Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 11:59:00.204 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:60554 10 6452 1 2025-11-29 11:59:20.516 00:00:10.325 TCP 23.104.0.1:48242 -> 1.101.0.1:3000 11 1507 1 2025-11-29 11:59:38.006 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 11:59:37.912 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 11:55:09.990 00:05:55.341 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 11:55:09.987 00:05:55.347 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 12:00:00.374 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53074 10 6452 1 2025-11-29 12:00:20.880 00:00:10.389 TCP 23.104.0.1:57960 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:01:00.593 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59574 10 6452 1 2025-11-29 12:01:21.308 00:00:10.315 TCP 23.104.0.1:54634 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:02:00.815 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:37310 10 6452 1 2025-11-29 12:02:21.660 00:00:10.588 TCP 23.104.0.1:44890 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:03:01.033 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37380 10 6452 1 2025-11-29 12:03:22.293 00:00:10.419 TCP 23.104.0.1:38046 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:04:01.246 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36694 10 6452 1 2025-11-29 12:04:38.155 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:04:22.748 00:00:10.364 TCP 23.104.0.1:50740 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:04:37.948 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:05:01.467 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56862 10 6452 1 2025-11-29 12:05:23.149 00:00:10.362 TCP 23.104.0.1:50834 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:01:09.991 00:05:55.342 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 12:01:09.988 00:05:55.347 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 12:06:01.679 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:32898 10 6452 1 2025-11-29 12:06:23.550 00:00:10.323 TCP 23.104.0.1:42092 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:07:01.891 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:39686 10 6452 1 2025-11-29 12:07:23.911 00:00:10.364 TCP 23.104.0.1:48960 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:08:02.078 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55328 10 6452 1 2025-11-29 12:08:24.317 00:00:10.325 TCP 23.104.0.1:48516 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:09:02.290 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:52950 10 6452 1 2025-11-29 12:09:24.689 00:00:10.370 TCP 23.104.0.1:45150 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:09:37.910 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:09:37.905 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:10:02.461 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:44202 10 6452 1 2025-11-29 12:10:25.107 00:00:10.385 TCP 23.104.0.1:43872 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:11:02.669 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56676 10 6452 1 2025-11-29 12:11:25.529 00:00:10.326 TCP 23.104.0.1:40822 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:07:09.990 00:05:55.347 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 12:07:09.993 00:05:55.342 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 12:12:02.882 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52022 10 6452 1 2025-11-29 12:12:25.894 00:00:10.370 TCP 23.104.0.1:49132 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:13:03.115 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53902 10 6452 1 2025-11-29 12:13:26.300 00:00:10.365 TCP 23.104.0.1:38178 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:14:03.325 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54750 10 6452 1 2025-11-29 12:14:38.358 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:14:38.362 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:14:26.705 00:00:10.363 TCP 23.104.0.1:48080 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:15:03.536 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49612 10 6452 1 2025-11-29 12:15:27.109 00:00:10.366 TCP 23.104.0.1:52680 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:16:03.744 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:36688 10 6452 1 2025-11-29 12:16:27.517 00:00:10.373 TCP 23.104.0.1:40798 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:17:03.921 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:43944 10 6452 1 2025-11-29 12:17:27.941 00:00:10.372 TCP 23.104.0.1:48526 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:13:09.994 00:05:55.345 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 12:13:09.990 00:05:55.350 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 12:18:04.175 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36056 10 6452 1 2025-11-29 12:18:28.352 00:00:10.366 TCP 23.104.0.1:32970 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:19:04.389 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56388 10 6452 1 2025-11-29 12:19:38.349 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:19:28.755 00:00:10.385 TCP 23.104.0.1:37470 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:19:38.182 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:20:04.603 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:43264 10 6452 1 2025-11-29 12:20:29.178 00:00:10.887 TCP 23.104.0.1:54090 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:21:04.778 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37198 10 6452 1 2025-11-29 12:21:30.104 00:00:10.321 TCP 23.104.0.1:37832 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:22:04.993 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:59192 10 6452 1 2025-11-29 12:22:30.461 00:00:10.324 TCP 23.104.0.1:43426 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:23:05.218 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46868 10 6452 1 2025-11-29 12:23:30.827 00:00:10.360 TCP 23.104.0.1:47636 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:19:09.993 00:05:55.349 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 12:19:09.997 00:05:55.343 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 12:24:05.429 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52114 10 6452 1 2025-11-29 12:24:38.318 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:24:31.239 00:00:10.365 TCP 23.104.0.1:42418 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:24:38.854 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:25:05.642 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53148 10 6452 1 2025-11-29 12:25:31.642 00:00:10.366 TCP 23.104.0.1:38156 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:26:05.860 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:39566 10 6452 1 2025-11-29 12:26:32.066 00:00:10.363 TCP 23.104.0.1:57686 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:27:06.081 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:38980 12 10369 1 2025-11-29 12:27:32.469 00:00:10.446 TCP 23.104.0.1:53296 -> 1.101.0.1:3000 15 1926 1 2025-11-29 12:28:06.320 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43572 10 6452 1 2025-11-29 12:28:32.949 00:00:10.378 TCP 23.104.0.1:33920 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:25:09.998 00:05:00.005 TCP 179.1.22.1:179 -> 179.1.22.22:39396 11 667 1 2025-11-29 