Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 10:54:51.391 00:05:03.194 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 10:58:55.114 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40756 10 6452 1 2025-11-02 10:59:38.224 00:00:10.366 TCP 23.104.0.1:35000 -> 1.101.0.1:3000 11 1507 1 2025-11-02 10:55:51.395 00:05:03.188 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 10:59:55.329 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48758 10 6452 1 2025-11-02 11:00:38.621 00:00:10.366 TCP 23.104.0.1:34310 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:00:55.535 00:00:12.316 TCP 1.101.0.1:3000 -> 22.102.0.1:53468 10 6452 1 2025-11-02 11:01:35.209 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:01:35.155 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:01:39.027 00:00:10.364 TCP 23.104.0.1:55890 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:01:57.891 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34106 10 6452 1 2025-11-02 11:02:39.430 00:00:10.325 TCP 23.104.0.1:56252 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:02:58.109 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:40358 10 6452 1 2025-11-02 11:03:39.794 00:00:10.366 TCP 23.104.0.1:47016 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:03:58.283 00:00:10.822 TCP 1.101.0.1:3000 -> 22.102.0.1:49114 11 6504 1 2025-11-02 11:04:40.200 00:00:10.364 TCP 23.104.0.1:40704 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:00:51.393 00:05:03.192 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 11:04:59.143 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:56616 10 6452 1 2025-11-02 11:05:40.600 00:00:10.364 TCP 23.104.0.1:50884 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:01:51.395 00:05:03.187 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 11:05:59.364 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:42730 10 6452 1 2025-11-02 11:06:35.411 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:06:35.370 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:06:41.004 00:00:10.366 TCP 23.104.0.1:54698 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:06:59.539 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:46728 10 6452 1 2025-11-02 11:07:41.407 00:00:10.323 TCP 23.104.0.1:44116 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:07:59.776 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40140 10 6452 1 2025-11-02 11:08:41.774 00:00:10.328 TCP 23.104.0.1:58736 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:08:59.992 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:60588 10 6452 1 2025-11-02 11:09:42.140 00:00:10.369 TCP 23.104.0.1:50384 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:10:00.224 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45656 10 6452 1 2025-11-02 11:10:42.548 00:00:10.362 TCP 23.104.0.1:48698 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:06:51.393 00:05:03.194 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 11:11:00.445 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41582 10 6452 1 2025-11-02 11:11:35.439 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:11:35.498 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:07:51.396 00:05:03.188 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 11:11:42.950 00:00:10.371 TCP 23.104.0.1:60230 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:12:00.670 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33726 10 6452 1 2025-11-02 11:12:43.363 00:00:16.411 TCP 23.104.0.1:58466 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:13:00.886 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42964 10 6452 1 2025-11-02 11:13:49.842 00:00:10.392 TCP 23.104.0.1:56946 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:14:01.107 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39502 10 6452 1 2025-11-02 11:14:50.271 00:00:10.490 TCP 23.104.0.1:56728 -> 1.101.0.1:3000 15 1926 1 2025-11-02 11:15:01.322 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:49186 12 10375 1 2025-11-02 11:16:01.559 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58598 10 6452 1 2025-11-02 11:15:50.801 00:00:16.553 TCP 23.104.0.1:41612 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:16:36.211 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:16:36.047 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:12:51.394 00:05:03.196 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 11:16:57.407 00:00:10.319 TCP 23.104.0.1:55570 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:17:01.775 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38342 10 6452 1 2025-11-02 11:13:51.398 00:05:03.190 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 11:17:57.769 00:00:10.334 TCP 23.104.0.1:38404 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:18:01.990 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50080 10 6452 1 2025-11-02 11:18:58.137 00:00:10.365 TCP 23.104.0.1:32988 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:19:02.216 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58834 10 6452 1 2025-11-02 11:19:58.540 00:00:10.368 TCP 23.104.0.1:47590 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:20:02.431 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:58414 10 6452 1 2025-11-02 11:20:58.950 00:00:10.367 TCP 23.104.0.1:44552 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:21:02.611 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40646 10 6452 1 2025-11-02 11:21:36.187 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:21:35.990 00:00:00.015 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:21:59.355 00:00:10.373 TCP 23.104.0.1:41036 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:22:02.826 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57864 10 6452 1 2025-11-02 11:18:51.398 00:05:03.195 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 11:22:59.756 00:00:10.331 TCP 23.104.0.1:47034 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:23:03.059 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:52260 10 6452 1 2025-11-02 11:19:51.399 00:05:03.190 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 11:24:00.126 00:00:10.326 TCP 23.104.0.1:41092 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:24:03.267 00:00:10.958 TCP 1.101.0.1:3000 -> 22.102.0.1:56342 10 6452 1 2025-11-02 11:25:00.491 00:00:10.327 TCP 23.104.0.1:46976 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:25:04.267 00:00:10.730 TCP 1.101.0.1:3000 -> 22.102.0.1:52584 10 6452 1 2025-11-02 11:26:00.858 00:00:21.940 TCP 23.104.0.1:41622 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:26:05.037 00:00:17.668 TCP 1.101.0.1:3000 -> 22.102.0.1:54228 10 6452 1 2025-11-02 11:26:35.792 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:26:35.660 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:27:12.743 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:38722 10 6452 1 2025-11-02 11:27:12.837 00:00:10.338 TCP 23.104.0.1:33880 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:28:13.213 00:00:10.368 TCP 23.104.0.1:57614 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:28:12.923 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:33472 10 6452 1 2025-11-02 11:24:51.398 00:05:03.195 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 11:29:13.616 00:00:10.366 TCP 23.104.0.1:34102 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:29:13.170 