Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 19:59:09.586 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59710 10 6452 1 2025-11-15 19:59:28.061 00:00:10.364 TCP 23.104.0.1:38756 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:00:09.808 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54294 10 6452 1 2025-11-15 20:00:28.462 00:00:10.323 TCP 23.104.0.1:39244 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:01:10.036 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38170 10 6452 1 2025-11-15 20:01:28.826 00:00:10.391 TCP 23.104.0.1:37732 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:02:10.247 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48954 10 6452 1 2025-11-15 20:02:29.252 00:00:10.365 TCP 23.104.0.1:37364 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:03:01.381 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:03:01.726 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:03:10.465 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:59844 10 6452 1 2025-11-15 20:03:29.656 00:00:10.371 TCP 23.104.0.1:59688 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:59:57.627 00:05:04.726 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 19:59:57.625 00:05:04.731 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:04:10.672 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48580 10 6452 1 2025-11-15 20:04:30.095 00:00:10.373 TCP 23.104.0.1:33842 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:05:10.843 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:53520 10 6452 1 2025-11-15 20:05:30.509 00:00:10.363 TCP 23.104.0.1:47968 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:06:11.015 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44978 10 6452 1 2025-11-15 20:06:30.914 00:00:10.325 TCP 23.104.0.1:56044 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:07:11.229 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49848 10 6452 1 2025-11-15 20:07:31.275 00:00:10.332 TCP 23.104.0.1:37728 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:08:02.231 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:08:02.185 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:08:11.452 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45822 10 6452 1 2025-11-15 20:08:31.647 00:00:10.325 TCP 23.104.0.1:59112 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:09:11.662 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39296 10 6452 1 2025-11-15 20:09:32.008 00:00:10.364 TCP 23.104.0.1:36044 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:05:57.625 00:05:04.731 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:05:57.629 00:05:04.725 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 20:10:11.832 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38044 10 6452 1 2025-11-15 20:10:32.418 00:00:10.366 TCP 23.104.0.1:60198 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:11:12.071 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58360 10 6452 1 2025-11-15 20:11:32.821 00:00:10.323 TCP 23.104.0.1:40888 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:12:12.298 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41042 10 6452 1 2025-11-15 20:12:33.190 00:00:10.369 TCP 23.104.0.1:49584 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:13:01.553 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:13:02.027 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:13:12.517 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46554 10 6452 1 2025-11-15 20:13:33.596 00:00:10.365 TCP 23.104.0.1:37420 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:14:12.729 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:42958 10 6452 1 2025-11-15 20:14:34.002 00:00:10.368 TCP 23.104.0.1:42288 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:15:12.901 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44718 10 6452 1 2025-11-15 20:15:34.407 00:00:10.383 TCP 23.104.0.1:46900 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:11:57.627 00:05:04.732 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 20:11:57.625 00:05:04.737 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:16:13.116 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58716 10 6452 1 2025-11-15 20:16:34.820 00:00:10.363 TCP 23.104.0.1:47104 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:17:13.327 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47736 10 6452 1 2025-11-15 20:17:35.225 00:00:10.366 TCP 23.104.0.1:35700 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:18:02.187 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:18:02.151 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:18:13.547 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51136 10 6452 1 2025-11-15 20:18:35.635 00:00:10.335 TCP 23.104.0.1:42848 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:19:13.759 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34354 10 6452 1 2025-11-15 20:19:36.011 00:00:10.362 TCP 23.104.0.1:53568 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:20:13.980 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:59488 10 6452 1 2025-11-15 20:20:36.417 00:00:10.326 TCP 23.104.0.1:34424 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:21:14.214 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:50956 10 6452 1 2025-11-15 20:21:36.782 00:00:10.368 TCP 23.104.0.1:53062 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:17:57.626 00:05:04.736 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:17:57.629 00:05:04.732 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 20:22:14.387 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49306 10 6452 1 2025-11-15 20:22:37.192 00:00:10.366 TCP 23.104.0.1:47684 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:23:01.987 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:23:01.982 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:23:14.600 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53596 10 6452 1 2025-11-15 20:23:37.595 00:00:10.367 TCP 23.104.0.1:33994 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:24:14.810 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:51354 10 6452 1 2025-11-15 20:24:37.997 00:00:10.369 TCP 23.104.0.1:53410 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:25:15.066 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33220 10 6452 1 2025-11-15 20:25:38.400 00:00:10.337 TCP 23.104.0.1:40172 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:26:15.290 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:42220 12 10369 1 2025-11-15 20:26:38.769 00:00:10.443 TCP 23.104.0.1:46262 -> 1.101.0.1:3000 15 1926 1 2025-11-15 20:27:15.537 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57858 10 6452 1 2025-11-15 20:27:39.249 00:00:10.367 TCP 23.104.0.1:34014 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:28:02.195 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:23:57.627 00:05:04.736 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:28:02.247 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:23:57.630 00:05:04.