Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 07:59:03.831 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47924 10 6452 1 2025-11-15 07:59:31.912 00:00:10.370 TCP 23.104.0.1:46016 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:00:04.069 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48702 10 6452 1 2025-11-15 08:00:32.322 00:00:10.364 TCP 23.104.0.1:40140 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:01:04.285 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42554 10 6452 1 2025-11-15 08:01:32.724 00:00:10.375 TCP 23.104.0.1:51224 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:02:04.498 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49612 10 6452 1 2025-11-15 08:02:33.137 00:00:10.365 TCP 23.104.0.1:40374 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:02:47.269 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:02:47.199 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:03:04.709 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51826 10 6452 1 2025-11-15 08:03:33.542 00:00:10.364 TCP 23.104.0.1:50126 -> 1.101.0.1:3000 11 1507 1 2025-11-15 07:59:57.388 00:05:04.569 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 07:59:57.392 00:05:04.563 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:04:04.928 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:41010 10 6452 1 2025-11-15 08:04:33.937 00:00:10.376 TCP 23.104.0.1:40036 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:05:05.157 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:52054 10 6452 1 2025-11-15 08:05:34.353 00:00:10.364 TCP 23.104.0.1:42850 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:06:05.327 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37018 10 6452 1 2025-11-15 08:06:34.756 00:00:10.369 TCP 23.104.0.1:56384 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:07:05.543 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35098 12 6556 1 2025-11-15 08:07:46.972 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:07:35.160 00:00:10.367 TCP 23.104.0.1:60842 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:07:47.170 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:08:05.762 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37520 10 6452 1 2025-11-15 08:08:35.563 00:00:10.369 TCP 23.104.0.1:52232 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:09:05.931 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:59534 10 6452 1 2025-11-15 08:09:35.969 00:00:10.368 TCP 23.104.0.1:54408 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:05:57.389 00:05:04.571 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 08:05:57.391 00:05:04.566 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:10:06.189 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:56672 10 6452 1 2025-11-15 08:10:36.373 00:00:10.362 TCP 23.104.0.1:34174 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:11:06.409 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41836 10 6452 1 2025-11-15 08:11:36.773 00:00:10.365 TCP 23.104.0.1:53098 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:12:06.630 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56458 10 6452 1 2025-11-15 08:12:47.492 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:12:47.332 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:12:37.179 00:00:10.322 TCP 23.104.0.1:43328 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:13:06.840 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:55314 10 6452 1 2025-11-15 08:13:37.541 00:00:10.365 TCP 23.104.0.1:41058 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:14:07.082 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60252 10 6452 1 2025-11-15 08:14:37.945 00:00:10.371 TCP 23.104.0.1:54866 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:15:07.254 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:48646 10 6452 1 2025-11-15 08:15:38.353 00:00:10.364 TCP 23.104.0.1:53996 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:11:57.398 00:05:04.562 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:11:57.395 00:05:04.567 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 08:16:07.462 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:34112 10 6452 1 2025-11-15 08:16:38.751 00:00:10.382 TCP 23.104.0.1:44000 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:17:07.637 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49850 10 6452 1 2025-11-15 08:17:47.359 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:17:39.166 00:00:10.332 TCP 23.104.0.1:37008 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:17:47.487 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:18:07.855 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:53208 10 6452 1 2025-11-15 08:18:39.537 00:00:10.368 TCP 23.104.0.1:58794 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:19:08.087 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:38194 10 6452 1 2025-11-15 08:19:39.938 00:00:10.386 TCP 23.104.0.1:57128 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:20:08.313 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54726 10 6452 1 2025-11-15 08:20:40.361 00:00:10.364 TCP 23.104.0.1:45202 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:21:08.536 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58506 10 6452 1 2025-11-15 08:21:40.763 00:00:10.383 TCP 23.104.0.1:58674 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:17:57.398 00:05:04.566 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 08:17:57.402 00:05:04.561 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:22:08.754 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51880 10 6452 1 2025-11-15 08:22:41.179 00:00:10.364 TCP 23.104.0.1:52808 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:22:47.579 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:22:47.600 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:23:08.980 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:44948 10 6452 1 2025-11-15 08:23:41.585 00:00:10.391 TCP 23.104.0.1:56550 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:24:09.233 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43432 10 6452 1 2025-11-15 08:24:42.014 00:00:10.368 TCP 23.104.0.1:44652 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:25:09.461 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:56870 10 6452 1 2025-11-15 08:25:42.419 00:00:10.363 TCP 23.104.0.1:60494 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:26:09.634 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43664 10 6452 1 2025-11-15 08:26:42.823 00:00:10.363 TCP 23.104.0.1:47368 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:27:09.846 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:51514 10 6452 1 2025-11-15 08:27:47.825 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:27:47.881 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:27:43.229 00:00:10.365 TCP 23.104.0.1:50112 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:23:57.402 00:05:04.560 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:23:57.400 00:05:04.566 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 08:28:10.088 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42724 10 6452 1 2025-11-15 08:28:43.628 00:00:10.370 TCP 23.104.0.1:51726 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:29:10.308 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60374 