12:25:09.996 00:05:00.004 TCP 179.1.22.22:39396 -> 179.1.22.1:179 11 686 1 2025-11-29 12:29:06.534 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:41478 10 6452 1 2025-11-29 12:29:38.743 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:29:38.651 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:29:33.361 00:00:10.372 TCP 23.104.0.1:40830 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:30:06.720 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56700 10 6452 1 2025-11-29 12:30:33.771 00:00:10.331 TCP 23.104.0.1:39214 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:31:06.930 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:50102 10 6452 1 2025-11-29 12:31:34.137 00:00:10.325 TCP 23.104.0.1:38186 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:32:07.125 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33698 10 6452 1 2025-11-29 12:32:34.499 00:00:10.369 TCP 23.104.0.1:57992 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:33:07.339 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:48606 10 6452 1 2025-11-29 12:33:34.907 00:00:10.321 TCP 23.104.0.1:38318 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:34:07.567 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:51126 10 6452 1 2025-11-29 12:34:38.509 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:34:38.494 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:34:35.270 00:00:10.367 TCP 23.104.0.1:52130 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:31:05.344 00:05:04.670 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 12:31:05.341 00:05:04.676 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 12:35:07.751 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47670 10 6452 1 2025-11-29 12:35:35.674 00:00:10.368 TCP 23.104.0.1:54578 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:36:07.968 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:42182 10 6452 1 2025-11-29 12:36:36.101 00:00:10.362 TCP 23.104.0.1:59068 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:37:08.203 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:60940 10 6452 1 2025-11-29 12:37:36.502 00:00:10.324 TCP 23.104.0.1:54094 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:38:08.373 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33804 10 6452 1 2025-11-29 12:38:36.861 00:00:10.364 TCP 23.104.0.1:58086 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:39:08.581 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:41212 10 6452 1 2025-11-29 12:39:38.765 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:39:38.872 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:39:37.267 00:00:10.326 TCP 23.104.0.1:55534 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:40:08.799 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41914 10 6452 1 2025-11-29 12:40:37.630 00:00:10.364 TCP 23.104.0.1:51624 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:37:05.345 00:05:04.683 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 12:37:05.344 00:05:04.688 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 12:41:09.010 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48032 10 6452 1 2025-11-29 12:41:38.031 00:00:10.364 TCP 23.104.0.1:33518 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:42:09.218 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53202 10 6452 1 2025-11-29 12:42:38.439 00:00:10.359 TCP 23.104.0.1:32818 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:43:09.441 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33228 10 6452 1 2025-11-29 12:43:38.839 00:00:10.346 TCP 23.104.0.1:50104 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:44:09.652 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58834 10 6452 1 2025-11-29 12:44:38.791 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:44:38.863 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:44:39.221 00:00:10.396 TCP 23.104.0.1:47724 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:45:09.869 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:49566 10 6452 1 2025-11-29 12:45:39.653 00:00:10.324 TCP 23.104.0.1:42532 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:46:10.106 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54422 10 6452 1 2025-11-29 12:46:40.014 00:00:10.365 TCP 23.104.0.1:51632 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:43:05.344 00:05:04.693 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 12:43:05.345 00:05:04.688 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 12:47:10.324 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:56198 10 6452 1 2025-11-29 12:47:40.417 00:00:10.824 TCP 23.104.0.1:49714 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:48:10.549 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54544 10 6452 1 2025-11-29 12:48:41.278 00:00:10.371 TCP 23.104.0.1:34066 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:49:10.769 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:32994 10 6452 1 2025-11-29 12:49:39.111 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:49:39.275 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:49:41.687 00:00:10.384 TCP 23.104.0.1:37788 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:50:11.002 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60946 10 6452 1 2025-11-29 12:50:42.108 00:00:10.325 TCP 23.104.0.1:53804 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:51:11.227 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58578 10 6452 1 2025-11-29 12:51:42.473 00:00:10.364 TCP 23.104.0.1:42898 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:52:11.443 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:45358 10 6452 1 2025-11-29 12:52:42.880 00:00:10.383 TCP 23.104.0.1:35890 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:49:05.345 00:05:04.696 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 12:49:05.348 00:05:04.691 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 12:53:11.615 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49092 10 6452 1 2025-11-29 12:53:43.299 00:00:10.367 TCP 23.104.0.1:56990 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:54:11.834 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:38346 10 6452 1 2025-11-29 12:54:39.106 00:00:00.041 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 12:54:38.981 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 12:54:43.707 00:00:10.325 TCP 23.104.0.1:43786 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:55:12.075 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52828 10 6452 1 2025-11-29 12:55:44.102 00:00:10.322 TCP 23.104.0.1:36788 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:56:12.298 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:35730 10 6452 1 2025-11-29 12:56:44.461 00:00:10.323 TCP 23.104.0.1:35646 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:57:12.529 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40282 10 6452 1 2025-11-29 12:57:44.829 00:00:10.383 TCP 23.104.0.1:42566 -> 1.101.0.1:3000 11 1507 1 2025-11-29 12:58:12.745 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56758 10 6452 1 Summary: total flows: 163, total bytes: 501054, total packets: 1565, avg bps: 1056, avg pps: 0, avg bpp: 320 Time window: 2025-11-29 11:55:09 - 2025-11-29 12:58:22 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0052s User: 0.0000s Wall: 0.0062s flows/second: 26439.5 Runtime: 0.0062s