Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 05:59:33.560 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60728 10 6452 1 2025-11-01 05:54:53.969 00:05:56.610 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 05:54:53.965 00:05:56.618 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 05:59:38.799 00:00:10.365 TCP 23.104.0.1:54732 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:00:33.775 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50440 10 6452 1 2025-11-01 06:00:39.203 00:00:10.864 TCP 23.104.0.1:60440 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:01:00.491 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:01:00.373 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:01:34.006 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:52132 10 6452 1 2025-11-01 06:01:40.124 00:00:10.363 TCP 23.104.0.1:46470 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:02:34.184 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39262 10 6452 1 2025-11-01 06:02:40.530 00:00:10.323 TCP 23.104.0.1:34064 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:03:34.400 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50320 10 6452 1 2025-11-01 06:03:40.894 00:00:10.367 TCP 23.104.0.1:50940 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:04:34.608 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:57502 12 10375 1 2025-11-01 06:04:41.299 00:00:10.398 TCP 23.104.0.1:40994 -> 1.101.0.1:3000 15 1926 1 2025-11-01 06:05:34.860 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:35950 10 6452 1 2025-11-01 06:00:53.965 00:05:56.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 06:00:53.962 00:05:56.621 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 06:05:41.736 00:00:10.371 TCP 23.104.0.1:52076 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:06:00.501 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:06:00.416 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:06:42.144 00:00:12.550 TCP 23.104.0.1:41286 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:06:35.102 00:00:19.482 TCP 1.101.0.1:3000 -> 22.102.0.1:37922 10 6452 1 2025-11-01 06:07:44.646 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51264 10 6452 1 2025-11-01 06:07:44.777 00:00:10.325 TCP 23.104.0.1:59266 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:08:45.141 00:00:10.367 TCP 23.104.0.1:54322 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:08:44.862 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:58136 10 6452 1 2025-11-01 06:09:45.101 00:00:29.638 TCP 1.101.0.1:3000 -> 22.102.0.1:59790 10 6452 1 2025-11-01 06:09:45.550 00:00:29.284 TCP 23.104.0.1:53490 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:11:00.678 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:11:00.410 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:11:05.026 00:00:10.321 TCP 23.104.0.1:47100 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:11:04.816 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35320 10 6452 1 2025-11-01 06:06:53.965 00:05:56.654 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 06:06:53.968 00:05:56.649 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 06:12:05.384 00:00:10.361 TCP 23.104.0.1:38082 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:12:05.028 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57030 10 6452 1 2025-11-01 06:13:05.242 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:50272 10 6452 1 2025-11-01 06:13:05.785 00:00:10.367 TCP 23.104.0.1:44520 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:14:06.186 00:00:10.440 TCP 23.104.0.1:41968 -> 1.101.0.1:3000 15 1926 1 2025-11-01 06:14:05.451 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:35770 12 10375 1 2025-11-01 06:15:05.695 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:54610 10 6452 1 2025-11-01 06:15:06.667 00:00:10.368 TCP 23.104.0.1:39248 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:16:00.809 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:16:00.861 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:16:05.920 00:00:10.623 TCP 1.101.0.1:3000 -> 22.102.0.1:55770 12 6556 1 2025-11-01 06:16:07.102 00:00:10.366 TCP 23.104.0.1:48878 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:17:06.581 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36560 10 6452 1 2025-11-01 06:17:07.503 00:00:10.526 TCP 23.104.0.1:46592 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:12:53.967 00:05:56.649 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 06:12:53.965 00:05:56.654 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 06:18:06.804 00:00:12.624 TCP 1.101.0.1:3000 -> 22.102.0.1:35778 10 6452 1 2025-11-01 06:18:08.094 00:00:11.414 TCP 23.104.0.1:53842 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:19:09.575 00:00:10.365 TCP 23.104.0.1:60572 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:19:09.478 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46790 10 6452 1 2025-11-01 06:20:09.699 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58532 10 6452 1 2025-11-01 06:20:09.980 00:00:10.369 TCP 23.104.0.1:44016 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:21:00.843 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:21:00.769 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:21:09.920 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38160 10 6452 1 2025-11-01 06:21:10.387 00:00:10.334 TCP 23.104.0.1:48050 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:22:10.127 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47398 10 6452 1 2025-11-01 06:22:10.753 00:00:10.383 TCP 23.104.0.1:44816 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:23:10.342 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38842 10 6452 1 2025-11-01 06:23:11.178 00:00:10.419 TCP 23.104.0.1:56254 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:18:53.967 00:05:56.654 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 06:18:53.970 00:05:56.649 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 06:24:10.552 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55690 10 6452 1 2025-11-01 06:24:11.639 00:00:10.364 TCP 23.104.0.1:58774 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:25:10.767 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40880 10 6452 1 2025-11-01 06:25:12.035 00:00:10.375 TCP 23.104.0.1:40396 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:26:00.827 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:26:01.050 00:00:00.043 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:26:10.988 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:33512 10 6452 1 2025-11-01 06:26:12.430 00:00:10.366 TCP 23.104.0.1:37816 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:27:11.188 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43004 10 6452 1 2025-11-01 06:27:12.836 00:00:10.392 TCP 23.104.0.1:58650 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:28:11.412 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:46592 10 6452 1 2025-11-01 06:28:13.267 00:00:10.332 TCP 23.104.0.1:34420 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:29:11.626 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33526 10 6452 1 2025-11-01 06:29:13.637 