Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-20 03:58:46.711 00:00:10.438 TCP 23.104.0.1:44998 -> 1.101.0.1:3000 15 1925 1 2025-07-20 03:59:41.751 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:55744 10 6438 1 2025-07-20 03:59:47.190 00:00:10.364 TCP 23.104.0.1:43502 -> 1.101.0.1:3000 11 1507 1 2025-07-20 03:54:58.326 00:06:00.177 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-20 04:00:46.803 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:00:46.608 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:00:41.926 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:38028 10 6438 1 2025-07-20 04:00:47.587 00:00:10.368 TCP 23.104.0.1:57496 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:01:42.127 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53976 10 6438 1 2025-07-20 04:01:47.993 00:00:10.363 TCP 23.104.0.1:59806 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:02:42.342 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50678 10 6438 1 2025-07-20 04:02:48.393 00:00:10.367 TCP 23.104.0.1:44014 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:03:42.563 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44254 10 6438 1 2025-07-20 04:03:48.802 00:00:10.333 TCP 23.104.0.1:48514 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:04:42.772 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53190 10 6438 1 2025-07-20 04:04:49.173 00:00:10.366 TCP 23.104.0.1:39806 -> 1.101.0.1:3000 11 1507 1 2025-07-20 03:59:58.318 00:06:00.186 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-20 04:05:46.773 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:05:46.646 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:05:42.984 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:36174 10 6438 1 2025-07-20 04:05:49.581 00:00:10.364 TCP 23.104.0.1:45544 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:06:43.173 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35126 10 6438 1 2025-07-20 04:06:49.983 00:00:10.329 TCP 23.104.0.1:35780 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:01:58.317 00:06:00.192 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-20 04:07:43.392 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39444 10 6438 1 2025-07-20 04:07:50.348 00:00:10.362 TCP 23.104.0.1:36112 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:08:43.603 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56868 10 6438 1 2025-07-20 04:08:50.756 00:00:10.382 TCP 23.104.0.1:45258 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:09:43.819 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40628 10 6438 1 2025-07-20 04:09:51.174 00:00:10.364 TCP 23.104.0.1:57898 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:10:46.643 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:10:47.111 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:10:44.062 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36888 10 6438 1 2025-07-20 04:10:51.575 00:00:10.369 TCP 23.104.0.1:44510 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:11:44.276 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34894 10 6438 1 2025-07-20 04:06:58.320 00:06:00.190 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-20 04:11:51.986 00:00:10.321 TCP 23.104.0.1:34646 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:12:44.494 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33964 10 6438 1 2025-07-20 04:12:52.342 00:00:10.327 TCP 23.104.0.1:45518 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:13:44.706 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59694 10 6438 1 2025-07-20 04:08:58.317 00:06:00.196 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-20 04:13:52.705 00:00:10.364 TCP 23.104.0.1:45026 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:14:44.919 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:44258 10 6438 1 2025-07-20 04:14:53.109 00:00:10.366 TCP 23.104.0.1:47344 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:15:46.907 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:15:47.041 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:15:45.155 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:37978 10 6438 1 2025-07-20 04:15:53.512 00:00:10.328 TCP 23.104.0.1:51814 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:16:45.325 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33120 10 6438 1 2025-07-20 04:16:53.880 00:00:10.374 TCP 23.104.0.1:57078 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:17:45.540 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59324 10 6438 1 2025-07-20 04:17:54.296 00:00:10.369 TCP 23.104.0.1:43448 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:18:45.758 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38748 10 6438 1 2025-07-20 04:13:58.321 00:06:00.192 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-20 04:18:54.708 00:00:10.369 TCP 23.104.0.1:53688 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:19:45.970 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:36618 10 6438 1 2025-07-20 04:19:55.118 00:00:10.372 TCP 23.104.0.1:33138 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:20:46.982 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:20:46.985 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:20:46.198 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51706 10 6438 1 2025-07-20 04:15:58.318 00:06:00.199 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-20 04:20:55.526 00:00:10.328 TCP 23.104.0.1:49528 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:21:46.412 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36178 10 6438 1 2025-07-20 04:21:55.890 00:00:10.372 TCP 23.104.0.1:60132 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:22:46.631 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:40332 10 6438 1 2025-07-20 04:22:56.300 00:00:10.366 TCP 23.104.0.1:48524 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:23:46.816 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58438 10 6438 1 2025-07-20 04:23:56.702 00:00:10.452 TCP 23.104.0.1:59804 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:24:47.041 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60946 10 6438 1 2025-07-20 04:24:57.195 00:00:10.359 TCP 23.104.0.1:57686 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:25:46.710 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:25:47.127 00:00:00.030 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:25:47.258 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42918 10 6438 1 2025-07-20 04:20:58.324 00:06:00.191 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-20 04:25:57.597 00:00:10.366 TCP 23.104.0.1:46030 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:26:47.472 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51144 10 6438 1 2025-07-20 04:26:58.005 00:00:10.318 TCP 23.104.0.1:44384 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:22:58.323 00:06:00.195 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-20 04:27:47.682 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:33526 10 6438 1 2025-07-20 04:27:58.365 00:00:10.364 TCP 23.104.0.1:49014 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:28:47.889 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:55984 10 6438 1 2025-07-20 04:28:58.765 00:00:10.366 TCP 