Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 13:55:05.361 00:05:04.731 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 13:55:05.364 00:05:04.725 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 13:59:14.097 00:00:10.362 TCP 23.104.0.1:54200 -> 1.101.0.1:3000 11 1507 1 2025-11-29 13:59:29.283 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53706 10 6452 1 2025-11-29 13:59:40.383 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 13:59:40.232 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:00:14.496 00:00:10.556 TCP 23.104.0.1:41528 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:00:29.504 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40638 10 6452 1 2025-11-29 14:01:15.102 00:00:10.366 TCP 23.104.0.1:48526 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:01:29.714 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57692 10 6452 1 2025-11-29 14:02:15.501 00:00:10.417 TCP 23.104.0.1:50866 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:02:29.938 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:55616 10 6452 1 2025-11-29 14:03:15.956 00:00:10.367 TCP 23.104.0.1:51934 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:03:30.184 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38050 10 6452 1 2025-11-29 14:04:16.363 00:00:10.321 TCP 23.104.0.1:49000 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:04:40.604 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:04:30.403 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56656 10 6452 1 2025-11-29 14:04:40.521 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:01:05.370 00:05:04.728 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:01:05.368 00:05:04.733 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:05:16.732 00:00:10.326 TCP 23.104.0.1:40756 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:05:30.627 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:60122 10 6452 1 2025-11-29 14:06:17.103 00:00:10.325 TCP 23.104.0.1:42810 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:06:30.846 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:36920 10 6452 1 2025-11-29 14:07:17.464 00:00:10.364 TCP 23.104.0.1:57470 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:07:31.078 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:60486 10 6452 1 2025-11-29 14:08:17.867 00:00:10.329 TCP 23.104.0.1:57414 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:08:31.302 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:50680 10 6452 1 2025-11-29 14:09:18.240 00:00:10.335 TCP 23.104.0.1:56438 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:09:40.368 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:09:31.522 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:36564 10 6452 1 2025-11-29 14:09:40.673 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:10:18.613 00:00:10.328 TCP 23.104.0.1:35514 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:10:31.697 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44940 10 6452 1 2025-11-29 14:07:05.371 00:05:04.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:07:05.369 00:05:04.737 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:11:18.980 00:00:10.369 TCP 23.104.0.1:44198 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:11:31.918 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:59144 10 6452 1 2025-11-29 14:12:19.389 00:00:10.369 TCP 23.104.0.1:54426 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:12:32.106 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:60582 10 6452 1 2025-11-29 14:13:19.804 00:00:10.368 TCP 23.104.0.1:36172 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:13:32.280 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:38510 10 6452 1 2025-11-29 14:14:20.208 00:00:10.366 TCP 23.104.0.1:33844 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:14:40.435 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:14:40.392 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:14:32.450 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:48110 10 6452 1 2025-11-29 14:15:20.611 00:00:10.364 TCP 23.104.0.1:39552 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:15:32.625 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:41962 10 6452 1 2025-11-29 14:16:21.016 00:00:10.374 TCP 23.104.0.1:55472 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:16:32.796 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43296 10 6452 1 2025-11-29 14:13:05.370 00:05:04.737 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:13:05.373 00:05:04.732 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:17:21.428 00:00:10.369 TCP 23.104.0.1:44576 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:17:33.012 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:48670 10 6452 1 2025-11-29 14:18:21.840 00:00:10.346 TCP 23.104.0.1:33130 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:18:33.230 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57602 10 6452 1 2025-11-29 14:19:22.223 00:00:10.577 TCP 23.104.0.1:57068 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:19:40.793 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:19:40.598 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:19:33.453 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:38686 10 6452 1 2025-11-29 14:20:22.839 00:00:10.392 TCP 23.104.0.1:52144 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:20:33.686 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52044 10 6452 1 2025-11-29 14:21:23.274 00:00:10.324 TCP 23.104.0.1:59602 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:21:33.912 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46086 10 6452 1 2025-11-29 14:22:23.640 00:00:10.366 TCP 23.104.0.1:60282 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:22:34.125 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:38328 10 6452 1 2025-11-29 14:19:05.373 00:05:04.733 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:19:05.372 00:05:04.738 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:23:24.065 00:00:10.380 TCP 23.104.0.1:55458 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:23:34.361 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47322 10 6452 1 2025-11-29 14:24:40.926 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:24:24.486 00:00:10.360 TCP 23.104.0.1:53968 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:24:40.981 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:24:34.590 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43010 10 6452 1 2025-11-29 14:25:24.887 00:00:10.384 TCP 23.104.0.1:35568 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:25:34.809 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:35726 10 6452 1 2025-11-29 14:26:25.308 00:00:10.362 TCP 23.104.0.1:43604 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:26:35.051 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55928 10 6452 1 2025-11-29 14:27:25.709 00:00:10.375 TCP 23.104.0.1:47086 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:27:35.272 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42706 10 6452 1 2025-11-29 14:28:26.128 00:00:10.361 TCP 23.104.0.1:52766 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:28:35.483 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:59486 10 6452 1 2025-11-29 14:25:05.376 00:05:04.