Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 11:59:30.714 00:00:10.322 TCP 23.104.0.1:43004 -> 1.101.0.1:3000 11 1507 1 2025-08-09 11:59:40.192 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36980 10 6452 1 2025-08-09 11:56:08.609 00:05:00.806 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:00:33.903 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:00:33.888 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:00:31.107 00:00:10.367 TCP 23.104.0.1:57468 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:00:40.406 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40968 10 6452 1 2025-08-09 11:57:08.612 00:05:00.802 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:01:31.514 00:00:10.324 TCP 23.104.0.1:59376 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:01:40.624 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48208 10 6452 1 2025-08-09 12:02:31.882 00:00:10.382 TCP 23.104.0.1:57774 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:02:40.842 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43850 10 6452 1 2025-08-09 12:03:32.301 00:00:10.322 TCP 23.104.0.1:58908 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:03:41.074 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59974 10 6452 1 2025-08-09 12:04:32.666 00:00:10.369 TCP 23.104.0.1:33722 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:04:41.289 00:00:10.568 TCP 1.101.0.1:3000 -> 22.102.0.1:36314 10 6452 1 2025-08-09 12:05:34.468 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:05:34.402 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:05:33.094 00:00:10.324 TCP 23.104.0.1:44562 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:05:41.900 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48006 10 6452 1 2025-08-09 12:02:08.611 00:05:00.807 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:06:33.461 00:00:10.361 TCP 23.104.0.1:59268 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:06:42.113 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58114 10 6452 1 2025-08-09 12:03:08.613 00:05:00.802 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:07:33.863 00:00:10.330 TCP 23.104.0.1:54952 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:07:42.331 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:37936 10 6452 1 2025-08-09 12:08:34.234 00:00:10.366 TCP 23.104.0.1:47282 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:08:42.508 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54362 10 6452 1 2025-08-09 12:09:34.640 00:00:10.323 TCP 23.104.0.1:41998 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:09:42.731 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:35072 10 6452 1 2025-08-09 12:10:34.068 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:10:34.173 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:10:34.999 00:00:10.360 TCP 23.104.0.1:41260 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:10:42.965 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59824 10 6452 1 2025-08-09 12:11:35.397 00:00:10.328 TCP 23.104.0.1:57390 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:11:43.184 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48730 10 6452 1 2025-08-09 12:08:08.612 00:05:00.807 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:12:35.768 00:00:10.367 TCP 23.104.0.1:34602 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:12:43.404 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49870 10 6452 1 2025-08-09 12:09:08.615 00:05:00.802 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:13:36.174 00:00:10.362 TCP 23.104.0.1:50742 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:13:43.622 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58374 10 6452 1 2025-08-09 12:14:36.577 00:00:10.367 TCP 23.104.0.1:44112 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:14:43.844 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:50122 10 6452 1 2025-08-09 12:15:34.128 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:15:34.313 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:15:36.984 00:00:10.418 TCP 23.104.0.1:55962 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:15:44.087 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48884 10 6452 1 2025-08-09 12:16:37.440 00:00:10.365 TCP 23.104.0.1:39210 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:16:44.306 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38480 10 6452 1 2025-08-09 12:17:37.844 00:00:10.389 TCP 23.104.0.1:39852 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:17:44.523 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52474 10 6452 1 2025-08-09 12:14:08.619 00:05:00.801 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:18:38.271 00:00:10.366 TCP 23.104.0.1:52774 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:18:44.745 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53300 10 6452 1 2025-08-09 12:15:08.621 00:05:00.796 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:19:38.675 00:00:10.366 TCP 23.104.0.1:34264 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:19:44.970 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:36190 10 6452 1 2025-08-09 12:20:34.801 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:20:34.972 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:20:39.107 00:00:10.362 TCP 23.104.0.1:50776 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:20:45.201 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:33586 10 6452 1 2025-08-09 12:21:39.508 00:00:10.369 TCP 23.104.0.1:37644 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:21:45.385 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:45960 10 6452 1 2025-08-09 12:22:39.916 00:00:10.372 TCP 23.104.0.1:59178 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:22:45.566 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34738 10 6452 1 2025-08-09 12:23:40.327 00:00:10.368 TCP 23.104.0.1:44886 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:23:45.775 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:45990 10 6452 1 2025-08-09 12:20:08.620 00:05:00.801 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:24:40.735 00:00:10.327 TCP 23.104.0.1:59002 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:24:45.981 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:44738 10 6452 1 2025-08-09 12:21:08.623 00:05:00.796 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:25:34.301 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:25:34.321 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:25:41.104 00:00:10.337 TCP 23.104.0.1:53236 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:25:46.182 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:59586 10 6452 1 2025-08-09 12:26:41.479 00:00:10.370 TCP 23.104.0.1:58028 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:26:46.362 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34456 10 6452 1 2025-08-09 12:27:41.887 00:00:10.379 TCP 23.104.0.1:42570 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:27:46.573 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:58380 10 6452 1 2025-08-09 12:28:46.749 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58846 10 6452 1 2025-08-09 12:28:42.305 00:00:10.367 TCP 23.104.0.1:34248 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:29:42.717 