Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 03:59:04.554 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45258 10 6452 1 2025-11-29 03:59:28.268 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 03:59:28.245 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 03:59:38.375 00:00:10.362 TCP 23.104.0.1:45820 -> 1.101.0.1:3000 11 1507 1 2025-11-29 03:55:09.840 00:05:55.365 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 03:55:09.838 00:05:55.369 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:00:04.763 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:36492 10 6452 1 2025-11-29 04:00:38.777 00:00:10.368 TCP 23.104.0.1:60290 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:01:04.972 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:34968 10 6452 1 2025-11-29 04:01:39.180 00:00:10.371 TCP 23.104.0.1:56312 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:02:05.222 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60160 10 6452 1 2025-11-29 04:02:39.592 00:00:10.364 TCP 23.104.0.1:56108 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:03:05.451 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:46068 10 6452 1 2025-11-29 04:03:39.993 00:00:10.325 TCP 23.104.0.1:41682 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:04:05.625 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34790 10 6452 1 2025-11-29 04:04:28.485 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:04:28.671 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:04:40.357 00:00:11.060 TCP 23.104.0.1:47122 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:05:05.848 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44078 10 6452 1 2025-11-29 04:05:41.459 00:00:10.366 TCP 23.104.0.1:46014 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:01:09.841 00:05:55.364 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:01:09.839 00:05:55.369 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:06:06.074 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:43058 10 6452 1 2025-11-29 04:06:41.874 00:00:10.363 TCP 23.104.0.1:33604 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:07:06.297 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55666 10 6452 1 2025-11-29 04:07:42.280 00:00:10.361 TCP 23.104.0.1:47184 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:08:06.512 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53864 10 6452 1 2025-11-29 04:08:42.679 00:00:10.326 TCP 23.104.0.1:40402 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:09:06.729 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54596 10 6452 1 2025-11-29 04:09:28.750 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:09:28.610 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:09:43.046 00:00:16.325 TCP 23.104.0.1:32902 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:10:06.945 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:53872 10 6452 1 2025-11-29 04:10:49.412 00:00:10.322 TCP 23.104.0.1:56510 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:11:07.191 00:00:10.455 TCP 1.101.0.1:3000 -> 22.102.0.1:35246 10 6452 1 2025-11-29 04:11:49.775 00:00:10.367 TCP 23.104.0.1:39298 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:07:09.845 00:05:55.361 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:07:09.842 00:05:55.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:12:07.698 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36806 10 6452 1 2025-11-29 04:12:50.182 00:00:10.369 TCP 23.104.0.1:39238 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:13:07.918 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59668 10 6452 1 2025-11-29 04:13:50.596 00:00:10.373 TCP 23.104.0.1:55974 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:14:08.141 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:57828 10 6452 1 2025-11-29 04:14:28.480 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:14:28.637 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:14:51.008 00:00:10.462 TCP 23.104.0.1:53556 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:15:08.400 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:34208 10 6452 1 2025-11-29 04:15:51.507 00:00:10.327 TCP 23.104.0.1:37084 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:16:08.573 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45114 12 6556 1 2025-11-29 04:16:51.871 00:00:10.414 TCP 23.104.0.1:39834 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:17:08.792 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:55184 10 6452 1 2025-11-29 04:13:09.845 00:05:55.361 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:17:52.327 00:00:10.362 TCP 23.104.0.1:36224 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:13:09.843 00:05:55.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:18:09.038 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35614 10 6452 1 2025-11-29 04:18:52.729 00:00:10.368 TCP 23.104.0.1:37722 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:19:09.252 00:00:11.204 TCP 1.101.0.1:3000 -> 22.102.0.1:53604 10 6452 1 2025-11-29 04:19:28.453 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:19:28.519 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:19:53.140 00:00:10.362 TCP 23.104.0.1:57782 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:20:10.502 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35696 10 6452 1 2025-11-29 04:20:53.540 00:00:10.434 TCP 23.104.0.1:46114 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:21:10.717 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43916 10 6452 1 2025-11-29 04:21:54.052 00:00:10.412 TCP 23.104.0.1:38032 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:22:10.928 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:54728 10 6452 1 2025-11-29 04:22:54.505 00:00:10.364 TCP 23.104.0.1:38302 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:23:11.167 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38036 10 6452 1 2025-11-29 04:19:09.848 00:05:55.360 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:23:54.907 00:00:10.367 TCP 23.104.0.1:46924 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:19:09.847 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:24:28.119 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:24:11.381 00:00:15.832 TCP 1.101.0.1:3000 -> 22.102.0.1:34698 12 6556 1 2025-11-29 04:24:28.046 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:24:55.312 00:00:10.369 TCP 23.104.0.1:33064 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:25:17.255 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:42496 10 6452 1 2025-11-29 04:25:55.718 00:00:10.371 TCP 23.104.0.1:55156 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:26:17.486 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:52982 10 6452 1 2025-11-29 04:26:56.128 00:00:10.366 TCP 23.104.0.1:48316 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:27:17.712 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:44126 10 6452 1 2025-11-29 04:27:56.533 00:00:10.367 TCP 23.104.0.1:43640 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:28:17.885 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:39066 10 6452 1 2025-11-29 04:28:56.941 00:00:10.330 TCP 23.104.0.1:42272 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:29:18.078 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34686 