Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 07:59:00.069 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41746 10 6452 1 2025-11-30 07:55:05.666 00:05:04.778 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 07:55:05.669 00:05:04.773 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 07:59:19.374 00:00:10.367 TCP 23.104.0.1:46344 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:00:01.673 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:00:02.047 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:00:00.279 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48164 10 6452 1 2025-11-30 08:00:19.784 00:00:10.363 TCP 23.104.0.1:60040 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:01:00.496 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:33298 10 6452 1 2025-11-30 08:01:20.188 00:00:10.363 TCP 23.104.0.1:38314 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:02:00.670 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:58444 10 6452 1 2025-11-30 08:02:20.591 00:00:10.363 TCP 23.104.0.1:47298 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:03:00.841 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:54798 10 6452 1 2025-11-30 08:03:20.996 00:00:10.318 TCP 23.104.0.1:59530 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:04:01.078 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48226 10 6452 1 2025-11-30 08:04:21.355 00:00:10.368 TCP 23.104.0.1:52850 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:05:02.238 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:05:02.182 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:01:05.671 00:05:04.772 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 08:05:01.293 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35752 10 6452 1 2025-11-30 08:01:05.668 00:05:04.778 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 08:05:21.758 00:00:10.379 TCP 23.104.0.1:43786 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:06:01.509 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45268 10 6452 1 2025-11-30 08:06:22.174 00:00:10.364 TCP 23.104.0.1:34992 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:07:01.727 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:47274 10 6452 1 2025-11-30 08:07:22.573 00:00:11.143 TCP 23.104.0.1:54460 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:08:01.960 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42620 13 6608 1 2025-11-30 08:08:23.754 00:00:10.388 TCP 23.104.0.1:56690 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:09:02.178 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:46746 10 6452 1 2025-11-30 08:09:24.179 00:00:10.365 TCP 23.104.0.1:56270 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:10:02.456 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:10:02.400 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:10:02.362 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:53338 10 6452 1 2025-11-30 08:10:24.582 00:00:10.365 TCP 23.104.0.1:56130 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:07:05.672 00:05:04.773 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 08:07:05.669 00:05:04.779 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 08:11:02.531 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39490 10 6452 1 2025-11-30 08:11:24.986 00:00:10.364 TCP 23.104.0.1:37786 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:12:02.750 00:00:10.375 TCP 1.101.0.1:3000 -> 22.102.0.1:56800 10 6452 1 2025-11-30 08:12:25.396 00:00:10.364 TCP 23.104.0.1:46490 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:13:03.166 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56468 10 6452 1 2025-11-30 08:13:25.800 00:00:10.375 TCP 23.104.0.1:57266 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:14:03.386 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48306 10 6452 1 2025-11-30 08:14:26.217 00:00:10.362 TCP 23.104.0.1:40058 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:15:02.543 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:15:02.271 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:15:03.598 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35946 10 6452 1 2025-11-30 08:15:26.619 00:00:10.365 TCP 23.104.0.1:50142 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:16:03.815 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36288 10 6452 1 2025-11-30 08:16:27.023 00:00:10.363 TCP 23.104.0.1:60768 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:13:05.673 00:05:04.775 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 08:13:05.670 00:05:04.780 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 08:17:04.040 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:57838 10 6452 1 2025-11-30 08:17:27.427 00:00:10.713 TCP 23.104.0.1:57376 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:18:04.249 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:37338 10 6452 1 2025-11-30 08:18:28.178 00:00:10.362 TCP 23.104.0.1:41724 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:19:04.479 00:00:10.414 TCP 1.101.0.1:3000 -> 22.102.0.1:45618 10 6452 1 2025-11-30 08:19:28.581 00:00:10.364 TCP 23.104.0.1:58550 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:20:02.408 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:20:02.239 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:20:04.933 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:56678 10 6452 1 2025-11-30 08:20:28.982 00:00:10.366 TCP 23.104.0.1:36534 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:21:05.189 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43988 10 6452 1 2025-11-30 08:21:29.393 00:00:10.364 TCP 23.104.0.1:47228 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:22:05.406 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39682 10 6452 1 2025-11-30 08:22:29.794 00:00:10.365 TCP 23.104.0.1:58914 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:19:05.671 00:05:04.780 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 08:19:05.675 00:05:04.775 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 08:23:05.632 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:40826 10 6452 1 2025-11-30 08:23:30.197 00:00:10.325 TCP 23.104.0.1:34102 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:24:05.809 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50744 10 6452 1 2025-11-30 08:24:30.562 00:00:10.380 TCP 23.104.0.1:36372 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:25:02.754 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:25:02.630 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:25:06.026 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41958 10 6452 1 2025-11-30 08:25:30.982 00:00:10.376 TCP 23.104.0.1:53320 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:26:06.237 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46546 10 6452 1 2025-11-30 08:26:31.402 00:00:10.341 TCP 23.104.0.1:56858 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:27:06.449 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47400 10 6452 1 2025-11-30 08:27:31.789 00:00:10.365 TCP 23.104.0.1:54226 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:28:06.663 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37070 10 6452 1 2025-11-30 08:28:32.199 00:00:10.362 TCP 23.104.0.1:60320 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:25:05.672 00:05:04.780 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 