Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 05:59:36.333 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:33352 10 6452 1 2025-11-25 05:59:36.840 00:00:10.341 TCP 23.104.0.1:57412 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:00:36.506 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46914 10 6452 1 2025-11-25 06:00:37.223 00:00:10.328 TCP 23.104.0.1:51860 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:01:36.716 00:00:10.640 TCP 1.101.0.1:3000 -> 22.102.0.1:39754 10 6452 1 2025-11-25 06:01:37.584 00:00:10.366 TCP 23.104.0.1:54908 -> 1.101.0.1:3000 11 1507 1 2025-11-25 05:57:07.744 00:05:55.723 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 05:57:07.746 00:05:55.718 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:02:35.225 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:02:35.223 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:02:37.395 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:58240 10 6452 1 2025-11-25 06:02:37.992 00:00:10.325 TCP 23.104.0.1:49530 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:03:38.359 00:00:10.326 TCP 23.104.0.1:33288 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:03:37.606 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:32904 10 6452 1 2025-11-25 06:04:38.725 00:00:10.372 TCP 23.104.0.1:44154 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:04:37.816 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37300 10 6452 1 2025-11-25 06:05:39.129 00:00:10.362 TCP 23.104.0.1:37846 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:05:38.037 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60594 10 6452 1 2025-11-25 06:06:38.258 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:49336 10 6452 1 2025-11-25 06:06:39.527 00:00:10.337 TCP 23.104.0.1:39408 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:07:35.366 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:07:35.420 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:07:38.437 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:57768 10 6452 1 2025-11-25 06:07:39.909 00:00:10.370 TCP 23.104.0.1:41158 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:03:07.750 00:05:55.716 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:03:07.747 00:05:55.721 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 06:08:40.317 00:00:10.370 TCP 23.104.0.1:50054 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:08:38.617 00:00:10.522 TCP 1.101.0.1:3000 -> 22.102.0.1:38964 10 6452 1 2025-11-25 06:09:40.726 00:00:10.324 TCP 23.104.0.1:54438 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:09:39.176 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48558 10 6452 1 2025-11-25 06:10:41.102 00:00:10.365 TCP 23.104.0.1:35268 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:10:39.395 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51150 10 6452 1 2025-11-25 06:11:39.617 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:41040 10 6452 1 2025-11-25 06:11:41.509 00:00:10.374 TCP 23.104.0.1:35358 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:12:35.687 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:12:35.473 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:12:39.838 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:52344 10 6452 1 2025-11-25 06:12:41.918 00:00:10.332 TCP 23.104.0.1:46924 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:13:40.076 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:33854 10 6452 1 2025-11-25 06:13:42.287 00:00:10.362 TCP 23.104.0.1:60730 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:09:07.751 00:05:55.715 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:09:07.751 00:05:55.720 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 06:14:40.299 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54254 10 6452 1 2025-11-25 06:14:42.692 00:00:10.366 TCP 23.104.0.1:39066 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:15:40.514 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51962 10 6452 1 2025-11-25 06:15:43.101 00:00:10.329 TCP 23.104.0.1:40740 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:16:40.729 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:60600 10 6452 1 2025-11-25 06:16:43.467 00:00:10.368 TCP 23.104.0.1:49708 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:17:35.571 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:17:35.470 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:17:40.912 00:00:10.251 TCP 1.101.0.1:3000 -> 22.102.0.1:58076 10 6452 1 2025-11-25 06:17:43.869 00:00:10.371 TCP 23.104.0.1:58952 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:18:41.222 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44552 10 6452 1 2025-11-25 06:18:44.273 00:00:10.383 TCP 23.104.0.1:35104 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:19:41.428 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43598 10 6452 1 2025-11-25 06:19:44.691 00:00:10.368 TCP 23.104.0.1:55500 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:15:07.751 00:05:55.720 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 06:15:07.753 00:05:55.715 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:20:41.648 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57398 10 6452 1 2025-11-25 06:20:45.109 00:00:10.328 TCP 23.104.0.1:40236 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:21:45.497 00:00:10.322 TCP 23.104.0.1:53292 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:21:41.865 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34188 10 6452 1 2025-11-25 06:22:35.358 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:22:35.657 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:22:45.858 00:00:10.331 TCP 23.104.0.1:37680 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:22:42.092 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48914 10 6452 1 2025-11-25 06:23:46.228 00:00:10.327 TCP 23.104.0.1:58594 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:23:42.306 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:58890 10 6452 1 2025-11-25 06:24:42.479 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52178 10 6452 1 2025-11-25 06:24:46.592 00:00:10.366 TCP 23.104.0.1:50322 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:25:42.688 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42836 10 6452 1 2025-11-25 06:25:46.992 00:00:10.364 TCP 23.104.0.1:59578 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:21:07.751 00:05:55.723 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 06:21:07.755 00:05:55.717 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:26:42.901 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56548 10 6452 1 2025-11-25 06:26:47.405 00:00:10.367 TCP 23.104.0.1:35870 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:27:35.806 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:27:35.751 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:27:43.114 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49866 10 6452 1 2025-11-25 06:27:47.809 00:00:10.365 TCP 23.104.0.1:57458 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:28:43.326 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:49282 10 6452 1 2025-11-25 06:28:48.213 00:00:10.326 TCP 23.104.0.1:40784 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:29:43.534 