Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-05 17:54:53.108 00:05:03.099 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 17:59:09.788 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:41336 10 6452 1 2025-11-05 17:59:29.910 00:00:10.361 TCP 23.104.0.1:35134 -> 1.101.0.1:3000 11 1507 1 2025-11-05 17:55:53.111 00:05:03.093 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:00:10.017 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:55466 10 6452 1 2025-11-05 18:00:30.313 00:00:10.367 TCP 23.104.0.1:58378 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:01:10.192 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:59456 10 6452 1 2025-11-05 18:01:30.730 00:00:10.365 TCP 23.104.0.1:33964 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:02:10.369 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:57186 10 6452 1 2025-11-05 18:02:31.137 00:00:10.358 TCP 23.104.0.1:55294 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:03:10.468 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:03:10.392 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:03:10.540 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:50388 10 6452 1 2025-11-05 18:03:31.536 00:00:10.368 TCP 23.104.0.1:54438 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:04:10.714 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:50758 10 6452 1 2025-11-05 18:04:31.939 00:00:10.379 TCP 23.104.0.1:53480 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:00:53.109 00:05:03.098 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 18:05:10.886 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52520 10 6452 1 2025-11-05 18:05:32.353 00:00:10.367 TCP 23.104.0.1:51452 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:01:53.113 00:05:03.092 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:06:11.100 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53114 10 6452 1 2025-11-05 18:06:32.759 00:00:10.375 TCP 23.104.0.1:40848 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:07:11.319 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60306 10 6452 1 2025-11-05 18:07:33.166 00:00:10.364 TCP 23.104.0.1:34618 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:08:10.698 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:08:10.657 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:08:11.534 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58510 10 6452 1 2025-11-05 18:08:33.567 00:00:10.562 TCP 23.104.0.1:35172 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:09:11.746 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34186 10 6452 1 2025-11-05 18:09:34.166 00:00:10.321 TCP 23.104.0.1:60990 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:10:11.966 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:40368 10 6452 1 2025-11-05 18:10:34.524 00:00:10.324 TCP 23.104.0.1:52960 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:06:53.112 00:05:03.097 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 18:11:12.211 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48106 10 6452 1 2025-11-05 18:11:34.883 00:00:10.372 TCP 23.104.0.1:59584 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:07:53.114 00:05:03.091 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:12:12.417 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:52548 10 6452 1 2025-11-05 18:12:35.295 00:00:10.366 TCP 23.104.0.1:58088 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:13:10.644 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:13:10.623 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:13:12.587 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50892 10 6452 1 2025-11-05 18:13:35.703 00:00:10.366 TCP 23.104.0.1:47588 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:14:12.815 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:41494 10 6452 1 2025-11-05 18:14:36.113 00:00:10.358 TCP 23.104.0.1:40928 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:15:12.990 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:40610 10 6452 1 2025-11-05 18:15:36.511 00:00:10.362 TCP 23.104.0.1:44774 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:16:13.212 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48988 10 6452 1 2025-11-05 18:16:36.913 00:00:10.370 TCP 23.104.0.1:34130 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:12:53.113 00:05:03.097 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 18:17:13.429 00:00:10.359 TCP 1.101.0.1:3000 -> 22.102.0.1:37748 10 6452 1 2025-11-05 18:17:37.321 00:00:10.366 TCP 23.104.0.1:36918 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:13:53.116 00:05:03.092 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:18:10.798 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:18:10.906 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:18:13.837 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59518 10 6452 1 2025-11-05 18:18:37.730 00:00:10.329 TCP 23.104.0.1:34990 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:19:14.074 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41842 10 6452 1 2025-11-05 18:19:38.108 00:00:10.362 TCP 23.104.0.1:36564 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:20:14.290 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38652 10 6452 1 2025-11-05 18:20:38.510 00:00:10.362 TCP 23.104.0.1:36022 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:21:14.505 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:58112 10 6452 1 2025-11-05 18:21:38.914 00:00:10.391 TCP 23.104.0.1:51896 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:22:14.677 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54464 10 6452 1 2025-11-05 18:22:39.345 00:00:10.321 TCP 23.104.0.1:53104 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:18:53.114 00:05:03.097 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 18:23:10.993 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:23:10.973 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:23:14.886 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44392 10 6452 1 2025-11-05 18:23:39.709 00:00:10.380 TCP 23.104.0.1:49390 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:19:53.116 00:05:03.092 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:24:15.107 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:40784 10 6452 1 2025-11-05 18:24:40.125 00:00:10.362 TCP 23.104.0.1:52430 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:25:15.280 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:46592 10 6452 1 2025-11-05 18:25:40.525 00:00:10.328 TCP 23.104.0.1:42494 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:26:15.515 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56020 10 6452 1 2025-11-05 18:26:40.888 00:00:10.375 TCP 23.104.0.1:51250 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:27:15.729 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47210 10 6452 1 2025-11-05 18:27:41.303 00:00:19.224 TCP 23.104.0.1:47686 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:28:10.827 00:00:00.032 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:28:11.055 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:28:15.943 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:40448 10 6452 1 2025-11-05 18:24:53.116 00:05:03.102 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 18:28:50.611 00:00:10.320 TCP 23.104.0.1:60338 