Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-07 07:58:55.954 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 07:58:56.068 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 07:54:53.862 00:05:03.097 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 07:58:56.254 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38198 10 6452 1 2025-11-07 07:59:22.708 00:00:10.362 TCP 23.104.0.1:36398 -> 1.101.0.1:3000 11 1507 1 2025-11-07 07:55:53.866 00:05:03.091 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 07:59:56.463 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52154 10 6452 1 2025-11-07 08:00:23.109 00:00:10.368 TCP 23.104.0.1:42392 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:00:56.678 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60744 10 6452 1 2025-11-07 08:01:23.517 00:00:10.358 TCP 23.104.0.1:48266 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:01:56.889 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43918 10 6452 1 2025-11-07 08:02:23.919 00:00:10.376 TCP 23.104.0.1:47158 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:02:57.108 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59118 10 6452 1 2025-11-07 08:03:24.327 00:00:10.371 TCP 23.104.0.1:33648 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:03:56.301 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:03:56.210 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:03:57.322 00:00:10.536 TCP 1.101.0.1:3000 -> 22.102.0.1:39258 10 6452 1 2025-11-07 08:04:24.738 00:00:10.366 TCP 23.104.0.1:54410 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:00:53.867 00:05:03.096 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 08:04:57.896 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59718 10 6452 1 2025-11-07 08:05:25.139 00:00:10.333 TCP 23.104.0.1:42714 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:01:53.871 00:05:03.089 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 08:05:58.107 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:41164 10 6452 1 2025-11-07 08:06:25.513 00:00:10.324 TCP 23.104.0.1:45284 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:06:58.279 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34514 10 6452 1 2025-11-07 08:07:25.880 00:00:10.393 TCP 23.104.0.1:42504 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:07:58.494 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42084 10 6452 1 2025-11-07 08:08:26.311 00:00:10.409 TCP 23.104.0.1:39442 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:08:56.301 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:08:56.392 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:08:58.706 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39648 10 6452 1 2025-11-07 08:09:26.770 00:00:10.372 TCP 23.104.0.1:41596 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:09:58.920 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:43770 10 6452 1 2025-11-07 08:10:27.180 00:00:10.365 TCP 23.104.0.1:50886 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:06:53.870 00:05:03.093 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 08:10:59.175 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:50558 10 6452 1 2025-11-07 08:11:27.582 00:00:10.385 TCP 23.104.0.1:46444 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:07:53.873 00:05:03.088 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 08:11:59.384 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37356 10 6452 1 2025-11-07 08:12:28.010 00:00:10.318 TCP 23.104.0.1:38156 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:12:59.606 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:40088 10 6452 1 2025-11-07 08:13:28.365 00:00:10.362 TCP 23.104.0.1:55876 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:13:56.397 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:13:56.396 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:13:59.843 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38880 10 6452 1 2025-11-07 08:14:28.765 00:00:10.380 TCP 23.104.0.1:58012 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:15:00.082 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56538 10 6452 1 2025-11-07 08:15:29.188 00:00:10.371 TCP 23.104.0.1:38314 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:16:00.295 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43832 10 6452 1 2025-11-07 08:16:29.597 00:00:10.369 TCP 23.104.0.1:37964 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:12:53.871 00:05:03.093 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 08:17:00.510 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:41498 12 10375 1 2025-11-07 08:17:30.002 00:00:10.438 TCP 23.104.0.1:57366 -> 1.101.0.1:3000 15 1926 1 2025-11-07 08:13:53.873 00:05:03.090 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 08:18:00.709 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33640 10 6452 1 2025-11-07 08:18:30.480 00:00:10.368 TCP 23.104.0.1:53160 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:18:56.376 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:18:56.638 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:19:00.923 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54488 10 6452 1 2025-11-07 08:19:30.881 00:00:10.388 TCP 23.104.0.1:47798 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:20:01.133 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59266 10 6452 1 2025-11-07 08:20:31.315 00:00:10.365 TCP 23.104.0.1:42596 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:21:01.348 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49284 10 6452 1 2025-11-07 08:21:31.724 00:00:16.744 TCP 23.104.0.1:59708 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:22:01.563 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34986 10 6452 1 2025-11-07 08:22:38.509 00:00:10.362 TCP 23.104.0.1:33716 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:18:53.873 00:05:03.092 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 08:23:01.778 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50072 10 6452 1 2025-11-07 08:23:38.910 00:00:10.367 TCP 23.104.0.1:36542 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:23:56.653 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:23:56.818 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:19:53.876 00:05:03.087 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 08:24:01.992 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46800 10 6452 1 2025-11-07 08:24:39.311 00:00:10.366 TCP 23.104.0.1:58048 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:25:02.211 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:35504 10 6452 1 2025-11-07 08:25:39.716 00:00:10.368 TCP 23.104.0.1:54592 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:26:02.433 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:60962 10 6452 1 2025-11-07 08:26:40.126 00:00:10.360 TCP 23.104.0.1:42740 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:27:02.606 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:52380 14 14292 1 2025-11-07 08:27:40.525 00:00:10.465 TCP 23.104.0.1:58764 -> 1.101.0.1:3000 17 2241 1 2025-11-07 08:28:02.844 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:41158 10 6452 1 2025-11-07 08:28:41.033 00:00:10.328 TCP 23.104.0.1:60592 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:28:56.655 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:28:56.880 