Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 18:54:52.578 00:05:03.099 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 18:59:12.399 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41014 10 6452 1 2025-11-04 18:59:14.335 00:00:10.366 TCP 23.104.0.1:35318 -> 1.101.0.1:3000 11 1507 1 2025-11-04 18:55:52.582 00:05:03.094 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:00:14.741 00:00:10.370 TCP 23.104.0.1:54170 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:00:12.612 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:55228 10 6452 1 2025-11-04 19:01:12.784 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35876 10 6452 1 2025-11-04 19:01:15.146 00:00:10.333 TCP 23.104.0.1:50396 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:02:15.520 00:00:10.368 TCP 23.104.0.1:58364 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:02:12.996 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:54594 10 6452 1 2025-11-04 19:02:42.702 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:02:42.859 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:03:13.224 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53578 10 6452 1 2025-11-04 19:03:15.926 00:00:10.389 TCP 23.104.0.1:46776 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:04:13.435 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50518 12 6556 1 2025-11-04 19:04:16.354 00:00:10.366 TCP 23.104.0.1:48084 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:00:52.580 00:05:03.099 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 19:05:13.642 00:00:10.930 TCP 1.101.0.1:3000 -> 22.102.0.1:58966 10 6452 1 2025-11-04 19:05:16.760 00:00:10.375 TCP 23.104.0.1:35134 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:01:52.584 00:05:03.093 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:06:14.607 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42298 10 6452 1 2025-11-04 19:06:17.168 00:00:10.324 TCP 23.104.0.1:38782 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:07:14.818 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:54614 10 6452 1 2025-11-04 19:07:17.533 00:00:10.365 TCP 23.104.0.1:47106 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:07:42.847 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:07:42.965 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:08:15.004 00:00:12.205 TCP 1.101.0.1:3000 -> 22.102.0.1:54710 10 6452 1 2025-11-04 19:08:17.938 00:00:10.402 TCP 23.104.0.1:42990 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:09:17.251 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:58084 10 6452 1 2025-11-04 19:09:18.392 00:00:10.328 TCP 23.104.0.1:38442 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:10:18.762 00:00:10.380 TCP 23.104.0.1:51872 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:10:17.500 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52118 10 6452 1 2025-11-04 19:06:52.583 00:05:03.098 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 19:11:17.729 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:40476 12 10369 1 2025-11-04 19:11:19.177 00:00:10.438 TCP 23.104.0.1:52820 -> 1.101.0.1:3000 15 1926 1 2025-11-04 19:07:52.585 00:05:03.094 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:12:17.968 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:32954 12 6556 1 2025-11-04 19:12:19.658 00:00:10.365 TCP 23.104.0.1:40560 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:12:42.960 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:12:42.738 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:13:18.189 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46218 10 6452 1 2025-11-04 19:13:20.061 00:00:10.363 TCP 23.104.0.1:58780 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:14:18.415 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38792 10 6452 1 2025-11-04 19:14:20.465 00:00:10.324 TCP 23.104.0.1:57424 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:15:18.643 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49034 10 6452 1 2025-11-04 19:15:20.831 00:00:10.394 TCP 23.104.0.1:48344 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:16:21.258 00:00:10.371 TCP 23.104.0.1:40750 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:16:18.854 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60150 10 6452 1 2025-11-04 19:12:52.587 00:05:03.097 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 19:17:21.665 00:00:10.326 TCP 23.104.0.1:39892 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:17:19.088 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:59510 10 6452 1 2025-11-04 19:17:43.148 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:17:42.918 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:13:52.589 00:05:03.091 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:18:19.303 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38428 10 6452 1 2025-11-04 19:18:22.027 00:00:10.325 TCP 23.104.0.1:45442 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:19:19.514 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56554 12 6556 1 2025-11-04 19:19:22.391 00:00:10.360 TCP 23.104.0.1:37712 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:20:19.728 00:00:10.322 TCP 1.101.0.1:3000 -> 22.102.0.1:53898 10 6452 1 2025-11-04 19:20:22.789 00:00:10.371 TCP 23.104.0.1:56382 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:21:20.095 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56210 10 6452 1 2025-11-04 19:21:23.197 00:00:10.371 TCP 23.104.0.1:43178 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:22:20.308 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51526 10 6452 1 2025-11-04 19:22:23.605 00:00:10.316 TCP 23.104.0.1:59458 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:22:43.110 00:00:00.042 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:22:43.275 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:18:52.587 00:05:03.098 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 19:23:20.528 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:35212 10 6452 1 2025-11-04 19:23:23.963 00:00:10.369 TCP 23.104.0.1:49824 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:19:52.591 00:05:03.093 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:24:20.711 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54184 10 6452 1 2025-11-04 19:24:24.367 00:00:10.362 TCP 23.104.0.1:36576 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:25:20.933 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:32776 10 6452 1 2025-11-04 19:25:24.767 00:00:10.365 TCP 23.104.0.1:43390 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:26:21.181 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39568 10 6452 1 2025-11-04 19:26:25.169 00:00:10.327 TCP 23.104.0.1:36294 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:27:21.404 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36996 10 6452 1 2025-11-04 19:27:25.535 00:00:10.325 TCP 23.104.0.1:56620 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:27:43.369 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:27:43.231 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:28:21.622 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59724 10 6452 1 2025-11-04 19:28:25.902 00:00:10.398 TCP 23.104.0.1:35288 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:24:52.589 00:05:03.101 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 