Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 09:59:06.591 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 09:59:06.662 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 09:59:20.902 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:59692 10 6452 1 2025-11-28 09:59:19.184 00:00:10.365 TCP 23.104.0.1:60318 -> 1.101.0.1:3000 11 1507 1 2025-11-28 09:56:04.871 00:05:04.603 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 09:56:04.869 00:05:04.607 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:00:21.135 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:32860 10 6452 1 2025-11-28 10:00:19.591 00:00:10.374 TCP 23.104.0.1:44684 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:01:21.348 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44054 10 6452 1 2025-11-28 10:01:20.001 00:00:10.370 TCP 23.104.0.1:59268 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:02:20.406 00:00:10.366 TCP 23.104.0.1:39572 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:02:21.557 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:34470 10 6452 1 2025-11-28 10:03:20.812 00:00:10.367 TCP 23.104.0.1:52974 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:03:21.735 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34924 10 6452 1 2025-11-28 10:04:06.795 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:04:06.596 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:04:21.214 00:00:10.368 TCP 23.104.0.1:32862 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:04:21.946 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:38078 10 6452 1 2025-11-28 10:05:22.129 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46222 10 6452 1 2025-11-28 10:05:21.619 00:00:10.387 TCP 23.104.0.1:35828 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:02:04.869 00:05:04.608 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:02:04.873 00:05:04.603 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 10:06:22.351 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:54006 10 6452 1 2025-11-28 10:06:22.058 00:00:10.366 TCP 23.104.0.1:50540 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:07:22.559 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:57690 10 6452 1 2025-11-28 10:07:22.467 00:00:10.329 TCP 23.104.0.1:56294 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:08:22.785 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46402 10 6452 1 2025-11-28 10:08:22.836 00:00:10.394 TCP 23.104.0.1:44696 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:09:06.761 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:09:06.864 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:09:23.009 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39018 10 6452 1 2025-11-28 10:09:23.268 00:00:10.370 TCP 23.104.0.1:45120 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:10:23.674 00:00:10.368 TCP 23.104.0.1:55384 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:10:23.188 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59694 10 6452 1 2025-11-28 10:11:23.399 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49294 10 6452 1 2025-11-28 10:11:24.100 00:00:10.328 TCP 23.104.0.1:40686 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:08:04.875 00:05:04.601 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 10:08:04.872 00:05:04.606 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:12:23.613 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51664 10 6452 1 2025-11-28 10:12:24.468 00:00:10.364 TCP 23.104.0.1:54238 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:13:24.871 00:00:10.375 TCP 23.104.0.1:39588 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:13:23.831 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39950 10 6452 1 2025-11-28 10:14:07.293 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:14:07.013 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:14:25.288 00:00:10.323 TCP 23.104.0.1:35244 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:14:24.071 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42954 10 6452 1 2025-11-28 10:15:25.651 00:00:10.359 TCP 23.104.0.1:45014 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:15:24.287 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:35412 10 6452 1 2025-11-28 10:16:24.518 00:00:10.550 TCP 1.101.0.1:3000 -> 22.102.0.1:57036 10 6452 1 2025-11-28 10:16:26.051 00:00:10.324 TCP 23.104.0.1:43630 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:17:26.415 00:00:10.361 TCP 23.104.0.1:45864 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:17:25.105 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:43834 10 6452 1 2025-11-28 10:14:04.881 00:05:04.597 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 10:14:04.878 00:05:04.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:18:25.325 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60410 10 6452 1 2025-11-28 10:18:26.814 00:00:10.365 TCP 23.104.0.1:48802 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:19:06.971 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:19:06.990 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:19:25.541 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32920 10 6452 1 2025-11-28 10:19:27.222 00:00:10.365 TCP 23.104.0.1:43800 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:20:25.753 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:33052 10 6452 1 2025-11-28 10:20:27.627 00:00:10.375 TCP 23.104.0.1:33816 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:21:25.930 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:40194 10 6452 1 2025-11-28 10:21:28.046 00:00:10.370 TCP 23.104.0.1:40064 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:22:26.162 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50048 10 6452 1 2025-11-28 10:22:28.444 00:00:10.361 TCP 23.104.0.1:47112 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:23:26.378 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49876 10 6452 1 2025-11-28 10:23:28.843 00:00:10.384 TCP 23.104.0.1:39998 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:24:07.262 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:20:04.890 00:05:04.591 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:24:07.165 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:20:04.893 00:05:04.586 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 10:24:29.263 00:00:10.373 TCP 23.104.0.1:53366 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:24:26.596 00:00:10.894 TCP 1.101.0.1:3000 -> 22.102.0.1:50364 10 6452 1 2025-11-28 10:25:29.672 00:00:10.373 TCP 23.104.0.1:42400 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:25:27.533 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:43236 10 6452 1 2025-11-28 10:26:27.707 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:42080 10 6452 1 2025-11-28 10:26:30.110 00:00:10.367 TCP 23.104.0.1:35104 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:27:27.959 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:41704 10 6452 1 2025-11-28 10:27:30.524 00:00:10.322 TCP 23.104.0.1:41070 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:28:30.888 00:00:10.338 TCP 23.104.0.1:60920 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:28:28.179 00:00:10.316 TCP 1.101.0.1:3000 -> 22.102.0.1:35392 10 6452 1 2025-11-28 10:29:07.163 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:29:07.325 