Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 16:58:57.751 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51172 10 6452 1 2025-11-15 16:59:35.986 00:00:10.364 TCP 23.104.0.1:52120 -> 1.101.0.1:3000 11 1507 1 2025-11-15 16:59:57.961 00:00:24.154 TCP 1.101.0.1:3000 -> 22.102.0.1:59256 10 6452 1 2025-11-15 17:00:36.388 00:00:10.366 TCP 23.104.0.1:35390 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:01:12.156 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48222 10 6452 1 2025-11-15 17:01:36.792 00:00:10.943 TCP 23.104.0.1:57718 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:02:12.376 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:59564 10 6452 1 2025-11-15 17:02:37.777 00:00:10.329 TCP 23.104.0.1:55350 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:02:57.764 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:02:57.685 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:03:12.557 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60070 10 6452 1 2025-11-15 17:03:38.141 00:00:10.659 TCP 23.104.0.1:54410 -> 1.101.0.1:3000 11 1507 1 2025-11-15 16:59:57.566 00:05:04.700 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 16:59:57.564 00:05:04.705 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:04:12.786 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:47956 10 6452 1 2025-11-15 17:04:38.836 00:00:10.339 TCP 23.104.0.1:42870 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:05:12.958 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:51320 12 6556 1 2025-11-15 17:05:39.213 00:00:10.363 TCP 23.104.0.1:41562 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:06:13.193 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34636 10 6452 1 2025-11-15 17:06:39.618 00:00:10.361 TCP 23.104.0.1:40408 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:07:13.417 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:46852 10 6452 1 2025-11-15 17:07:40.015 00:00:10.770 TCP 23.104.0.1:47810 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:07:57.955 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:07:58.129 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:08:13.658 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37944 10 6452 1 2025-11-15 17:08:40.825 00:00:10.371 TCP 23.104.0.1:42146 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:09:13.867 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36408 10 6452 1 2025-11-15 17:09:41.228 00:00:10.363 TCP 23.104.0.1:33030 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:05:57.564 00:05:04.708 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:05:57.567 00:05:04.703 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 17:10:14.088 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:44826 10 6452 1 2025-11-15 17:10:41.626 00:00:10.367 TCP 23.104.0.1:54864 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:11:14.257 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42716 10 6452 1 2025-11-15 17:11:42.036 00:00:10.364 TCP 23.104.0.1:51456 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:12:14.470 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50868 10 6452 1 2025-11-15 17:12:42.438 00:00:10.369 TCP 23.104.0.1:51142 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:12:57.884 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:12:58.015 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:13:14.687 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60852 10 6452 1 2025-11-15 17:13:42.861 00:00:10.383 TCP 23.104.0.1:43280 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:14:14.901 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:56650 10 6452 1 2025-11-15 17:14:43.293 00:00:10.366 TCP 23.104.0.1:43440 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:15:15.152 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:53738 10 6452 1 2025-11-15 17:15:43.710 00:00:10.324 TCP 23.104.0.1:42250 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:11:57.567 00:05:04.703 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 17:11:57.566 00:05:04.707 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:16:15.358 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:41100 10 6452 1 2025-11-15 17:16:44.099 00:00:10.375 TCP 23.104.0.1:58976 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:17:15.584 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58086 10 6452 1 2025-11-15 17:17:44.503 00:00:10.370 TCP 23.104.0.1:43906 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:17:58.056 00:00:00.048 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:17:58.394 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:18:15.806 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:41690 10 6452 1 2025-11-15 17:18:44.910 00:00:10.379 TCP 23.104.0.1:35910 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:19:16.036 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41224 10 6452 1 2025-11-15 17:19:45.325 00:00:10.369 TCP 23.104.0.1:46086 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:20:16.254 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60270 10 6452 1 2025-11-15 17:20:45.727 00:00:10.371 TCP 23.104.0.1:43734 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:21:16.476 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47820 10 6452 1 2025-11-15 17:21:46.137 00:00:10.369 TCP 23.104.0.1:43154 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:17:57.568 00:05:04.706 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 17:17:57.567 00:05:04.711 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:22:16.700 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42972 10 6452 1 2025-11-15 17:22:46.542 00:00:10.364 TCP 23.104.0.1:44800 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:22:58.362 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:22:58.506 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:23:16.921 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:57156 10 6452 1 2025-11-15 17:23:46.945 00:00:10.336 TCP 23.104.0.1:56330 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:24:17.145 00:00:10.979 TCP 1.101.0.1:3000 -> 22.102.0.1:50290 11 6504 1 2025-11-15 17:24:47.317 00:00:10.323 TCP 23.104.0.1:51108 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:25:18.160 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57220 10 6452 1 2025-11-15 17:25:47.683 00:00:10.364 TCP 23.104.0.1:45474 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:26:18.378 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:56522 12 10375 1 2025-11-15 17:26:48.129 00:00:10.398 TCP 23.104.0.1:50930 -> 1.101.0.1:3000 15 1926 1 2025-11-15 17:27:18.624 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46224 10 6452 1 2025-11-15 17:27:58.497 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:27:48.569 00:00:10.367 TCP 23.104.0.1:59672 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:27:58.541 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:23:57.567 00:05:04.713 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:23:57.569 00:05:04.708 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 17:28:18.843 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:46352 10 6452 1 2025-11-15 17:28:48.978 00:00:10.563 TCP 23.104.0.1:46090 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:29:19.083 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58696 10 