Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 00:59:24.720 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 00:59:14.982 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:50722 10 6452 1 2025-11-29 00:59:24.738 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 00:59:21.217 00:00:10.368 TCP 23.104.0.1:44982 -> 1.101.0.1:3000 11 1507 1 2025-11-29 00:55:09.787 00:05:55.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 00:55:09.783 00:05:55.380 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:00:15.188 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:43988 10 6452 1 2025-11-29 01:00:21.622 00:00:10.363 TCP 23.104.0.1:37102 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:01:15.402 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:45278 10 6452 1 2025-11-29 01:01:22.024 00:00:10.734 TCP 23.104.0.1:45832 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:02:15.666 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37768 10 6452 1 2025-11-29 01:02:22.797 00:00:10.365 TCP 23.104.0.1:33808 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:03:15.897 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:49818 10 6452 1 2025-11-29 01:03:23.202 00:00:10.364 TCP 23.104.0.1:40236 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:04:24.568 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:04:24.597 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:04:16.116 00:00:11.254 TCP 1.101.0.1:3000 -> 22.102.0.1:43764 10 6452 1 2025-11-29 01:04:23.606 00:00:10.977 TCP 23.104.0.1:44800 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:05:17.412 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:35544 10 6452 1 2025-11-29 01:05:24.623 00:00:10.366 TCP 23.104.0.1:40078 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:01:09.788 00:05:55.379 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:01:09.791 00:05:55.373 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 01:06:17.597 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:44682 10 6452 1 2025-11-29 01:06:25.032 00:00:10.369 TCP 23.104.0.1:35158 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:07:17.841 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:44282 10 6452 1 2025-11-29 01:07:25.440 00:00:10.363 TCP 23.104.0.1:50178 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:08:18.035 00:00:10.724 TCP 1.101.0.1:3000 -> 22.102.0.1:37370 10 6452 1 2025-11-29 01:08:25.839 00:00:10.398 TCP 23.104.0.1:46990 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:09:24.752 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:09:24.842 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:09:18.795 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51404 10 6452 1 2025-11-29 01:09:26.273 00:00:10.324 TCP 23.104.0.1:52772 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:10:18.969 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:54898 10 6452 1 2025-11-29 01:10:26.641 00:00:10.362 TCP 23.104.0.1:38892 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:11:19.222 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:45218 10 6452 1 2025-11-29 01:11:27.056 00:00:10.362 TCP 23.104.0.1:43794 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:07:09.792 00:05:55.375 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:07:09.794 00:05:55.370 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 01:12:19.406 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50124 10 6452 1 2025-11-29 01:12:27.468 00:00:10.325 TCP 23.104.0.1:44564 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:13:19.616 00:00:11.655 TCP 1.101.0.1:3000 -> 22.102.0.1:52648 10 6452 1 2025-11-29 01:13:27.830 00:00:10.391 TCP 23.104.0.1:57596 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:14:25.288 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:14:25.326 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:14:21.312 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:39036 10 6452 1 2025-11-29 01:14:28.258 00:00:10.372 TCP 23.104.0.1:54172 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:15:21.538 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:51546 10 6452 1 2025-11-29 01:15:28.669 00:00:10.366 TCP 23.104.0.1:38848 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:16:21.715 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48616 10 6452 1 2025-11-29 01:16:29.105 00:00:10.368 TCP 23.104.0.1:42914 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:17:21.934 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:50970 10 6452 1 2025-11-29 01:17:29.513 00:00:10.367 TCP 23.104.0.1:52550 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:13:09.795 00:05:55.370 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 01:13:09.792 00:05:55.376 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:18:22.185 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37204 10 6452 1 2025-11-29 01:18:29.920 00:00:10.362 TCP 23.104.0.1:54126 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:19:24.924 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:19:24.815 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:19:22.406 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52080 10 6452 1 2025-11-29 01:19:30.328 00:00:10.320 TCP 23.104.0.1:56534 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:20:22.624 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44118 10 6452 1 2025-11-29 01:20:30.684 00:00:10.325 TCP 23.104.0.1:38742 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:21:22.841 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44968 10 6452 1 2025-11-29 01:21:31.051 00:00:10.365 TCP 23.104.0.1:43008 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:22:23.079 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:33068 10 6452 1 2025-11-29 01:22:31.453 00:00:10.368 TCP 23.104.0.1:48258 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:23:23.290 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:34962 10 6452 1 2025-11-29 01:23:31.853 00:00:10.377 TCP 23.104.0.1:56842 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:19:09.793 00:05:55.378 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:19:09.797 00:05:55.373 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 01:24:24.969 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:24:25.536 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:24:23.527 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53394 10 6452 1 2025-11-29 01:24:32.271 00:00:10.367 TCP 23.104.0.1:42378 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:25:23.744 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:46118 10 6452 1 2025-11-29 01:25:32.676 00:00:10.367 TCP 23.104.0.1:59208 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:26:23.922 00:00:10.223 TCP 1.101.0.1:3000 -> 22.102.0.1:37496 10 6452 1 2025-11-29 01:26:33.107 00:00:10.360 TCP 23.104.0.1:60308 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:27:24.185 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39412 10 6452 1 2025-11-29 01:27:33.510 00:00:10.365 TCP 23.104.0.1:58484 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:28:24.407 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56152 10 6452 1 2025-11-29 01:28:33.918 00:00:10.373 TCP 23.104.0.1:57398 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:29:25.239 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:29:25.330 