Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 19:59:03.087 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:56584 10 6452 1 2025-11-20 19:59:27.097 00:00:10.366 TCP 23.104.0.1:40692 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:00:03.324 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:42246 10 6452 1 2025-11-20 20:00:27.775 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:00:27.582 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:00:27.499 00:00:10.363 TCP 23.104.0.1:34552 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:01:03.554 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37904 10 6452 1 2025-11-20 20:01:27.898 00:00:10.371 TCP 23.104.0.1:45470 -> 1.101.0.1:3000 11 1507 1 2025-11-20 19:58:01.099 00:05:04.318 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 19:58:01.097 00:05:04.323 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:02:03.764 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39170 10 6452 1 2025-11-20 20:02:28.309 00:00:10.365 TCP 23.104.0.1:34114 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:03:03.981 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:43530 10 6452 1 2025-11-20 20:03:28.707 00:00:10.663 TCP 23.104.0.1:45942 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:04:04.212 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47564 10 6452 1 2025-11-20 20:04:29.412 00:00:10.428 TCP 23.104.0.1:36488 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:05:04.425 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51740 10 6452 1 2025-11-20 20:05:27.888 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:05:27.690 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:05:29.881 00:00:10.341 TCP 23.104.0.1:58132 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:06:04.597 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:35802 10 6452 1 2025-11-20 20:06:30.263 00:00:10.376 TCP 23.104.0.1:37720 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:07:04.766 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60666 10 6452 1 2025-11-20 20:07:30.672 00:00:10.365 TCP 23.104.0.1:57680 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:04:01.097 00:05:04.323 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:04:01.100 00:05:04.318 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 20:08:04.977 00:00:10.672 TCP 1.101.0.1:3000 -> 22.102.0.1:41810 10 6452 1 2025-11-20 20:08:31.096 00:00:10.325 TCP 23.104.0.1:45072 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:09:05.689 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:50888 10 6452 1 2025-11-20 20:09:31.461 00:00:10.323 TCP 23.104.0.1:45190 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:10:05.871 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:45562 10 6452 1 2025-11-20 20:10:27.856 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:10:27.621 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:10:31.822 00:00:10.369 TCP 23.104.0.1:33934 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:11:06.100 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57780 10 6452 1 2025-11-20 20:11:32.225 00:00:10.366 TCP 23.104.0.1:39170 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:12:06.322 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:38284 10 6452 1 2025-11-20 20:12:32.629 00:00:10.367 TCP 23.104.0.1:33100 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:13:06.499 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41360 10 6452 1 2025-11-20 20:13:33.033 00:00:10.365 TCP 23.104.0.1:45514 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:10:01.098 00:05:04.325 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:10:01.100 00:05:04.320 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 20:14:06.707 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:57662 10 6452 1 2025-11-20 20:14:33.435 00:00:20.052 TCP 23.104.0.1:42684 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:15:06.931 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:58404 10 6452 1 2025-11-20 20:15:28.035 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:15:28.020 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:15:43.523 00:00:10.360 TCP 23.104.0.1:33540 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:16:07.173 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:59632 10 6452 1 2025-11-20 20:16:43.924 00:00:10.384 TCP 23.104.0.1:38608 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:17:07.393 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54104 10 6452 1 2025-11-20 20:17:44.349 00:00:10.322 TCP 23.104.0.1:35644 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:18:07.616 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34976 10 6452 1 2025-11-20 20:18:44.709 00:00:10.369 TCP 23.104.0.1:51836 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:19:07.827 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:44640 10 6452 1 2025-11-20 20:19:45.109 00:00:10.366 TCP 23.104.0.1:37528 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:16:01.101 00:05:04.322 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 20:16:01.099 00:05:04.327 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:20:08.042 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56726 10 6452 1 2025-11-20 20:20:27.952 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:20:28.101 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:20:45.511 00:00:10.365 TCP 23.104.0.1:44792 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:21:08.259 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38412 10 6452 1 2025-11-20 20:21:45.911 00:00:10.370 TCP 23.104.0.1:44820 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:22:08.471 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:47438 10 6452 1 2025-11-20 20:22:46.317 00:00:10.365 TCP 23.104.0.1:35054 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:23:08.681 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59390 10 6452 1 2025-11-20 20:23:46.714 00:00:10.382 TCP 23.104.0.1:35178 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:24:08.904 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:35798 10 6452 1 2025-11-20 20:24:47.133 00:00:10.362 TCP 23.104.0.1:36304 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:25:09.120 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:34376 10 6452 1 2025-11-20 20:25:28.324 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:25:28.052 00:00:00.039 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:25:47.537 00:00:10.321 TCP 23.104.0.1:47994 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:22:01.102 00:05:04.326 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:22:01.104 00:05:04.320 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 20:26:09.343 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54974 10 6452 1 2025-11-20 20:26:47.899 00:00:10.364 TCP 23.104.0.1:44306 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:27:09.558 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:35048 10 6452 1 2025-11-20 20:27:48.305 00:00:10.372 TCP 23.104.0.1:53786 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:28:09.737 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49648 10 6452 1 2025-11-20 20:28:48.715 00:00:10.374 TCP 23.104.0.1:57126 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:29:09.951 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:52840 