Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-07 15:53:57.170 00:05:56.870 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 15:59:05.715 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 15:59:06.190 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 15:59:10.413 00:00:10.367 TCP 23.104.0.1:55474 -> 1.101.0.1:3000 11 1507 1 2025-11-07 15:59:32.734 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:50068 10 6452 1 2025-11-07 15:54:57.168 00:05:56.875 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:00:10.816 00:00:10.361 TCP 23.104.0.1:42246 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:00:32.957 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:46998 10 6452 1 2025-11-07 16:01:11.224 00:00:10.366 TCP 23.104.0.1:37892 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:01:33.153 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47800 10 6452 1 2025-11-07 16:02:11.628 00:00:10.324 TCP 23.104.0.1:55288 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:02:33.367 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48786 10 6452 1 2025-11-07 16:03:12.006 00:00:10.362 TCP 23.104.0.1:54248 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:03:33.576 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52072 10 6452 1 2025-11-07 16:04:05.664 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:04:05.837 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:04:12.414 00:00:10.368 TCP 23.104.0.1:36142 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:04:33.789 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40756 10 6452 1 2025-11-07 15:59:57.173 00:05:56.869 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 16:05:12.823 00:00:10.366 TCP 23.104.0.1:39462 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:05:34.014 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39570 10 6452 1 2025-11-07 16:00:57.169 00:05:56.874 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:06:13.234 00:00:10.370 TCP 23.104.0.1:42702 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:06:34.224 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47306 10 6452 1 2025-11-07 16:07:13.640 00:00:10.370 TCP 23.104.0.1:34522 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:07:34.435 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60250 10 6452 1 2025-11-07 16:08:14.050 00:00:10.363 TCP 23.104.0.1:57512 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:08:34.652 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:51418 10 6452 1 2025-11-07 16:09:05.920 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:09:05.972 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:09:14.454 00:00:10.361 TCP 23.104.0.1:53686 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:09:34.860 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45782 10 6452 1 2025-11-07 16:10:14.854 00:00:10.371 TCP 23.104.0.1:51072 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:10:35.090 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48760 10 6452 1 2025-11-07 16:05:57.174 00:05:56.870 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 16:11:15.264 00:00:10.329 TCP 23.104.0.1:43642 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:11:35.302 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:43164 10 6452 1 2025-11-07 16:06:57.172 00:05:56.876 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:12:15.663 00:00:10.404 TCP 23.104.0.1:57410 -> 1.101.0.1:3000 15 1926 1 2025-11-07 16:12:35.513 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:48500 12 10369 1 2025-11-07 16:13:16.107 00:00:10.361 TCP 23.104.0.1:34456 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:13:35.753 00:00:10.221 TCP 1.101.0.1:3000 -> 22.102.0.1:50650 11 6504 1 2025-11-07 16:14:06.023 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:14:05.970 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:14:16.512 00:00:10.365 TCP 23.104.0.1:37528 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:14:36.038 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:43400 10 6452 1 2025-11-07 16:15:16.915 00:00:10.370 TCP 23.104.0.1:41386 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:15:36.205 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50612 10 6452 1 2025-11-07 16:16:17.321 00:00:11.514 TCP 23.104.0.1:35924 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:16:36.420 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:35118 10 6452 1 2025-11-07 16:11:57.174 00:05:56.871 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 16:17:18.870 00:00:10.368 TCP 23.104.0.1:41848 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:17:36.634 00:00:10.455 TCP 1.101.0.1:3000 -> 22.102.0.1:57616 10 6452 1 2025-11-07 16:12:57.174 00:05:56.876 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:18:19.282 00:00:10.326 TCP 23.104.0.1:57140 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:18:37.127 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:37092 10 6452 1 2025-11-07 16:19:06.301 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:19:06.163 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:19:19.644 00:00:10.366 TCP 23.104.0.1:47770 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:19:37.346 00:00:10.538 TCP 1.101.0.1:3000 -> 22.102.0.1:56588 10 6452 1 2025-11-07 16:20:20.056 00:00:10.365 TCP 23.104.0.1:52418 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:20:37.923 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:39770 10 6452 1 2025-11-07 16:21:20.461 00:00:10.364 TCP 23.104.0.1:33014 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:21:38.158 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:33682 10 6452 1 2025-11-07 16:22:20.866 00:00:10.366 TCP 23.104.0.1:48874 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:22:38.391 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:56088 10 6452 1 2025-11-07 16:17:57.177 00:05:56.869 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 16:23:21.273 00:00:10.366 TCP 23.104.0.1:47830 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:23:38.611 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:48478 10 6452 1 2025-11-07 16:18:57.176 00:05:56.874 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:24:06.233 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:24:06.389 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:24:21.674 00:00:10.376 TCP 23.104.0.1:37404 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:24:38.780 00:00:11.079 TCP 1.101.0.1:3000 -> 22.102.0.1:43224 10 6452 1 2025-11-07 16:25:22.108 00:00:10.324 TCP 23.104.0.1:35062 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:25:39.901 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46312 10 6452 1 2025-11-07 16:26:22.469 00:00:10.365 TCP 23.104.0.1:51172 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:26:40.111 00:00:10.126 TCP 1.101.0.1:3000 -> 22.102.0.1:53138 10 6452 1 2025-11-07 16:27:22.867 00:00:10.373 TCP 23.104.0.1:49018 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:27:40.285 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38550 10 6452 1 2025-11-07 16:28:23.279 00:00:10.362 TCP 23.104.0.1:47826 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:28:40.504 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48806 10 6452 1 2025-11-07 16:23:57.180 00:05:56.869 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 