10 6452 1 2025-11-15 08:29:44.046 00:00:10.325 TCP 23.104.0.1:35704 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:30:10.530 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:48308 10 6452 1 2025-11-15 08:30:44.406 00:00:10.322 TCP 23.104.0.1:44238 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:31:10.714 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:33872 10 6452 1 2025-11-15 08:31:44.768 00:00:10.360 TCP 23.104.0.1:44424 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:32:10.934 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:59530 10 6452 1 2025-11-15 08:32:47.940 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:32:47.883 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:32:45.160 00:00:10.363 TCP 23.104.0.1:53490 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:33:11.169 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:50694 10 6452 1 2025-11-15 08:33:45.561 00:00:10.366 TCP 23.104.0.1:34272 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:29:57.404 00:05:04.560 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:29:57.401 00:05:04.565 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 08:34:11.337 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34600 10 6452 1 2025-11-15 08:34:45.963 00:00:10.367 TCP 23.104.0.1:41340 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:35:11.557 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:49084 10 6452 1 2025-11-15 08:35:46.366 00:00:10.367 TCP 23.104.0.1:38840 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:36:11.779 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:54456 10 6452 1 2025-11-15 08:36:46.765 00:00:10.370 TCP 23.104.0.1:34878 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:37:11.997 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45670 10 6452 1 2025-11-15 08:37:47.913 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:37:47.980 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:37:47.172 00:00:10.368 TCP 23.104.0.1:39366 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:38:12.214 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36954 10 6452 1 2025-11-15 08:38:47.577 00:00:10.368 TCP 23.104.0.1:44840 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:39:12.433 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58192 10 6452 1 2025-11-15 08:39:47.980 00:00:10.364 TCP 23.104.0.1:49784 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:35:57.404 00:05:04.561 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:35:57.403 00:05:04.565 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 08:40:12.651 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44944 10 6452 1 2025-11-15 08:40:48.385 00:00:10.364 TCP 23.104.0.1:56490 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:41:12.874 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:46244 10 6452 1 2025-11-15 08:41:48.791 00:00:10.834 TCP 23.104.0.1:35596 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:42:13.108 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:46800 10 6452 1 2025-11-15 08:42:47.945 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:42:47.950 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:42:49.674 00:00:10.324 TCP 23.104.0.1:41798 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:43:13.332 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47006 10 6452 1 2025-11-15 08:43:50.045 00:00:10.367 TCP 23.104.0.1:49846 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:44:13.552 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:55222 10 6452 1 2025-11-15 08:44:50.454 00:00:10.326 TCP 23.104.0.1:47950 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:45:13.725 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48058 10 6452 1 2025-11-15 08:45:50.826 00:00:10.429 TCP 23.104.0.1:40298 -> 1.101.0.1:3000 15 1926 1 2025-11-15 08:41:57.411 00:05:04.559 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 08:41:57.412 00:05:04.553 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:46:13.935 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:45420 12 10375 1 2025-11-15 08:46:51.291 00:00:10.372 TCP 23.104.0.1:40510 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:47:14.159 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40618 10 6452 1 2025-11-15 08:47:48.283 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:47:48.238 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:47:51.701 00:00:10.366 TCP 23.104.0.1:36978 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:48:14.373 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48902 10 6452 1 2025-11-15 08:48:52.116 00:00:10.362 TCP 23.104.0.1:48234 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:49:14.550 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:51882 10 6452 1 2025-11-15 08:49:52.520 00:00:10.373 TCP 23.104.0.1:46260 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:50:14.751 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:45632 10 6452 1 2025-11-15 08:50:52.927 00:00:10.372 TCP 23.104.0.1:52492 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:51:14.928 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37470 12 6556 1 2025-11-15 08:47:57.411 00:05:04.566 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 08:51:53.339 00:00:10.366 TCP 23.104.0.1:56322 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:47:57.413 00:05:04.561 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:52:15.144 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:51834 10 6452 1 2025-11-15 08:52:48.040 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:52:47.824 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:52:53.745 00:00:10.366 TCP 23.104.0.1:48210 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:53:15.321 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38158 10 6452 1 2025-11-15 08:53:54.150 00:00:10.365 TCP 23.104.0.1:50910 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:54:15.531 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60220 10 6452 1 2025-11-15 08:54:54.556 00:00:10.364 TCP 23.104.0.1:41278 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:55:15.743 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:51580 10 6452 1 2025-11-15 08:55:54.957 00:00:10.407 TCP 23.104.0.1:54910 -> 1.101.0.1:3000 15 1926 1 2025-11-15 08:56:15.948 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:35266 12 10375 1 2025-11-15 08:56:55.400 00:00:10.366 TCP 23.104.0.1:41012 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:57:16.203 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:43126 10 6452 1 2025-11-15 08:57:48.893 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 08:57:48.638 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:53:57.412 00:05:04.565 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 08:57:55.805 00:00:10.369 TCP 23.104.0.1:57772 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:53:57.415 00:05:04.560 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 08:58:16.376 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43800 10 6452 1 Summary: total flows: 163, total bytes: 505733, total packets: 1577, avg bps: 1124, avg pps: 0, avg bpp: 320 Time window: 2025-11-15 07:59:03 - 2025-11-15 08:59:01 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0063s User: 0.0000s Wall: 0.0017s flows/second: 93143.3 Runtime: 0.0018s