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:25:05.375 00:05:04.735 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:29:41.055 00:00:00.032 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:29:26.526 00:00:10.370 TCP 23.104.0.1:51742 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:29:40.884 00:00:00.016 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:29:35.706 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54568 10 6452 1 2025-11-29 14:30:26.931 00:00:10.380 TCP 23.104.0.1:58882 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:30:35.925 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:43790 10 6452 1 2025-11-29 14:31:27.353 00:00:10.362 TCP 23.104.0.1:45462 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:31:36.155 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:58704 10 6452 1 2025-11-29 14:32:27.753 00:00:10.385 TCP 23.104.0.1:56652 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:32:36.327 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43728 10 6452 1 2025-11-29 14:33:28.177 00:00:10.577 TCP 23.104.0.1:36774 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:33:36.539 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41758 10 6452 1 2025-11-29 14:34:41.292 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:34:40.908 00:00:00.031 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:34:28.799 00:00:10.332 TCP 23.104.0.1:51026 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:34:36.755 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44480 10 6452 1 2025-11-29 14:31:05.379 00:05:04.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:31:05.377 00:05:04.736 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:35:29.172 00:00:10.367 TCP 23.104.0.1:50876 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:35:36.970 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:54058 10 6452 1 2025-11-29 14:36:29.576 00:00:10.325 TCP 23.104.0.1:49432 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:36:37.200 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:43444 10 6452 1 2025-11-29 14:37:29.941 00:00:10.376 TCP 23.104.0.1:37292 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:37:37.418 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37930 10 6452 1 2025-11-29 14:38:30.357 00:00:10.320 TCP 23.104.0.1:35882 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:38:37.640 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43446 10 6452 1 2025-11-29 14:39:41.195 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:39:41.292 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:39:30.715 00:00:10.324 TCP 23.104.0.1:54502 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:39:37.855 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40092 10 6452 1 2025-11-29 14:40:31.104 00:00:10.379 TCP 23.104.0.1:43796 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:40:38.081 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51002 10 6452 1 2025-11-29 14:37:05.379 00:05:04.735 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:37:05.381 00:05:04.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:41:31.534 00:00:10.368 TCP 23.104.0.1:47460 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:41:38.291 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40868 10 6452 1 2025-11-29 14:42:31.949 00:00:10.368 TCP 23.104.0.1:41682 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:42:38.504 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:50836 10 6452 1 2025-11-29 14:43:32.357 00:00:10.325 TCP 23.104.0.1:43318 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:43:38.671 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36070 10 6452 1 2025-11-29 14:44:41.190 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:44:41.449 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:44:32.720 00:00:10.369 TCP 23.104.0.1:38906 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:44:38.891 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41922 10 6452 1 2025-11-29 14:45:33.131 00:00:10.367 TCP 23.104.0.1:33938 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:45:39.105 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:37666 10 6452 1 2025-11-29 14:46:33.534 00:00:10.413 TCP 23.104.0.1:45534 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:46:39.360 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:48624 10 6452 1 2025-11-29 14:43:05.387 00:05:04.730 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:43:05.387 00:05:04.725 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:47:33.986 00:00:10.362 TCP 23.104.0.1:54354 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:47:39.573 00:00:11.464 TCP 1.101.0.1:3000 -> 22.102.0.1:57078 10 6452 1 2025-11-29 14:48:34.392 00:00:10.365 TCP 23.104.0.1:41202 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:48:41.093 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:59806 10 6452 1 2025-11-29 14:49:41.433 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:49:41.345 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:49:34.795 00:00:10.370 TCP 23.104.0.1:52068 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:49:41.277 00:00:10.878 TCP 1.101.0.1:3000 -> 22.102.0.1:39234 10 6452 1 2025-11-29 14:50:35.202 00:00:10.365 TCP 23.104.0.1:38840 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:50:42.197 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57714 10 6452 1 2025-11-29 14:51:35.599 00:00:10.379 TCP 23.104.0.1:58430 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:51:42.410 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49490 10 6452 1 2025-11-29 14:52:36.006 00:00:10.328 TCP 23.104.0.1:44494 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:52:42.622 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60918 10 6452 1 2025-11-29 14:49:05.384 00:05:04.732 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:49:05.388 00:05:04.726 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:53:36.372 00:00:10.365 TCP 23.104.0.1:56652 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:53:42.835 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:43754 10 6452 1 2025-11-29 14:54:41.443 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:54:41.495 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:54:36.774 00:00:10.366 TCP 23.104.0.1:55978 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:54:43.087 00:00:10.232 TCP 1.101.0.1:3000 -> 22.102.0.1:50982 11 6504 1 2025-11-29 14:55:37.181 00:00:10.326 TCP 23.104.0.1:57170 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:55:43.368 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55840 10 6452 1 2025-11-29 14:56:37.542 00:00:10.367 TCP 23.104.0.1:46500 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:56:43.590 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:35712 10 6452 1 2025-11-29 14:57:37.946 00:00:10.371 TCP 23.104.0.1:43062 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:57:43.760 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43058 10 6452 1 2025-11-29 14:58:38.358 00:00:10.362 TCP 23.104.0.1:52468 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 491948, total packets: 1563, avg bps: 1029, avg pps: 0, avg bpp: 314 Time window: 2025-11-29 13:55:05 - 2025-11-29 14:58:48 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0041s User: 0.0008s Wall: 0.0016s flows/second: 101434.9 Runtime: 0.0016s