12 6556 1 2025-11-20 20:29:49.127 00:00:10.364 TCP 23.104.0.1:41286 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:30:10.190 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53520 10 6452 1 2025-11-20 20:30:28.171 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:30:28.211 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:30:49.528 00:00:10.324 TCP 23.104.0.1:58896 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:31:10.410 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38464 10 6452 1 2025-11-20 20:31:49.897 00:00:10.735 TCP 23.104.0.1:41680 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:28:01.112 00:05:04.317 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:28:01.114 00:05:04.312 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 20:32:10.642 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52134 10 6452 1 2025-11-20 20:32:50.683 00:00:10.365 TCP 23.104.0.1:48286 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:33:10.814 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52808 10 6452 1 2025-11-20 20:33:51.098 00:00:10.367 TCP 23.104.0.1:45152 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:34:11.033 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:49010 10 6452 1 2025-11-20 20:34:51.502 00:00:10.366 TCP 23.104.0.1:39904 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:35:11.255 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51112 10 6452 1 2025-11-20 20:35:28.236 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:35:28.313 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:35:51.908 00:00:10.365 TCP 23.104.0.1:50134 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:36:11.477 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53416 10 6452 1 2025-11-20 20:36:52.307 00:00:10.336 TCP 23.104.0.1:54548 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:37:11.692 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:59850 10 6452 1 2025-11-20 20:34:01.113 00:05:04.324 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:34:01.114 00:05:04.320 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 20:37:52.683 00:00:10.330 TCP 23.104.0.1:39880 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:38:11.868 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:36888 10 6452 1 2025-11-20 20:38:53.055 00:00:10.370 TCP 23.104.0.1:32898 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:39:12.102 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:56740 10 6452 1 2025-11-20 20:39:53.459 00:00:10.361 TCP 23.104.0.1:53082 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:40:12.272 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35354 10 6452 1 2025-11-20 20:40:28.574 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:40:28.409 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:40:53.858 00:00:10.379 TCP 23.104.0.1:60406 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:41:12.481 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:33810 10 6452 1 2025-11-20 20:41:54.282 00:00:10.367 TCP 23.104.0.1:48678 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:42:12.703 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47316 10 6452 1 2025-11-20 20:42:54.685 00:00:10.380 TCP 23.104.0.1:36144 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:43:12.914 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:51864 10 6452 1 2025-11-20 20:43:55.104 00:00:10.369 TCP 23.104.0.1:35438 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:40:01.117 00:05:04.318 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 20:40:01.114 00:05:04.322 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:44:13.104 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:52028 10 6452 1 2025-11-20 20:44:55.508 00:00:10.369 TCP 23.104.0.1:48096 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:45:13.309 00:00:10.259 TCP 1.101.0.1:3000 -> 22.102.0.1:49476 10 6452 1 2025-11-20 20:45:28.702 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:45:28.523 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:45:55.913 00:00:10.390 TCP 23.104.0.1:49984 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:46:13.608 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44192 10 6452 1 2025-11-20 20:46:56.343 00:00:10.317 TCP 23.104.0.1:44028 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:47:13.830 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37166 10 6452 1 2025-11-20 20:47:56.700 00:00:10.326 TCP 23.104.0.1:56998 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:48:14.070 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58994 10 6452 1 2025-11-20 20:48:57.088 00:00:10.362 TCP 23.104.0.1:35930 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:49:14.292 00:00:15.235 TCP 1.101.0.1:3000 -> 22.102.0.1:34596 10 6452 1 2025-11-20 20:46:01.115 00:05:04.322 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:46:01.117 00:05:04.318 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 20:49:57.492 00:00:10.369 TCP 23.104.0.1:51776 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:50:19.569 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:52712 10 6452 1 2025-11-20 20:50:28.835 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:50:28.738 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:50:57.900 00:00:10.335 TCP 23.104.0.1:50912 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:51:19.749 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39904 10 6452 1 2025-11-20 20:51:58.274 00:00:10.367 TCP 23.104.0.1:40692 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:52:19.958 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:58416 10 6452 1 2025-11-20 20:52:58.676 00:00:10.378 TCP 23.104.0.1:57082 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:53:20.196 00:00:10.765 TCP 1.101.0.1:3000 -> 22.102.0.1:58034 10 6452 1 2025-11-20 20:53:59.105 00:00:10.361 TCP 23.104.0.1:37656 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:54:20.995 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:34650 10 6452 1 2025-11-20 20:54:59.507 00:00:10.361 TCP 23.104.0.1:55952 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:55:28.924 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 20:55:21.184 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58212 10 6452 1 2025-11-20 20:55:28.870 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 20:52:01.116 00:05:04.324 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 20:52:01.118 00:05:04.319 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 20:55:59.910 00:00:10.321 TCP 23.104.0.1:38208 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:56:21.398 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40530 10 6452 1 2025-11-20 20:57:00.270 00:00:10.326 TCP 23.104.0.1:45986 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:57:21.613 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46124 10 6452 1 2025-11-20 20:58:00.639 00:00:10.366 TCP 23.104.0.1:44014 -> 1.101.0.1:3000 11 1507 1 2025-11-20 20:58:21.828 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:57076 10 6452 1 Summary: total flows: 163, total bytes: 496945, total packets: 1563, avg bps: 1094, avg pps: 0, avg bpp: 317 Time window: 2025-11-20 19:58:01 - 2025-11-20 20:58:32 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0036s User: 0.0027s Wall: 0.0025s flows/second: 66234.4 Runtime: 0.0025s