23.104.0.1:41622 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:29:48.080 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43064 10 6438 1 2025-07-20 04:29:59.171 00:00:10.366 TCP 23.104.0.1:45368 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:30:47.232 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:30:47.191 00:00:00.028 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:30:48.292 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46332 10 6438 1 2025-07-20 04:30:59.578 00:00:10.363 TCP 23.104.0.1:45310 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:31:48.507 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51302 10 6438 1 2025-07-20 04:31:59.980 00:00:10.366 TCP 23.104.0.1:39034 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:32:48.718 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47658 10 6438 1 2025-07-20 04:27:58.328 00:06:00.189 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-20 04:33:00.390 00:00:10.363 TCP 23.104.0.1:34570 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:33:48.928 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:50664 10 6438 1 2025-07-20 04:34:00.791 00:00:10.365 TCP 23.104.0.1:39516 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:34:49.171 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43480 10 6438 1 2025-07-20 04:29:58.326 00:06:00.194 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-20 04:35:01.198 00:00:10.385 TCP 23.104.0.1:38254 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:35:47.248 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:35:47.302 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:35:49.386 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:44360 10 6438 1 2025-07-20 04:36:01.621 00:00:10.364 TCP 23.104.0.1:44008 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:36:49.590 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39236 10 6438 1 2025-07-20 04:37:02.030 00:00:10.367 TCP 23.104.0.1:41034 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:37:49.808 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52016 10 6438 1 2025-07-20 04:38:02.436 00:00:10.362 TCP 23.104.0.1:43660 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:38:50.047 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47510 10 6438 1 2025-07-20 04:39:02.843 00:00:10.379 TCP 23.104.0.1:40182 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:34:58.329 00:06:00.192 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-20 04:39:50.266 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50644 10 6438 1 2025-07-20 04:40:03.261 00:00:10.360 TCP 23.104.0.1:47712 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:40:47.327 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:40:47.257 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:40:50.481 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42978 10 6438 1 2025-07-20 04:41:03.661 00:00:10.364 TCP 23.104.0.1:33982 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:36:58.326 00:06:00.198 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-20 04:41:50.699 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35880 10 6438 1 2025-07-20 04:42:04.081 00:00:10.366 TCP 23.104.0.1:48946 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:42:50.911 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43230 10 6438 1 2025-07-20 04:43:04.487 00:00:10.367 TCP 23.104.0.1:38022 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:43:51.126 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38360 10 6438 1 2025-07-20 04:44:04.894 00:00:10.370 TCP 23.104.0.1:52464 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:44:51.335 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:37220 10 6438 1 2025-07-20 04:45:05.306 00:00:10.364 TCP 23.104.0.1:33386 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:45:47.546 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:45:47.533 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:45:51.504 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52350 10 6438 1 2025-07-20 04:46:05.708 00:00:10.366 TCP 23.104.0.1:50190 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:46:51.718 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51154 10 6438 1 2025-07-20 04:41:58.330 00:06:00.193 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-20 04:47:06.109 00:00:10.364 TCP 23.104.0.1:35222 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:47:51.937 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:59694 10 6438 1 2025-07-20 04:48:06.511 00:00:10.366 TCP 23.104.0.1:48584 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:43:58.327 00:06:00.199 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-20 04:48:52.171 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35574 10 6438 1 2025-07-20 04:49:06.917 00:00:10.363 TCP 23.104.0.1:58468 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:49:52.390 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49320 10 6438 1 2025-07-20 04:50:07.317 00:00:10.366 TCP 23.104.0.1:56638 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:50:47.591 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:50:47.559 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:50:52.603 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39900 10 6438 1 2025-07-20 04:51:07.715 00:00:10.329 TCP 23.104.0.1:52134 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:51:52.819 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59584 10 6438 1 2025-07-20 04:52:08.101 00:00:10.376 TCP 23.104.0.1:48672 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:52:53.049 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34558 10 6438 1 2025-07-20 04:53:08.517 00:00:10.366 TCP 23.104.0.1:47456 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:48:58.331 00:06:00.194 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-20 04:53:53.261 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50434 10 6438 1 2025-07-20 04:54:08.918 00:00:10.385 TCP 23.104.0.1:49262 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:54:53.477 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:58940 10 6438 1 2025-07-20 04:55:09.329 00:00:10.367 TCP 23.104.0.1:42152 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:55:47.766 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-20 04:55:47.936 00:00:00.041 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-20 04:50:58.329 00:06:00.200 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-20 04:55:53.654 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55650 10 6438 1 2025-07-20 04:56:09.731 00:00:10.369 TCP 23.104.0.1:57828 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:56:53.867 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:59724 10 6438 1 2025-07-20 04:57:10.138 00:00:10.328 TCP 23.104.0.1:43108 -> 1.101.0.1:3000 11 1507 1 2025-07-20 04:57:54.114 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47672 10 6438 1 2025-07-20 04:58:10.501 00:00:10.367 TCP 23.104.0.1:45272 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 491365, total packets: 1564, avg bps: 1033, avg pps: 0, avg bpp: 314 Time window: 2025-07-20 03:54:58 - 2025-07-20 04:58:20 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0018s User: 0.0027s Wall: 0.0025s flows/second: 63495.9 Runtime: 0.0025s