08:25:05.675 00:05:04.775 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 08:29:06.876 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:41714 10 6452 1 2025-11-30 08:29:32.604 00:00:10.363 TCP 23.104.0.1:35190 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:30:02.660 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:30:02.843 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:30:07.084 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:53302 10 6452 1 2025-11-30 08:30:33.011 00:00:14.570 TCP 23.104.0.1:33082 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:31:07.266 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36964 10 6452 1 2025-11-30 08:31:37.659 00:00:10.326 TCP 23.104.0.1:36682 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:32:07.482 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:55902 10 6452 1 2025-11-30 08:32:38.032 00:00:10.378 TCP 23.104.0.1:41528 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:33:07.705 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50706 10 6452 1 2025-11-30 08:33:38.448 00:00:10.327 TCP 23.104.0.1:34636 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:34:07.919 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33866 10 6452 1 2025-11-30 08:34:38.812 00:00:10.364 TCP 23.104.0.1:53730 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:35:02.738 00:00:00.029 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:35:02.798 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:31:05.681 00:05:04.772 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 08:31:05.678 00:05:04.777 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 08:35:08.130 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:33380 10 6452 1 2025-11-30 08:35:39.218 00:00:10.323 TCP 23.104.0.1:34256 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:36:08.338 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33166 10 6452 1 2025-11-30 08:36:39.580 00:00:10.326 TCP 23.104.0.1:45400 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:37:08.551 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47802 10 6452 1 2025-11-30 08:37:39.943 00:00:10.371 TCP 23.104.0.1:46134 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:38:08.762 00:00:10.524 TCP 1.101.0.1:3000 -> 22.102.0.1:56696 10 6452 1 2025-11-30 08:38:40.351 00:00:10.325 TCP 23.104.0.1:34836 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:39:09.321 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:51238 10 6452 1 2025-11-30 08:39:40.716 00:00:10.328 TCP 23.104.0.1:37148 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:40:02.950 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:40:02.931 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:40:09.501 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41200 10 6452 1 2025-11-30 08:40:41.107 00:00:10.362 TCP 23.104.0.1:51266 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:37:05.680 00:05:04.773 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 08:37:05.678 00:05:04.778 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 08:41:09.715 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48734 10 6452 1 2025-11-30 08:41:41.513 00:00:10.969 TCP 23.104.0.1:34742 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:42:09.938 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:51694 10 6452 1 2025-11-30 08:42:42.515 00:00:10.370 TCP 23.104.0.1:33836 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:43:10.184 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:39448 10 6452 1 2025-11-30 08:43:42.921 00:00:10.387 TCP 23.104.0.1:48220 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:44:10.407 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52418 10 6452 1 2025-11-30 08:44:43.350 00:00:10.327 TCP 23.104.0.1:35122 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:45:03.161 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:45:02.912 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:45:10.620 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56960 10 6452 1 2025-11-30 08:45:43.718 00:00:10.372 TCP 23.104.0.1:59410 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:46:10.837 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:43784 10 6452 1 2025-11-30 08:46:44.129 00:00:10.366 TCP 23.104.0.1:50586 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:43:05.681 00:05:04.772 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 08:43:05.678 00:05:04.778 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 08:47:11.075 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43602 10 6452 1 2025-11-30 08:47:44.535 00:00:10.365 TCP 23.104.0.1:41124 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:48:11.304 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47106 10 6452 1 2025-11-30 08:48:44.941 00:00:10.333 TCP 23.104.0.1:34054 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:49:11.510 00:00:10.771 TCP 1.101.0.1:3000 -> 22.102.0.1:36148 10 6452 1 2025-11-30 08:49:45.316 00:00:10.327 TCP 23.104.0.1:48684 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:50:02.900 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:50:03.042 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:50:12.323 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:49476 10 6452 1 2025-11-30 08:50:45.684 00:00:10.372 TCP 23.104.0.1:60078 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:51:12.493 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33242 10 6452 1 2025-11-30 08:51:46.116 00:00:10.365 TCP 23.104.0.1:47844 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:52:12.711 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:41748 10 6452 1 2025-11-30 08:52:46.524 00:00:10.753 TCP 23.104.0.1:40898 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:49:05.680 00:05:04.780 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-30 08:49:05.683 00:05:04.775 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-30 08:53:12.915 00:00:10.229 TCP 1.101.0.1:3000 -> 22.102.0.1:58040 10 6452 1 2025-11-30 08:53:47.314 00:00:10.331 TCP 23.104.0.1:48768 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:54:13.190 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:44784 10 6452 1 2025-11-30 08:54:47.679 00:00:10.369 TCP 23.104.0.1:50166 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:55:03.131 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-30 08:55:03.224 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-30 08:55:13.358 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54798 10 6452 1 2025-11-30 08:55:48.105 00:00:10.362 TCP 23.104.0.1:59858 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:56:13.573 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58412 10 6452 1 2025-11-30 08:56:48.502 00:00:10.369 TCP 23.104.0.1:38672 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:57:13.798 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:43712 10 6452 1 2025-11-30 08:57:48.914 00:00:10.333 TCP 23.104.0.1:54646 -> 1.101.0.1:3000 11 1507 1 2025-11-30 08:58:14.040 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52442 10 6452 1 Summary: total flows: 163, total bytes: 496997, total packets: 1564, avg bps: 1046, avg pps: 0, avg bpp: 317 Time window: 2025-11-30 07:55:05 - 2025-11-30 08:58:24 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0047s User: 0.0008s Wall: 0.0052s flows/second: 31407.2 Runtime: 0.0052s