Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 05:58:54.493 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:41722 10 6452 1 2025-11-29 05:59:30.831 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:59:30.781 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:59:36.487 00:00:10.379 TCP 23.104.0.1:37962 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:55:09.877 00:05:55.372 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:55:09.879 00:05:55.367 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:59:54.675 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54720 10 6452 1 2025-11-29 06:00:36.907 00:00:10.369 TCP 23.104.0.1:36274 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:00:54.892 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:49772 10 6452 1 2025-11-29 06:01:37.311 00:00:10.362 TCP 23.104.0.1:53134 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:01:55.111 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47476 10 6452 1 2025-11-29 06:02:37.713 00:00:10.364 TCP 23.104.0.1:44094 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:02:55.317 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:40270 10 6452 1 2025-11-29 06:03:38.114 00:00:10.370 TCP 23.104.0.1:45916 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:03:55.489 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42922 10 6452 1 2025-11-29 06:04:30.855 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:04:30.710 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:04:38.524 00:00:10.371 TCP 23.104.0.1:50662 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:04:55.705 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:53758 10 6452 1 2025-11-29 06:05:38.930 00:00:10.389 TCP 23.104.0.1:36032 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:01:09.880 00:05:55.370 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:05:55.932 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:48154 10 6452 1 2025-11-29 06:01:09.883 00:05:55.365 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 06:06:39.358 00:00:10.328 TCP 23.104.0.1:42508 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:06:56.184 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57682 10 6452 1 2025-11-29 06:07:39.721 00:00:10.870 TCP 23.104.0.1:48294 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:07:56.404 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53870 10 6452 1 2025-11-29 06:08:40.628 00:00:10.366 TCP 23.104.0.1:39176 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:08:56.624 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51776 10 6452 1 2025-11-29 06:09:30.964 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:09:31.068 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:09:41.033 00:00:10.363 TCP 23.104.0.1:42880 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:09:56.841 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:32964 10 6452 1 2025-11-29 06:10:41.437 00:00:10.364 TCP 23.104.0.1:41158 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:10:57.031 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36226 10 6452 1 2025-11-29 06:11:41.842 00:00:10.396 TCP 23.104.0.1:36746 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:07:09.885 00:05:55.364 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 06:07:09.882 00:05:55.368 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:11:57.255 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:47378 10 6452 1 2025-11-29 06:12:42.273 00:00:10.365 TCP 23.104.0.1:56112 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:12:57.437 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33332 10 6452 1 2025-11-29 06:13:42.675 00:00:10.381 TCP 23.104.0.1:57332 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:13:57.653 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50524 10 6452 1 2025-11-29 06:14:31.022 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:14:30.846 00:00:00.040 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:14:43.108 00:00:10.363 TCP 23.104.0.1:58792 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:14:57.870 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:34816 10 6452 1 2025-11-29 06:15:43.506 00:00:10.360 TCP 23.104.0.1:49752 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:15:58.107 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54296 10 6452 1 2025-11-29 06:16:43.905 00:00:10.371 TCP 23.104.0.1:60346 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:16:58.335 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50714 10 6452 1 2025-11-29 06:17:44.314 00:00:10.366 TCP 23.104.0.1:58124 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:13:09.886 00:05:55.362 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 06:13:09.884 00:05:55.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:17:58.553 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:56666 10 6452 1 2025-11-29 06:18:44.719 00:00:10.383 TCP 23.104.0.1:45582 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:18:58.728 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:48708 10 6452 1 2025-11-29 06:19:31.191 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:19:31.196 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:19:45.141 00:00:10.416 TCP 23.104.0.1:60462 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:19:58.914 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45536 10 6452 1 2025-11-29 06:20:45.597 00:00:10.366 TCP 23.104.0.1:53124 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:20:59.124 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49074 10 6452 1 2025-11-29 06:21:46.007 00:00:10.325 TCP 23.104.0.1:55080 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:21:59.332 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54628 10 6452 1 2025-11-29 06:22:46.370 00:00:10.363 TCP 23.104.0.1:53882 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:22:59.546 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48782 10 6452 1 2025-11-29 06:23:46.768 00:00:10.371 TCP 23.104.0.1:55930 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:19:09.885 00:05:55.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:19:09.888 00:05:55.362 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 06:23:59.755 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59758 10 6452 1 2025-11-29 06:24:31.060 00:00:00.047 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:24:31.223 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:24:47.174 00:00:10.378 TCP 23.104.0.1:49212 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:24:59.970 00:00:11.732 TCP 1.101.0.1:3000 -> 22.102.0.1:52212 10 6452 1 2025-11-29 06:25:47.603 00:00:10.359 TCP 23.104.0.1:48788 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:26:01.744 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:44964 10 6452 1 2025-11-29 06:26:48.004 00:00:10.322 TCP 23.104.0.1:56032 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:27:01.915 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36838 10 6452 1 2025-11-29 06:27:48.360 00:00:10.365 TCP 23.104.0.1:57520 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:28:02.124 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51974 10 6452 1 2025-11-29 06:28:48.764 00:00:10.334 TCP 23.104.0.1:36830 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:29:02.340 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:57532 10 6452 1 2025-11-29 06:29:31.433 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:29:31.365 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:29:49.137 00:00:10.371 TCP 23.104.0.1:35422 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:25:09.888 00:05:55.362 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 06:25:09.886 00:05:55.