Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 17:59:34.999 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35194 10 6452 1 2025-11-20 17:59:33.607 00:00:10.378 TCP 23.104.0.1:53496 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:00:25.426 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:00:25.371 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:00:34.032 00:00:10.363 TCP 23.104.0.1:44352 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:00:35.219 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41506 10 6452 1 2025-11-20 18:01:34.432 00:00:10.436 TCP 23.104.0.1:33166 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:01:35.439 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49518 10 6452 1 2025-11-20 17:57:05.350 00:05:55.689 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 17:57:05.346 00:05:55.694 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 18:02:35.658 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:34554 10 6452 1 2025-11-20 18:02:34.905 00:00:10.325 TCP 23.104.0.1:59024 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:03:35.892 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45228 10 6452 1 2025-11-20 18:03:35.272 00:00:10.671 TCP 23.104.0.1:53260 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:04:35.979 00:00:10.374 TCP 23.104.0.1:49800 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:04:36.082 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58864 10 6452 1 2025-11-20 18:05:25.367 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:05:25.230 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:05:36.301 00:00:10.574 TCP 1.101.0.1:3000 -> 22.102.0.1:35020 10 6452 1 2025-11-20 18:05:36.392 00:00:10.615 TCP 23.104.0.1:50640 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:06:37.058 00:00:10.370 TCP 23.104.0.1:58276 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:06:36.911 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53746 10 6452 1 2025-11-20 18:07:37.128 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:39586 10 6452 1 2025-11-20 18:07:37.466 00:00:10.325 TCP 23.104.0.1:41372 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:03:05.354 00:05:55.686 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 18:03:05.353 00:05:55.692 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 18:08:37.337 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:36628 10 6452 1 2025-11-20 18:08:37.829 00:00:10.350 TCP 23.104.0.1:54892 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:09:38.216 00:00:10.360 TCP 23.104.0.1:35676 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:09:37.511 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58546 10 6452 1 2025-11-20 18:10:25.482 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:10:25.415 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:10:38.618 00:00:10.368 TCP 23.104.0.1:38766 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:10:37.723 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:51756 10 6452 1 2025-11-20 18:11:39.026 00:00:10.361 TCP 23.104.0.1:34202 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:11:37.960 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60730 12 6556 1 2025-11-20 18:12:39.425 00:00:10.440 TCP 23.104.0.1:36404 -> 1.101.0.1:3000 15 1926 1 2025-11-20 18:12:38.181 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:47086 12 10369 1 2025-11-20 18:13:38.437 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:56336 10 6452 1 2025-11-20 18:13:39.909 00:00:10.361 TCP 23.104.0.1:46812 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:09:05.357 00:05:55.686 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 18:09:05.354 00:06:00.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 809 1 2025-11-20 18:14:38.646 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46640 10 6452 1 2025-11-20 18:14:40.315 00:00:10.325 TCP 23.104.0.1:32812 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:15:25.486 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:15:25.424 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:15:40.680 00:00:10.373 TCP 23.104.0.1:58954 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:15:38.872 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39266 10 6452 1 2025-11-20 18:16:41.134 00:00:10.338 TCP 23.104.0.1:52684 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:16:39.107 00:00:10.232 TCP 1.101.0.1:3000 -> 22.102.0.1:58322 10 6452 1 2025-11-20 18:17:39.383 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39184 10 6452 1 2025-11-20 18:17:41.511 00:00:10.366 TCP 23.104.0.1:47178 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:18:39.599 00:00:10.125 TCP 1.101.0.1:3000 -> 22.102.0.1:45308 10 6452 1 2025-11-20 18:18:41.918 00:00:10.381 TCP 23.104.0.1:49308 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:19:39.764 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:42676 10 6452 1 2025-11-20 18:19:42.354 00:00:10.328 TCP 23.104.0.1:42484 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:15:05.360 00:05:55.683 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 18:16:01.045 00:05:04.314 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 18:20:25.581 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:20:25.651 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:20:39.988 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35416 10 6452 1 2025-11-20 18:20:42.715 00:00:10.331 TCP 23.104.0.1:50618 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:21:40.217 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59094 12 6556 1 2025-11-20 18:21:43.098 00:00:10.366 TCP 23.104.0.1:44998 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:22:40.436 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57902 10 6452 1 2025-11-20 18:22:43.503 00:00:10.369 TCP 23.104.0.1:58990 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:23:40.658 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55682 10 6452 1 2025-11-20 18:23:43.907 00:00:10.729 TCP 23.104.0.1:36830 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:24:40.891 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43308 10 6452 1 2025-11-20 18:24:44.670 00:00:10.325 TCP 23.104.0.1:34786 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:25:25.578 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:25:25.638 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:25:41.106 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55896 10 6452 1 2025-11-20 18:25:45.033 00:00:10.369 TCP 23.104.0.1:36880 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:21:05.362 00:06:00.004 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 790 1 2025-11-20 18:22:01.046 00:05:04.318 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 18:26:41.346 00:00:10.224 TCP 1.101.0.1:3000 -> 22.102.0.1:41688 10 6452 1 2025-11-20 18:26:45.439 00:00:10.363 TCP 23.104.0.1:36872 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:27:41.625 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57940 10 6452 1 2025-11-20 18:27:45.840 00:00:10.397 TCP 23.104.0.1:52872 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:28:46.272 00:00:10.323 TCP 23.104.0.1:34420 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:28:41.841 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:50504 10 6452 1 2025-11-20 