53:04.397 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:50468 10 6452 1 2025-11-01 04:53:07.752 00:00:10.392 TCP 23.104.0.1:44922 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:48:53.937 00:05:56.621 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 04:48:53.937 00:05:56.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 04:54:04.576 00:00:11.519 TCP 1.101.0.1:3000 -> 22.102.0.1:42100 10 6452 1 2025-11-01 04:54:08.188 00:00:10.371 TCP 23.104.0.1:58646 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:55:06.132 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:48106 10 6452 1 2025-11-01 04:55:08.595 00:00:10.383 TCP 23.104.0.1:59298 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:55:59.747 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 04:55:59.553 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 04:56:06.358 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:50568 10 6452 1 2025-11-01 04:56:09.037 00:00:10.367 TCP 23.104.0.1:53432 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:57:06.546 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40998 10 6452 1 2025-11-01 04:57:09.443 00:00:10.322 TCP 23.104.0.1:44962 -> 1.101.0.1:3000 11 1507 1 2025-11-01 04:58:06.756 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:33892 10 6452 1 2025-11-01 04:58:09.807 00:00:10.372 TCP 23.104.0.1:42120 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 494823, total packets: 1559, avg bps: 1040, avg pps: 0, avg bpp: 317 Time window: 2025-11-01 03:54:53 - 2025-11-01 04:58:20 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0052s User: 0.0000s Wall: 0.0025s flows/second: 64466.5 Runtime: 0.0025s