Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 16:59:03.430 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54990 10 6661 1 2025-11-28 16:59:14.816 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 16:59:15.013 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 16:59:20.181 00:00:10.337 TCP 23.104.0.1:49124 -> 1.101.0.1:3000 11 1507 1 2025-11-28 16:56:04.990 00:05:04.626 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 16:56:04.992 00:05:04.622 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 17:00:03.647 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39112 10 6661 1 2025-11-28 17:00:20.556 00:00:10.538 TCP 23.104.0.1:46776 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:01:03.820 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53906 10 6661 1 2025-11-28 17:01:21.139 00:00:10.408 TCP 23.104.0.1:35282 -> 1.101.0.1:3000 15 1926 1 2025-11-28 17:02:04.043 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:49234 12 10369 1 2025-11-28 17:02:21.589 00:00:10.362 TCP 23.104.0.1:49112 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:03:04.282 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60574 10 6452 1 2025-11-28 17:03:21.985 00:00:10.367 TCP 23.104.0.1:51648 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:04:04.495 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34148 10 6452 1 2025-11-28 17:04:14.979 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:04:14.964 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:04:22.391 00:00:10.364 TCP 23.104.0.1:33990 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:05:04.708 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55438 10 6452 1 2025-11-28 17:05:22.793 00:00:10.408 TCP 23.104.0.1:43878 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:02:04.991 00:05:04.627 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 17:02:04.994 00:05:04.621 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 17:06:04.919 00:00:10.228 TCP 1.101.0.1:3000 -> 22.102.0.1:52568 10 6452 1 2025-11-28 17:06:23.237 00:00:10.363 TCP 23.104.0.1:52658 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:07:05.187 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49656 10 6452 1 2025-11-28 17:07:23.640 00:00:10.370 TCP 23.104.0.1:45132 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:08:05.401 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33168 10 6452 1 2025-11-28 17:08:24.052 00:00:10.364 TCP 23.104.0.1:55748 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:09:05.611 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40542 10 6452 1 2025-11-28 17:09:15.307 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:09:15.191 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:09:24.463 00:00:10.365 TCP 23.104.0.1:55298 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:10:05.825 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35690 10 6452 1 2025-11-28 17:10:24.864 00:00:10.371 TCP 23.104.0.1:56272 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:11:06.066 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48428 10 6452 1 2025-11-28 17:11:25.272 00:00:10.365 TCP 23.104.0.1:57008 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:08:04.995 00:05:04.624 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 17:08:04.998 00:05:04.619 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 17:12:06.281 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36150 10 6452 1 2025-11-28 17:12:25.680 00:00:10.367 TCP 23.104.0.1:56942 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:13:06.493 00:00:10.340 TCP 1.101.0.1:3000 -> 22.102.0.1:43954 10 6452 1 2025-11-28 17:13:26.107 00:00:10.364 TCP 23.104.0.1:47738 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:14:15.426 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:14:15.344 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:14:06.880 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38008 10 6452 1 2025-11-28 17:14:26.510 00:00:10.325 TCP 23.104.0.1:57596 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:15:07.099 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:41276 10 6452 1 2025-11-28 17:15:26.871 00:00:10.324 TCP 23.104.0.1:48522 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:16:07.274 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60550 10 6452 1 2025-11-28 17:16:27.233 00:00:10.363 TCP 23.104.0.1:35740 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:17:07.496 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43104 10 6452 1 2025-11-28 17:17:27.638 00:00:10.365 TCP 23.104.0.1:51344 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:14:04.999 00:05:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 11 667 1 2025-11-28 17:14:04.996 00:05:04.625 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 17:18:07.704 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:54924 10 6452 1 2025-11-28 17:18:28.054 00:00:10.324 TCP 23.104.0.1:50270 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:19:15.446 00:00:00.015 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:19:15.526 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:19:07.933 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:44074 10 6452 1 2025-11-28 17:19:28.415 00:00:10.363 TCP 23.104.0.1:57836 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:20:08.162 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44804 10 6452 1 2025-11-28 17:20:28.819 00:00:10.372 TCP 23.104.0.1:45508 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:21:08.380 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57212 10 6452 1 2025-11-28 17:21:29.228 00:00:10.321 TCP 23.104.0.1:48854 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:22:08.590 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:37958 10 6452 1 2025-11-28 17:22:29.587 00:00:10.365 TCP 23.104.0.1:33274 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:23:08.796 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56692 10 6452 1 2025-11-28 17:23:29.989 00:00:10.368 TCP 23.104.0.1:53204 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:19:09.618 00:05:55.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 17:24:15.308 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:20:04.996 00:05:04.626 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 17:24:15.486 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:24:09.008 00:00:10.224 TCP 1.101.0.1:3000 -> 22.102.0.1:48462 11 6504 1 2025-11-28 17:24:30.394 00:00:10.362 TCP 23.104.0.1:34470 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:25:09.277 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40638 10 6452 1 2025-11-28 17:25:30.796 00:00:10.341 TCP 23.104.0.1:60404 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:26:09.496 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:60714 10 6452 1 2025-11-28 17:26:31.178 00:00:10.367 TCP 23.104.0.1:49792 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:27:09.721 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47522 10 6452 1 2025-11-28 17:27:31.588 00:00:10.364 TCP 23.104.0.1:50630 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:28:09.935 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:52860 10 6452 1 2025-11-28 17:28:31.993 00:00:10.367 TCP 23.104.0.1:57796 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:29:15.477 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:29:15.416 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:29:10.129 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38346 10 6452 1 2025-11-28 17:29:32.396 00:00:10.363 TCP 23.104.0.1:56496 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:25:09.619 00:05:55.