Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 05:58:52.698 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:34202 10 6452 1 2025-11-18 05:59:11.922 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 05:59:12.360 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 05:59:35.199 00:00:10.324 TCP 23.104.0.1:59626 -> 1.101.0.1:3000 11 1507 1 2025-11-18 05:59:52.908 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47790 10 6452 1 2025-11-18 06:00:35.564 00:00:10.367 TCP 23.104.0.1:60850 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:00:53.117 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39196 10 6452 1 2025-11-18 06:01:35.973 00:00:10.375 TCP 23.104.0.1:54718 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:01:53.335 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52418 10 6452 1 2025-11-18 05:57:59.185 00:05:04.850 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:02:36.390 00:00:10.363 TCP 23.104.0.1:50904 -> 1.101.0.1:3000 11 1507 1 2025-11-18 05:58:59.188 00:05:04.844 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:02:53.548 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58986 10 6452 1 2025-11-18 06:03:36.796 00:00:10.367 TCP 23.104.0.1:36008 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:03:53.766 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42956 10 6452 1 2025-11-18 06:04:11.059 00:00:00.052 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:04:11.325 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:04:37.205 00:00:10.364 TCP 23.104.0.1:48456 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:04:53.986 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35400 12 6556 1 2025-11-18 06:05:37.607 00:00:10.326 TCP 23.104.0.1:58252 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:05:54.209 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39514 10 6452 1 2025-11-18 06:06:37.972 00:00:10.365 TCP 23.104.0.1:35240 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:06:54.425 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40428 10 6452 1 2025-11-18 06:07:38.382 00:00:10.998 TCP 23.104.0.1:42070 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:07:54.648 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:53984 10 6452 1 2025-11-18 06:03:59.186 00:05:04.853 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:08:39.418 00:00:10.364 TCP 23.104.0.1:43224 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:08:54.818 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:56290 10 6452 1 2025-11-18 06:04:59.188 00:05:04.848 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:09:11.509 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:09:11.507 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:09:39.822 00:00:10.373 TCP 23.104.0.1:39298 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:09:55.072 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:47762 10 6452 1 2025-11-18 06:10:40.227 00:00:10.361 TCP 23.104.0.1:51034 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:10:55.260 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36878 10 6452 1 2025-11-18 06:11:40.629 00:00:10.364 TCP 23.104.0.1:55044 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:11:55.470 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:43488 12 10369 1 2025-11-18 06:12:41.036 00:00:10.441 TCP 23.104.0.1:49272 -> 1.101.0.1:3000 15 1926 1 2025-11-18 06:12:55.705 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43808 10 6452 1 2025-11-18 06:13:41.517 00:00:10.325 TCP 23.104.0.1:58106 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:13:55.921 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57822 10 6452 1 2025-11-18 06:09:59.194 00:05:04.850 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:14:11.512 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:14:11.416 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:14:41.886 00:00:10.383 TCP 23.104.0.1:38286 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:10:59.197 00:05:04.844 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:14:56.132 00:00:10.669 TCP 1.101.0.1:3000 -> 22.102.0.1:54652 10 6452 1 2025-11-18 06:15:42.310 00:00:10.365 TCP 23.104.0.1:39000 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:15:56.832 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34814 10 6452 1 2025-11-18 06:16:42.715 00:00:10.373 TCP 23.104.0.1:58904 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:16:57.071 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:57626 10 6452 1 2025-11-18 06:17:43.129 00:00:10.353 TCP 23.104.0.1:39026 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:17:57.298 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36826 10 6452 1 2025-11-18 06:18:43.524 00:00:10.367 TCP 23.104.0.1:34856 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:19:11.877 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:18:57.515 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:49454 10 6452 1 2025-11-18 06:19:12.074 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:19:43.927 00:00:10.384 TCP 23.104.0.1:38768 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:15:59.198 00:05:04.847 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:19:57.744 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58306 10 6452 1 2025-11-18 06:20:44.354 00:00:10.366 TCP 23.104.0.1:53432 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:16:59.201 00:05:04.841 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:20:57.962 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:43708 12 6556 1 2025-11-18 06:21:44.759 00:00:10.387 TCP 23.104.0.1:47696 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:21:58.193 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52638 10 6452 1 2025-11-18 06:22:45.184 00:00:10.364 TCP 23.104.0.1:57556 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:22:58.406 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:48726 10 6452 1 2025-11-18 06:23:45.583 00:00:10.365 TCP 23.104.0.1:47288 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:24:11.885 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:23:58.634 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56358 10 6452 1 2025-11-18 06:24:11.715 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:24:45.989 00:00:10.364 TCP 23.104.0.1:40080 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:24:58.846 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:53418 10 6452 1 2025-11-18 06:25:46.389 00:00:10.325 TCP 23.104.0.1:43508 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:21:59.200 00:05:04.846 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:25:59.087 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51646 10 6452 1 2025-11-18 06:26:46.750 00:00:10.384 TCP 23.104.0.1:53070 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:22:59.203 00:05:04.841 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:26:59.293 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35312 10 6452 1 2025-11-18 06:27:47.167 00:00:10.365 TCP 23.104.0.1:42216 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:27:59.514 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:45022 10 6452 1 2025-11-18 06:28:47.574 00:00:10.366 TCP 23.104.0.1:42206 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:29:11.950 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:28:59.685 