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:29:24.628 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50712 10 6452 1 2025-11-29 01:29:34.332 00:00:10.365 TCP 23.104.0.1:47762 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:25:09.797 00:05:55.373 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 01:25:09.795 00:05:55.378 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:30:24.842 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:38494 10 6452 1 2025-11-29 01:30:34.736 00:00:10.369 TCP 23.104.0.1:55882 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:31:25.072 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33762 10 6452 1 2025-11-29 01:31:35.142 00:00:10.342 TCP 23.104.0.1:53944 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:32:25.294 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38302 10 6452 1 2025-11-29 01:32:35.507 00:00:10.370 TCP 23.104.0.1:39880 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:33:25.507 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54200 10 6452 1 2025-11-29 01:33:35.916 00:00:10.372 TCP 23.104.0.1:38012 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:34:25.402 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:34:25.166 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:34:25.684 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44618 10 6452 1 2025-11-29 01:34:36.325 00:00:10.359 TCP 23.104.0.1:44022 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:35:25.896 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37272 10 6452 1 2025-11-29 01:35:36.722 00:00:10.374 TCP 23.104.0.1:41778 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:31:09.798 00:05:55.374 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 01:31:09.795 00:05:55.379 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:36:26.108 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:57442 10 6452 1 2025-11-29 01:36:37.136 00:00:10.880 TCP 23.104.0.1:43800 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:37:26.318 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:49524 10 6452 1 2025-11-29 01:37:38.091 00:00:10.377 TCP 23.104.0.1:46046 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:38:26.493 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:39134 10 6452 1 2025-11-29 01:38:38.518 00:00:10.364 TCP 23.104.0.1:54328 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:39:25.615 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:39:25.533 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:39:26.701 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:53458 10 6452 1 2025-11-29 01:39:38.927 00:00:10.390 TCP 23.104.0.1:33734 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:40:26.935 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:34080 10 6452 1 2025-11-29 01:40:39.353 00:00:10.375 TCP 23.104.0.1:54268 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:41:27.168 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40876 10 6452 1 2025-11-29 01:41:39.766 00:00:10.374 TCP 23.104.0.1:58280 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:37:09.798 00:05:55.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 01:37:09.796 00:05:55.379 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:42:27.375 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50064 10 6452 1 2025-11-29 01:42:40.183 00:00:10.363 TCP 23.104.0.1:57620 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:43:27.588 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36400 10 6452 1 2025-11-29 01:43:40.585 00:00:10.321 TCP 23.104.0.1:53948 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:44:25.641 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:44:25.592 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:44:27.803 00:00:10.755 TCP 1.101.0.1:3000 -> 22.102.0.1:42778 10 6452 1 2025-11-29 01:44:40.947 00:00:11.050 TCP 23.104.0.1:53520 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:45:28.591 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:40300 10 6452 1 2025-11-29 01:45:42.055 00:00:10.363 TCP 23.104.0.1:54336 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:46:28.814 00:00:10.377 TCP 1.101.0.1:3000 -> 22.102.0.1:34018 10 6452 1 2025-11-29 01:46:42.457 00:00:10.364 TCP 23.104.0.1:49134 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:47:29.230 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:45754 10 6452 1 2025-11-29 01:47:42.865 00:00:10.365 TCP 23.104.0.1:37854 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:43:09.800 00:05:55.375 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 01:43:09.797 00:05:55.380 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:48:29.416 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52070 10 6452 1 2025-11-29 01:48:43.270 00:00:10.363 TCP 23.104.0.1:41518 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:49:25.619 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:49:25.708 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:49:29.631 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44086 10 6452 1 2025-11-29 01:49:43.672 00:00:10.330 TCP 23.104.0.1:44110 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:50:29.844 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48538 10 6452 1 2025-11-29 01:50:44.058 00:00:10.363 TCP 23.104.0.1:44654 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:51:30.077 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:56760 10 6452 1 2025-11-29 01:51:44.464 00:00:10.364 TCP 23.104.0.1:44998 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:52:30.314 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:57262 10 6452 1 2025-11-29 01:52:44.869 00:00:10.375 TCP 23.104.0.1:59554 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:53:30.528 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43934 10 6452 1 2025-11-29 01:53:45.281 00:00:10.378 TCP 23.104.0.1:41572 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:49:09.799 00:05:55.380 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 01:49:09.801 00:05:55.376 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 01:54:25.872 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 01:54:25.813 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 01:54:30.747 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55512 10 6452 1 2025-11-29 01:54:45.694 00:00:10.330 TCP 23.104.0.1:59810 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:55:30.973 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:56704 10 6452 1 2025-11-29 01:55:46.089 00:00:11.387 TCP 23.104.0.1:50078 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:56:31.201 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:54444 10 6452 1 2025-11-29 01:56:47.522 00:00:10.364 TCP 23.104.0.1:40294 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:57:31.373 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57118 10 6452 1 2025-11-29 01:57:47.926 00:00:10.389 TCP 23.104.0.1:59700 -> 1.101.0.1:3000 11 1507 1 2025-11-29 01:58:31.592 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:58074 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1042, avg pps: 0, avg bpp: 318 Time window: 2025-11-29 00:55:09 - 2025-11-29 01:58:41 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0044s User: 0.0011s Wall: 0.0023s flows/second: 70438.0 Runtime: 0.0023s