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 17:26:04.996 00:05:04.630 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 17:30:10.343 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42670 10 6452 1 2025-11-28 17:30:32.798 00:00:10.340 TCP 23.104.0.1:46216 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:31:10.555 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57516 10 6452 1 2025-11-28 17:31:33.176 00:00:10.608 TCP 23.104.0.1:53806 -> 1.101.0.1:3000 15 1926 1 2025-11-28 17:32:10.769 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:44246 12 10369 1 2025-11-28 17:32:33.831 00:00:10.386 TCP 23.104.0.1:55026 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:33:11.007 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43994 10 6452 1 2025-11-28 17:33:34.251 00:00:10.362 TCP 23.104.0.1:50716 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:34:15.751 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:34:15.814 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:34:11.219 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:32974 10 6452 1 2025-11-28 17:34:34.647 00:00:10.368 TCP 23.104.0.1:48082 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:35:11.436 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60666 10 6452 1 2025-11-28 17:35:35.058 00:00:10.367 TCP 23.104.0.1:46228 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:32:04.998 00:05:00.003 TCP 179.1.22.1:179 -> 179.1.22.22:39396 11 686 1 2025-11-28 17:31:09.625 00:05:55.379 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 17:36:11.657 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42954 10 6452 1 2025-11-28 17:36:35.461 00:00:10.324 TCP 23.104.0.1:39886 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:37:11.877 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52056 10 6452 1 2025-11-28 17:37:35.822 00:00:10.366 TCP 23.104.0.1:35602 -> 1.101.0.1:3000 12 1559 1 2025-11-28 17:38:12.078 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:33926 10 6452 1 2025-11-28 17:38:36.226 00:00:10.360 TCP 23.104.0.1:36764 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:39:15.972 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:39:15.874 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:39:12.302 00:00:10.563 TCP 1.101.0.1:3000 -> 22.102.0.1:45656 10 6452 1 2025-11-28 17:39:36.653 00:00:10.368 TCP 23.104.0.1:58926 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:40:12.905 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:47604 10 6452 1 2025-11-28 17:40:37.091 00:00:10.363 TCP 23.104.0.1:39740 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:41:13.116 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41970 10 6452 1 2025-11-28 17:41:37.496 00:00:10.434 TCP 23.104.0.1:42978 -> 1.101.0.1:3000 15 1926 1 2025-11-28 17:37:09.625 00:05:55.380 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 17:37:09.628 00:05:55.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 17:42:13.330 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:52300 12 10369 1 2025-11-28 17:42:37.975 00:00:10.384 TCP 23.104.0.1:40910 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:43:13.568 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40684 10 6452 1 2025-11-28 17:43:38.399 00:00:10.364 TCP 23.104.0.1:35998 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:44:15.895 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:44:16.117 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:44:13.783 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59182 10 6452 1 2025-11-28 17:44:38.802 00:00:10.331 TCP 23.104.0.1:39658 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:45:13.998 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:48264 10 6452 1 2025-11-28 17:45:39.171 00:00:10.360 TCP 23.104.0.1:59518 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:46:14.225 00:00:10.784 TCP 1.101.0.1:3000 -> 22.102.0.1:53456 10 6452 1 2025-11-28 17:46:39.572 00:00:10.365 TCP 23.104.0.1:55450 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:47:15.076 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:39022 10 6452 1 2025-11-28 17:47:39.977 00:00:10.365 TCP 23.104.0.1:56330 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:43:09.626 00:05:55.410 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 17:43:09.628 00:05:55.405 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 17:48:15.303 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42286 10 6452 1 2025-11-28 17:48:40.383 00:00:10.375 TCP 23.104.0.1:33246 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:49:15.726 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:49:16.077 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:49:15.514 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:42600 10 6452 1 2025-11-28 17:49:40.797 00:00:10.328 TCP 23.104.0.1:45034 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:50:15.723 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36418 10 6452 1 2025-11-28 17:50:41.163 00:00:10.329 TCP 23.104.0.1:47970 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:51:15.933 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:47132 10 6452 1 2025-11-28 17:51:41.531 00:00:10.366 TCP 23.104.0.1:37428 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:52:16.163 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38202 10 6452 1 2025-11-28 17:52:41.938 00:00:10.377 TCP 23.104.0.1:57608 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:53:16.379 00:00:10.889 TCP 1.101.0.1:3000 -> 22.102.0.1:35148 10 6452 1 2025-11-28 17:53:42.355 00:00:10.328 TCP 23.104.0.1:34332 -> 1.101.0.1:3000 12 1559 1 2025-11-28 17:49:09.628 00:05:55.412 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 17:49:09.631 00:05:55.407 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 17:54:16.237 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 17:54:16.153 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 17:54:17.318 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:45390 10 6452 1 2025-11-28 17:54:42.719 00:00:10.378 TCP 23.104.0.1:44240 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:55:17.488 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51312 10 6452 1 2025-11-28 17:55:43.133 00:00:10.325 TCP 23.104.0.1:46554 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:56:17.704 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51624 10 6452 1 2025-11-28 17:56:43.496 00:00:10.367 TCP 23.104.0.1:46892 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:57:17.884 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57980 10 6452 1 2025-11-28 17:57:43.905 00:00:10.328 TCP 23.104.0.1:45236 -> 1.101.0.1:3000 11 1507 1 2025-11-28 17:58:18.109 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:38528 10 6452 1 Summary: total flows: 163, total bytes: 510509, total packets: 1580, avg bps: 1091, avg pps: 0, avg bpp: 323 Time window: 2025-11-28 16:56:04 - 2025-11-28 17:58:28 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0053s User: 0.0018s Wall: 0.0028s flows/second: 57292.5 Runtime: 0.0029s