Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 14:58:43.969 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:54204 10 6452 1 2025-11-29 14:55:05.389 00:05:04.726 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 14:55:05.387 00:05:04.731 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 14:59:41.303 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 14:59:41.520 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 14:59:38.757 00:00:10.341 TCP 23.104.0.1:41798 -> 1.101.0.1:3000 11 1507 1 2025-11-29 14:59:44.216 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:40910 10 6452 1 2025-11-29 15:00:39.138 00:00:10.364 TCP 23.104.0.1:57108 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:00:44.444 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38714 10 6452 1 2025-11-29 15:01:39.557 00:00:10.361 TCP 23.104.0.1:52160 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:01:44.665 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:37448 10 6452 1 2025-11-29 15:02:39.958 00:00:10.361 TCP 23.104.0.1:51706 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:02:44.831 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:40162 10 6452 1 2025-11-29 15:03:40.360 00:00:10.364 TCP 23.104.0.1:45418 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:03:45.081 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41286 10 6452 1 2025-11-29 15:04:41.899 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:04:41.675 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:04:40.758 00:00:10.338 TCP 23.104.0.1:47352 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:04:45.297 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:52482 10 6452 1 2025-11-29 15:01:05.390 00:05:04.729 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 15:01:05.391 00:05:04.725 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 15:05:41.138 00:00:10.368 TCP 23.104.0.1:32876 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:05:45.470 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39414 10 6452 1 2025-11-29 15:06:45.679 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36848 10 6452 1 2025-11-29 15:06:41.556 00:00:10.512 TCP 23.104.0.1:60186 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:07:42.118 00:00:10.326 TCP 23.104.0.1:52490 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:07:45.891 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:39026 10 6452 1 2025-11-29 15:08:42.505 00:00:10.373 TCP 23.104.0.1:40180 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:08:46.116 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:41408 10 6452 1 2025-11-29 15:09:41.778 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:09:41.891 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:09:42.917 00:00:10.387 TCP 23.104.0.1:39858 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:09:46.357 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:37828 10 6452 1 2025-11-29 15:10:43.339 00:00:10.365 TCP 23.104.0.1:36990 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:10:46.528 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:57870 10 6452 1 2025-11-29 15:07:05.390 00:05:04.731 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 15:07:05.393 00:05:04.725 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 15:11:43.752 00:00:10.445 TCP 23.104.0.1:32806 -> 1.101.0.1:3000 15 1926 1 2025-11-29 15:11:46.767 00:00:10.242 TCP 1.101.0.1:3000 -> 22.102.0.1:43296 12 10375 1 2025-11-29 15:12:44.238 00:00:10.366 TCP 23.104.0.1:55806 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:12:47.073 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:46458 10 6452 1 2025-11-29 15:13:44.640 00:00:10.371 TCP 23.104.0.1:35692 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:13:47.253 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:37032 10 6452 1 2025-11-29 15:14:41.954 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:14:41.651 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:14:45.058 00:00:10.317 TCP 23.104.0.1:37692 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:14:47.421 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37426 10 6452 1 2025-11-29 15:15:45.418 00:00:10.373 TCP 23.104.0.1:55148 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:15:47.630 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43756 10 6452 1 2025-11-29 15:16:45.826 00:00:10.388 TCP 23.104.0.1:43486 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:16:47.847 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42170 10 6452 1 2025-11-29 15:13:05.394 00:05:04.726 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 15:13:05.391 00:05:04.731 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 15:17:46.251 00:00:11.733 TCP 23.104.0.1:60538 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:17:48.096 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58380 10 6452 1 2025-11-29 15:18:48.305 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49710 10 6452 1 2025-11-29 15:18:48.019 00:00:10.359 TCP 23.104.0.1:55088 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:19:41.891 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:19:42.042 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:19:48.421 00:00:10.378 TCP 23.104.0.1:36772 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:19:48.520 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:41086 10 6452 1 2025-11-29 15:20:48.835 00:00:10.350 TCP 23.104.0.1:53126 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:20:48.743 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46540 10 6452 1 2025-11-29 15:21:49.228 00:00:10.368 TCP 23.104.0.1:47934 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:21:48.968 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:56056 10 6452 1 2025-11-29 15:22:49.196 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33328 10 6452 1 2025-11-29 15:22:49.633 00:00:10.325 TCP 23.104.0.1:33162 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:19:05.392 00:05:04.731 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 15:19:05.393 00:05:04.727 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 15:23:49.995 00:00:10.371 TCP 23.104.0.1:40742 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:23:49.407 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58338 10 6452 1 2025-11-29 15:24:41.970 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:24:41.981 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:24:50.400 00:00:10.364 TCP 23.104.0.1:58350 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:24:49.619 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:60014 10 6452 1 2025-11-29 15:25:49.793 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:55760 10 6452 1 2025-11-29 15:25:50.802 00:00:10.357 TCP 23.104.0.1:58302 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:26:49.964 00:00:10.543 TCP 1.101.0.1:3000 -> 22.102.0.1:53942 12 6556 1 2025-11-29 15:26:51.202 00:00:10.328 TCP 23.104.0.1:32962 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:27:50.547 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47388 10 6452 1 2025-11-29 15:27:51.564 00:00:10.361 TCP 23.104.0.1:44046 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:28:50.765 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:40782 10 6452 1 2025-11-29 15:28:51.961 00:00:10.366 TCP 23.104.0.1:39500 