Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 15:53:58.699 00:05:56.628 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 15:58:57.755 00:00:10.384 TCP 23.104.0.1:33334 -> 1.101.0.1:3000 11 1507 1 2025-11-10 15:59:36.803 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46062 10 6452 1 2025-11-10 15:59:58.177 00:00:10.367 TCP 23.104.0.1:56266 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:00:32.483 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:00:32.481 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:00:37.016 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44222 10 6452 1 2025-11-10 16:00:58.583 00:00:10.364 TCP 23.104.0.1:50182 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:01:37.224 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60018 10 6452 1 2025-11-10 16:01:58.988 00:00:10.370 TCP 23.104.0.1:50476 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:02:37.438 00:00:10.807 TCP 1.101.0.1:3000 -> 22.102.0.1:51456 10 6452 1 2025-11-10 16:02:59.400 00:00:10.371 TCP 23.104.0.1:58010 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:03:38.289 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56688 10 6452 1 2025-11-10 15:58:58.704 00:05:56.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:03:59.806 00:00:10.366 TCP 23.104.0.1:54758 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:04:38.501 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47660 10 6452 1 2025-11-10 15:59:58.702 00:05:56.626 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 16:05:00.209 00:00:10.378 TCP 23.104.0.1:56196 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:05:32.464 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:05:32.594 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:05:38.724 00:00:10.361 TCP 1.101.0.1:3000 -> 22.102.0.1:39142 10 6452 1 2025-11-10 16:06:00.621 00:00:10.368 TCP 23.104.0.1:47452 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:06:39.122 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50800 10 6452 1 2025-11-10 16:07:01.029 00:00:10.362 TCP 23.104.0.1:60436 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:07:39.335 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36852 10 6452 1 2025-11-10 16:08:01.426 00:00:10.446 TCP 23.104.0.1:35252 -> 1.101.0.1:3000 15 1926 1 2025-11-10 16:08:39.549 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:55286 12 10375 1 2025-11-10 16:09:01.906 00:00:10.367 TCP 23.104.0.1:44428 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:09:39.753 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59358 10 6452 1 2025-11-10 16:04:58.707 00:05:56.621 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:10:02.313 00:00:10.367 TCP 23.104.0.1:53134 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:10:32.426 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:10:32.890 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:10:39.964 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38846 12 6556 1 2025-11-10 16:05:58.705 00:05:56.626 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 16:11:02.717 00:00:10.381 TCP 23.104.0.1:40034 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:11:40.188 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36844 10 6452 1 2025-11-10 16:12:03.154 00:00:10.379 TCP 23.104.0.1:41082 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:12:40.406 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49676 10 6452 1 2025-11-10 16:13:03.573 00:00:10.655 TCP 23.104.0.1:34586 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:13:40.624 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:45694 10 6452 1 2025-11-10 16:14:04.263 00:00:10.367 TCP 23.104.0.1:42912 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:14:40.838 00:00:11.225 TCP 1.101.0.1:3000 -> 22.102.0.1:34180 10 6452 1 2025-11-10 16:15:04.667 00:00:10.325 TCP 23.104.0.1:43452 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:15:32.439 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:15:32.597 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:10:58.708 00:05:56.621 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:15:42.105 00:00:11.167 TCP 1.101.0.1:3000 -> 22.102.0.1:39620 10 6452 1 2025-11-10 16:16:05.033 00:00:10.369 TCP 23.104.0.1:36750 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:16:43.309 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:34840 10 6452 1 2025-11-10 16:11:58.706 00:05:56.626 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 16:17:05.446 00:00:10.362 TCP 23.104.0.1:56090 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:17:43.480 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37756 10 6452 1 2025-11-10 16:18:05.851 00:00:10.386 TCP 23.104.0.1:42608 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:18:43.710 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58094 10 6452 1 2025-11-10 16:19:06.273 00:00:10.367 TCP 23.104.0.1:38848 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:19:43.926 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:59516 10 6452 1 2025-11-10 16:20:06.682 00:00:10.371 TCP 23.104.0.1:56974 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:20:33.125 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:20:33.160 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:20:44.160 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:52730 10 6452 1 2025-11-10 16:21:07.106 00:00:10.367 TCP 23.104.0.1:53296 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:21:44.332 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35946 10 6452 1 2025-11-10 16:16:58.711 00:05:56.620 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:22:07.510 00:00:10.899 TCP 23.104.0.1:51204 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:17:58.708 00:05:56.626 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 16:22:44.561 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:40468 10 6452 1 2025-11-10 16:23:08.447 00:00:10.367 TCP 23.104.0.1:34244 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:23:44.731 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37008 10 6452 1 2025-11-10 16:24:08.852 00:00:10.378 TCP 23.104.0.1:36720 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:24:44.947 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:58258 10 6452 1 2025-11-10 16:25:09.272 00:00:10.365 TCP 23.104.0.1:54194 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:25:33.471 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:25:33.573 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:25:45.178 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56122 10 6452 1 2025-11-10 16:26:09.669 00:00:10.365 TCP 23.104.0.1:48284 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:26:45.393 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41084 10 6452 1 2025-11-10 16:27:10.101 00:00:10.371 TCP 23.104.0.1:43406 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:27:45.603 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38452 10 6452 1 2025-11-10 16:22:58.719 00:05:56.614 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:28:10.508 00:00:10.367 TCP 23.104.0.1:55976 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:23:58.718 00:05:56.618 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 16:28:45.815 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:57874 10 6452 