00:00:10.383 TCP 23.104.0.1:43976 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:29:46.961 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59288 10 6452 1 2025-08-09 12:26:08.623 00:05:00.800 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:30:34.468 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:30:34.383 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:30:43.164 00:00:10.370 TCP 23.104.0.1:44182 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:30:47.184 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:39184 10 6452 1 2025-08-09 12:27:08.626 00:05:00.796 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:31:43.572 00:00:10.361 TCP 23.104.0.1:33200 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:31:47.358 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54330 10 6452 1 2025-08-09 12:32:43.970 00:00:10.363 TCP 23.104.0.1:47846 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:32:47.570 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:40490 10 6452 1 2025-08-09 12:33:44.369 00:00:10.325 TCP 23.104.0.1:37988 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:33:47.808 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58722 10 6452 1 2025-08-09 12:34:44.735 00:00:10.371 TCP 23.104.0.1:50384 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:34:48.055 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:53870 10 6452 1 2025-08-09 12:35:34.634 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:35:34.537 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:35:45.142 00:00:10.366 TCP 23.104.0.1:39136 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:35:48.226 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:34608 10 6452 1 2025-08-09 12:32:08.625 00:05:00.799 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:36:45.545 00:00:10.340 TCP 23.104.0.1:58818 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:36:48.396 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46862 10 6452 1 2025-08-09 12:33:08.628 00:05:00.795 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:37:45.925 00:00:10.390 TCP 23.104.0.1:50076 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:37:48.613 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47378 10 6452 1 2025-08-09 12:38:46.359 00:00:10.439 TCP 23.104.0.1:56404 -> 1.101.0.1:3000 15 1926 1 2025-08-09 12:38:48.823 00:00:10.228 TCP 1.101.0.1:3000 -> 22.102.0.1:40946 12 10367 1 2025-08-09 12:39:49.090 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35272 10 6452 1 2025-08-09 12:39:46.837 00:00:10.389 TCP 23.104.0.1:42212 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:40:34.518 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:40:34.469 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:40:49.300 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:60858 10 6452 1 2025-08-09 12:40:47.266 00:00:10.366 TCP 23.104.0.1:47332 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:41:49.480 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:45978 10 6452 1 2025-08-09 12:41:47.669 00:00:10.366 TCP 23.104.0.1:60662 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:38:08.628 00:05:00.799 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:42:48.096 00:00:10.320 TCP 23.104.0.1:46150 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:42:49.653 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44294 10 6452 1 2025-08-09 12:39:08.630 00:05:00.794 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:43:49.861 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:37048 10 6452 1 2025-08-09 12:43:48.460 00:00:10.367 TCP 23.104.0.1:35824 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:44:48.866 00:00:10.366 TCP 23.104.0.1:46918 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:44:50.100 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:32876 10 6452 1 2025-08-09 12:45:34.790 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:45:34.506 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:45:50.314 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:39694 10 6452 1 2025-08-09 12:45:49.272 00:00:10.322 TCP 23.104.0.1:40748 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:46:50.532 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:59852 10 6452 1 2025-08-09 12:46:49.631 00:00:10.322 TCP 23.104.0.1:35130 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:47:49.993 00:00:10.362 TCP 23.104.0.1:36088 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:47:50.712 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:55406 10 6452 1 2025-08-09 12:44:08.628 00:05:00.801 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:48:50.397 00:00:10.329 TCP 23.104.0.1:59668 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:48:50.884 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40716 10 6452 1 2025-08-09 12:45:08.630 00:05:00.796 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:49:51.096 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51318 10 6452 1 2025-08-09 12:49:50.771 00:00:10.439 TCP 23.104.0.1:52670 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:50:34.994 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:50:34.953 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:50:51.312 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37104 10 6452 1 2025-08-09 12:50:51.251 00:00:10.364 TCP 23.104.0.1:53696 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:51:51.521 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:53588 10 6452 1 2025-08-09 12:51:51.653 00:00:10.323 TCP 23.104.0.1:49896 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:52:51.692 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43736 10 6452 1 2025-08-09 12:52:52.012 00:00:10.363 TCP 23.104.0.1:35216 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:53:51.902 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45708 10 6452 1 2025-08-09 12:53:52.413 00:00:10.327 TCP 23.104.0.1:49958 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:50:08.629 00:05:00.801 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 12:54:52.116 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35072 10 6452 1 2025-08-09 12:54:52.778 00:00:10.366 TCP 23.104.0.1:42436 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:51:08.632 00:05:00.795 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 12:55:34.629 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 12:55:34.921 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 12:55:52.331 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41552 10 6452 1 2025-08-09 12:55:53.181 00:00:10.358 TCP 23.104.0.1:53082 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:56:53.581 00:00:10.509 TCP 23.104.0.1:54572 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:56:52.553 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33270 10 6452 1 2025-08-09 12:57:54.130 00:00:10.366 TCP 23.104.0.1:43960 -> 1.101.0.1:3000 11 1507 1 2025-08-09 12:57:52.767 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:48904 10 6452 1 Summary: total flows: 162, total bytes: 494723, total packets: 1557, avg bps: 1065, avg pps: 0, avg bpp: 317 Time window: 2025-08-09 11:56:08 - 2025-08-09 12:58:04 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0030s User: 0.0020s Wall: 0.0030s flows/second: 53359.3 Runtime: 0.0031s