19:29:21.846 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39362 10 6452 1 2025-11-04 19:29:26.342 00:00:10.378 TCP 23.104.0.1:37656 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:25:52.592 00:05:03.095 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:30:22.080 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52070 10 6452 1 2025-11-04 19:30:26.754 00:00:10.328 TCP 23.104.0.1:45238 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:31:22.292 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38146 10 6452 1 2025-11-04 19:31:27.118 00:00:10.889 TCP 23.104.0.1:41136 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:32:22.514 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38246 10 6452 1 2025-11-04 19:32:28.049 00:00:10.363 TCP 23.104.0.1:49412 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:32:43.783 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:32:43.716 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:33:22.729 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:44628 10 6452 1 2025-11-04 19:33:28.449 00:00:10.321 TCP 23.104.0.1:57730 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:34:22.904 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57332 10 6452 1 2025-11-04 19:34:28.813 00:00:10.369 TCP 23.104.0.1:52968 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:30:52.591 00:05:03.101 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 19:35:23.128 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51096 10 6452 1 2025-11-04 19:35:29.218 00:00:10.361 TCP 23.104.0.1:44256 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:31:52.593 00:05:03.095 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:36:23.360 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:53168 10 6452 1 2025-11-04 19:36:29.618 00:00:10.363 TCP 23.104.0.1:57630 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:37:23.577 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:44280 10 6452 1 2025-11-04 19:37:30.018 00:00:10.323 TCP 23.104.0.1:34036 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:37:43.236 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:37:43.590 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:38:23.801 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:42284 10 6452 1 2025-11-04 19:38:30.378 00:00:10.364 TCP 23.104.0.1:50706 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:39:23.978 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:41674 10 6452 1 2025-11-04 19:39:30.778 00:00:10.365 TCP 23.104.0.1:57914 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:40:24.205 00:00:10.743 TCP 1.101.0.1:3000 -> 22.102.0.1:43016 11 6504 1 2025-11-04 19:40:31.184 00:00:10.365 TCP 23.104.0.1:41424 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:36:52.592 00:05:03.100 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 19:41:24.986 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:50498 10 6452 1 2025-11-04 19:41:31.583 00:00:10.366 TCP 23.104.0.1:39604 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:37:52.594 00:05:03.095 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:42:25.231 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:54228 10 6452 1 2025-11-04 19:42:43.714 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:42:43.540 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:42:31.994 00:00:10.362 TCP 23.104.0.1:39288 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:43:25.409 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57290 10 6452 1 2025-11-04 19:43:32.398 00:00:10.362 TCP 23.104.0.1:34138 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:44:25.627 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53986 10 6452 1 2025-11-04 19:44:32.799 00:00:10.370 TCP 23.104.0.1:54742 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:45:25.853 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:55818 10 6452 1 2025-11-04 19:45:33.208 00:00:10.372 TCP 23.104.0.1:34250 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:46:26.103 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59084 10 6452 1 2025-11-04 19:46:33.615 00:00:10.397 TCP 23.104.0.1:47256 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:42:52.594 00:05:03.101 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 19:47:26.317 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52924 10 6452 1 2025-11-04 19:47:43.734 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:47:43.619 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:47:34.023 00:00:10.326 TCP 23.104.0.1:55464 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:43:52.597 00:05:03.095 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:48:26.531 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:54852 10 6452 1 2025-11-04 19:48:34.380 00:00:10.363 TCP 23.104.0.1:32864 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:49:26.756 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35912 10 6452 1 2025-11-04 19:49:34.777 00:00:10.369 TCP 23.104.0.1:48186 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:50:26.972 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:53726 10 6452 1 2025-11-04 19:50:35.191 00:00:10.326 TCP 23.104.0.1:54314 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:51:27.213 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59750 10 6452 1 2025-11-04 19:51:35.552 00:00:19.879 TCP 23.104.0.1:53476 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:52:27.424 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:46832 10 6452 1 2025-11-04 19:52:43.801 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:52:43.915 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:52:45.474 00:00:10.369 TCP 23.104.0.1:51054 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:48:52.596 00:05:03.100 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-04 19:53:27.639 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50826 10 6452 1 2025-11-04 19:53:45.877 00:00:10.383 TCP 23.104.0.1:41950 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:49:52.600 00:05:03.093 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-04 19:54:27.855 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50788 10 6452 1 2025-11-04 19:54:46.301 00:00:10.367 TCP 23.104.0.1:46658 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:55:28.081 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60924 10 6452 1 2025-11-04 19:55:46.709 00:00:10.365 TCP 23.104.0.1:46888 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:56:28.300 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49346 10 6452 1 2025-11-04 19:56:47.119 00:00:10.325 TCP 23.104.0.1:34142 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:57:28.518 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56886 10 6452 1 2025-11-04 19:57:43.947 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-04 19:57:43.877 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-04 19:57:47.482 00:00:10.366 TCP 23.104.0.1:44202 -> 1.101.0.1:3000 11 1507 1 2025-11-04 19:58:28.730 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42292 10 6452 1 Summary: total flows: 163, total bytes: 501541, total packets: 1574, avg bps: 1048, avg pps: 0, avg bpp: 318 Time window: 2025-11-04 18:54:52 - 2025-11-04 19:58:38 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0026s User: 0.0026s Wall: 0.0028s flows/second: 58952.4 Runtime: 0.0028s