Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-04 08:58:46.669 00:00:10.404 TCP 23.104.0.1:50412 -> 1.101.0.1:3000 15 1926 1 2025-08-04 08:54:06.156 00:06:00.285 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-04 08:54:06.153 00:06:00.291 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-04 08:58:57.094 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:53624 12 10365 1 2025-08-04 08:59:47.108 00:00:10.362 TCP 23.104.0.1:47620 -> 1.101.0.1:3000 11 1507 1 2025-08-04 08:59:57.289 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50714 10 6452 1 2025-08-04 09:00:47.509 00:00:10.321 TCP 23.104.0.1:46148 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:00:57.498 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39674 10 6452 1 2025-08-04 09:01:47.868 00:00:10.368 TCP 23.104.0.1:48428 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:01:57.719 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38500 10 6452 1 2025-08-04 09:02:48.275 00:00:10.367 TCP 23.104.0.1:33188 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:03:05.916 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:03:05.919 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:02:57.933 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:50408 10 6452 1 2025-08-04 09:03:48.690 00:00:10.366 TCP 23.104.0.1:60820 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:03:58.169 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60910 10 6452 1 2025-08-04 09:04:49.110 00:00:10.320 TCP 23.104.0.1:32874 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:01:06.161 00:04:00.282 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:01:06.159 00:04:00.287 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:04:58.384 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36110 10 6452 1 2025-08-04 09:05:49.468 00:00:10.369 TCP 23.104.0.1:40546 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:05:58.596 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:54650 10 6452 1 2025-08-04 09:06:49.876 00:00:10.383 TCP 23.104.0.1:35920 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:06:58.826 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42376 10 6452 1 2025-08-04 09:07:50.301 00:00:10.365 TCP 23.104.0.1:44130 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:08:05.958 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:08:06.006 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:07:59.062 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34346 10 6452 1 2025-08-04 09:08:50.709 00:00:10.362 TCP 23.104.0.1:52158 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:08:59.279 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57256 10 6452 1 2025-08-04 09:09:51.121 00:00:10.330 TCP 23.104.0.1:43532 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:06:06.161 00:04:00.283 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:06:06.159 00:04:00.289 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:09:59.488 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45780 10 6452 1 2025-08-04 09:10:51.492 00:00:10.324 TCP 23.104.0.1:39360 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:10:59.698 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41290 10 6452 1 2025-08-04 09:11:51.851 00:00:10.342 TCP 23.104.0.1:36856 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:11:59.911 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36924 10 6452 1 2025-08-04 09:13:06.082 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:12:52.220 00:00:10.363 TCP 23.104.0.1:54704 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:13:06.106 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:13:00.125 00:00:10.311 TCP 1.101.0.1:3000 -> 22.102.0.1:38798 10 6452 1 2025-08-04 09:13:52.621 00:00:10.361 TCP 23.104.0.1:43144 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:14:00.473 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47236 10 6452 1 2025-08-04 09:11:06.161 00:04:00.289 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:11:06.164 00:04:00.284 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:14:53.023 00:00:10.379 TCP 23.104.0.1:57154 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:15:00.682 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51276 10 6452 1 2025-08-04 09:15:53.447 00:00:10.367 TCP 23.104.0.1:60830 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:16:00.910 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:59074 10 6452 1 2025-08-04 09:16:53.856 00:00:10.377 TCP 23.104.0.1:33558 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:17:01.101 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43018 10 6452 1 2025-08-04 09:18:06.263 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:17:54.269 00:00:10.369 TCP 23.104.0.1:44074 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:18:06.388 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:18:01.274 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:54142 10 6452 1 2025-08-04 09:18:54.676 00:00:10.372 TCP 23.104.0.1:57940 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:19:01.446 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47766 10 6452 1 2025-08-04 09:19:55.104 00:00:10.366 TCP 23.104.0.1:55940 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:16:06.163 00:04:00.284 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:16:06.160 00:04:00.289 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:20:01.655 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36320 10 6452 1 2025-08-04 09:20:55.509 00:00:10.366 TCP 23.104.0.1:60838 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:21:01.870 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46578 10 6452 1 2025-08-04 09:21:55.913 00:00:10.387 TCP 23.104.0.1:58580 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:22:02.089 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52342 10 6452 1 2025-08-04 09:23:06.213 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:22:56.339 00:00:10.366 TCP 23.104.0.1:33022 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:23:06.210 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:23:02.303 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55518 10 6452 1 2025-08-04 09:23:56.760 00:00:10.381 TCP 23.104.0.1:45730 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:24:02.516 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53084 10 6452 1 2025-08-04 09:21:06.169 00:04:00.286 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:21:06.172 00:04:00.280 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:24:57.176 00:00:10.367 TCP 23.104.0.1:55210 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:25:02.742 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42486 10 6452 1 2025-08-04 09:25:57.576 00:00:10.366 TCP 23.104.0.1:60678 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:26:02.955 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:43018 12 6556 1 2025-08-04 09:26:57.983 00:00:10.328 TCP 23.104.0.1:53054 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:27:03.203 00:00:10.477 TCP 1.101.0.1:3000 -> 22.102.0.1:50772 11 6504 1 2025-08-04 09:28:06.218 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:28:06.501 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:27:58.354 00:00:10.361 TCP 23.104.0.1:46476 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:28:03.720 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:47748 10 6452 1 2025-08-04 09:28:58.752 00:00:10.367 TCP 23.104.0.1:54760 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:29:03.932 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:34116 