Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-25 10:58:50.635 00:00:10.368 TCP 23.104.0.1:59492 -> 1.101.0.1:3000 11 1507 1 2025-07-25 10:59:37.619 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42072 10 6438 1 2025-07-25 10:59:51.035 00:00:10.361 TCP 23.104.0.1:60552 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:00:37.832 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36192 10 6438 1 2025-07-25 11:00:51.434 00:00:10.362 TCP 23.104.0.1:59300 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:01:38.072 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:43788 10 6438 1 2025-07-25 11:01:51.842 00:00:10.379 TCP 23.104.0.1:47634 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:02:38.299 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:41214 10 6438 1 2025-07-25 10:58:00.818 00:06:00.173 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 11:02:52.256 00:00:10.320 TCP 23.104.0.1:38424 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:03:19.498 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:03:19.428 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:03:38.475 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:55882 10 6438 1 2025-07-25 11:03:52.618 00:00:10.363 TCP 23.104.0.1:41528 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:04:38.648 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:45568 10 6438 1 2025-07-25 11:00:00.816 00:06:00.178 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 11:04:53.020 00:00:10.325 TCP 23.104.0.1:38130 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:05:38.857 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:48614 10 6438 1 2025-07-25 11:05:53.383 00:00:10.370 TCP 23.104.0.1:60144 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:06:39.090 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50616 10 6438 1 2025-07-25 11:06:53.789 00:00:10.368 TCP 23.104.0.1:35576 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:07:39.304 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48100 10 6438 1 2025-07-25 11:07:54.193 00:00:10.366 TCP 23.104.0.1:60832 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:08:19.651 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:08:19.560 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:08:39.520 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54240 10 6438 1 2025-07-25 11:08:54.598 00:00:10.323 TCP 23.104.0.1:36306 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:09:39.732 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47860 10 6438 1 2025-07-25 11:05:00.820 00:06:00.176 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 11:09:54.959 00:00:10.329 TCP 23.104.0.1:38190 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:10:39.947 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:43218 10 6438 1 2025-07-25 11:10:55.326 00:00:10.370 TCP 23.104.0.1:57994 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:11:40.131 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55424 10 6438 1 2025-07-25 11:07:00.817 00:06:00.181 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 11:11:55.744 00:00:10.370 TCP 23.104.0.1:51588 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:12:40.346 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57042 10 6438 1 2025-07-25 11:12:56.149 00:00:10.325 TCP 23.104.0.1:38188 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:13:19.741 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:13:19.712 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:13:40.561 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:39854 10 6438 1 2025-07-25 11:13:56.515 00:00:10.407 TCP 23.104.0.1:36868 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:14:40.735 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51088 10 6438 1 2025-07-25 11:14:56.962 00:00:10.368 TCP 23.104.0.1:60856 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:15:40.945 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:60282 10 6438 1 2025-07-25 11:15:57.366 00:00:10.370 TCP 23.104.0.1:39906 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:16:41.139 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:36228 10 6438 1 2025-07-25 11:12:00.820 00:06:00.179 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 11:16:57.779 00:00:10.365 TCP 23.104.0.1:39376 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:17:41.312 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47754 10 6438 1 2025-07-25 11:14:00.819 00:05:00.184 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-07-25 11:17:58.189 00:00:10.365 TCP 23.104.0.1:45114 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:18:19.954 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:18:19.786 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:18:41.533 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55264 10 6438 1 2025-07-25 11:18:58.594 00:00:10.384 TCP 23.104.0.1:34830 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:19:41.745 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45806 10 6438 1 2025-07-25 11:19:59.012 00:00:10.374 TCP 23.104.0.1:37910 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:20:41.959 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:33874 10 6438 1 2025-07-25 11:20:59.427 00:00:10.375 TCP 23.104.0.1:53804 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:21:42.188 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54142 10 6438 1 2025-07-25 11:21:59.849 00:00:10.386 TCP 23.104.0.1:36250 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:22:42.401 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:60316 10 6438 1 2025-07-25 11:19:00.821 00:05:00.180 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-07-25 11:23:00.277 00:00:10.361 TCP 23.104.0.1:54504 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:23:20.044 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:23:19.860 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:23:42.573 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37810 10 6438 1 2025-07-25 11:20:00.820 00:05:00.185 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-07-25 11:24:00.676 00:00:10.326 TCP 23.104.0.1:55144 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:24:42.785 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35680 10 6438 1 2025-07-25 11:25:01.036 00:00:10.368 TCP 23.104.0.1:42450 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:25:42.995 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38326 10 6438 1 2025-07-25 11:26:01.443 00:00:10.365 TCP 23.104.0.1:46458 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:26:43.217 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52952 10 6438 1 2025-07-25 11:27:01.843 00:00:10.391 TCP 23.104.0.1:52772 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:27:43.431 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48800 10 6438 1 2025-07-25 11:28:02.268 00:00:10.370 TCP 23.104.0.1:35732 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:28:19.846 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:28:19.997 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:28:43.611 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40562 10 6438 1 2025-07-25 11:25:00.822 00:05:00.202 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-07-25 11:29:02.673 00:00:10.370 TCP 23.104.0.1:60202 