Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 07:58:42.717 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50824 10 6452 1 2025-11-29 07:59:33.295 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:59:33.220 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:59:29.103 00:00:10.366 TCP 23.104.0.1:45412 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:59:42.934 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:55340 10 6452 1 2025-11-29 07:55:09.909 00:05:55.366 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:55:09.911 00:05:55.361 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:00:29.509 00:00:10.366 TCP 23.104.0.1:51344 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:00:43.172 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:53150 10 6452 1 2025-11-29 08:01:29.915 00:00:10.360 TCP 23.104.0.1:58798 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:01:43.382 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:49374 10 6452 1 2025-11-29 08:02:30.316 00:00:11.276 TCP 23.104.0.1:46524 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:02:43.552 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40612 10 6452 1 2025-11-29 08:03:31.629 00:00:10.323 TCP 23.104.0.1:38294 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:03:43.770 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:44294 10 6452 1 2025-11-29 08:04:33.303 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:04:32.986 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:04:31.992 00:00:10.365 TCP 23.104.0.1:49080 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:04:43.954 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:47198 10 6452 1 2025-11-29 08:05:32.400 00:00:10.324 TCP 23.104.0.1:47254 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:05:44.147 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48702 10 6452 1 2025-11-29 08:01:09.912 00:05:55.361 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:01:09.909 00:05:55.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 08:06:32.770 00:00:10.326 TCP 23.104.0.1:34162 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:06:44.360 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:35396 10 6452 1 2025-11-29 08:07:33.133 00:00:10.362 TCP 23.104.0.1:48400 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:07:44.598 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:40918 10 6452 1 2025-11-29 08:08:33.532 00:00:10.363 TCP 23.104.0.1:45384 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:08:44.769 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48206 10 6452 1 2025-11-29 08:09:33.284 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:09:33.462 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:09:33.938 00:00:11.642 TCP 23.104.0.1:55966 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:09:44.948 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:58516 10 6452 1 2025-11-29 08:10:35.620 00:00:10.362 TCP 23.104.0.1:45572 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:10:45.176 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48502 10 6452 1 2025-11-29 08:11:36.025 00:00:10.360 TCP 23.104.0.1:59730 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:11:45.391 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:36076 10 6452 1 2025-11-29 08:07:09.917 00:05:55.359 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:07:09.914 00:05:55.364 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 08:12:36.425 00:00:10.363 TCP 23.104.0.1:38524 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:12:45.578 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46620 10 6452 1 2025-11-29 08:13:36.825 00:00:10.367 TCP 23.104.0.1:49452 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:13:45.801 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52808 10 6452 1 2025-11-29 08:14:34.631 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:14:34.682 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:14:37.232 00:00:10.678 TCP 23.104.0.1:46650 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:14:46.024 00:00:16.994 TCP 1.101.0.1:3000 -> 22.102.0.1:36426 10 6452 1 2025-11-29 08:15:37.948 00:00:10.594 TCP 23.104.0.1:33932 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:15:53.079 00:00:12.554 TCP 1.101.0.1:3000 -> 22.102.0.1:39384 10 6452 1 2025-11-29 08:16:38.579 00:00:10.361 TCP 23.104.0.1:36414 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:16:55.671 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54252 10 6452 1 2025-11-29 08:17:38.977 00:00:10.378 TCP 23.104.0.1:34520 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:13:09.916 00:05:55.363 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 08:13:09.917 00:05:55.359 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:17:55.894 00:00:11.651 TCP 1.101.0.1:3000 -> 22.102.0.1:41896 10 6452 1 2025-11-29 08:18:39.389 00:00:10.370 TCP 23.104.0.1:49452 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:18:57.583 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59520 10 6452 1 2025-11-29 08:19:33.360 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:19:33.637 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:19:39.800 00:00:10.367 TCP 23.104.0.1:55632 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:19:57.799 00:00:10.947 TCP 1.101.0.1:3000 -> 22.102.0.1:58110 10 6452 1 2025-11-29 08:20:40.201 00:00:10.326 TCP 23.104.0.1:59158 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:20:58.782 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58818 10 6452 1 2025-11-29 08:21:40.581 00:00:10.735 TCP 23.104.0.1:36816 -> 1.101.0.1:3000 15 1926 1 2025-11-29 08:21:58.993 00:00:19.827 TCP 1.101.0.1:3000 -> 22.102.0.1:37344 12 10375 1 2025-11-29 08:22:41.357 00:00:10.362 TCP 23.104.0.1:54066 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:23:08.860 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:43182 10 6452 1 2025-11-29 08:23:41.757 00:00:10.380 TCP 23.104.0.1:51630 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:19:09.915 00:05:55.364 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 08:19:09.918 00:05:55.359 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:24:09.096 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:36516 10 6452 1 2025-11-29 08:24:33.837 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:24:33.728 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:24:42.179 00:00:10.368 TCP 23.104.0.1:37960 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:25:09.308 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50032 10 6452 1 2025-11-29 08:25:42.585 00:00:10.373 TCP 23.104.0.1:45734 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:26:09.519 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51910 10 6452 1 2025-11-29 08:26:42.992 00:00:10.367 TCP 23.104.0.1:39070 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:27:09.730 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41234 10 6452 1 2025-11-29 08:27:43.396 00:00:10.365 TCP 23.104.0.1:51642 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:28:09.939 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:52620 10 6452 1 2025-11-29 08:28:43.802 00:00:10.367 TCP 23.104.0.1:44890 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:29:10.176 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47824 