Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 13:54:54.848 00:05:03.304 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 13:58:49.074 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51040 10 6452 1 2025-11-09 13:59:31.740 00:00:10.371 TCP 23.104.0.1:41358 -> 1.101.0.1:3000 11 1507 1 2025-11-09 13:59:49.303 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47688 10 6452 1 2025-11-09 14:00:00.970 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:00:01.271 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:00:32.143 00:00:10.377 TCP 23.104.0.1:44406 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:00:49.519 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37932 10 6452 1 2025-11-09 14:01:32.559 00:00:10.364 TCP 23.104.0.1:48882 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:01:49.738 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42600 10 6452 1 2025-11-09 14:02:32.957 00:00:10.369 TCP 23.104.0.1:42478 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:02:49.949 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35378 10 6452 1 2025-11-09 14:03:33.364 00:00:10.363 TCP 23.104.0.1:48960 -> 1.101.0.1:3000 11 1507 1 2025-11-09 13:59:54.848 00:05:03.310 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:03:50.172 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41280 10 6452 1 2025-11-09 14:04:33.766 00:00:10.370 TCP 23.104.0.1:43102 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:05:01.327 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:00:54.850 00:05:03.306 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 14:05:01.274 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:04:50.383 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59704 10 6452 1 2025-11-09 14:05:34.174 00:00:10.367 TCP 23.104.0.1:58882 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:05:50.593 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39262 10 6452 1 2025-11-09 14:06:34.574 00:00:10.364 TCP 23.104.0.1:59756 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:06:50.768 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43922 10 6452 1 2025-11-09 14:07:34.977 00:00:10.370 TCP 23.104.0.1:32914 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:07:50.979 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:52384 10 6452 1 2025-11-09 14:08:35.384 00:00:10.339 TCP 23.104.0.1:35854 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:08:51.219 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:58092 10 6452 1 2025-11-09 14:09:35.760 00:00:10.338 TCP 23.104.0.1:37398 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:10:01.246 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:09:51.392 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:47342 10 6452 1 2025-11-09 14:10:01.505 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:05:54.850 00:05:03.310 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:10:36.139 00:00:10.373 TCP 23.104.0.1:59782 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:06:54.851 00:05:03.306 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 14:10:51.563 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57216 10 6452 1 2025-11-09 14:11:36.563 00:00:10.364 TCP 23.104.0.1:49842 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:11:51.780 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34344 10 6452 1 2025-11-09 14:12:36.968 00:00:10.375 TCP 23.104.0.1:40198 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:12:51.992 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:59340 10 6452 1 2025-11-09 14:13:37.379 00:00:10.372 TCP 23.104.0.1:36610 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:13:52.219 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:57842 10 6452 1 2025-11-09 14:14:37.797 00:00:10.369 TCP 23.104.0.1:33612 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:15:01.514 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:15:01.269 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:14:52.379 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44982 10 6452 1 2025-11-09 14:15:38.205 00:00:10.366 TCP 23.104.0.1:53538 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:11:54.851 00:05:03.309 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:15:52.598 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:38236 10 6452 1 2025-11-09 14:16:38.612 00:00:10.360 TCP 23.104.0.1:56262 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:12:54.854 00:05:03.303 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 14:16:52.813 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:45502 10 6452 1 2025-11-09 14:17:39.012 00:00:10.368 TCP 23.104.0.1:53746 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:17:53.071 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45286 10 6452 1 2025-11-09 14:18:39.418 00:00:10.327 TCP 23.104.0.1:59906 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:18:53.291 00:00:10.519 TCP 1.101.0.1:3000 -> 22.102.0.1:58356 10 6452 1 2025-11-09 14:19:39.781 00:00:10.367 TCP 23.104.0.1:39032 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:20:01.503 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:20:01.438 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:19:53.846 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:48480 10 6452 1 2025-11-09 14:20:40.185 00:00:10.363 TCP 23.104.0.1:43928 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:20:54.026 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48450 10 6452 1 2025-11-09 14:21:40.589 00:00:10.373 TCP 23.104.0.1:54052 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:17:54.854 00:05:03.307 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:21:54.202 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53038 10 6452 1 2025-11-09 14:22:41.005 00:00:10.325 TCP 23.104.0.1:34260 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:18:54.856 00:05:03.305 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 14:22:54.422 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43482 10 6452 1 2025-11-09 14:23:41.363 00:00:10.371 TCP 23.104.0.1:33430 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:23:54.637 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59812 10 6452 1 2025-11-09 14:24:41.769 00:00:10.328 TCP 23.104.0.1:37424 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:25:01.532 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:25:01.567 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:24:54.854 00:00:10.308 TCP 1.101.0.1:3000 -> 22.102.0.1:59652 10 6452 1 2025-11-09 14:25:42.136 00:00:10.360 TCP 23.104.0.1:39454 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:25:55.201 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39806 10 6452 1 2025-11-09 14:26:42.537 00:00:10.361 TCP 23.104.0.1:41742 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:26:55.417 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45072 10 6452 1 2025-11-09 14:27:42.933 00:00:10.344 TCP 23.104.0.1:60214 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:23:54.855 00:05:03.309 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:27:55.629 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50508 10 6452 1 2025-11-09 14:28:43.314 00:00:10.376 TCP 23.104.0.1:51560 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:24:54.857 00:05:03.306 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 