Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 09:59:35.806 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 09:59:36.095 00:00:00.045 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 09:59:31.478 00:00:10.363 TCP 23.104.0.1:47254 -> 1.101.0.1:3000 11 1507 1 2025-11-29 09:59:31.736 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49190 10 6452 1 2025-11-29 09:55:09.950 00:05:55.348 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 09:55:09.947 00:05:55.353 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:00:31.880 00:00:10.368 TCP 23.104.0.1:56986 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:00:31.954 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:51418 10 6452 1 2025-11-29 10:01:32.191 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46570 10 6452 1 2025-11-29 10:01:32.285 00:00:10.367 TCP 23.104.0.1:51120 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:02:32.689 00:00:10.367 TCP 23.104.0.1:34080 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:02:32.403 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:53010 10 6452 1 2025-11-29 10:03:33.105 00:00:10.370 TCP 23.104.0.1:47618 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:03:32.627 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48064 10 6452 1 2025-11-29 10:04:35.701 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:04:35.606 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:04:32.840 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46900 10 6452 1 2025-11-29 10:04:33.507 00:00:10.364 TCP 23.104.0.1:35750 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:05:33.077 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58864 10 6452 1 2025-11-29 10:05:33.910 00:00:10.367 TCP 23.104.0.1:47004 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:01:09.951 00:05:55.349 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 10:01:09.948 00:05:55.354 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:06:34.315 00:00:10.321 TCP 23.104.0.1:60910 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:06:33.296 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36680 10 6452 1 2025-11-29 10:07:34.677 00:00:10.320 TCP 23.104.0.1:51662 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:07:33.514 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37534 10 6452 1 2025-11-29 10:08:35.050 00:00:10.361 TCP 23.104.0.1:52910 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:08:33.701 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43104 10 6452 1 2025-11-29 10:09:35.885 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:09:35.819 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:09:33.918 00:00:10.158 TCP 1.101.0.1:3000 -> 22.102.0.1:37938 10 6452 1 2025-11-29 10:09:35.449 00:00:10.365 TCP 23.104.0.1:35818 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:10:34.116 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47862 10 6452 1 2025-11-29 10:10:35.850 00:00:10.376 TCP 23.104.0.1:45456 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:11:34.327 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33746 10 6452 1 2025-11-29 10:11:36.265 00:00:10.370 TCP 23.104.0.1:49296 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:07:09.950 00:05:55.353 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:07:09.953 00:05:55.347 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 10:12:34.498 00:00:10.583 TCP 1.101.0.1:3000 -> 22.102.0.1:59002 11 6492 1 2025-11-29 10:12:36.675 00:00:10.367 TCP 23.104.0.1:57082 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:13:35.118 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46216 10 6452 1 2025-11-29 10:13:37.095 00:00:10.369 TCP 23.104.0.1:55292 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:14:35.844 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:14:35.916 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:14:35.336 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59708 10 6452 1 2025-11-29 10:14:37.502 00:00:10.365 TCP 23.104.0.1:45194 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:15:35.557 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:43094 10 6452 1 2025-11-29 10:15:37.907 00:00:10.374 TCP 23.104.0.1:49750 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:16:35.780 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41910 10 6452 1 2025-11-29 10:16:38.317 00:00:10.363 TCP 23.104.0.1:52358 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:17:35.996 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:34332 10 6452 1 2025-11-29 10:17:38.718 00:00:10.377 TCP 23.104.0.1:37142 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:13:09.953 00:05:55.352 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:13:09.956 00:05:55.346 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 10:18:36.227 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38450 10 6452 1 2025-11-29 10:18:39.133 00:00:10.366 TCP 23.104.0.1:34850 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:19:36.163 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:19:36.198 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:19:36.451 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60784 10 6452 1 2025-11-29 10:19:39.533 00:00:10.373 TCP 23.104.0.1:38296 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:20:36.673 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58106 10 6452 1 2025-11-29 10:20:39.944 00:00:10.384 TCP 23.104.0.1:57336 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:21:36.895 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:41498 12 10375 1 2025-11-29 10:21:40.380 00:00:10.461 TCP 23.104.0.1:38936 -> 1.101.0.1:3000 15 1926 1 2025-11-29 10:22:37.153 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51856 10 6452 1 2025-11-29 10:22:40.873 00:00:10.327 TCP 23.104.0.1:52180 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:23:41.241 00:00:10.375 TCP 23.104.0.1:59706 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:23:37.378 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:58230 10 6452 1 2025-11-29 10:19:09.957 00:05:55.346 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 10:19:09.954 00:05:55.351 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:24:35.933 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:24:36.190 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:24:37.558 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38432 10 6452 1 2025-11-29 10:24:41.658 00:00:10.368 TCP 23.104.0.1:44432 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:25:37.774 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:32976 10 6452 1 2025-11-29 10:25:42.086 00:00:10.371 TCP 23.104.0.1:41810 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:26:37.984 00:00:12.552 TCP 1.101.0.1:3000 -> 22.102.0.1:50894 10 6452 1 2025-11-29 10:26:42.505 00:00:10.644 TCP 23.104.0.1:60592 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:27:40.587 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36786 10 6452 1 2025-11-29 10:27:43.186 00:00:10.363 TCP 23.104.0.1:58800 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:28:40.807 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43266 10 6452 1 2025-11-29 10:28:43.589 00:00:10.367 TCP 23.104.0.1:33190 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:29:36.198 