1 2025-11-10 16:29:10.913 00:00:10.364 TCP 23.104.0.1:54658 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:29:45.997 00:00:11.701 TCP 1.101.0.1:3000 -> 22.102.0.1:40086 10 6452 1 2025-11-10 16:30:11.314 00:00:10.367 TCP 23.104.0.1:49042 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:30:33.014 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:30:32.977 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:30:47.737 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50832 10 6452 1 2025-11-10 16:31:11.722 00:00:10.392 TCP 23.104.0.1:43034 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:31:47.953 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:58206 10 6452 1 2025-11-10 16:32:12.153 00:00:10.371 TCP 23.104.0.1:45760 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:32:48.136 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53606 10 6452 1 2025-11-10 16:33:12.559 00:00:10.319 TCP 23.104.0.1:60448 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:28:58.724 00:05:56.610 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:33:48.357 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:38168 10 6452 1 2025-11-10 16:34:12.919 00:00:10.378 TCP 23.104.0.1:37304 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:29:58.722 00:05:56.616 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 16:34:48.591 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59036 10 6452 1 2025-11-10 16:35:13.337 00:00:10.375 TCP 23.104.0.1:50368 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:35:33.245 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:35:32.968 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:35:48.800 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42336 10 6452 1 2025-11-10 16:36:13.756 00:00:10.331 TCP 23.104.0.1:54154 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:36:49.035 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35376 10 6452 1 2025-11-10 16:37:14.126 00:00:10.375 TCP 23.104.0.1:45878 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:37:49.248 00:00:10.433 TCP 1.101.0.1:3000 -> 22.102.0.1:37518 10 6452 1 2025-11-10 16:38:14.540 00:00:10.367 TCP 23.104.0.1:33702 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:38:49.718 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56978 10 6452 1 2025-11-10 16:39:14.938 00:00:10.382 TCP 23.104.0.1:60476 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:34:58.725 00:05:56.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:39:49.940 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:56096 10 6452 1 2025-11-10 16:40:15.356 00:00:10.323 TCP 23.104.0.1:56760 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:40:33.211 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:40:33.242 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:35:58.723 00:05:56.620 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 16:40:50.177 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47066 10 6452 1 2025-11-10 16:41:15.714 00:00:10.381 TCP 23.104.0.1:53440 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:41:50.397 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54374 10 6452 1 2025-11-10 16:42:16.134 00:00:10.321 TCP 23.104.0.1:51744 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:42:50.613 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:41156 10 6452 1 2025-11-10 16:43:16.494 00:00:10.367 TCP 23.104.0.1:36158 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:43:50.782 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59618 10 6452 1 2025-11-10 16:44:16.894 00:00:10.336 TCP 23.104.0.1:47944 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:44:51.001 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45026 10 6452 1 2025-11-10 16:45:17.267 00:00:10.356 TCP 23.104.0.1:54862 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:45:33.368 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:45:33.613 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:40:58.727 00:05:56.614 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:45:51.219 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:57148 10 6452 1 2025-11-10 16:46:17.671 00:00:10.321 TCP 23.104.0.1:52802 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:41:58.726 00:05:56.619 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 16:46:51.432 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34250 10 6452 1 2025-11-10 16:47:18.030 00:00:10.365 TCP 23.104.0.1:45214 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:47:51.642 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:41292 10 6452 1 2025-11-10 16:48:18.435 00:00:10.366 TCP 23.104.0.1:48310 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:48:51.852 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44110 10 6452 1 2025-11-10 16:49:18.838 00:00:10.391 TCP 23.104.0.1:42630 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:49:52.084 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37574 10 6452 1 2025-11-10 16:50:19.266 00:00:10.363 TCP 23.104.0.1:53038 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:50:33.165 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:50:33.120 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:50:52.292 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34444 10 6452 1 2025-11-10 16:51:19.663 00:00:10.365 TCP 23.104.0.1:59020 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:46:58.730 00:05:56.614 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:51:52.511 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46056 10 6452 1 2025-11-10 16:52:20.092 00:00:10.326 TCP 23.104.0.1:58166 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:47:58.726 00:05:56.620 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 16:52:52.725 00:00:10.300 TCP 1.101.0.1:3000 -> 22.102.0.1:33076 10 6452 1 2025-11-10 16:53:20.455 00:00:10.367 TCP 23.104.0.1:42874 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:53:53.084 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:38840 10 6452 1 2025-11-10 16:54:20.855 00:00:10.379 TCP 23.104.0.1:38648 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:54:53.256 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52358 10 6452 1 2025-11-10 16:55:21.271 00:00:10.374 TCP 23.104.0.1:60720 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:55:33.541 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 16:55:33.364 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 16:55:53.472 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40412 10 6452 1 2025-11-10 16:56:21.688 00:00:10.372 TCP 23.104.0.1:36278 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:56:53.691 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:35992 10 6452 1 2025-11-10 16:57:22.106 00:00:10.376 TCP 23.104.0.1:45960 -> 1.101.0.1:3000 11 1507 1 2025-11-10 16:52:58.730 00:05:56.615 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 16:57:53.880 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35650 10 6452 1 2025-11-10 16:58:22.518 00:00:10.362 TCP 23.104.0.1:40906 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496342, total packets: 1570, avg bps: 1019, avg pps: 0, avg bpp: 316 Time window: 2025-11-10 15:53:58 - 2025-11-10 16:58:55 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0033s User: 0.0022s Wall: 0.0062s flows/second: 26231.5 Runtime: 0.0062s