Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 09:58:47.550 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47838 10 6452 1 2025-11-20 09:59:35.866 00:00:10.376 TCP 23.104.0.1:60740 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:59:47.760 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33796 10 6452 1 2025-11-20 10:00:13.964 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:00:14.049 00:00:00.028 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:00:36.278 00:00:10.366 TCP 23.104.0.1:45582 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:00:47.973 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:57912 10 6452 1 2025-11-20 10:01:36.685 00:00:10.372 TCP 23.104.0.1:37022 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:57:05.180 00:05:55.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:01:48.201 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:38758 10 6452 1 2025-11-20 09:58:00.783 00:05:04.394 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:02:37.105 00:00:10.360 TCP 23.104.0.1:40094 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:02:48.368 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57668 10 6452 1 2025-11-20 10:03:37.505 00:00:10.368 TCP 23.104.0.1:52576 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:03:48.586 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60092 10 6452 1 2025-11-20 10:04:37.910 00:00:10.374 TCP 23.104.0.1:48088 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:04:48.793 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48050 10 6452 1 2025-11-20 10:05:13.856 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:05:14.045 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:05:38.324 00:00:10.359 TCP 23.104.0.1:35902 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:05:49.021 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:46014 10 6452 1 2025-11-20 10:06:38.722 00:00:10.370 TCP 23.104.0.1:48246 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:06:49.193 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33346 10 6452 1 2025-11-20 10:07:39.132 00:00:10.368 TCP 23.104.0.1:51916 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:07:49.404 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33406 10 6452 1 2025-11-20 10:03:05.180 00:05:55.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:04:00.790 00:05:04.388 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:08:39.539 00:00:10.367 TCP 23.104.0.1:54484 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:08:49.616 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:44556 10 6452 1 2025-11-20 10:09:39.946 00:00:10.372 TCP 23.104.0.1:60140 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:09:49.808 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:53922 10 6452 1 2025-11-20 10:10:13.839 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:10:14.108 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:10:40.358 00:00:10.363 TCP 23.104.0.1:48756 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:10:49.984 00:00:10.675 TCP 1.101.0.1:3000 -> 22.102.0.1:42708 10 6452 1 2025-11-20 10:11:40.763 00:00:10.370 TCP 23.104.0.1:56268 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:11:50.698 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59460 10 6452 1 2025-11-20 10:12:41.169 00:00:10.366 TCP 23.104.0.1:56980 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:12:50.917 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:41812 10 6452 1 2025-11-20 10:13:41.584 00:00:10.367 TCP 23.104.0.1:43328 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:13:51.107 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:58978 10 6452 1 2025-11-20 10:09:05.180 00:05:55.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:10:00.792 00:05:04.390 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:14:41.988 00:00:10.364 TCP 23.104.0.1:52792 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:14:51.283 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56694 10 6452 1 2025-11-20 10:15:13.935 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:15:14.270 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:15:42.391 00:00:10.364 TCP 23.104.0.1:48522 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:15:51.497 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37232 10 6452 1 2025-11-20 10:16:42.793 00:00:10.365 TCP 23.104.0.1:43232 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:16:51.706 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55668 10 6452 1 2025-11-20 10:17:43.205 00:00:10.997 TCP 23.104.0.1:48528 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:17:51.930 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:55872 10 6452 1 2025-11-20 10:18:44.240 00:00:10.363 TCP 23.104.0.1:42852 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:18:52.155 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:38490 10 6452 1 2025-11-20 10:19:44.644 00:00:10.326 TCP 23.104.0.1:49662 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:15:05.185 00:05:55.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:19:52.325 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45188 10 6452 1 2025-11-20 10:16:00.793 00:05:04.391 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:20:14.552 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:20:14.495 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:20:45.012 00:00:10.366 TCP 23.104.0.1:50034 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:20:52.540 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57590 10 6452 1 2025-11-20 10:21:45.418 00:00:10.364 TCP 23.104.0.1:56044 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:21:52.762 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:56910 10 6452 1 2025-11-20 10:22:45.821 00:00:10.361 TCP 23.104.0.1:50912 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:22:52.931 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47144 10 6452 1 2025-11-20 10:23:46.225 00:00:10.362 TCP 23.104.0.1:56976 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:23:53.138 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36294 10 6452 1 2025-11-20 10:24:46.626 00:00:10.374 TCP 23.104.0.1:39006 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:24:53.350 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58542 10 6452 1 2025-11-20 10:25:14.670 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:25:14.382 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:21:05.188 00:05:55.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:25:47.036 00:00:10.367 TCP 23.104.0.1:52296 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:25:53.562 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37090 10 6452 1 2025-11-20 10:22:00.804 00:05:04.