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:29:36.225 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:29:41.028 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52962 10 6452 1 2025-11-29 10:29:43.995 00:00:10.358 TCP 23.104.0.1:48446 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:25:09.957 00:05:55.349 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:25:09.959 00:05:55.344 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 10:30:41.237 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59846 10 6452 1 2025-11-29 10:30:44.397 00:00:10.359 TCP 23.104.0.1:50904 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:31:41.451 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38924 10 6452 1 2025-11-29 10:31:44.801 00:00:10.363 TCP 23.104.0.1:56984 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:32:41.665 00:00:10.337 TCP 1.101.0.1:3000 -> 22.102.0.1:51698 10 6452 1 2025-11-29 10:32:45.211 00:00:10.362 TCP 23.104.0.1:55876 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:33:45.621 00:00:10.368 TCP 23.104.0.1:37640 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:33:42.067 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40534 10 6452 1 2025-11-29 10:34:36.276 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:34:36.093 00:00:00.045 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:34:46.028 00:00:10.318 TCP 23.104.0.1:41568 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:34:42.279 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:57590 10 6452 1 2025-11-29 10:35:42.505 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:53704 10 6452 1 2025-11-29 10:35:46.385 00:00:10.364 TCP 23.104.0.1:56894 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:31:09.961 00:05:55.343 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 10:31:09.959 00:05:55.348 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:36:42.687 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:32920 10 6452 1 2025-11-29 10:36:46.788 00:00:10.365 TCP 23.104.0.1:60478 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:37:42.861 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:35146 10 6452 1 2025-11-29 10:37:47.196 00:00:10.368 TCP 23.104.0.1:60988 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:38:43.037 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:43436 10 6452 1 2025-11-29 10:38:47.596 00:00:10.363 TCP 23.104.0.1:60150 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:39:36.960 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:39:36.942 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:39:43.216 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34574 10 6452 1 2025-11-29 10:39:48.007 00:00:10.362 TCP 23.104.0.1:40234 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:40:43.435 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:37052 10 6452 1 2025-11-29 10:40:48.408 00:00:10.365 TCP 23.104.0.1:34428 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:41:43.604 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34496 10 6452 1 2025-11-29 10:41:48.813 00:00:10.371 TCP 23.104.0.1:40804 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:37:09.965 00:05:55.345 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:37:09.966 00:05:55.340 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 10:42:43.823 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:57002 10 6452 1 2025-11-29 10:42:49.227 00:00:10.321 TCP 23.104.0.1:48356 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:43:43.994 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:39096 10 6452 1 2025-11-29 10:43:49.581 00:00:10.322 TCP 23.104.0.1:41674 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:44:36.487 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:44:36.653 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:44:44.212 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:53882 10 6452 1 2025-11-29 10:44:49.943 00:00:10.331 TCP 23.104.0.1:37562 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:45:44.386 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53018 10 6452 1 2025-11-29 10:45:50.314 00:00:10.362 TCP 23.104.0.1:50892 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:46:44.611 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40858 10 6452 1 2025-11-29 10:46:50.718 00:00:10.372 TCP 23.104.0.1:54642 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:47:44.826 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34840 10 6452 1 2025-11-29 10:47:51.126 00:00:10.372 TCP 23.104.0.1:34462 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:43:09.963 00:05:55.346 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:43:09.966 00:05:55.341 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 10:48:45.078 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:51124 10 6452 1 2025-11-29 10:48:51.537 00:00:10.364 TCP 23.104.0.1:39112 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:49:36.533 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:49:36.460 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:49:45.259 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59690 10 6452 1 2025-11-29 10:49:51.939 00:00:10.387 TCP 23.104.0.1:54596 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:50:45.475 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49530 10 6452 1 2025-11-29 10:50:52.362 00:00:10.323 TCP 23.104.0.1:59088 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:51:45.688 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:39946 10 6452 1 2025-11-29 10:51:52.725 00:00:10.373 TCP 23.104.0.1:37316 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:52:45.866 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:60718 10 6452 1 2025-11-29 10:52:53.134 00:00:10.364 TCP 23.104.0.1:33194 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:53:46.090 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:57116 10 6452 1 2025-11-29 10:49:09.967 00:05:55.341 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 10:53:53.559 00:00:10.363 TCP 23.104.0.1:54720 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:49:09.966 00:05:55.346 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 10:54:36.704 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 10:54:36.630 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 10:54:46.260 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:49034 10 6452 1 2025-11-29 10:54:53.963 00:00:10.343 TCP 23.104.0.1:50704 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:55:46.430 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:41396 10 6452 1 2025-11-29 10:55:54.355 00:00:10.368 TCP 23.104.0.1:54704 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:56:46.599 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:43720 10 6452 1 2025-11-29 10:56:54.758 00:00:10.371 TCP 23.104.0.1:34166 -> 1.101.0.1:3000 11 1507 1 2025-11-29 10:57:46.808 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:38826 10 6452 1 2025-11-29 10:57:55.173 00:00:10.372 TCP 23.104.0.1:41812 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 494771, total packets: 1558, avg bps: 1048, avg pps: 0, avg bpp: 317 Time window: 2025-11-29 09:55:09 - 2025-11-29 10:58:05 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0051s User: 0.0010s Wall: 0.0023s flows/second: 71584.2 Runtime: 0.0023s