Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 09:58:53.173 00:00:10.369 TCP 23.104.0.1:38462 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:59:28.014 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34820 10 6452 1 2025-08-10 09:59:53.576 00:00:10.319 TCP 23.104.0.1:43900 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:55:09.088 00:06:00.772 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 10:00:28.232 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:42080 10 6452 1 2025-08-10 10:01:00.304 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:01:00.438 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:00:53.934 00:00:10.378 TCP 23.104.0.1:56832 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:01:28.405 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:34180 10 6452 1 2025-08-10 10:01:54.349 00:00:10.422 TCP 23.104.0.1:42374 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:57:09.091 00:06:00.767 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 10:02:28.586 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:52924 10 6452 1 2025-08-10 10:02:54.809 00:00:10.374 TCP 23.104.0.1:40284 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:03:28.751 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:41094 10 6452 1 2025-08-10 10:03:55.218 00:00:10.619 TCP 23.104.0.1:60576 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:04:28.920 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51188 10 6452 1 2025-08-10 10:04:55.869 00:00:10.365 TCP 23.104.0.1:39810 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:05:29.131 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:53646 10 6452 1 2025-08-10 10:06:00.483 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:06:00.532 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:05:56.275 00:00:10.323 TCP 23.104.0.1:56112 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:06:29.308 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38410 10 6452 1 2025-08-10 10:02:09.090 00:06:00.772 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 10:06:56.638 00:00:10.362 TCP 23.104.0.1:47010 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:07:29.521 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34766 10 6452 1 2025-08-10 10:07:57.052 00:00:10.364 TCP 23.104.0.1:48700 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:08:29.743 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60274 10 6452 1 2025-08-10 10:04:09.092 00:06:00.767 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 10:08:57.451 00:00:10.323 TCP 23.104.0.1:47908 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:09:29.957 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:36132 10 6452 1 2025-08-10 10:09:57.815 00:00:10.363 TCP 23.104.0.1:56018 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:10:30.179 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:48244 10 6452 1 2025-08-10 10:11:00.482 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:11:00.413 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:10:58.218 00:00:10.363 TCP 23.104.0.1:42500 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:11:30.353 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49610 10 6452 1 2025-08-10 10:11:58.623 00:00:10.367 TCP 23.104.0.1:40328 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:12:30.570 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48858 10 6452 1 2025-08-10 10:12:59.027 00:00:10.360 TCP 23.104.0.1:59348 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:13:30.741 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60852 10 6452 1 2025-08-10 10:13:59.423 00:00:10.366 TCP 23.104.0.1:60616 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:09:09.091 00:06:00.772 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 10:14:30.953 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:59636 10 6452 1 2025-08-10 10:14:59.830 00:00:10.353 TCP 23.104.0.1:55934 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:15:31.181 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:54698 10 6452 1 2025-08-10 10:16:02.326 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:16:02.227 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:16:00.223 00:00:10.362 TCP 23.104.0.1:37004 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:11:09.094 00:06:00.767 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 10:16:31.355 00:00:10.218 TCP 1.101.0.1:3000 -> 22.102.0.1:56332 10 6452 1 2025-08-10 10:17:00.654 00:00:10.367 TCP 23.104.0.1:56442 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:17:31.637 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:55740 10 6452 1 2025-08-10 10:18:01.082 00:00:10.362 TCP 23.104.0.1:41082 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:18:31.810 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:38406 10 6452 1 2025-08-10 10:19:01.482 00:00:10.365 TCP 23.104.0.1:47526 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:19:31.984 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:53976 10 6452 1 2025-08-10 10:20:01.883 00:00:10.381 TCP 23.104.0.1:44126 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:20:32.211 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60166 10 6452 1 2025-08-10 10:21:00.785 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:21:00.936 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:16:09.093 00:06:00.773 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 10:21:02.307 00:00:10.366 TCP 23.104.0.1:46226 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:21:32.417 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:36174 10 6452 1 2025-08-10 10:22:02.708 00:00:10.366 TCP 23.104.0.1:36696 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:22:32.643 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:57184 10 6452 1 2025-08-10 10:18:09.098 00:06:00.766 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 10:23:03.115 00:00:10.398 TCP 23.104.0.1:52644 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:23:32.816 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53352 10 6452 1 2025-08-10 10:24:03.551 00:00:10.365 TCP 23.104.0.1:40816 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:24:33.030 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54840 10 6452 1 2025-08-10 10:25:03.954 00:00:10.366 TCP 23.104.0.1:56140 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:25:33.248 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51418 10 6452 1 2025-08-10 10:26:00.802 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:26:00.844 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:26:04.359 00:00:10.322 TCP 23.104.0.1:47630 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:26:33.464 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53756 10 6452 1 2025-08-10 10:27:04.722 00:00:10.325 TCP 23.104.0.1:50784 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:27:33.682 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48536 10 6452 1 2025-08-10 10:23:09.100 00:06:00.768 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 10:28:05.107 00:00:10.360 TCP 23.104.0.1:42514 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:28:33.893 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:53204 10 6452 1 2025-08-10 10:29:05.508 00:00:10.370 TCP 23.104.0.1:39460 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:29:34.078 