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:29:31.269 00:00:10.330 TCP 23.104.0.1:60012 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:29:28.539 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54858 10 6452 1 2025-11-28 10:26:04.886 00:05:04.596 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:26:04.889 00:05:04.591 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 10:30:28.748 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53370 10 6452 1 2025-11-28 10:30:31.646 00:00:10.331 TCP 23.104.0.1:52556 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:31:28.961 00:00:10.568 TCP 1.101.0.1:3000 -> 22.102.0.1:40012 14 10479 1 2025-11-28 10:31:32.014 00:00:10.441 TCP 23.104.0.1:58640 -> 1.101.0.1:3000 15 1926 1 2025-11-28 10:32:29.564 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40980 10 6452 1 2025-11-28 10:32:32.497 00:00:10.361 TCP 23.104.0.1:59178 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:33:29.787 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50238 10 6452 1 2025-11-28 10:33:32.897 00:00:10.371 TCP 23.104.0.1:48506 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:34:07.630 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:34:07.691 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:34:30.007 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:34308 10 6452 1 2025-11-28 10:34:33.304 00:00:10.323 TCP 23.104.0.1:44644 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:35:30.185 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:32934 10 6452 1 2025-11-28 10:35:33.665 00:00:10.364 TCP 23.104.0.1:33894 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:32:04.886 00:05:04.599 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:32:04.890 00:05:04.593 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 10:36:30.397 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54272 10 6452 1 2025-11-28 10:36:34.089 00:00:10.364 TCP 23.104.0.1:44928 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:37:30.607 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:33774 10 6452 1 2025-11-28 10:37:34.495 00:00:10.368 TCP 23.104.0.1:33922 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:38:30.788 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42860 10 6452 1 2025-11-28 10:38:34.904 00:00:10.370 TCP 23.104.0.1:60278 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:39:07.488 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:39:07.385 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:39:31.010 00:00:10.460 TCP 1.101.0.1:3000 -> 22.102.0.1:57196 10 6452 1 2025-11-28 10:39:35.310 00:00:11.015 TCP 23.104.0.1:40260 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:40:31.509 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54174 10 6452 1 2025-11-28 10:40:36.364 00:00:10.361 TCP 23.104.0.1:58844 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:41:31.724 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:46858 10 6452 1 2025-11-28 10:41:36.767 00:00:10.373 TCP 23.104.0.1:32858 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:38:04.889 00:05:04.599 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:38:04.891 00:05:04.594 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 10:42:31.890 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:59508 10 6452 1 2025-11-28 10:42:37.179 00:00:10.357 TCP 23.104.0.1:41874 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:43:32.079 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58324 10 6452 1 2025-11-28 10:43:37.576 00:00:10.361 TCP 23.104.0.1:38990 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:44:07.590 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:44:07.509 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:44:32.293 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43436 10 6452 1 2025-11-28 10:44:37.978 00:00:10.366 TCP 23.104.0.1:58508 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:45:32.505 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:41630 10 6452 1 2025-11-28 10:45:38.385 00:00:10.363 TCP 23.104.0.1:46318 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:46:32.727 00:00:10.519 TCP 1.101.0.1:3000 -> 22.102.0.1:50370 10 6452 1 2025-11-28 10:46:38.789 00:00:10.333 TCP 23.104.0.1:47548 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:47:33.283 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59966 10 6452 1 2025-11-28 10:47:39.162 00:00:10.366 TCP 23.104.0.1:40852 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:44:04.892 00:05:04.595 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 10:44:04.890 00:05:04.600 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:48:33.495 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48450 10 6452 1 2025-11-28 10:48:39.568 00:00:10.362 TCP 23.104.0.1:33982 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:49:07.720 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:49:07.677 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:49:33.703 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47890 10 6452 1 2025-11-28 10:49:39.972 00:00:10.377 TCP 23.104.0.1:39680 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:50:33.925 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:45988 10 6452 1 2025-11-28 10:50:40.389 00:00:10.330 TCP 23.104.0.1:44016 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:51:34.179 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48774 10 6452 1 2025-11-28 10:51:40.752 00:00:10.384 TCP 23.104.0.1:48100 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:52:34.398 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:36300 12 6556 1 2025-11-28 10:52:41.176 00:00:10.369 TCP 23.104.0.1:38300 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:53:34.643 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:56714 10 6452 1 2025-11-28 10:53:41.576 00:00:10.364 TCP 23.104.0.1:46634 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:54:07.773 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 10:50:04.891 00:05:04.599 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 10:50:04.895 00:05:04.594 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 10:54:08.017 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 10:54:34.861 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:36058 10 6452 1 2025-11-28 10:54:41.976 00:00:10.325 TCP 23.104.0.1:53938 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:55:35.071 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60866 10 6452 1 2025-11-28 10:55:42.342 00:00:10.367 TCP 23.104.0.1:52024 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:56:35.284 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42594 10 6452 1 2025-11-28 10:56:42.748 00:00:10.384 TCP 23.104.0.1:36032 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:57:35.511 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55074 10 6452 1 2025-11-28 10:57:43.184 00:00:10.361 TCP 23.104.0.1:33688 -> 1.101.0.1:3000 11 1507 1 2025-11-28 10:58:35.725 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34760 10 6452 1 Summary: total flows: 163, total bytes: 501391, total packets: 1571, avg bps: 1066, avg pps: 0, avg bpp: 319 Time window: 2025-11-28 09:56:04 - 2025-11-28 10:58:45 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0029s User: 0.0020s Wall: 0.0020s flows/second: 83507.0 Runtime: 0.0020s