10 6452 1 2025-08-04 09:29:59.161 00:00:10.370 TCP 23.104.0.1:47786 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:30:04.182 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:39814 10 6452 1 2025-08-04 09:26:06.173 00:06:00.278 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-04 09:26:06.169 00:06:00.283 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-04 09:30:59.565 00:00:10.365 TCP 23.104.0.1:47932 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:31:04.351 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51464 10 6452 1 2025-08-04 09:31:59.965 00:00:10.369 TCP 23.104.0.1:57954 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:32:04.560 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38766 10 6452 1 2025-08-04 09:33:06.602 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:33:06.615 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:33:00.374 00:00:10.365 TCP 23.104.0.1:41594 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:33:04.772 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42192 10 6452 1 2025-08-04 09:34:00.775 00:00:10.325 TCP 23.104.0.1:47024 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:34:04.987 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:36318 10 6452 1 2025-08-04 09:35:01.140 00:00:10.363 TCP 23.104.0.1:50724 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:35:05.212 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47190 10 6452 1 2025-08-04 09:36:01.546 00:00:10.363 TCP 23.104.0.1:46524 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:36:05.434 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49770 10 6452 1 2025-08-04 09:33:06.173 00:04:00.281 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:33:06.172 00:04:00.291 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:37:05.645 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42716 10 6452 1 2025-08-04 09:37:01.950 00:00:10.371 TCP 23.104.0.1:49090 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:38:06.575 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:38:06.677 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:38:02.358 00:00:10.363 TCP 23.104.0.1:51634 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:38:05.875 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:58612 10 6452 1 2025-08-04 09:39:06.067 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44778 10 6452 1 2025-08-04 09:39:02.763 00:00:10.383 TCP 23.104.0.1:39700 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:40:03.186 00:00:10.394 TCP 23.104.0.1:49780 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:40:06.284 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44744 10 6452 1 2025-08-04 09:41:06.496 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34088 10 6452 1 2025-08-04 09:41:03.619 00:00:10.373 TCP 23.104.0.1:35450 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:38:06.175 00:04:00.282 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:38:06.173 00:04:00.287 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:42:04.047 00:00:10.368 TCP 23.104.0.1:49020 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:42:06.720 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42114 10 6452 1 2025-08-04 09:43:06.852 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:43:06.690 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:43:04.450 00:00:10.324 TCP 23.104.0.1:51354 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:43:06.937 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:40112 10 6452 1 2025-08-04 09:44:04.817 00:00:10.368 TCP 23.104.0.1:60690 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:44:07.181 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40254 10 6452 1 2025-08-04 09:45:05.221 00:00:10.362 TCP 23.104.0.1:42956 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:45:07.358 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44896 10 6452 1 2025-08-04 09:46:05.629 00:00:10.375 TCP 23.104.0.1:53520 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:46:07.572 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34844 10 6452 1 2025-08-04 09:43:06.175 00:04:00.282 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:43:06.172 00:04:00.287 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:47:06.050 00:00:10.324 TCP 23.104.0.1:56248 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:47:07.787 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:44374 10 6452 1 2025-08-04 09:48:06.792 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:48:06.715 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:48:06.412 00:00:10.361 TCP 23.104.0.1:36994 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:48:07.994 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:40296 10 6452 1 2025-08-04 09:49:06.810 00:00:10.362 TCP 23.104.0.1:60302 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:49:08.227 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52104 10 6452 1 2025-08-04 09:50:07.212 00:00:10.362 TCP 23.104.0.1:43840 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:50:08.439 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48998 10 6452 1 2025-08-04 09:51:08.651 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53706 10 6452 1 2025-08-04 09:51:07.620 00:00:10.324 TCP 23.104.0.1:38986 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:48:06.178 00:04:00.285 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:48:06.178 00:04:00.280 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:52:07.978 00:00:10.363 TCP 23.104.0.1:33412 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:52:08.867 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44168 10 6452 1 2025-08-04 09:53:06.841 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:53:06.834 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:53:09.083 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57542 10 6452 1 2025-08-04 09:53:08.382 00:00:10.363 TCP 23.104.0.1:58838 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:54:08.779 00:00:10.438 TCP 23.104.0.1:50154 -> 1.101.0.1:3000 15 1926 1 2025-08-04 09:54:09.294 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:33754 12 10367 1 2025-08-04 09:55:09.535 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:43856 10 6452 1 2025-08-04 09:55:09.254 00:00:10.380 TCP 23.104.0.1:33904 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:56:09.669 00:00:10.365 TCP 23.104.0.1:59636 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:56:09.744 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:60972 10 6452 1 2025-08-04 09:53:06.177 00:04:00.307 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 09:53:06.179 00:04:00.303 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 09:57:10.099 00:00:10.376 TCP 23.104.0.1:46552 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:57:09.912 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:46598 10 6452 1 2025-08-04 09:58:06.919 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:58:07.044 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 09:58:10.166 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49432 10 6452 1 2025-08-04 09:58:10.502 00:00:10.366 TCP 23.104.0.1:52266 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 168, total bytes: 508154, total packets: 1603, avg bps: 1054, avg pps: 0, avg bpp: 317 Time window: 2025-08-04 08:54:06 - 2025-08-04 09:58:20 Total flows processed: 168, passed: 168, Blocks skipped: 0, Bytes read: 17536 Sys: 0.0027s User: 0.0018s Wall: 0.0023s flows/second: 72382.4 Runtime: 0.0024s