10 6452 1 2025-11-29 08:29:33.709 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:29:33.933 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:29:44.206 00:00:10.366 TCP 23.104.0.1:44626 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:25:09.919 00:05:55.360 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:25:09.916 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 08:30:10.391 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:59664 10 6452 1 2025-11-29 08:30:44.610 00:00:10.362 TCP 23.104.0.1:50992 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:31:10.558 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36252 10 6452 1 2025-11-29 08:31:45.008 00:00:10.361 TCP 23.104.0.1:41842 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:32:10.794 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50550 10 6452 1 2025-11-29 08:32:45.407 00:00:10.371 TCP 23.104.0.1:58912 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:33:11.011 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42610 10 6452 1 2025-11-29 08:33:45.816 00:00:10.366 TCP 23.104.0.1:45942 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:34:11.228 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:46294 10 6452 1 2025-11-29 08:34:33.868 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:34:34.009 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:34:46.218 00:00:10.364 TCP 23.104.0.1:33244 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:35:11.397 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:41398 10 6452 1 2025-11-29 08:35:46.617 00:00:10.364 TCP 23.104.0.1:35558 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:31:09.917 00:05:55.366 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 08:31:09.919 00:05:55.361 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:36:11.620 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:33998 10 6452 1 2025-11-29 08:36:47.017 00:00:10.365 TCP 23.104.0.1:49196 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:37:11.846 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:41648 10 6452 1 2025-11-29 08:37:47.419 00:00:10.326 TCP 23.104.0.1:48210 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:38:12.091 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:38136 10 6452 1 2025-11-29 08:38:47.779 00:00:10.365 TCP 23.104.0.1:41580 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:39:12.338 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:36186 10 6452 1 2025-11-29 08:39:34.077 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:39:33.841 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:39:48.181 00:00:10.360 TCP 23.104.0.1:54028 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:40:12.562 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:33984 10 6452 1 2025-11-29 08:40:48.578 00:00:10.361 TCP 23.104.0.1:37194 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:41:12.793 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:34004 10 6452 1 2025-11-29 08:41:48.984 00:00:10.440 TCP 23.104.0.1:57260 -> 1.101.0.1:3000 15 1926 1 2025-11-29 08:37:09.921 00:05:55.360 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:37:09.919 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 08:42:13.019 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:53310 12 10375 1 2025-11-29 08:42:49.465 00:00:10.370 TCP 23.104.0.1:38358 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:43:13.258 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39236 10 6452 1 2025-11-29 08:43:49.891 00:00:10.370 TCP 23.104.0.1:33298 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:44:13.480 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52898 10 6452 1 2025-11-29 08:44:34.152 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:44:34.075 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:44:50.304 00:00:10.363 TCP 23.104.0.1:40442 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:45:13.702 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36646 10 6452 1 2025-11-29 08:45:50.705 00:00:10.392 TCP 23.104.0.1:50188 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:46:13.912 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48834 10 6452 1 2025-11-29 08:46:51.152 00:00:10.363 TCP 23.104.0.1:54624 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:47:14.128 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:53544 10 6452 1 2025-11-29 08:47:51.556 00:00:10.363 TCP 23.104.0.1:37044 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:43:09.919 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 08:43:09.922 00:05:55.360 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:48:14.350 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51600 10 6452 1 2025-11-29 08:48:51.957 00:00:10.367 TCP 23.104.0.1:45408 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:49:14.562 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36670 10 6452 1 2025-11-29 08:49:34.004 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:49:33.874 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:49:52.365 00:00:10.371 TCP 23.104.0.1:36300 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:50:14.776 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53968 10 6452 1 2025-11-29 08:50:52.779 00:00:10.339 TCP 23.104.0.1:46612 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:51:14.991 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39840 10 6452 1 2025-11-29 08:51:53.157 00:00:11.111 TCP 23.104.0.1:44260 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:52:15.217 00:00:12.128 TCP 1.101.0.1:3000 -> 22.102.0.1:39976 10 6452 1 2025-11-29 08:52:54.307 00:00:10.362 TCP 23.104.0.1:49258 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:53:17.385 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:39324 10 6452 1 2025-11-29 08:49:09.923 00:05:55.360 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 08:53:54.709 00:00:10.390 TCP 23.104.0.1:54432 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:49:09.920 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 08:54:17.610 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44732 10 6452 1 2025-11-29 08:54:34.008 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 08:54:34.480 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 08:54:55.138 00:00:10.318 TCP 23.104.0.1:37760 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:55:17.836 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:46382 10 6452 1 2025-11-29 08:55:55.498 00:00:10.367 TCP 23.104.0.1:47440 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:56:18.075 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54372 12 6556 1 2025-11-29 08:56:55.902 00:00:10.436 TCP 23.104.0.1:49370 -> 1.101.0.1:3000 15 1926 1 2025-11-29 08:57:18.306 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:45930 12 10369 1 2025-11-29 08:57:56.384 00:00:10.366 TCP 23.104.0.1:47122 -> 1.101.0.1:3000 11 1507 1 2025-11-29 08:58:18.553 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:41702 10 6452 1 Summary: total flows: 163, total bytes: 509965, total packets: 1581, avg bps: 1073, avg pps: 0, avg bpp: 322 Time window: 2025-11-29 07:55:09 - 2025-11-29 08:58:28 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0052s User: 0.0009s Wall: 0.0021s flows/second: 77946.8 Runtime: 0.0021s