10 6452 1 2025-11-29 04:29:28.975 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:29:28.992 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:25:09.844 00:05:55.386 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:25:09.847 00:05:55.381 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:29:57.310 00:00:10.334 TCP 23.104.0.1:60338 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:30:18.285 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:36522 10 6452 1 2025-11-29 04:30:57.681 00:00:10.381 TCP 23.104.0.1:49318 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:31:18.456 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47386 10 6452 1 2025-11-29 04:31:58.129 00:00:10.322 TCP 23.104.0.1:42626 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:32:18.671 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36516 10 6452 1 2025-11-29 04:32:58.493 00:00:10.368 TCP 23.104.0.1:42870 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:33:18.877 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:40080 10 6452 1 2025-11-29 04:33:58.903 00:00:10.678 TCP 23.104.0.1:42742 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:34:29.110 00:00:00.039 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:34:19.106 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48420 10 6452 1 2025-11-29 04:34:28.922 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:34:59.625 00:00:10.366 TCP 23.104.0.1:44198 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:35:19.315 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39272 10 6452 1 2025-11-29 04:31:09.850 00:05:55.379 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:31:09.848 00:05:55.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:36:00.031 00:00:10.363 TCP 23.104.0.1:54706 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:36:19.528 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54980 10 6452 1 2025-11-29 04:37:00.438 00:00:10.362 TCP 23.104.0.1:43732 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:37:19.752 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46312 10 6452 1 2025-11-29 04:38:00.841 00:00:10.382 TCP 23.104.0.1:49558 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:38:19.925 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:42228 10 6452 1 2025-11-29 04:39:01.262 00:00:10.365 TCP 23.104.0.1:45314 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:39:20.153 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56650 10 6452 1 2025-11-29 04:39:28.950 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:39:29.015 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:40:01.663 00:00:10.365 TCP 23.104.0.1:51678 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:40:20.367 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37936 10 6452 1 2025-11-29 04:41:02.094 00:00:10.368 TCP 23.104.0.1:33282 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:41:20.581 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:38312 10 6452 1 2025-11-29 04:37:09.851 00:05:55.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:37:09.850 00:05:55.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:42:02.501 00:00:10.385 TCP 23.104.0.1:54612 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:42:20.751 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43650 10 6452 1 2025-11-29 04:43:02.928 00:00:10.386 TCP 23.104.0.1:42542 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:43:20.961 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38546 10 6452 1 2025-11-29 04:44:03.352 00:00:10.325 TCP 23.104.0.1:43484 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:44:29.275 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:44:21.181 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39792 10 6452 1 2025-11-29 04:44:29.143 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:45:03.714 00:00:10.391 TCP 23.104.0.1:49806 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:45:21.391 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48246 10 6452 1 2025-11-29 04:46:04.131 00:00:10.365 TCP 23.104.0.1:57126 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:46:21.565 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42798 10 6452 1 2025-11-29 04:47:04.536 00:00:10.364 TCP 23.104.0.1:59828 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:47:21.800 00:00:16.303 TCP 1.101.0.1:3000 -> 22.102.0.1:33830 10 6452 1 2025-11-29 04:43:09.852 00:05:55.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:43:09.855 00:05:55.377 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:48:04.938 00:00:10.374 TCP 23.104.0.1:34682 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:48:28.150 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:44452 10 6452 1 2025-11-29 04:49:05.354 00:00:10.322 TCP 23.104.0.1:37026 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:49:29.340 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:49:29.419 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:49:28.325 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43210 10 6452 1 2025-11-29 04:50:05.711 00:00:10.374 TCP 23.104.0.1:35996 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:50:28.536 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59386 10 6452 1 2025-11-29 04:51:06.142 00:00:10.363 TCP 23.104.0.1:48214 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:51:28.749 00:00:17.038 TCP 1.101.0.1:3000 -> 22.102.0.1:38558 10 6452 1 2025-11-29 04:52:06.552 00:00:10.369 TCP 23.104.0.1:38606 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:52:35.833 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:57784 10 6452 1 2025-11-29 04:53:06.969 00:00:10.332 TCP 23.104.0.1:50726 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:53:36.083 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:40626 10 6452 1 2025-11-29 04:49:09.854 00:05:55.382 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 04:49:09.855 00:05:55.378 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:54:07.341 00:00:10.379 TCP 23.104.0.1:33428 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:54:29.570 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:54:29.404 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:54:36.303 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38710 10 6452 1 2025-11-29 04:55:07.757 00:00:11.042 TCP 23.104.0.1:59154 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:55:36.518 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52158 10 6452 1 2025-11-29 04:56:08.841 00:00:10.349 TCP 23.104.0.1:49862 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:56:36.736 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:34936 12 10375 1 2025-11-29 04:57:09.225 00:00:10.440 TCP 23.104.0.1:43970 -> 1.101.0.1:3000 15 1926 1 2025-11-29 04:57:36.974 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:43896 10 6452 1 2025-11-29 04:58:09.703 00:00:10.367 TCP 23.104.0.1:47802 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:58:37.219 00:00:10.371 TCP 1.101.0.1:3000 -> 22.102.0.1:56706 10 6452 1 Summary: total flows: 163, total bytes: 501391, total packets: 1571, avg bps: 1050, avg pps: 0, avg bpp: 319 Time window: 2025-11-29 03:55:09 - 2025-11-29 04:58:47 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0021s User: 0.0031s Wall: 0.0037s flows/second: 44388.5 Runtime: 0.0037s