Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 10:59:09.736 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41612 10 6452 1 2025-11-27 10:59:17.464 00:00:12.260 TCP 23.104.0.1:38204 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:00:09.949 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:55460 10 6452 1 2025-11-27 11:00:19.759 00:00:10.386 TCP 23.104.0.1:46930 -> 1.101.0.1:3000 11 1507 1 2025-11-27 10:56:08.933 00:05:55.533 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 10:56:08.931 00:05:55.538 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:01:10.178 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39134 10 6452 1 2025-11-27 11:01:20.180 00:00:10.364 TCP 23.104.0.1:41114 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:02:10.393 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44892 10 6452 1 2025-11-27 11:02:20.587 00:00:10.361 TCP 23.104.0.1:47932 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:03:10.609 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58684 10 6452 1 2025-11-27 11:03:20.984 00:00:10.379 TCP 23.104.0.1:36588 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:03:38.740 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:03:39.088 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:04:10.825 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:60308 10 6452 1 2025-11-27 11:04:21.422 00:00:10.358 TCP 23.104.0.1:46712 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:05:11.000 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49506 10 6452 1 2025-11-27 11:05:21.817 00:00:10.364 TCP 23.104.0.1:38910 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:06:11.215 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:58006 10 6452 1 2025-11-27 11:06:22.223 00:00:10.361 TCP 23.104.0.1:41892 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:02:08.931 00:05:55.539 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:02:08.933 00:05:55.534 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 11:07:11.400 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:54582 10 6452 1 2025-11-27 11:07:22.624 00:00:10.367 TCP 23.104.0.1:56054 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:08:11.571 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:54500 10 6452 1 2025-11-27 11:08:23.031 00:00:10.320 TCP 23.104.0.1:51744 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:08:39.418 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:08:39.361 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:09:11.750 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49688 10 6452 1 2025-11-27 11:09:23.393 00:00:10.363 TCP 23.104.0.1:44374 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:10:11.970 00:00:10.158 TCP 1.101.0.1:3000 -> 22.102.0.1:55550 10 6452 1 2025-11-27 11:10:23.799 00:00:10.367 TCP 23.104.0.1:48186 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:11:12.167 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40574 10 6452 1 2025-11-27 11:11:24.203 00:00:10.369 TCP 23.104.0.1:49904 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:12:12.373 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52740 10 6452 1 2025-11-27 11:12:24.606 00:00:10.365 TCP 23.104.0.1:45638 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:08:08.935 00:05:55.534 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 11:08:08.933 00:05:55.539 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:13:12.597 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:38726 10 6452 1 2025-11-27 11:13:25.005 00:00:10.369 TCP 23.104.0.1:57098 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:13:39.233 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:13:39.092 00:00:00.040 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:14:12.768 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38582 10 6452 1 2025-11-27 11:14:25.412 00:00:10.329 TCP 23.104.0.1:48422 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:15:13.002 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:35070 10 6452 1 2025-11-27 11:15:25.780 00:00:10.368 TCP 23.104.0.1:60176 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:16:13.213 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45044 10 6452 1 2025-11-27 11:16:26.185 00:00:10.325 TCP 23.104.0.1:58638 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:17:13.429 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56338 10 6452 1 2025-11-27 11:17:26.553 00:00:10.361 TCP 23.104.0.1:52284 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:18:13.642 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57412 10 6452 1 2025-11-27 11:18:39.048 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:18:26.955 00:00:10.367 TCP 23.104.0.1:48326 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:18:39.465 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:14:08.935 00:05:55.538 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:14:08.936 00:05:55.533 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 11:19:13.857 00:00:22.374 TCP 1.101.0.1:3000 -> 22.102.0.1:52640 10 6452 1 2025-11-27 11:19:27.358 00:00:10.708 TCP 23.104.0.1:38244 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:20:26.301 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41098 10 6452 1 2025-11-27 11:20:28.127 00:00:10.388 TCP 23.104.0.1:42624 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:21:26.517 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48050 10 6452 1 2025-11-27 11:21:28.565 00:00:10.369 TCP 23.104.0.1:40836 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:22:26.731 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53224 10 6452 1 2025-11-27 11:22:28.971 00:00:10.364 TCP 23.104.0.1:36578 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:23:26.944 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:40552 10 6452 1 2025-11-27 11:23:40.162 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:23:40.005 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:23:29.373 00:00:10.367 TCP 23.104.0.1:45746 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:24:29.786 00:00:10.351 TCP 23.104.0.1:37874 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:24:27.171 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53782 10 6452 1 2025-11-27 11:20:08.939 00:05:55.535 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:20:08.941 00:05:55.529 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 11:25:27.382 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53750 10 6452 1 2025-11-27 11:25:30.178 00:00:10.365 TCP 23.104.0.1:56324 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:26:30.582 00:00:10.360 TCP 23.104.0.1:49612 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:26:27.590 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49022 10 6452 1 2025-11-27 11:27:30.986 00:00:10.370 TCP 23.104.0.1:53628 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:27:27.801 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:38300 10 6452 1 2025-11-27 11:28:27.983 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:59232 10 6452 1 2025-11-27 11:28:39.755 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:28:39.810 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:28:31.389 00:00:10.717 TCP 23.104.0.1:33950 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:29:28.175 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44400 