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53466 10 6452 1 2025-11-18 06:29:11.831 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:29:47.972 00:00:10.370 TCP 23.104.0.1:44160 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:29:59.898 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:34978 10 6452 1 2025-11-18 06:30:48.380 00:00:10.368 TCP 23.104.0.1:36946 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:31:00.144 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:53986 10 6452 1 2025-11-18 06:31:48.785 00:00:10.365 TCP 23.104.0.1:52714 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:27:59.201 00:05:04.855 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:32:00.319 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:41866 10 6452 1 2025-11-18 06:32:49.186 00:00:10.362 TCP 23.104.0.1:56592 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:28:59.205 00:05:04.862 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:33:00.500 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:48666 10 6452 1 2025-11-18 06:33:49.585 00:00:10.979 TCP 23.104.0.1:59068 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:34:00.731 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:55262 10 6452 1 2025-11-18 06:34:12.244 00:00:00.031 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:34:12.161 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:34:50.604 00:00:10.367 TCP 23.104.0.1:36806 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:35:00.962 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:49808 10 6452 1 2025-11-18 06:35:51.002 00:00:10.328 TCP 23.104.0.1:38730 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:36:01.202 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:41334 10 6452 1 2025-11-18 06:36:51.363 00:00:10.365 TCP 23.104.0.1:39506 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:37:01.413 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60704 10 6452 1 2025-11-18 06:33:59.201 00:05:04.869 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:37:51.768 00:00:10.628 TCP 23.104.0.1:47612 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:38:01.632 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49538 10 6452 1 2025-11-18 06:34:59.205 00:05:04.864 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:38:52.436 00:00:10.365 TCP 23.104.0.1:36428 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:39:11.861 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:39:12.234 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:39:01.836 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47324 10 6452 1 2025-11-18 06:39:52.837 00:00:10.385 TCP 23.104.0.1:46056 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:40:02.077 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35664 10 6452 1 2025-11-18 06:40:53.263 00:00:10.328 TCP 23.104.0.1:33690 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:41:02.290 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54594 10 6452 1 2025-11-18 06:41:53.627 00:00:10.365 TCP 23.104.0.1:54506 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:42:02.501 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:35002 10 6452 1 2025-11-18 06:42:54.032 00:00:10.324 TCP 23.104.0.1:33466 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:43:02.675 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:59986 10 6452 1 2025-11-18 06:39:59.204 00:05:04.868 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:43:54.395 00:00:10.364 TCP 23.104.0.1:45458 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:44:12.080 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:44:02.885 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:39658 10 6452 1 2025-11-18 06:44:12.237 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:44:54.796 00:00:10.416 TCP 23.104.0.1:34466 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:40:59.207 00:05:04.863 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:45:03.108 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55784 10 6452 1 2025-11-18 06:45:55.253 00:00:10.322 TCP 23.104.0.1:49124 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:46:03.322 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:35796 10 6452 1 2025-11-18 06:46:55.617 00:00:10.363 TCP 23.104.0.1:55354 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:47:03.520 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37948 10 6452 1 2025-11-18 06:47:56.024 00:00:10.362 TCP 23.104.0.1:36518 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:48:03.734 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60604 10 6452 1 2025-11-18 06:48:56.425 00:00:10.326 TCP 23.104.0.1:36130 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:49:12.306 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:49:03.949 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:55754 10 6452 1 2025-11-18 06:49:12.276 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:45:59.206 00:05:04.869 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:49:56.791 00:00:10.370 TCP 23.104.0.1:45678 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:50:04.176 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41916 10 6452 1 2025-11-18 06:46:59.210 00:05:04.864 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:50:57.204 00:00:10.363 TCP 23.104.0.1:44582 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:51:04.394 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56422 10 6452 1 2025-11-18 06:51:57.613 00:00:10.367 TCP 23.104.0.1:53144 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:52:04.608 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34312 10 6452 1 2025-11-18 06:52:58.021 00:00:10.325 TCP 23.104.0.1:59114 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:53:04.829 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53176 10 6452 1 2025-11-18 06:53:58.391 00:00:10.375 TCP 23.104.0.1:44312 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:54:12.350 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 06:54:05.067 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42706 10 6452 1 2025-11-18 06:54:12.353 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 06:54:58.803 00:00:10.368 TCP 23.104.0.1:58878 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:55:05.282 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46948 10 6452 1 2025-11-18 06:51:59.207 00:05:04.868 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 06:55:59.210 00:00:10.371 TCP 23.104.0.1:46768 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:56:05.495 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58678 10 6452 1 2025-11-18 06:52:59.210 00:05:04.864 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 06:56:59.616 00:00:10.403 TCP 23.104.0.1:38600 -> 1.101.0.1:3000 15 1926 1 2025-11-18 06:57:05.723 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:33624 12 10375 1 2025-11-18 06:58:00.059 00:00:10.365 TCP 23.104.0.1:49196 -> 1.101.0.1:3000 11 1507 1 2025-11-18 06:58:05.978 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:45786 10 6452 1 Summary: total flows: 163, total bytes: 505727, total packets: 1577, avg bps: 1118, avg pps: 0, avg bpp: 320 Time window: 2025-11-18 05:57:59 - 2025-11-18 06:58:16 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0053s User: 0.0011s Wall: 0.0023s flows/second: 72346.2 Runtime: 0.0023s