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:25:05.394 00:05:04.728 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 15:25:05.393 00:05:04.733 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 15:29:42.286 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:29:42.145 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:29:50.987 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55824 10 6452 1 2025-11-29 15:29:52.361 00:00:10.363 TCP 23.104.0.1:57112 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:30:51.201 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:50272 10 6452 1 2025-11-29 15:30:52.770 00:00:10.374 TCP 23.104.0.1:43402 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:31:51.425 00:00:10.262 TCP 1.101.0.1:3000 -> 22.102.0.1:45344 10 6452 1 2025-11-29 15:31:53.182 00:00:10.328 TCP 23.104.0.1:44772 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:32:51.743 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:45626 10 6452 1 2025-11-29 15:32:53.547 00:00:10.368 TCP 23.104.0.1:38162 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:33:51.977 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:56966 10 6452 1 2025-11-29 15:33:53.966 00:00:10.377 TCP 23.104.0.1:45388 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:34:42.290 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:34:42.249 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:34:52.217 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37792 10 6452 1 2025-11-29 15:34:54.384 00:00:10.369 TCP 23.104.0.1:50946 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:31:05.393 00:05:04.734 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 15:31:05.395 00:05:04.728 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 15:35:52.436 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60546 10 6452 1 2025-11-29 15:35:54.792 00:00:10.351 TCP 23.104.0.1:58904 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:36:55.180 00:00:10.853 TCP 23.104.0.1:56248 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:36:52.655 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:34030 10 6452 1 2025-11-29 15:37:56.096 00:00:10.372 TCP 23.104.0.1:49720 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:37:52.876 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:59904 10 6452 1 2025-11-29 15:38:56.503 00:00:10.365 TCP 23.104.0.1:35758 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:38:53.085 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:44788 10 6452 1 2025-11-29 15:39:42.337 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:39:42.480 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:39:53.263 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40722 10 6452 1 2025-11-29 15:39:56.908 00:00:10.366 TCP 23.104.0.1:59608 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:40:53.473 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:57062 10 6452 1 2025-11-29 15:40:57.312 00:00:10.365 TCP 23.104.0.1:44426 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:37:05.398 00:05:04.727 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 15:37:05.395 00:05:04.733 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 15:41:53.708 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:35090 12 10369 1 2025-11-29 15:41:57.718 00:00:10.448 TCP 23.104.0.1:47450 -> 1.101.0.1:3000 15 1926 1 2025-11-29 15:42:53.958 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48860 10 6452 1 2025-11-29 15:42:58.205 00:00:10.371 TCP 23.104.0.1:59966 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:43:54.174 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58754 10 6452 1 2025-11-29 15:43:58.609 00:00:10.326 TCP 23.104.0.1:47104 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:44:42.751 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:44:42.591 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:44:54.389 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34796 10 6452 1 2025-11-29 15:44:58.974 00:00:10.325 TCP 23.104.0.1:57114 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:45:54.618 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48784 10 6452 1 2025-11-29 15:45:59.334 00:00:10.365 TCP 23.104.0.1:52044 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:46:54.845 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:57756 10 6452 1 2025-11-29 15:46:59.737 00:00:10.363 TCP 23.104.0.1:50054 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:43:05.398 00:05:04.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 15:43:05.396 00:05:04.735 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 15:47:55.042 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55134 10 6452 1 2025-11-29 15:48:00.143 00:00:10.363 TCP 23.104.0.1:41142 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:48:55.257 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:54850 10 6452 1 2025-11-29 15:49:00.547 00:00:10.364 TCP 23.104.0.1:52540 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:49:42.663 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:49:42.516 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:49:55.464 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56428 10 6452 1 2025-11-29 15:50:00.946 00:00:10.327 TCP 23.104.0.1:44898 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:50:55.679 00:00:10.580 TCP 1.101.0.1:3000 -> 22.102.0.1:55688 10 6452 1 2025-11-29 15:51:01.312 00:00:10.913 TCP 23.104.0.1:42466 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:51:56.300 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53610 10 6452 1 2025-11-29 15:52:02.265 00:00:10.367 TCP 23.104.0.1:52540 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:52:56.510 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:39104 10 6452 1 2025-11-29 15:49:05.400 00:05:04.732 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 15:49:05.398 00:05:04.737 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 15:53:02.666 00:00:10.332 TCP 23.104.0.1:42040 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:53:56.680 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56476 10 6452 1 2025-11-29 15:54:03.034 00:00:10.367 TCP 23.104.0.1:54642 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:54:42.602 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 15:54:42.749 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 15:54:56.885 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:40832 10 6452 1 2025-11-29 15:55:03.442 00:00:10.365 TCP 23.104.0.1:43218 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:55:57.108 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:60962 10 6452 1 2025-11-29 15:56:03.846 00:00:10.386 TCP 23.104.0.1:56368 -> 1.101.0.1:3000 11 1507 1 2025-11-29 15:56:57.291 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:57710 12 10375 1 2025-11-29 15:57:04.278 00:00:10.439 TCP 23.104.0.1:35842 -> 1.101.0.1:3000 15 1926 1 2025-11-29 15:57:57.540 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60912 10 6452 1 2025-11-29 15:58:04.758 00:00:10.373 TCP 23.104.0.1:47376 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 509965, total packets: 1581, avg bps: 1076, avg pps: 0, avg bpp: 322 Time window: 2025-11-29 14:55:05 - 2025-11-29 15:58:15 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0048s User: 0.0010s Wall: 0.0026s flows/second: 63250.2 Runtime: 0.0026s