18:29:42.082 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43394 10 6452 1 2025-11-20 18:29:46.628 00:00:10.340 TCP 23.104.0.1:43610 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:30:25.947 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:30:25.799 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:30:42.301 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43614 10 6452 1 2025-11-20 18:30:47.018 00:00:10.443 TCP 23.104.0.1:60220 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:31:42.514 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55886 10 6452 1 2025-11-20 18:31:47.499 00:00:10.364 TCP 23.104.0.1:32962 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:28:01.048 00:05:04.318 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 18:28:01.046 00:05:04.323 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 18:32:42.724 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:39740 10 6452 1 2025-11-20 18:32:47.898 00:00:10.376 TCP 23.104.0.1:53890 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:33:42.943 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:41770 10 6452 1 2025-11-20 18:33:48.311 00:00:10.371 TCP 23.104.0.1:39724 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:34:43.140 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:56814 10 6452 1 2025-11-20 18:34:48.727 00:00:10.324 TCP 23.104.0.1:45138 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:35:26.266 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:35:25.755 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:35:43.364 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:44396 10 6452 1 2025-11-20 18:35:49.103 00:00:10.368 TCP 23.104.0.1:36404 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:36:43.537 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53236 10 6452 1 2025-11-20 18:36:49.513 00:00:10.362 TCP 23.104.0.1:35774 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:37:43.762 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34330 10 6452 1 2025-11-20 18:37:49.914 00:00:10.372 TCP 23.104.0.1:42390 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:34:01.046 00:05:04.324 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 18:34:01.049 00:05:04.319 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 18:38:43.974 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:56812 10 6452 1 2025-11-20 18:38:50.325 00:00:10.366 TCP 23.104.0.1:58092 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:39:44.212 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:49960 10 6452 1 2025-11-20 18:39:50.729 00:00:10.366 TCP 23.104.0.1:55510 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:40:25.872 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:40:26.029 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:40:44.383 00:00:10.624 TCP 1.101.0.1:3000 -> 22.102.0.1:39510 10 6452 1 2025-11-20 18:40:51.134 00:00:10.364 TCP 23.104.0.1:51000 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:41:45.072 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58368 10 6452 1 2025-11-20 18:41:51.538 00:00:10.730 TCP 23.104.0.1:37948 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:42:45.283 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:45866 10 6452 1 2025-11-20 18:42:52.310 00:00:10.330 TCP 23.104.0.1:42406 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:43:45.505 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:51636 10 6452 1 2025-11-20 18:40:01.052 00:05:04.318 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 18:40:01.056 00:05:04.313 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 18:43:52.674 00:00:10.371 TCP 23.104.0.1:39318 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:44:45.684 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53060 10 6452 1 2025-11-20 18:44:53.105 00:00:10.371 TCP 23.104.0.1:53738 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:45:26.120 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:45:26.329 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:45:45.895 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51666 10 6452 1 2025-11-20 18:45:53.519 00:00:10.364 TCP 23.104.0.1:59138 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:46:46.116 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48132 10 6452 1 2025-11-20 18:46:53.924 00:00:12.756 TCP 23.104.0.1:55966 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:47:46.341 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:45372 14 10473 1 2025-11-20 18:47:56.721 00:00:10.400 TCP 23.104.0.1:40122 -> 1.101.0.1:3000 15 1926 1 2025-11-20 18:48:46.593 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:47604 10 6452 1 2025-11-20 18:48:57.160 00:00:10.327 TCP 23.104.0.1:42142 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:49:46.768 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:57144 10 6452 1 2025-11-20 18:46:01.058 00:05:04.312 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 18:46:01.055 00:05:04.317 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 18:49:57.528 00:00:10.361 TCP 23.104.0.1:40066 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:50:26.019 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:50:26.246 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:50:47.042 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36612 10 6452 1 2025-11-20 18:50:57.928 00:00:10.378 TCP 23.104.0.1:57116 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:51:47.257 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:49150 10 6452 1 2025-11-20 18:51:58.343 00:00:10.364 TCP 23.104.0.1:58018 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:52:47.498 00:00:10.748 TCP 1.101.0.1:3000 -> 22.102.0.1:50710 10 6452 1 2025-11-20 18:52:58.748 00:00:10.318 TCP 23.104.0.1:50264 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:53:48.285 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43046 10 6452 1 2025-11-20 18:53:59.108 00:00:10.360 TCP 23.104.0.1:44612 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:54:48.498 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43298 10 6452 1 2025-11-20 18:54:59.512 00:00:10.324 TCP 23.104.0.1:50210 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:55:26.583 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:55:26.533 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 18:55:48.708 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39054 10 6452 1 2025-11-20 18:52:01.055 00:05:04.318 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 18:52:01.058 00:05:04.313 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 18:55:59.872 00:00:10.322 TCP 23.104.0.1:54072 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:56:48.879 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:54090 11 6492 1 2025-11-20 18:57:00.233 00:00:10.366 TCP 23.104.0.1:47872 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:57:49.110 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39714 10 6452 1 2025-11-20 18:58:00.638 00:00:10.364 TCP 23.104.0.1:52920 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 499536, total packets: 1572, avg bps: 1090, avg pps: 0, avg bpp: 317 Time window: 2025-11-20 17:57:05 - 2025-11-20 18:58:11 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0042s User: 0.0021s Wall: 0.0020s flows/second: 80079.8 Runtime: 0.0020s