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 20:28:15.749 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47738 10 6452 1 2025-11-15 20:28:39.651 00:00:10.370 TCP 23.104.0.1:42876 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:29:15.963 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:58420 12 6556 1 2025-11-15 20:29:40.064 00:00:10.422 TCP 23.104.0.1:44512 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:30:16.197 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32940 10 6452 1 2025-11-15 20:30:40.538 00:00:10.363 TCP 23.104.0.1:58710 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:31:16.413 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:53292 10 6452 1 2025-11-15 20:31:40.939 00:00:10.380 TCP 23.104.0.1:51178 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:32:16.578 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:37920 10 6452 1 2025-11-15 20:32:41.356 00:00:10.364 TCP 23.104.0.1:32948 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:33:02.031 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:33:02.179 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:33:16.753 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:32944 10 6452 1 2025-11-15 20:33:41.758 00:00:10.332 TCP 23.104.0.1:55736 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:29:57.636 00:05:04.728 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 20:29:57.635 00:05:04.733 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:34:16.960 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:36662 10 6452 1 2025-11-15 20:34:42.124 00:00:10.324 TCP 23.104.0.1:54572 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:35:17.188 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36854 10 6452 1 2025-11-15 20:35:42.486 00:00:10.653 TCP 23.104.0.1:60174 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:36:17.401 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57442 10 6452 1 2025-11-15 20:36:43.186 00:00:10.362 TCP 23.104.0.1:40646 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:37:17.617 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53474 10 6452 1 2025-11-15 20:37:43.589 00:00:10.328 TCP 23.104.0.1:48270 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:38:02.543 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:38:02.288 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:38:17.829 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:45848 10 6452 1 2025-11-15 20:38:43.958 00:00:10.337 TCP 23.104.0.1:38754 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:39:18.072 00:00:10.935 TCP 1.101.0.1:3000 -> 22.102.0.1:56478 10 6452 1 2025-11-15 20:39:44.334 00:00:10.362 TCP 23.104.0.1:54920 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:35:57.638 00:05:04.728 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 20:35:57.636 00:05:04.734 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:40:19.068 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57582 10 6452 1 2025-11-15 20:40:44.736 00:00:10.364 TCP 23.104.0.1:38410 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:41:19.280 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55518 10 6452 1 2025-11-15 20:41:45.139 00:00:10.362 TCP 23.104.0.1:32892 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:42:19.498 00:00:10.223 TCP 1.101.0.1:3000 -> 22.102.0.1:52400 10 6452 1 2025-11-15 20:42:45.545 00:00:10.363 TCP 23.104.0.1:51896 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:43:02.877 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:43:02.696 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:43:19.761 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:35052 10 6452 1 2025-11-15 20:43:45.949 00:00:10.366 TCP 23.104.0.1:38724 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:44:19.945 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57028 10 6452 1 2025-11-15 20:44:46.358 00:00:10.376 TCP 23.104.0.1:51410 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:45:20.167 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51774 10 6452 1 2025-11-15 20:45:46.777 00:00:10.366 TCP 23.104.0.1:33462 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:41:57.635 00:05:04.735 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:41:57.638 00:05:04.729 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 20:46:20.381 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:41374 10 6452 1 2025-11-15 20:46:47.184 00:00:10.358 TCP 23.104.0.1:37796 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:47:20.553 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:43136 10 6452 1 2025-11-15 20:47:47.583 00:00:10.360 TCP 23.104.0.1:37428 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:48:02.621 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:48:02.698 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:48:20.780 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:60282 10 6452 1 2025-11-15 20:48:47.979 00:00:10.366 TCP 23.104.0.1:42634 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:49:20.957 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:60146 10 6452 1 2025-11-15 20:49:48.387 00:00:10.360 TCP 23.104.0.1:53136 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:50:21.152 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:38754 10 6452 1 2025-11-15 20:50:48.783 00:00:15.375 TCP 23.104.0.1:53008 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:51:21.324 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:42044 12 10375 1 2025-11-15 20:51:54.208 00:00:10.438 TCP 23.104.0.1:44350 -> 1.101.0.1:3000 15 1926 1 2025-11-15 20:47:57.640 00:05:04.730 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 20:47:57.638 00:05:04.735 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:52:21.565 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41372 10 6452 1 2025-11-15 20:53:02.617 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:53:02.456 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:52:54.685 00:00:10.324 TCP 23.104.0.1:36734 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:53:21.776 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45446 10 6452 1 2025-11-15 20:53:55.068 00:00:10.360 TCP 23.104.0.1:55908 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:54:21.996 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37410 10 6452 1 2025-11-15 20:54:55.469 00:00:10.319 TCP 23.104.0.1:48786 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:55:22.214 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43950 10 6452 1 2025-11-15 20:55:55.824 00:00:10.362 TCP 23.104.0.1:39186 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:56:22.426 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:36148 10 6452 1 2025-11-15 20:56:56.231 00:00:10.357 TCP 23.104.0.1:50868 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:57:22.609 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57498 10 6452 1 2025-11-15 20:58:02.717 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 20:57:56.628 00:00:10.363 TCP 23.104.0.1:34782 -> 1.101.0.1:3000 11 1507 1 2025-11-15 20:53:57.644 00:05:04.726 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-15 20:58:02.738 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-15 20:53:57.641 00:05:04.732 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-15 20:58:22.824 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50166 10 6452 1 Summary: total flows: 163, total bytes: 505623, total packets: 1575, avg bps: 1125, avg pps: 0, avg bpp: 321 Time window: 2025-11-15 19:59:09 - 2025-11-15 20:59:02 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0034s User: 0.0008s Wall: 0.0016s flows/second: 100673.2 Runtime: 0.0016s