Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 15:59:00.547 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57582 10 6452 1 2025-11-20 15:59:28.633 00:00:10.373 TCP 23.104.0.1:47036 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:00:00.767 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45662 10 6452 1 2025-11-20 16:00:22.992 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:00:22.939 00:00:00.007 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:00:29.049 00:00:10.360 TCP 23.104.0.1:46306 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:01:00.989 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:48512 10 6452 1 2025-11-20 16:01:29.451 00:00:10.363 TCP 23.104.0.1:43976 -> 1.101.0.1:3000 11 1507 1 2025-11-20 15:57:05.302 00:05:55.667 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 15:58:00.971 00:05:04.336 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 16:02:01.234 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35650 10 6452 1 2025-11-20 16:02:29.860 00:00:10.334 TCP 23.104.0.1:43002 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:03:01.462 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:49488 10 6452 1 2025-11-20 16:03:30.230 00:00:10.368 TCP 23.104.0.1:44818 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:04:01.700 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53790 10 6452 1 2025-11-20 16:04:30.639 00:00:10.391 TCP 23.104.0.1:35150 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:05:01.912 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36518 10 6452 1 2025-11-20 16:05:22.939 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:05:22.918 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:05:31.062 00:00:10.373 TCP 23.104.0.1:60632 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:06:02.128 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:35176 10 6452 1 2025-11-20 16:06:31.469 00:00:10.362 TCP 23.104.0.1:38544 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:07:02.295 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:40506 10 6452 1 2025-11-20 16:07:31.872 00:00:10.365 TCP 23.104.0.1:39418 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:03:05.309 00:05:55.662 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 16:04:00.972 00:05:04.335 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 16:08:02.473 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33764 10 6452 1 2025-11-20 16:08:32.276 00:00:10.365 TCP 23.104.0.1:43802 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:09:02.687 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:46992 10 6452 1 2025-11-20 16:09:32.680 00:00:10.322 TCP 23.104.0.1:35982 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:10:02.857 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:46238 10 6452 1 2025-11-20 16:10:22.885 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:10:23.170 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:10:33.044 00:00:10.322 TCP 23.104.0.1:35934 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:11:03.086 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53490 10 6452 1 2025-11-20 16:11:33.410 00:00:10.364 TCP 23.104.0.1:44694 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:12:03.300 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45462 10 6452 1 2025-11-20 16:12:33.815 00:00:10.362 TCP 23.104.0.1:51230 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:13:03.520 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:50374 10 6452 1 2025-11-20 16:13:34.218 00:00:10.323 TCP 23.104.0.1:35990 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:09:05.310 00:05:55.662 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 16:10:00.973 00:05:04.333 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 16:14:03.750 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54916 10 6452 1 2025-11-20 16:14:34.579 00:00:10.365 TCP 23.104.0.1:35742 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:15:03.972 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:47376 10 6452 1 2025-11-20 16:15:23.180 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:15:22.804 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:15:34.984 00:00:10.327 TCP 23.104.0.1:41020 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:16:04.210 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47758 10 6452 1 2025-11-20 16:16:35.352 00:00:10.320 TCP 23.104.0.1:35564 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:17:04.425 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34448 10 6452 1 2025-11-20 16:17:35.708 00:00:10.321 TCP 23.104.0.1:48092 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:18:04.644 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52362 10 6452 1 2025-11-20 16:18:36.104 00:00:10.369 TCP 23.104.0.1:54580 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:19:04.870 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:58164 10 6452 1 2025-11-20 16:19:36.509 00:00:10.323 TCP 23.104.0.1:34560 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:15:05.309 00:05:55.671 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 16:16:00.976 00:05:04.335 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 16:20:05.108 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57534 10 6452 1 2025-11-20 16:20:23.185 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:20:23.204 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:20:36.871 00:00:10.335 TCP 23.104.0.1:53248 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:21:05.324 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46942 10 6452 1 2025-11-20 16:21:37.255 00:00:10.363 TCP 23.104.0.1:48028 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:22:05.550 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52748 10 6452 1 2025-11-20 16:22:37.666 00:00:10.378 TCP 23.104.0.1:45570 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:23:05.770 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:59262 10 6452 1 2025-11-20 16:23:38.117 00:00:10.367 TCP 23.104.0.1:56966 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:24:06.003 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43386 10 6452 1 2025-11-20 16:24:38.528 00:00:10.336 TCP 23.104.0.1:41882 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:25:06.228 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37192 10 6452 1 2025-11-20 16:25:23.366 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:25:23.459 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:25:38.907 00:00:10.372 TCP 23.104.0.1:56396 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:21:05.312 00:05:55.668 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 16:22:00.982 00:05:04.330 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 16:26:06.443 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48286 10 6452 1 2025-11-20 16:26:39.318 00:00:10.366 TCP 23.104.0.1:54464 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:27:06.665 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49148 10 6452 1 2025-11-20 16:27:39.727 00:00:10.371 TCP 23.104.0.1:48004 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:28:06.881 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40066 10 6452 1 2025-11-20 16:28:40.137 00:00:10.366 TCP 23.104.0.1:52422 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:29:07.101 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44356 