6452 1 2025-11-15 17:29:49.579 00:00:10.376 TCP 23.104.0.1:32768 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:30:19.299 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54286 10 6452 1 2025-11-15 17:30:49.985 00:00:10.373 TCP 23.104.0.1:38804 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:31:19.520 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:34286 10 6452 1 2025-11-15 17:31:50.392 00:00:10.379 TCP 23.104.0.1:44012 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:32:19.748 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51554 10 6452 1 2025-11-15 17:32:58.641 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:32:58.307 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:32:50.805 00:00:10.425 TCP 23.104.0.1:34480 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:33:19.958 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:43206 10 6452 1 2025-11-15 17:33:51.269 00:00:10.331 TCP 23.104.0.1:50816 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:29:57.571 00:05:04.708 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 17:29:57.568 00:05:04.713 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:34:20.176 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36312 10 6452 1 2025-11-15 17:34:51.637 00:00:10.363 TCP 23.104.0.1:36480 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:35:20.394 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:45514 10 6452 1 2025-11-15 17:35:52.041 00:00:10.366 TCP 23.104.0.1:34812 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:36:20.577 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37288 10 6452 1 2025-11-15 17:36:52.447 00:00:10.364 TCP 23.104.0.1:33360 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:37:20.802 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59430 10 6452 1 2025-11-15 17:37:58.763 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:37:58.493 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:37:52.852 00:00:10.381 TCP 23.104.0.1:34372 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:38:21.046 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41582 10 6452 1 2025-11-15 17:38:53.276 00:00:10.362 TCP 23.104.0.1:42834 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:39:21.268 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36692 10 6452 1 2025-11-15 17:35:57.569 00:05:04.725 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:35:57.572 00:05:04.720 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 17:39:53.676 00:00:10.365 TCP 23.104.0.1:53946 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:40:21.480 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46030 10 6452 1 2025-11-15 17:40:54.101 00:00:10.361 TCP 23.104.0.1:48748 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:41:21.694 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51220 10 6452 1 2025-11-15 17:41:54.503 00:00:10.323 TCP 23.104.0.1:37194 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:42:21.906 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58416 10 6452 1 2025-11-15 17:42:58.825 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:42:58.575 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:42:54.863 00:00:10.375 TCP 23.104.0.1:48202 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:43:22.120 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58586 10 6452 1 2025-11-15 17:43:55.274 00:00:10.379 TCP 23.104.0.1:42790 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:44:22.341 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:41202 10 6452 1 2025-11-15 17:44:55.693 00:00:10.367 TCP 23.104.0.1:45368 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:45:22.563 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55354 10 6452 1 2025-11-15 17:41:57.572 00:05:04.720 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 17:45:56.111 00:00:10.364 TCP 23.104.0.1:57632 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:41:57.571 00:05:04.725 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:46:22.786 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60074 10 6452 1 2025-11-15 17:46:56.515 00:00:10.367 TCP 23.104.0.1:34000 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:47:22.998 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:48172 10 6452 1 2025-11-15 17:47:58.898 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:47:58.705 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:47:56.917 00:00:10.341 TCP 23.104.0.1:35596 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:48:23.224 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52944 10 6452 1 2025-11-15 17:48:57.296 00:00:10.366 TCP 23.104.0.1:45882 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:49:23.445 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:56550 10 6452 1 2025-11-15 17:49:57.699 00:00:10.364 TCP 23.104.0.1:57834 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:50:23.662 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57750 10 6452 1 2025-11-15 17:50:58.111 00:00:10.695 TCP 23.104.0.1:40712 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:51:23.887 00:00:10.248 TCP 1.101.0.1:3000 -> 22.102.0.1:33528 10 6452 1 2025-11-15 17:47:57.574 00:05:04.719 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 17:47:57.572 00:05:04.724 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:51:58.847 00:00:10.379 TCP 23.104.0.1:48254 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:52:24.200 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53754 10 6452 1 2025-11-15 17:52:59.623 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:52:59.731 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:52:59.266 00:00:10.369 TCP 23.104.0.1:45360 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:53:24.414 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:39166 10 6452 1 2025-11-15 17:53:59.671 00:00:10.385 TCP 23.104.0.1:41830 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:54:24.629 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35264 10 6452 1 2025-11-15 17:55:00.111 00:00:10.363 TCP 23.104.0.1:47016 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:55:24.842 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41690 10 6452 1 2025-11-15 17:56:00.508 00:00:10.376 TCP 23.104.0.1:60650 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:56:25.081 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35770 10 6452 1 2025-11-15 17:57:00.928 00:00:10.385 TCP 23.104.0.1:51606 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:57:25.299 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59280 10 6452 1 2025-11-15 17:57:59.082 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 17:57:59.209 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 17:53:57.576 00:05:04.722 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 17:53:57.578 00:05:04.717 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 17:58:01.353 00:00:10.365 TCP 23.104.0.1:59532 -> 1.101.0.1:3000 11 1507 1 2025-11-15 17:58:25.516 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:43300 10 6452 1 Summary: total flows: 163, total bytes: 501339, total packets: 1570, avg bps: 1112, avg pps: 0, avg bpp: 319 Time window: 2025-11-15 16:58:57 - 2025-11-15 17:59:02 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0062s User: 0.0000s Wall: 0.0023s flows/second: 71521.2 Runtime: 0.0023s