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45420 10 6452 1 2025-11-02 11:25:51.401 00:05:03.190 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 11:30:14.024 00:00:10.399 TCP 23.104.0.1:33300 -> 1.101.0.1:3000 15 1926 1 2025-11-02 11:30:13.387 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41220 12 10369 1 2025-11-02 11:31:13.595 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:36916 10 6452 1 2025-11-02 11:31:14.463 00:00:10.366 TCP 23.104.0.1:38816 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:31:35.986 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:31:35.909 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:32:13.803 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45878 10 6452 1 2025-11-02 11:32:14.871 00:00:10.369 TCP 23.104.0.1:44118 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:33:15.277 00:00:10.367 TCP 23.104.0.1:51680 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:33:14.025 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46846 10 6452 1 2025-11-02 11:34:15.680 00:00:10.331 TCP 23.104.0.1:56734 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:34:14.233 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45588 10 6452 1 2025-11-02 11:30:51.400 00:05:03.199 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 11:35:16.059 00:00:10.358 TCP 23.104.0.1:43014 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:35:14.441 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44282 10 6452 1 2025-11-02 11:31:51.402 00:05:03.194 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 11:36:16.453 00:00:10.369 TCP 23.104.0.1:42504 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:36:14.654 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54322 10 6452 1 2025-11-02 11:36:36.201 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:36:35.944 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:37:14.860 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:57390 10 6452 1 2025-11-02 11:37:16.858 00:00:10.377 TCP 23.104.0.1:49060 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:38:15.095 00:00:10.403 TCP 1.101.0.1:3000 -> 22.102.0.1:41684 10 6452 1 2025-11-02 11:38:17.279 00:00:10.366 TCP 23.104.0.1:33672 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:39:15.535 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35978 10 6452 1 2025-11-02 11:39:17.682 00:00:10.364 TCP 23.104.0.1:47618 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:40:15.756 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32892 10 6452 1 2025-11-02 11:40:18.108 00:00:10.368 TCP 23.104.0.1:56186 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:36:51.400 00:05:03.200 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 11:41:15.970 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:58878 10 6452 1 2025-11-02 11:41:18.510 00:00:10.365 TCP 23.104.0.1:53162 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:41:36.565 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:41:36.592 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:37:51.403 00:05:03.194 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 11:42:16.211 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49094 10 6452 1 2025-11-02 11:42:18.913 00:00:10.324 TCP 23.104.0.1:57360 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:43:16.425 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:52896 10 6452 1 2025-11-02 11:43:19.278 00:00:10.366 TCP 23.104.0.1:38240 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:44:16.653 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37772 10 6452 1 2025-11-02 11:44:19.679 00:00:10.366 TCP 23.104.0.1:51576 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:45:20.109 00:00:11.126 TCP 23.104.0.1:47882 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:45:16.867 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:35294 10 6452 1 2025-11-02 11:46:21.272 00:00:10.327 TCP 23.104.0.1:38812 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:46:36.142 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:46:17.100 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33586 10 6452 1 2025-11-02 11:46:36.261 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:42:51.402 00:05:03.199 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 11:47:17.315 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47046 10 6452 1 2025-11-02 11:47:21.648 00:00:10.371 TCP 23.104.0.1:44116 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:43:51.406 00:05:03.194 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 11:48:17.530 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:53548 10 6452 1 2025-11-02 11:48:22.065 00:00:10.365 TCP 23.104.0.1:36694 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:49:17.776 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:36078 11 6504 1 2025-11-02 11:49:22.468 00:00:10.361 TCP 23.104.0.1:38828 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:50:18.004 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:51724 10 6452 1 2025-11-02 11:50:22.871 00:00:10.363 TCP 23.104.0.1:41140 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:51:18.225 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48154 12 6556 1 2025-11-02 11:51:36.680 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:51:23.271 00:00:10.331 TCP 23.104.0.1:40478 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:51:36.446 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:52:18.440 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37824 10 6452 1 2025-11-02 11:52:23.638 00:00:10.369 TCP 23.104.0.1:52734 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:48:51.402 00:05:03.201 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-02 11:53:18.656 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:53286 10 6452 1 2025-11-02 11:53:24.051 00:00:10.331 TCP 23.104.0.1:52970 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:49:51.407 00:05:03.195 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-02 11:54:18.837 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48052 10 6452 1 2025-11-02 11:54:24.422 00:00:10.364 TCP 23.104.0.1:33768 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:55:19.083 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:37190 10 6452 1 2025-11-02 11:55:24.825 00:00:10.365 TCP 23.104.0.1:37914 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:56:19.262 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:38550 10 6452 1 2025-11-02 11:56:36.597 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-02 11:56:36.650 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 11:56:25.229 00:00:10.362 TCP 23.104.0.1:35946 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:57:19.436 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45436 10 6452 1 2025-11-02 11:57:25.628 00:00:10.366 TCP 23.104.0.1:35074 -> 1.101.0.1:3000 11 1507 1 2025-11-02 11:58:19.611 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59200 10 6452 1 2025-11-02 11:58:26.033 00:00:10.373 TCP 23.104.0.1:42510 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 505727, total packets: 1577, avg bps: 1057, avg pps: 0, avg bpp: 320 Time window: 2025-11-02 10:54:51 - 2025-11-02 11:58:36 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0032s User: 0.0021s Wall: 0.0046s flows/second: 35427.1 Runtime: 0.0046s