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:30:02.564 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60850 10 6452 1 2025-11-29 06:30:49.553 00:00:10.370 TCP 23.104.0.1:37656 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:31:02.779 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52424 10 6452 1 2025-11-29 06:31:49.962 00:00:10.363 TCP 23.104.0.1:42380 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:32:02.997 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:50288 10 6452 1 2025-11-29 06:32:50.367 00:00:10.362 TCP 23.104.0.1:48584 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:33:03.224 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43084 10 6452 1 2025-11-29 06:33:50.770 00:00:10.369 TCP 23.104.0.1:36452 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:34:03.437 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:47408 10 6452 1 2025-11-29 06:34:31.518 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:34:31.514 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:34:51.183 00:00:10.368 TCP 23.104.0.1:53710 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:35:03.613 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56928 10 6452 1 2025-11-29 06:35:51.590 00:00:10.368 TCP 23.104.0.1:32926 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:31:09.890 00:05:55.361 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 06:31:09.889 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:36:03.826 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36616 10 6452 1 2025-11-29 06:36:51.997 00:00:10.366 TCP 23.104.0.1:48130 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:37:04.069 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34134 10 6452 1 2025-11-29 06:37:52.400 00:00:10.366 TCP 23.104.0.1:59994 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:38:04.282 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:33106 10 6452 1 2025-11-29 06:38:52.804 00:00:10.331 TCP 23.104.0.1:54630 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:39:04.503 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48574 10 6452 1 2025-11-29 06:39:31.451 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:39:31.513 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:39:53.174 00:00:10.398 TCP 23.104.0.1:44524 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:40:04.716 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:55510 10 6452 1 2025-11-29 06:40:53.574 00:00:10.361 TCP 23.104.0.1:43390 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:41:04.951 00:00:10.218 TCP 1.101.0.1:3000 -> 22.102.0.1:57378 12 6556 1 2025-11-29 06:37:09.892 00:05:55.360 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 06:41:53.976 00:00:10.328 TCP 23.104.0.1:37902 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:37:09.890 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:42:05.204 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:49180 10 6452 1 2025-11-29 06:42:54.343 00:00:10.365 TCP 23.104.0.1:42330 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:43:05.380 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:54282 10 6452 1 2025-11-29 06:43:54.747 00:00:10.687 TCP 23.104.0.1:39022 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:44:05.570 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51006 10 6452 1 2025-11-29 06:44:31.555 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:44:31.673 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:44:55.470 00:00:10.358 TCP 23.104.0.1:40850 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:45:05.787 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43158 10 6452 1 2025-11-29 06:45:55.868 00:00:10.906 TCP 23.104.0.1:53900 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:46:06.006 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39268 10 6452 1 2025-11-29 06:46:56.811 00:00:10.329 TCP 23.104.0.1:36456 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:47:06.216 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54160 10 6452 1 2025-11-29 06:43:09.890 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:43:09.893 00:05:55.360 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 06:47:57.183 00:00:10.364 TCP 23.104.0.1:52156 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:48:06.428 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:60804 10 6452 1 2025-11-29 06:48:57.582 00:00:10.326 TCP 23.104.0.1:60504 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:49:06.636 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54274 10 6452 1 2025-11-29 06:49:31.758 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:49:31.700 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:49:57.947 00:00:10.996 TCP 23.104.0.1:56062 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:50:06.850 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48754 10 6452 1 2025-11-29 06:50:58.982 00:00:10.365 TCP 23.104.0.1:46468 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:51:07.078 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60252 10 6452 1 2025-11-29 06:51:59.385 00:00:10.654 TCP 23.104.0.1:36914 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:52:07.291 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42594 10 6452 1 2025-11-29 06:53:00.092 00:00:10.336 TCP 23.104.0.1:52036 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:53:07.503 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:59834 10 6452 1 2025-11-29 06:49:09.894 00:05:55.359 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 06:49:09.893 00:05:55.363 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:54:00.457 00:00:10.742 TCP 23.104.0.1:54168 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:54:07.709 00:00:18.614 TCP 1.101.0.1:3000 -> 22.102.0.1:38282 10 6452 1 2025-11-29 06:54:31.902 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:54:31.553 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:55:01.232 00:00:10.362 TCP 23.104.0.1:51102 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:55:16.362 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:54244 10 6452 1 2025-11-29 06:56:01.643 00:00:10.346 TCP 23.104.0.1:48066 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:56:16.618 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48190 10 6452 1 2025-11-29 06:57:02.032 00:00:10.366 TCP 23.104.0.1:36988 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:57:16.829 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58154 10 6452 1 2025-11-29 06:58:02.438 00:00:10.366 TCP 23.104.0.1:51348 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:58:17.071 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33204 10 6452 1 Summary: total flows: 163, total bytes: 496945, total packets: 1563, avg bps: 1046, avg pps: 0, avg bpp: 317 Time window: 2025-11-29 05:55:09 - 2025-11-29 06:58:27 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0048s User: 0.0010s Wall: 0.0015s flows/second: 108090.4 Runtime: 0.0015s