00:00:10.375 TCP 23.104.0.1:53602 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:24:53.968 00:05:56.654 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 06:24:53.971 00:05:56.648 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 06:30:11.843 00:00:21.585 TCP 1.101.0.1:3000 -> 22.102.0.1:33328 10 6452 1 2025-11-01 06:30:14.059 00:00:19.466 TCP 23.104.0.1:42048 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:31:01.251 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:31:00.954 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:31:23.572 00:00:10.366 TCP 23.104.0.1:58272 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:31:23.471 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:52610 10 6452 1 2025-11-01 06:32:23.979 00:00:10.368 TCP 23.104.0.1:34398 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:32:23.699 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35268 10 6452 1 2025-11-01 06:33:24.384 00:00:10.364 TCP 23.104.0.1:52480 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:33:23.919 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:59368 10 6452 1 2025-11-01 06:34:24.788 00:00:10.321 TCP 23.104.0.1:45270 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:34:24.101 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49418 10 6452 1 2025-11-01 06:35:25.147 00:00:10.362 TCP 23.104.0.1:55964 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:35:24.318 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49076 10 6452 1 2025-11-01 06:30:53.974 00:05:56.652 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 06:30:53.977 00:05:56.647 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 06:36:00.887 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:36:01.203 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:36:24.531 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43956 10 6452 1 2025-11-01 06:36:25.547 00:00:10.367 TCP 23.104.0.1:42226 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:37:24.752 00:00:10.658 TCP 1.101.0.1:3000 -> 22.102.0.1:50796 10 6452 1 2025-11-01 06:37:25.953 00:00:10.372 TCP 23.104.0.1:34562 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:38:25.439 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:50156 10 6452 1 2025-11-01 06:38:26.363 00:00:10.361 TCP 23.104.0.1:56724 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:39:25.669 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58626 10 6452 1 2025-11-01 06:39:26.769 00:00:10.372 TCP 23.104.0.1:38926 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:40:25.882 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:44560 10 6452 1 2025-11-01 06:40:27.184 00:00:10.365 TCP 23.104.0.1:56708 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:41:01.162 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:41:01.146 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:41:26.121 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37714 10 6452 1 2025-11-01 06:41:27.585 00:00:10.371 TCP 23.104.0.1:34804 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:36:53.976 00:05:56.652 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 06:36:53.979 00:05:56.647 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 06:42:26.329 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38054 10 6452 1 2025-11-01 06:42:28.001 00:00:10.367 TCP 23.104.0.1:55250 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:43:26.548 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60316 10 6452 1 2025-11-01 06:43:28.409 00:00:10.362 TCP 23.104.0.1:40610 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:44:26.763 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33322 10 6452 1 2025-11-01 06:44:28.810 00:00:10.364 TCP 23.104.0.1:57520 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:45:29.210 00:00:10.365 TCP 23.104.0.1:51154 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:45:26.976 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:60864 10 6452 1 2025-11-01 06:46:01.342 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:46:01.358 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:46:29.614 00:00:10.360 TCP 23.104.0.1:59144 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:46:27.215 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50620 10 6452 1 2025-11-01 06:47:30.016 00:00:10.371 TCP 23.104.0.1:50948 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:47:27.437 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35462 10 6452 1 2025-11-01 06:42:53.980 00:05:56.647 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 06:42:53.977 00:05:56.652 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 06:48:27.654 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:38874 10 6452 1 2025-11-01 06:48:30.425 00:00:10.373 TCP 23.104.0.1:33038 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:49:30.836 00:00:10.345 TCP 23.104.0.1:57684 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:49:27.832 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59364 10 6452 1 2025-11-01 06:50:28.071 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59020 10 6452 1 2025-11-01 06:50:31.225 00:00:10.320 TCP 23.104.0.1:40126 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:51:01.510 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:51:01.516 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:51:28.286 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43068 10 6452 1 2025-11-01 06:51:31.581 00:00:10.478 TCP 23.104.0.1:36334 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:52:28.500 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50990 12 6556 1 2025-11-01 06:52:32.104 00:00:10.325 TCP 23.104.0.1:56192 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:53:28.722 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:47704 10 6452 1 2025-11-01 06:48:53.983 00:05:56.647 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-01 06:53:32.465 00:00:10.365 TCP 23.104.0.1:49476 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:48:53.981 00:05:56.651 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-01 06:54:32.862 00:00:22.197 TCP 23.104.0.1:41348 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:54:28.965 00:00:25.933 TCP 1.101.0.1:3000 -> 22.102.0.1:51626 11 6504 1 2025-11-01 06:55:45.117 00:00:10.372 TCP 23.104.0.1:52126 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:55:44.951 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:59664 10 6452 1 2025-11-01 06:56:01.585 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-01 06:56:01.780 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 06:56:45.538 00:00:10.325 TCP 23.104.0.1:56784 -> 1.101.0.1:3000 11 1507 1 2025-11-01 06:56:45.179 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38360 10 6452 1 2025-11-01 06:57:45.391 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56308 10 6452 1 2025-11-01 06:57:45.898 00:00:10.374 TCP 23.104.0.1:34240 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 491374, total packets: 1547, avg bps: 1039, avg pps: 0, avg bpp: 317 Time window: 2025-11-01 05:54:53 - 2025-11-01 06:57:56 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0057s User: 0.0011s Wall: 0.0018s flows/second: 88394.2 Runtime: 0.0018s