10 6452 1 2025-11-27 11:29:32.144 00:00:10.365 TCP 23.104.0.1:38292 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:30:28.395 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43938 10 6452 1 2025-11-27 11:30:32.545 00:00:10.362 TCP 23.104.0.1:46486 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:26:08.943 00:05:55.529 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 11:26:08.940 00:05:55.534 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:31:28.612 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33370 10 6452 1 2025-11-27 11:31:32.943 00:00:10.373 TCP 23.104.0.1:45178 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:32:28.832 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43184 10 6452 1 2025-11-27 11:32:33.352 00:00:10.365 TCP 23.104.0.1:41990 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:33:29.066 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42252 10 6452 1 2025-11-27 11:33:39.829 00:00:00.031 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:33:39.552 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:33:33.760 00:00:10.334 TCP 23.104.0.1:33590 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:34:29.279 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47238 10 6452 1 2025-11-27 11:34:34.133 00:00:10.367 TCP 23.104.0.1:57392 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:35:29.495 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48772 10 6452 1 2025-11-27 11:35:34.538 00:00:10.323 TCP 23.104.0.1:42118 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:36:29.708 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45532 10 6452 1 2025-11-27 11:36:34.899 00:00:10.370 TCP 23.104.0.1:40300 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:32:08.944 00:05:55.529 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 11:32:08.941 00:05:55.534 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:37:29.922 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:40994 10 6452 1 2025-11-27 11:37:35.302 00:00:10.323 TCP 23.104.0.1:40314 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:38:39.544 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:38:30.100 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34272 10 6452 1 2025-11-27 11:38:39.730 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:38:35.665 00:00:10.363 TCP 23.104.0.1:60030 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:39:30.308 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39110 10 6452 1 2025-11-27 11:39:36.090 00:00:10.364 TCP 23.104.0.1:48770 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:40:30.524 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56670 10 6452 1 2025-11-27 11:40:36.488 00:00:10.324 TCP 23.104.0.1:43948 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:41:30.734 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40518 10 6452 1 2025-11-27 11:41:36.848 00:00:10.382 TCP 23.104.0.1:35560 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:42:30.951 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:39932 10 6452 1 2025-11-27 11:42:37.270 00:00:10.363 TCP 23.104.0.1:41546 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:38:08.943 00:05:55.533 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:38:08.946 00:05:55.528 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 11:43:39.897 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:43:31.192 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40422 10 6452 1 2025-11-27 11:43:39.736 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:43:37.675 00:00:10.365 TCP 23.104.0.1:56462 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:44:31.406 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35120 10 6452 1 2025-11-27 11:44:38.105 00:00:10.372 TCP 23.104.0.1:42072 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:45:31.630 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37638 10 6452 1 2025-11-27 11:45:38.516 00:00:10.364 TCP 23.104.0.1:52112 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:46:31.849 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45914 10 6452 1 2025-11-27 11:46:38.924 00:00:10.385 TCP 23.104.0.1:36460 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:47:32.087 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35660 10 6452 1 2025-11-27 11:47:39.350 00:00:10.325 TCP 23.104.0.1:43768 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:48:40.415 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:48:40.568 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:48:32.302 00:00:10.725 TCP 1.101.0.1:3000 -> 22.102.0.1:56826 10 6452 1 2025-11-27 11:48:39.709 00:00:10.334 TCP 23.104.0.1:45500 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:44:08.950 00:05:55.525 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 11:44:08.949 00:05:55.530 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:49:33.079 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33312 10 6452 1 2025-11-27 11:49:40.131 00:00:10.321 TCP 23.104.0.1:59164 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:50:33.289 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:58880 10 6452 1 2025-11-27 11:50:40.491 00:00:10.421 TCP 23.104.0.1:34278 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:51:33.463 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47784 10 6452 1 2025-11-27 11:51:40.955 00:00:10.363 TCP 23.104.0.1:52054 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:52:33.681 00:00:10.911 TCP 1.101.0.1:3000 -> 22.102.0.1:33124 10 6452 1 2025-11-27 11:52:41.355 00:00:10.528 TCP 23.104.0.1:48828 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:53:40.006 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:53:40.041 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:53:34.631 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49944 10 6452 1 2025-11-27 11:53:41.923 00:00:10.397 TCP 23.104.0.1:41110 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:54:34.844 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:34760 10 6452 1 2025-11-27 11:54:42.357 00:00:10.364 TCP 23.104.0.1:59572 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:50:08.951 00:05:55.527 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 11:50:08.954 00:05:55.521 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 11:55:35.082 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43484 10 6452 1 2025-11-27 11:55:42.758 00:00:10.383 TCP 23.104.0.1:50474 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:56:35.309 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53728 10 6452 1 2025-11-27 11:56:43.176 00:00:10.367 TCP 23.104.0.1:49042 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:57:35.532 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35122 10 6452 1 2025-11-27 11:57:43.583 00:00:10.367 TCP 23.104.0.1:40198 -> 1.101.0.1:3000 11 1507 1 2025-11-27 11:58:39.990 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 11:58:40.200 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 11:58:35.746 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47278 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1057, avg pps: 0, avg bpp: 318 Time window: 2025-11-27 10:56:08 - 2025-11-27 11:58:45 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0089s User: 0.0020s Wall: 0.0030s flows/second: 53671.8 Runtime: 0.0031s