10 6452 1 2025-11-20 16:29:40.543 00:00:10.364 TCP 23.104.0.1:46764 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:30:07.315 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57246 10 6452 1 2025-11-20 16:30:23.287 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:30:23.432 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:30:40.951 00:00:10.371 TCP 23.104.0.1:33352 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:31:07.534 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36574 10 6452 1 2025-11-20 16:31:41.359 00:00:10.366 TCP 23.104.0.1:43604 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:27:05.314 00:05:55.668 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 16:28:00.982 00:05:04.330 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 16:32:07.746 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50744 10 6452 1 2025-11-20 16:32:41.759 00:00:10.337 TCP 23.104.0.1:42604 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:33:07.954 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:34112 10 6452 1 2025-11-20 16:33:42.136 00:00:10.366 TCP 23.104.0.1:45068 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:34:08.138 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37704 10 6452 1 2025-11-20 16:34:42.547 00:00:10.366 TCP 23.104.0.1:49868 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:35:08.353 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:60726 10 6452 1 2025-11-20 16:35:23.446 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:35:23.503 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:35:42.951 00:00:10.328 TCP 23.104.0.1:60954 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:36:08.524 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:45094 10 6452 1 2025-11-20 16:36:43.317 00:00:10.367 TCP 23.104.0.1:45882 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:37:08.746 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51356 10 6452 1 2025-11-20 16:37:43.723 00:00:10.375 TCP 23.104.0.1:43210 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:33:05.315 00:05:55.670 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 16:34:00.986 00:05:04.327 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 16:38:08.961 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:55486 13 6608 1 2025-11-20 16:38:44.137 00:00:10.367 TCP 23.104.0.1:52326 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:39:09.201 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50724 10 6452 1 2025-11-20 16:39:44.543 00:00:10.365 TCP 23.104.0.1:54624 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:40:23.484 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:40:09.419 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:60034 10 6452 1 2025-11-20 16:40:23.635 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:40:44.946 00:00:10.335 TCP 23.104.0.1:35596 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:41:09.634 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:42504 10 6452 1 2025-11-20 16:41:45.317 00:00:10.361 TCP 23.104.0.1:50356 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:42:09.877 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:47754 10 6452 1 2025-11-20 16:42:45.720 00:00:10.369 TCP 23.104.0.1:42372 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:43:10.111 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53096 10 6452 1 2025-11-20 16:43:46.136 00:00:10.705 TCP 23.104.0.1:47258 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:39:05.316 00:05:55.671 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 16:40:00.988 00:05:04.326 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 16:44:10.323 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:55384 10 6452 1 2025-11-20 16:44:46.897 00:00:10.373 TCP 23.104.0.1:44906 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:45:10.549 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49016 10 6452 1 2025-11-20 16:45:23.797 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:45:23.807 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:45:47.312 00:00:10.363 TCP 23.104.0.1:53510 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:46:10.761 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45924 10 6452 1 2025-11-20 16:46:47.725 00:00:10.380 TCP 23.104.0.1:48066 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:47:10.977 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:39698 10 6452 1 2025-11-20 16:47:48.158 00:00:10.362 TCP 23.104.0.1:53410 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:48:11.225 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:59848 10 6452 1 2025-11-20 16:48:48.565 00:00:10.365 TCP 23.104.0.1:41542 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:49:11.407 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47252 10 6452 1 2025-11-20 16:45:05.317 00:05:55.679 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 16:46:00.989 00:05:00.011 TCP 179.1.22.22:39396 -> 179.1.22.1:179 11 667 1 2025-11-20 16:49:48.970 00:00:10.370 TCP 23.104.0.1:38932 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:50:11.623 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51980 10 6452 1 2025-11-20 16:50:23.846 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:50:24.088 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:50:49.380 00:00:10.373 TCP 23.104.0.1:42700 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:51:11.836 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:38494 10 6452 1 2025-11-20 16:51:49.795 00:00:10.366 TCP 23.104.0.1:57608 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:52:12.082 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38852 10 6452 1 2025-11-20 16:52:50.201 00:00:10.319 TCP 23.104.0.1:43254 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:53:12.297 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:56498 10 6452 1 2025-11-20 16:53:50.561 00:00:10.365 TCP 23.104.0.1:46424 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:54:12.471 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52824 10 6452 1 2025-11-20 16:54:50.965 00:00:16.745 TCP 23.104.0.1:43418 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:55:23.778 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 16:55:23.886 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 16:55:12.677 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47670 10 6452 1 2025-11-20 16:51:05.318 00:05:55.680 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 16:51:05.320 00:05:55.675 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 16:55:57.757 00:00:10.374 TCP 23.104.0.1:56880 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:56:12.899 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46036 10 6452 1 2025-11-20 16:56:58.174 00:00:10.358 TCP 23.104.0.1:60384 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:57:13.123 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:57134 10 6452 1 2025-11-20 16:57:58.572 00:00:12.403 TCP 23.104.0.1:51922 -> 1.101.0.1:3000 11 1507 1 2025-11-20 16:58:13.299 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:33092 10 6452 1 Summary: total flows: 163, total bytes: 496926, total packets: 1563, avg bps: 1080, avg pps: 0, avg bpp: 317 Time window: 2025-11-20 15:57:05 - 2025-11-20 16:58:23 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0022s User: 0.0032s Wall: 0.0023s flows/second: 69387.1 Runtime: 0.0024s