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:24:53.877 00:05:03.093 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 08:29:03.027 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:35162 10 6452 1 2025-11-07 08:29:41.396 00:00:10.363 TCP 23.104.0.1:51850 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:25:53.881 00:05:03.088 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 08:30:03.268 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54162 10 6452 1 2025-11-07 08:30:41.800 00:00:10.360 TCP 23.104.0.1:57458 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:31:03.492 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38028 10 6452 1 2025-11-07 08:31:42.202 00:00:10.373 TCP 23.104.0.1:33290 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:32:03.710 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57866 10 6452 1 2025-11-07 08:32:42.611 00:00:10.373 TCP 23.104.0.1:38326 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:33:03.925 00:00:10.357 TCP 1.101.0.1:3000 -> 22.102.0.1:56712 12 6556 1 2025-11-07 08:33:56.842 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:33:43.027 00:00:10.363 TCP 23.104.0.1:57612 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:33:56.855 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:34:04.324 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50268 10 6452 1 2025-11-07 08:34:43.436 00:00:10.380 TCP 23.104.0.1:40668 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:30:53.878 00:05:03.094 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 08:35:04.545 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55490 10 6452 1 2025-11-07 08:35:43.851 00:00:10.378 TCP 23.104.0.1:40300 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:31:53.880 00:05:03.089 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 08:36:04.765 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:48326 10 6452 1 2025-11-07 08:36:44.268 00:00:10.334 TCP 23.104.0.1:53814 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:37:04.945 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:38582 10 6452 1 2025-11-07 08:37:44.642 00:00:10.318 TCP 23.104.0.1:36692 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:38:05.180 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45922 10 6452 1 2025-11-07 08:38:45.002 00:00:10.367 TCP 23.104.0.1:47080 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:38:56.754 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:38:56.977 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:39:05.391 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:57502 10 6452 1 2025-11-07 08:39:45.408 00:00:10.365 TCP 23.104.0.1:54476 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:40:05.559 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:50502 10 6452 1 2025-11-07 08:40:45.815 00:00:10.367 TCP 23.104.0.1:58790 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:36:53.881 00:05:03.094 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 08:41:05.766 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41126 10 6452 1 2025-11-07 08:41:46.228 00:00:10.434 TCP 23.104.0.1:42990 -> 1.101.0.1:3000 15 1926 1 2025-11-07 08:37:53.883 00:05:03.090 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 08:42:05.978 00:00:10.692 TCP 1.101.0.1:3000 -> 22.102.0.1:44902 12 10375 1 2025-11-07 08:42:46.711 00:00:10.371 TCP 23.104.0.1:54888 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:43:06.708 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60860 10 6452 1 2025-11-07 08:43:56.922 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:43:56.875 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:43:47.125 00:00:10.364 TCP 23.104.0.1:37332 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:44:06.929 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:52002 10 6452 1 2025-11-07 08:44:47.527 00:00:10.359 TCP 23.104.0.1:53176 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:45:07.162 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58334 10 6452 1 2025-11-07 08:45:47.927 00:00:10.387 TCP 23.104.0.1:40248 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:46:07.376 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47480 10 6452 1 2025-11-07 08:46:48.357 00:00:10.376 TCP 23.104.0.1:52444 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:42:53.881 00:05:03.094 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 08:47:07.589 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40562 10 6452 1 2025-11-07 08:47:48.772 00:00:10.371 TCP 23.104.0.1:58014 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:43:53.884 00:05:03.090 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 08:48:07.805 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42246 10 6452 1 2025-11-07 08:48:57.241 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:48:57.306 00:00:00.031 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:48:49.181 00:00:10.365 TCP 23.104.0.1:39164 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:49:08.033 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41046 10 6452 1 2025-11-07 08:49:49.586 00:00:10.363 TCP 23.104.0.1:54996 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:50:08.241 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57648 10 6452 1 2025-11-07 08:50:49.987 00:00:10.368 TCP 23.104.0.1:43604 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:51:08.450 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52332 10 6452 1 2025-11-07 08:51:50.394 00:00:10.372 TCP 23.104.0.1:33444 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:52:08.661 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:45950 10 6452 1 2025-11-07 08:48:53.886 00:05:03.091 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 08:52:50.799 00:00:10.368 TCP 23.104.0.1:47406 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:53:08.864 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:40954 10 6452 1 2025-11-07 08:53:56.911 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 08:53:51.199 00:00:10.326 TCP 23.104.0.1:36706 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:49:53.888 00:05:03.087 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 08:53:57.224 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 08:54:09.039 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40610 10 6452 1 2025-11-07 08:54:51.565 00:00:10.360 TCP 23.104.0.1:57172 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:55:09.261 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46548 10 6452 1 2025-11-07 08:55:51.967 00:00:10.381 TCP 23.104.0.1:49716 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:56:09.485 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:52694 10 6452 1 2025-11-07 08:56:52.387 00:00:10.369 TCP 23.104.0.1:42126 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:57:09.654 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44506 10 6452 1 2025-11-07 08:57:52.791 00:00:10.366 TCP 23.104.0.1:42778 -> 1.101.0.1:3000 11 1507 1 2025-11-07 08:58:09.876 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:36270 10 6452 1 Summary: total flows: 163, total bytes: 514203, total packets: 1585, avg bps: 1080, avg pps: 0, avg bpp: 324 Time window: 2025-11-07 07:54:53 - 2025-11-07 08:58:20 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0037s User: 0.0012s Wall: 0.0054s flows/second: 29940.9 Runtime: 0.0055s