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:29:16.175 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:57298 11 6492 1 2025-11-05 18:25:53.119 00:05:03.096 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:29:50.970 00:00:10.365 TCP 23.104.0.1:43138 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:30:16.346 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48802 10 6452 1 2025-11-05 18:30:51.375 00:00:10.357 TCP 23.104.0.1:34094 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:31:16.567 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44548 10 6452 1 2025-11-05 18:31:51.776 00:00:10.366 TCP 23.104.0.1:45768 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:32:16.775 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34190 10 6452 1 2025-11-05 18:32:52.179 00:00:10.362 TCP 23.104.0.1:42526 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:33:11.044 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:33:11.176 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:33:17.000 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41954 10 6452 1 2025-11-05 18:33:52.584 00:00:10.365 TCP 23.104.0.1:35212 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:34:17.216 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46310 10 6452 1 2025-11-05 18:30:53.118 00:05:03.100 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 18:34:52.994 00:00:10.359 TCP 23.104.0.1:48204 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:35:17.432 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49972 10 6452 1 2025-11-05 18:31:53.123 00:05:03.094 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:35:53.392 00:00:10.327 TCP 23.104.0.1:37340 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:36:17.642 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54414 10 6452 1 2025-11-05 18:36:53.755 00:00:10.398 TCP 23.104.0.1:45366 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:37:17.821 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56148 10 6452 1 2025-11-05 18:38:11.106 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:37:54.189 00:00:10.364 TCP 23.104.0.1:42316 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:38:11.186 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:38:18.041 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45552 10 6452 1 2025-11-05 18:38:54.595 00:00:10.330 TCP 23.104.0.1:36724 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:39:18.256 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56690 12 6556 1 2025-11-05 18:39:54.959 00:00:10.319 TCP 23.104.0.1:33538 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:40:18.469 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33912 10 6452 1 2025-11-05 18:36:53.121 00:05:03.100 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 18:40:55.317 00:00:10.366 TCP 23.104.0.1:60424 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:41:18.677 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36098 10 6452 1 2025-11-05 18:37:53.122 00:05:03.095 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:41:55.717 00:00:10.439 TCP 23.104.0.1:37840 -> 1.101.0.1:3000 15 1926 1 2025-11-05 18:42:18.888 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:57158 12 10375 1 2025-11-05 18:42:56.199 00:00:10.368 TCP 23.104.0.1:48078 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:43:11.457 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:43:11.257 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:43:19.137 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46562 10 6452 1 2025-11-05 18:43:56.600 00:00:10.360 TCP 23.104.0.1:47274 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:44:19.350 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36314 10 6452 1 2025-11-05 18:44:57.004 00:00:10.378 TCP 23.104.0.1:34344 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:45:19.563 00:00:16.724 TCP 1.101.0.1:3000 -> 22.102.0.1:35120 10 6452 1 2025-11-05 18:45:57.427 00:00:10.382 TCP 23.104.0.1:34902 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:46:26.341 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:47808 10 6452 1 2025-11-05 18:42:53.121 00:05:03.100 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 18:46:57.898 00:00:10.398 TCP 23.104.0.1:45074 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:47:26.552 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49814 10 6452 1 2025-11-05 18:43:53.123 00:05:03.096 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:48:11.302 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:47:58.335 00:00:10.325 TCP 23.104.0.1:41542 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:48:11.422 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:48:26.762 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40610 10 6452 1 2025-11-05 18:48:58.697 00:00:10.365 TCP 23.104.0.1:38338 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:49:26.980 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:48412 10 6452 1 2025-11-05 18:49:59.113 00:00:10.364 TCP 23.104.0.1:56318 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:50:27.202 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59120 12 6556 1 2025-11-05 18:50:59.519 00:00:10.366 TCP 23.104.0.1:53558 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:51:27.415 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41786 10 6452 1 2025-11-05 18:51:59.919 00:00:11.951 TCP 23.104.0.1:45258 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:52:27.627 00:00:11.217 TCP 1.101.0.1:3000 -> 22.102.0.1:40138 10 6452 1 2025-11-05 18:48:53.121 00:05:03.101 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-05 18:53:11.480 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:53:11.599 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:53:01.904 00:00:10.371 TCP 23.104.0.1:35240 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:53:28.885 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:33562 10 6452 1 2025-11-05 18:49:53.123 00:05:03.097 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-05 18:54:02.313 00:00:10.899 TCP 23.104.0.1:45326 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:54:29.080 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43628 10 6452 1 2025-11-05 18:55:03.246 00:00:10.327 TCP 23.104.0.1:58312 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:55:29.295 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47956 10 6452 1 2025-11-05 18:56:03.612 00:00:10.368 TCP 23.104.0.1:47726 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:56:29.508 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41666 10 6452 1 2025-11-05 18:57:04.016 00:00:10.367 TCP 23.104.0.1:51500 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:57:29.726 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38408 10 6452 1 2025-11-05 18:58:11.632 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-05 18:58:11.326 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-05 18:58:04.420 00:00:10.328 TCP 23.104.0.1:36228 -> 1.101.0.1:3000 11 1507 1 2025-11-05 18:58:29.939 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:58022 10 6452 1 Summary: total flows: 163, total bytes: 501431, total packets: 1572, avg bps: 1048, avg pps: 0, avg bpp: 318 Time window: 2025-11-05 17:54:53 - 2025-11-05 18:58:40 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0054s User: 0.0009s Wall: 0.0025s flows/second: 65310.6 Runtime: 0.0025s