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:46024 10 6452 1 2025-08-10 10:25:09.101 00:06:00.763 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 10:30:05.913 00:00:10.363 TCP 23.104.0.1:52782 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:30:34.252 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:35276 10 6452 1 2025-08-10 10:31:01.024 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:31:01.082 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:31:06.315 00:00:10.364 TCP 23.104.0.1:47894 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:31:34.426 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60204 10 6452 1 2025-08-10 10:32:06.721 00:00:10.370 TCP 23.104.0.1:44864 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:32:34.643 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:45068 10 6452 1 2025-08-10 10:33:07.131 00:00:10.367 TCP 23.104.0.1:38578 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:33:34.841 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35858 10 6452 1 2025-08-10 10:34:07.534 00:00:10.382 TCP 23.104.0.1:41032 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:34:35.079 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:33838 10 6452 1 2025-08-10 10:30:09.101 00:06:00.770 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 10:35:07.940 00:00:10.351 TCP 23.104.0.1:37972 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:35:35.252 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56088 10 6452 1 2025-08-10 10:36:01.005 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:36:01.042 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:36:08.333 00:00:10.370 TCP 23.104.0.1:44380 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:36:35.466 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40224 10 6452 1 2025-08-10 10:32:09.103 00:06:00.764 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 10:37:08.744 00:00:10.366 TCP 23.104.0.1:40234 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:37:35.676 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40840 10 6452 1 2025-08-10 10:38:09.143 00:00:10.370 TCP 23.104.0.1:41944 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:38:35.886 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:51206 10 6452 1 2025-08-10 10:39:09.547 00:00:10.373 TCP 23.104.0.1:38212 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:39:36.118 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33584 10 6452 1 2025-08-10 10:40:09.955 00:00:10.332 TCP 23.104.0.1:40274 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:40:36.329 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36642 10 6452 1 2025-08-10 10:41:01.037 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:41:01.198 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:41:10.327 00:00:10.369 TCP 23.104.0.1:41246 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:41:36.549 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39138 10 6452 1 2025-08-10 10:37:09.101 00:06:00.769 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 10:42:10.733 00:00:10.378 TCP 23.104.0.1:53016 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:42:36.769 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36350 10 6452 1 2025-08-10 10:43:11.149 00:00:10.361 TCP 23.104.0.1:40742 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:43:36.986 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:47984 10 6452 1 2025-08-10 10:39:09.104 00:06:00.764 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 10:44:11.551 00:00:10.323 TCP 23.104.0.1:57212 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:44:37.217 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48490 10 6452 1 2025-08-10 10:45:11.914 00:00:10.367 TCP 23.104.0.1:58002 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:45:37.436 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60050 10 6452 1 2025-08-10 10:46:01.239 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:46:01.300 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:46:12.318 00:00:10.322 TCP 23.104.0.1:34326 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:46:37.654 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53646 10 6452 1 2025-08-10 10:47:12.690 00:00:10.391 TCP 23.104.0.1:49002 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:47:37.862 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56912 10 6452 1 2025-08-10 10:48:13.127 00:00:10.363 TCP 23.104.0.1:45808 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:48:38.081 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58970 10 6452 1 2025-08-10 10:44:09.103 00:06:00.770 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 10:49:13.529 00:00:10.321 TCP 23.104.0.1:51316 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:49:38.294 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40900 10 6452 1 2025-08-10 10:50:13.888 00:00:10.331 TCP 23.104.0.1:44936 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:50:38.509 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:51754 10 6452 1 2025-08-10 10:51:01.271 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:51:01.271 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:46:09.106 00:06:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 10:51:14.266 00:00:10.363 TCP 23.104.0.1:54382 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:51:38.678 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43222 10 6452 1 2025-08-10 10:52:14.667 00:00:10.323 TCP 23.104.0.1:39216 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:52:38.893 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:46790 10 6452 1 2025-08-10 10:53:15.028 00:00:10.369 TCP 23.104.0.1:50956 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:53:39.082 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33100 10 6452 1 2025-08-10 10:54:15.434 00:00:10.322 TCP 23.104.0.1:32932 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:54:39.295 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33572 10 6452 1 2025-08-10 10:55:15.793 00:00:10.366 TCP 23.104.0.1:35794 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:55:39.511 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45730 10 6452 1 2025-08-10 10:56:01.502 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:56:01.507 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 10:51:09.104 00:06:00.770 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 10:56:16.198 00:00:10.370 TCP 23.104.0.1:53178 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:56:39.687 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:45394 11 6492 1 2025-08-10 10:57:16.603 00:00:10.370 TCP 23.104.0.1:50214 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:57:39.852 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49512 10 6452 1 2025-08-10 10:53:09.107 00:06:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 10:58:17.009 00:00:10.330 TCP 23.104.0.1:42236 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:58:40.087 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:47712 10 6452 1 Summary: total flows: 162, total bytes: 499126, total packets: 1585, avg bps: 1039, avg pps: 0, avg bpp: 314 Time window: 2025-08-10 09:55:09 - 2025-08-10 10:59:09 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0042s User: 0.0000s Wall: 0.0027s flows/second: 59405.2 Runtime: 0.0027s