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:29:43.837 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:44598 10 6438 1 2025-07-25 11:26:00.821 00:05:00.211 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-07-25 11:30:03.099 00:00:10.330 TCP 23.104.0.1:54302 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:30:44.088 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43236 10 6438 1 2025-07-25 11:31:03.467 00:00:10.322 TCP 23.104.0.1:59040 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:31:44.315 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:59186 10 6438 1 2025-07-25 11:32:03.826 00:00:10.366 TCP 23.104.0.1:38290 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:32:44.537 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48532 10 6438 1 2025-07-25 11:33:04.233 00:00:10.363 TCP 23.104.0.1:44828 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:33:20.555 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:33:20.461 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:33:44.755 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59066 10 6438 1 2025-07-25 11:34:04.637 00:00:10.372 TCP 23.104.0.1:44960 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:34:44.970 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:52258 10 6438 1 2025-07-25 11:31:00.824 00:05:00.211 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-07-25 11:35:05.044 00:00:10.360 TCP 23.104.0.1:41736 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:35:45.209 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:57252 10 6438 1 2025-07-25 11:32:00.822 00:05:00.242 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-07-25 11:36:05.441 00:00:10.366 TCP 23.104.0.1:58494 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:36:45.379 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38974 10 6438 1 2025-07-25 11:37:05.844 00:00:10.382 TCP 23.104.0.1:47816 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:37:45.593 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58066 10 6438 1 2025-07-25 11:38:06.257 00:00:10.364 TCP 23.104.0.1:50608 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:38:20.227 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:38:20.161 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:38:45.809 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59844 10 6438 1 2025-07-25 11:39:06.660 00:00:10.366 TCP 23.104.0.1:50870 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:39:46.030 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44348 10 6438 1 2025-07-25 11:40:07.098 00:00:10.363 TCP 23.104.0.1:48422 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:40:46.240 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40884 10 6438 1 2025-07-25 11:37:00.825 00:05:00.240 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-07-25 11:41:07.501 00:00:10.361 TCP 23.104.0.1:43506 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:41:46.454 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:38634 10 6438 1 2025-07-25 11:38:00.822 00:05:00.246 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-07-25 11:42:07.904 00:00:10.369 TCP 23.104.0.1:34490 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:42:46.626 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:58036 10 6438 1 2025-07-25 11:43:20.301 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:43:08.315 00:00:10.320 TCP 23.104.0.1:34652 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:43:20.529 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:43:46.854 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46146 10 6438 1 2025-07-25 11:44:08.676 00:00:10.322 TCP 23.104.0.1:38978 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:44:47.075 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49234 10 6438 1 2025-07-25 11:45:09.034 00:00:10.382 TCP 23.104.0.1:36384 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:45:47.285 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35254 10 6438 1 2025-07-25 11:46:09.459 00:00:10.338 TCP 23.104.0.1:52538 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:46:47.499 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59520 10 6438 1 2025-07-25 11:43:00.825 00:05:00.239 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-07-25 11:47:09.848 00:00:10.387 TCP 23.104.0.1:58846 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:44:00.825 00:05:00.244 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-07-25 11:47:47.715 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41270 10 6438 1 2025-07-25 11:48:10.270 00:00:10.325 TCP 23.104.0.1:60550 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:48:20.173 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:48:20.319 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:48:47.928 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:35540 10 6438 1 2025-07-25 11:49:10.641 00:00:10.372 TCP 23.104.0.1:50344 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:49:48.118 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:33110 10 6438 1 2025-07-25 11:50:11.058 00:00:10.367 TCP 23.104.0.1:54294 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:50:48.323 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41898 10 6438 1 2025-07-25 11:51:11.467 00:00:10.360 TCP 23.104.0.1:39934 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:51:48.532 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55274 10 6438 1 2025-07-25 11:52:11.868 00:00:10.369 TCP 23.104.0.1:33114 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:52:48.751 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:52938 10 6438 1 2025-07-25 11:49:00.826 00:05:00.240 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-07-25 11:53:21.332 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:53:21.311 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:53:12.272 00:00:10.360 TCP 23.104.0.1:45454 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:50:00.823 00:05:00.245 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-07-25 11:53:48.935 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:52292 10 6438 1 2025-07-25 11:54:12.673 00:00:10.361 TCP 23.104.0.1:53858 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:54:49.170 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41340 10 6438 1 2025-07-25 11:55:13.106 00:00:10.365 TCP 23.104.0.1:42722 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:55:49.384 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33458 10 6438 1 2025-07-25 11:56:13.505 00:00:10.370 TCP 23.104.0.1:41290 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:56:49.598 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59798 10 6438 1 2025-07-25 11:57:13.910 00:00:10.363 TCP 23.104.0.1:42400 -> 1.101.0.1:3000 11 1507 1 2025-07-25 11:57:49.812 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:44052 10 6438 1 2025-07-25 11:58:20.420 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 11:58:20.450 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 11:58:14.315 00:00:10.364 TCP 23.104.0.1:41714 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 490209, total packets: 1548, avg bps: 1082, avg pps: 0, avg bpp: 316 Time window: 2025-07-25 10:58:00 - 2025-07-25 11:58:24 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0027s User: 0.0013s Wall: 0.0026s flows/second: 61400.5 Runtime: 0.0026s