16:29:06.277 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:29:06.252 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:29:23.675 00:00:10.368 TCP 23.104.0.1:56722 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:29:40.715 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:46912 12 6556 1 2025-11-07 16:24:57.177 00:05:56.873 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:30:24.106 00:00:10.368 TCP 23.104.0.1:51350 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:30:40.933 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:37490 10 6452 1 2025-11-07 16:31:24.513 00:00:10.368 TCP 23.104.0.1:48726 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:31:41.181 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54808 10 6452 1 2025-11-07 16:32:24.920 00:00:10.370 TCP 23.104.0.1:40340 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:32:41.399 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57902 12 6556 1 2025-11-07 16:33:25.333 00:00:10.379 TCP 23.104.0.1:59810 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:33:41.613 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42924 10 6452 1 2025-11-07 16:34:06.432 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:34:06.345 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:34:25.748 00:00:10.386 TCP 23.104.0.1:44476 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:29:57.180 00:05:56.873 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 16:34:41.835 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52614 10 6452 1 2025-11-07 16:35:26.172 00:00:10.337 TCP 23.104.0.1:45030 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:35:42.068 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:51436 10 6452 1 2025-11-07 16:30:57.178 00:05:56.877 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:36:26.546 00:00:10.365 TCP 23.104.0.1:38436 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:36:42.291 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48186 10 6452 1 2025-11-07 16:37:26.951 00:00:10.374 TCP 23.104.0.1:41378 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:37:42.510 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:46464 10 6452 1 2025-11-07 16:38:27.363 00:00:10.360 TCP 23.104.0.1:46566 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:38:42.694 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60116 10 6452 1 2025-11-07 16:39:06.475 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:39:06.523 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:39:27.762 00:00:10.370 TCP 23.104.0.1:34208 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:39:42.914 00:00:10.685 TCP 1.101.0.1:3000 -> 22.102.0.1:45672 10 6452 1 2025-11-07 16:40:28.175 00:00:10.370 TCP 23.104.0.1:56862 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:40:43.638 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48460 10 6452 1 2025-11-07 16:35:57.181 00:05:56.871 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 16:41:28.579 00:00:10.367 TCP 23.104.0.1:46140 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:36:57.177 00:05:56.877 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:41:43.858 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:32798 10 6452 1 2025-11-07 16:42:28.980 00:00:10.366 TCP 23.104.0.1:42238 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:42:44.089 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42204 10 6452 1 2025-11-07 16:43:29.388 00:00:10.366 TCP 23.104.0.1:32806 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:43:44.305 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35680 10 6452 1 2025-11-07 16:44:06.803 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:44:06.857 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:44:29.792 00:00:10.368 TCP 23.104.0.1:33762 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:44:44.525 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34414 10 6452 1 2025-11-07 16:45:30.197 00:00:10.367 TCP 23.104.0.1:44076 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:45:44.746 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56126 10 6452 1 2025-11-07 16:46:30.598 00:00:10.367 TCP 23.104.0.1:38564 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:46:44.963 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:59586 10 6452 1 2025-11-07 16:41:57.182 00:05:56.871 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 16:47:31.003 00:00:10.317 TCP 23.104.0.1:51662 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:47:45.151 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43500 10 6452 1 2025-11-07 16:42:57.179 00:05:56.876 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:48:31.364 00:00:10.363 TCP 23.104.0.1:50292 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:48:45.365 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:39118 10 6452 1 2025-11-07 16:49:06.830 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:49:07.006 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:49:31.766 00:00:10.375 TCP 23.104.0.1:42896 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:49:45.560 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41066 10 6452 1 2025-11-07 16:50:32.178 00:00:10.327 TCP 23.104.0.1:36490 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:50:45.789 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46836 10 6452 1 2025-11-07 16:51:32.546 00:00:10.362 TCP 23.104.0.1:53276 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:51:46.005 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:47582 12 6556 1 2025-11-07 16:52:32.949 00:00:10.363 TCP 23.104.0.1:58478 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:52:46.234 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:58196 10 6452 1 2025-11-07 16:47:57.183 00:05:56.871 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-07 16:53:33.352 00:00:10.363 TCP 23.104.0.1:59430 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:53:46.459 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35648 10 6452 1 2025-11-07 16:48:57.181 00:05:56.875 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-07 16:54:06.727 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 16:54:06.516 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-07 16:54:33.754 00:00:10.371 TCP 23.104.0.1:50294 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:54:46.674 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58492 10 6452 1 2025-11-07 16:55:34.166 00:00:10.368 TCP 23.104.0.1:37560 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:55:46.889 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51174 10 6452 1 2025-11-07 16:56:34.567 00:00:11.416 TCP 23.104.0.1:51086 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:56:47.110 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:51140 10 6452 1 2025-11-07 16:57:36.020 00:00:10.368 TCP 23.104.0.1:60638 -> 1.101.0.1:3000 11 1507 1 2025-11-07 16:57:47.343 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48680 10 6452 1 2025-11-07 16:58:36.429 00:00:10.368 TCP 23.104.0.1:51660 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496596, total packets: 1575, avg bps: 1021, avg pps: 0, avg bpp: 315 Time window: 2025-11-07 15:53:57 - 2025-11-07 16:58:46 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0037s User: 0.0019s Wall: 0.0025s flows/second: 64424.4 Runtime: 0.0025s