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38890 10 6452 1 2025-11-25 06:29:48.574 00:00:10.369 TCP 23.104.0.1:37330 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:30:43.742 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:53086 10 6452 1 2025-11-25 06:30:48.983 00:00:10.373 TCP 23.104.0.1:56742 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:31:43.913 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42656 10 6452 1 2025-11-25 06:31:49.396 00:00:10.359 TCP 23.104.0.1:34918 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:27:07.757 00:05:55.716 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:27:07.754 00:05:55.721 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 06:32:35.775 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:32:35.869 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:32:44.135 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:53562 10 6452 1 2025-11-25 06:32:49.792 00:00:10.371 TCP 23.104.0.1:45716 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:33:44.338 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53836 10 6452 1 2025-11-25 06:33:50.202 00:00:10.372 TCP 23.104.0.1:46850 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:34:44.549 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:51818 10 6452 1 2025-11-25 06:34:50.613 00:00:10.356 TCP 23.104.0.1:59110 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:35:44.723 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:57846 10 6452 1 2025-11-25 06:35:51.011 00:00:10.321 TCP 23.104.0.1:52194 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:36:44.944 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:38406 10 6452 1 2025-11-25 06:36:51.372 00:00:10.364 TCP 23.104.0.1:39676 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:37:36.040 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:37:35.686 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:37:45.189 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47408 10 6452 1 2025-11-25 06:33:07.758 00:05:55.715 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:37:51.772 00:00:10.327 TCP 23.104.0.1:42862 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:33:07.755 00:05:55.721 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 06:38:45.398 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38448 10 6452 1 2025-11-25 06:38:52.140 00:00:10.338 TCP 23.104.0.1:36276 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:39:45.609 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56014 10 6452 1 2025-11-25 06:39:52.518 00:00:10.369 TCP 23.104.0.1:54240 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:40:45.822 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53658 10 6452 1 2025-11-25 06:40:52.921 00:00:11.544 TCP 23.104.0.1:33770 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:41:46.062 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43564 10 6452 1 2025-11-25 06:41:54.506 00:00:10.366 TCP 23.104.0.1:47498 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:42:35.862 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:42:35.749 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:42:46.274 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58442 10 6452 1 2025-11-25 06:42:54.919 00:00:10.376 TCP 23.104.0.1:42048 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:43:46.495 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60304 10 6452 1 2025-11-25 06:39:07.757 00:05:55.719 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 06:43:55.337 00:00:10.368 TCP 23.104.0.1:37944 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:39:07.759 00:05:55.714 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:44:46.711 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:46930 10 6452 1 2025-11-25 06:44:55.743 00:00:10.329 TCP 23.104.0.1:35130 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:45:46.911 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:60038 10 6452 1 2025-11-25 06:45:56.113 00:00:10.368 TCP 23.104.0.1:48254 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:46:47.137 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:46190 10 6452 1 2025-11-25 06:46:56.518 00:00:10.366 TCP 23.104.0.1:48956 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:47:36.049 00:00:00.045 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:47:35.989 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:47:47.307 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47038 10 6452 1 2025-11-25 06:47:56.924 00:00:10.376 TCP 23.104.0.1:38446 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:48:47.521 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39954 10 6452 1 2025-11-25 06:48:57.335 00:00:10.377 TCP 23.104.0.1:47652 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:49:47.734 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:34396 10 6452 1 2025-11-25 06:45:07.758 00:05:55.720 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 06:45:07.761 00:05:55.714 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:49:57.752 00:00:10.383 TCP 23.104.0.1:56484 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:50:47.902 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:49238 10 6452 1 2025-11-25 06:50:58.178 00:00:10.331 TCP 23.104.0.1:55022 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:51:48.121 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38302 10 6452 1 2025-11-25 06:51:58.551 00:00:10.370 TCP 23.104.0.1:42422 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:52:36.294 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:52:35.977 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:52:48.335 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40500 10 6452 1 2025-11-25 06:52:58.960 00:00:10.367 TCP 23.104.0.1:36928 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:53:48.548 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39202 10 6452 1 2025-11-25 06:53:59.366 00:00:10.367 TCP 23.104.0.1:43940 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:54:48.760 00:00:11.082 TCP 1.101.0.1:3000 -> 22.102.0.1:32840 10 6452 1 2025-11-25 06:54:59.779 00:00:10.366 TCP 23.104.0.1:38600 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:55:49.889 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37706 10 6452 1 2025-11-25 06:51:07.760 00:05:55.721 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-25 06:51:07.762 00:05:55.716 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-25 06:56:00.184 00:00:10.366 TCP 23.104.0.1:47416 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:56:50.109 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47114 10 6452 1 2025-11-25 06:57:00.592 00:00:10.371 TCP 23.104.0.1:50902 -> 1.101.0.1:3000 11 1507 1 2025-11-25 06:57:36.185 00:00:00.031 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-25 06:57:36.354 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 06:57:50.328 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:55852 10 6452 1 2025-11-25 06:58:01.013 00:00:10.362 TCP 23.104.0.1:48728 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 490389, total packets: 1551, avg bps: 1070, avg pps: 0, avg bpp: 316 Time window: 2025-11-25 05:57:07 - 2025-11-25 06:58:11 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0020s User: 0.0030s Wall: 0.0014s flows/second: 116728.6 Runtime: 0.0014s