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:26:47.445 00:00:10.381 TCP 23.104.0.1:41654 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:26:53.776 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37454 10 6452 1 2025-11-20 10:27:47.864 00:00:10.371 TCP 23.104.0.1:57434 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:27:53.986 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:55442 10 6452 1 2025-11-20 10:28:48.278 00:00:10.382 TCP 23.104.0.1:34054 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:28:54.222 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:49912 10 6452 1 2025-11-20 10:29:48.707 00:00:10.362 TCP 23.104.0.1:60818 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:29:54.392 00:00:10.714 TCP 1.101.0.1:3000 -> 22.102.0.1:37758 10 6452 1 2025-11-20 10:30:14.588 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:30:14.470 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:30:49.110 00:00:10.363 TCP 23.104.0.1:53806 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:31:49.521 00:00:10.380 TCP 23.104.0.1:34390 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:27:05.188 00:05:55.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:28:00.806 00:05:04.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:30:55.143 00:01:10.573 TCP 1.101.0.1:3000 -> 22.102.0.1:35896 20 12904 1 2025-11-20 10:32:49.941 00:00:10.375 TCP 23.104.0.1:56946 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:32:55.760 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36928 10 6452 1 2025-11-20 10:33:50.355 00:00:10.364 TCP 23.104.0.1:37052 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:33:55.973 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:45606 10 6452 1 2025-11-20 10:34:50.760 00:00:10.325 TCP 23.104.0.1:60630 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:34:56.205 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:49640 10 6452 1 2025-11-20 10:35:14.448 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:35:14.732 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:35:51.122 00:00:10.362 TCP 23.104.0.1:47658 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:35:56.378 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:58194 10 6452 1 2025-11-20 10:36:51.526 00:00:10.367 TCP 23.104.0.1:33888 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:36:56.582 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:38372 10 6452 1 2025-11-20 10:34:00.806 00:05:04.385 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:37:51.932 00:00:10.383 TCP 23.104.0.1:51036 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:33:05.191 00:05:55.627 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:37:56.754 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48492 10 6452 1 2025-11-20 10:38:52.360 00:00:10.367 TCP 23.104.0.1:35256 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:38:56.965 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:53920 12 6556 1 2025-11-20 10:39:52.768 00:00:10.374 TCP 23.104.0.1:59840 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:40:14.570 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:40:14.505 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:39:57.193 00:00:23.753 TCP 1.101.0.1:3000 -> 22.102.0.1:50590 11 6504 1 2025-11-20 10:40:53.182 00:00:10.361 TCP 23.104.0.1:39090 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:41:11.007 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:43938 10 6452 1 2025-11-20 10:41:53.589 00:00:10.361 TCP 23.104.0.1:49072 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:42:11.182 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:54784 10 6452 1 2025-11-20 10:42:53.992 00:00:10.365 TCP 23.104.0.1:37354 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:43:11.355 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:58028 10 6452 1 2025-11-20 10:39:05.193 00:05:55.626 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:43:54.395 00:00:10.323 TCP 23.104.0.1:55642 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:40:00.820 00:05:04.371 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:44:11.564 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53764 10 6452 1 2025-11-20 10:44:54.754 00:00:10.426 TCP 23.104.0.1:54982 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:45:14.875 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:45:14.739 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:45:11.776 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59040 10 6452 1 2025-11-20 10:45:55.220 00:00:10.363 TCP 23.104.0.1:50896 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:46:11.986 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42634 10 6452 1 2025-11-20 10:46:55.621 00:00:10.332 TCP 23.104.0.1:52074 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:47:12.212 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53954 10 6452 1 2025-11-20 10:47:55.994 00:00:10.363 TCP 23.104.0.1:39228 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:48:12.423 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43276 10 6452 1 2025-11-20 10:48:56.398 00:00:10.369 TCP 23.104.0.1:55740 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:49:12.640 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:41664 10 6452 1 2025-11-20 10:45:05.194 00:05:55.625 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:46:00.821 00:05:04.370 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:49:56.798 00:00:10.374 TCP 23.104.0.1:40244 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:50:15.021 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:50:14.961 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:50:12.813 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45408 10 6452 1 2025-11-20 10:50:57.209 00:00:10.372 TCP 23.104.0.1:35780 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:51:13.041 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:58398 10 6452 1 2025-11-20 10:51:57.613 00:00:10.371 TCP 23.104.0.1:35856 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:52:13.293 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35276 10 6452 1 2025-11-20 10:52:58.029 00:00:10.381 TCP 23.104.0.1:38824 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:53:13.502 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:33762 10 6452 1 2025-11-20 10:53:58.454 00:00:10.334 TCP 23.104.0.1:51636 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:54:13.675 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59448 10 6452 1 2025-11-20 10:55:14.982 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 10:54:58.826 00:00:10.365 TCP 23.104.0.1:60928 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:55:14.995 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 10:55:13.887 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:59168 10 6452 1 2025-11-20 10:51:05.193 00:05:55.635 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 10:52:00.826 00:05:04.368 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 10:55:59.229 00:00:10.363 TCP 23.104.0.1:53232 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:56:14.112 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:35002 10 6452 1 2025-11-20 10:56:59.632 00:00:10.368 TCP 23.104.0.1:58638 -> 1.101.0.1:3000 11 1507 1 2025-11-20 10:57:14.324 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39806 10 6452 1 2025-11-20 10:58:00.059 00:00:10.984 TCP 23.104.0.1:50578 -> 1.101.0.1:3000 15 1926 1 2025-11-20 10:58:14.541 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:47324 12 10375 1 Summary: total flows: 162, total bytes: 501339, total packets: 1570, avg bps: 1089, avg pps: 0, avg bpp: 319 Time window: 2025-11-20 09:57:05 - 2025-11-20 10:58:24 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0038s User: 0.0010s Wall: 0.0014s flows/second: 113987.1 Runtime: 0.0014s