14:28:55.845 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:45762 10 6452 1 2025-11-09 14:29:43.730 00:00:10.367 TCP 23.104.0.1:47574 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:30:01.691 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:30:01.744 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:29:56.083 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58520 10 6452 1 2025-11-09 14:30:44.135 00:00:10.385 TCP 23.104.0.1:33064 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:30:56.307 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37760 10 6452 1 2025-11-09 14:31:44.585 00:00:10.329 TCP 23.104.0.1:38430 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:31:56.526 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53668 10 6452 1 2025-11-09 14:32:44.953 00:00:10.364 TCP 23.104.0.1:56162 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:32:56.746 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:38320 10 6452 1 2025-11-09 14:33:45.361 00:00:10.364 TCP 23.104.0.1:44060 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:29:54.858 00:05:03.312 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:33:56.971 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:49514 10 6452 1 2025-11-09 14:34:45.768 00:00:11.030 TCP 23.104.0.1:34022 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:35:01.740 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:30:54.859 00:05:03.308 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 14:35:01.797 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:34:57.201 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40842 10 6452 1 2025-11-09 14:35:46.835 00:00:10.388 TCP 23.104.0.1:57084 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:35:57.416 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51378 10 6452 1 2025-11-09 14:36:47.265 00:00:10.355 TCP 23.104.0.1:52710 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:36:57.630 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53228 10 6452 1 2025-11-09 14:37:47.661 00:00:10.637 TCP 23.104.0.1:59382 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:37:57.843 00:00:10.954 TCP 1.101.0.1:3000 -> 22.102.0.1:55804 10 6452 1 2025-11-09 14:38:48.333 00:00:10.364 TCP 23.104.0.1:44168 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:38:58.831 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33730 10 6452 1 2025-11-09 14:40:01.823 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:35:54.858 00:05:03.313 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:40:01.963 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:39:48.736 00:00:10.329 TCP 23.104.0.1:50384 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:39:59.077 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:35320 10 6452 1 2025-11-09 14:40:49.108 00:00:10.320 TCP 23.104.0.1:47620 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:36:54.860 00:05:03.324 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 14:40:59.254 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50846 10 6452 1 2025-11-09 14:41:49.469 00:00:10.369 TCP 23.104.0.1:35266 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:41:59.472 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36182 10 6452 1 2025-11-09 14:42:49.874 00:00:10.362 TCP 23.104.0.1:43414 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:42:59.693 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46682 10 6452 1 2025-11-09 14:43:50.275 00:00:10.321 TCP 23.104.0.1:58070 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:43:59.906 00:00:10.421 TCP 1.101.0.1:3000 -> 22.102.0.1:38746 10 6452 1 2025-11-09 14:45:01.915 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:44:50.635 00:00:10.371 TCP 23.104.0.1:44018 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:45:02.067 00:00:00.034 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:45:00.374 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:32790 10 6452 1 2025-11-09 14:45:51.048 00:00:10.321 TCP 23.104.0.1:39318 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:41:54.863 00:05:03.330 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:46:00.582 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50424 10 6452 1 2025-11-09 14:42:54.864 00:05:03.322 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 14:46:51.409 00:00:10.360 TCP 23.104.0.1:60702 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:47:00.806 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52286 10 6452 1 2025-11-09 14:47:51.807 00:00:10.364 TCP 23.104.0.1:47424 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:48:01.026 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47228 10 6452 1 2025-11-09 14:48:52.209 00:00:10.366 TCP 23.104.0.1:33348 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:49:01.246 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39206 10 6452 1 2025-11-09 14:50:01.998 00:00:00.018 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:49:52.613 00:00:11.175 TCP 23.104.0.1:41036 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:50:02.183 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:50:01.457 00:00:20.760 TCP 1.101.0.1:3000 -> 22.102.0.1:55382 10 6452 1 2025-11-09 14:50:53.826 00:00:10.360 TCP 23.104.0.1:45386 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:51:12.266 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41950 10 6452 1 2025-11-09 14:47:54.861 00:05:03.327 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:51:54.226 00:00:10.363 TCP 23.104.0.1:60910 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:52:12.484 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39804 10 6452 1 2025-11-09 14:48:54.864 00:05:03.322 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 14:52:54.627 00:00:10.568 TCP 23.104.0.1:41264 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:53:12.696 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45106 10 6452 1 2025-11-09 14:53:55.236 00:00:10.328 TCP 23.104.0.1:44320 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:54:12.902 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55810 10 6452 1 2025-11-09 14:55:02.171 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 14:54:55.602 00:00:10.364 TCP 23.104.0.1:35602 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:55:02.170 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 14:55:13.116 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60298 10 6452 1 2025-11-09 14:55:56.045 00:00:10.362 TCP 23.104.0.1:57358 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:56:13.329 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:42096 10 6452 1 2025-11-09 14:56:56.447 00:00:10.364 TCP 23.104.0.1:56170 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:57:13.502 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54468 10 6452 1 2025-11-09 14:53:54.863 00:05:03.327 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 14:57:56.849 00:00:10.408 TCP 23.104.0.1:38628 -> 1.101.0.1:3000 11 1507 1 2025-11-09 14:58:13.713 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55094 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1034, avg pps: 0, avg bpp: 318 Time window: 2025-11-09 13:54:54 - 2025-11-09 14:58:58 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0034s User: 0.0023s Wall: 0.0025s flows/second: 65567.4 Runtime: 0.0025s