Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-14 07:58:45.165 00:00:10.360 TCP 23.104.0.1:57786 -> 1.101.0.1:3000 11 1507 1 2025-08-14 07:58:56.122 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:44370 10 6452 1 2025-08-14 07:54:11.104 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 790 1 2025-08-14 07:59:45.566 00:00:10.366 TCP 23.104.0.1:53238 -> 1.101.0.1:3000 11 1507 1 2025-08-14 07:59:56.297 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39654 10 6452 1 2025-08-14 08:00:45.974 00:00:10.446 TCP 23.104.0.1:45032 -> 1.101.0.1:3000 15 1926 1 2025-08-14 08:00:56.506 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:42368 12 10367 1 2025-08-14 08:01:46.464 00:00:10.374 TCP 23.104.0.1:43352 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:01:56.745 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37212 10 6452 1 2025-08-14 08:02:53.588 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:02:53.590 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:02:46.885 00:00:10.340 TCP 23.104.0.1:48484 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:02:56.955 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:34862 10 6452 1 2025-08-14 07:58:11.103 00:06:00.001 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 809 1 2025-08-14 08:03:47.265 00:00:10.546 TCP 23.104.0.1:60876 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:03:57.176 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33670 10 6452 1 2025-08-14 08:04:47.852 00:00:10.376 TCP 23.104.0.1:43464 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:04:57.390 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:40902 12 6556 1 2025-08-14 08:00:11.887 00:06:00.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 809 1 2025-08-14 08:05:48.261 00:00:10.368 TCP 23.104.0.1:48468 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:05:57.612 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:49078 10 6452 1 2025-08-14 08:06:48.672 00:00:10.368 TCP 23.104.0.1:38424 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:06:57.834 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47828 10 6452 1 2025-08-14 08:07:53.448 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:07:53.685 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:07:49.095 00:00:10.367 TCP 23.104.0.1:57450 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:07:58.091 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:32768 10 6452 1 2025-08-14 08:08:49.496 00:00:10.370 TCP 23.104.0.1:42952 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:08:58.265 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:53444 10 6452 1 2025-08-14 08:04:11.890 00:06:00.002 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 790 1 2025-08-14 08:09:49.903 00:00:10.363 TCP 23.104.0.1:56794 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:09:58.433 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:43428 10 6452 1 2025-08-14 08:07:11.108 00:03:00.781 TCP 179.1.22.22:39396 -> 179.1.22.1:179 8 492 1 2025-08-14 08:10:50.303 00:00:10.359 TCP 23.104.0.1:41438 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:10:58.608 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34620 10 6452 1 2025-08-14 08:11:50.700 00:00:10.324 TCP 23.104.0.1:47404 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:11:58.819 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45822 10 6452 1 2025-08-14 08:12:53.576 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:12:53.622 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:12:51.089 00:00:10.329 TCP 23.104.0.1:57308 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:12:59.044 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52208 10 6452 1 2025-08-14 08:13:51.454 00:00:10.355 TCP 23.104.0.1:60136 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:13:59.220 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36404 10 6452 1 2025-08-14 08:11:11.105 00:03:00.788 TCP 179.1.22.1:179 -> 179.1.22.22:39396 8 492 1 2025-08-14 08:14:51.849 00:00:10.871 TCP 23.104.0.1:33164 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:11:11.108 00:04:00.782 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 08:14:59.431 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37276 10 6452 1 2025-08-14 08:15:52.759 00:00:10.378 TCP 23.104.0.1:35692 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:15:59.664 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:50734 10 6452 1 2025-08-14 08:16:53.178 00:00:10.365 TCP 23.104.0.1:32916 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:16:59.885 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:48818 10 6452 1 2025-08-14 08:17:53.634 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:17:53.745 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:17:53.582 00:00:10.325 TCP 23.104.0.1:50422 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:18:00.114 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:56786 10 6452 1 2025-08-14 08:18:53.948 00:00:10.366 TCP 23.104.0.1:56148 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:19:00.290 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48116 10 6452 1 2025-08-14 08:15:11.107 00:04:00.788 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 08:19:54.358 00:00:10.336 TCP 23.104.0.1:48972 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:16:11.109 00:04:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 08:20:00.501 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36672 10 6452 1 2025-08-14 08:20:54.723 00:00:10.456 TCP 23.104.0.1:49138 -> 1.101.0.1:3000 15 1926 1 2025-08-14 08:21:00.714 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:39952 12 10367 1 2025-08-14 08:21:55.206 00:00:10.358 TCP 23.104.0.1:41842 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:22:00.960 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:46306 10 6452 1 2025-08-14 08:22:53.823 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:22:53.745 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:22:55.605 00:00:10.370 TCP 23.104.0.1:36324 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:23:01.155 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57742 10 6452 1 2025-08-14 08:23:56.015 00:00:10.374 TCP 23.104.0.1:54062 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:24:01.370 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:48612 10 6452 1 2025-08-14 08:20:11.108 00:04:00.790 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 08:24:56.426 00:00:10.365 TCP 23.104.0.1:49042 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:25:01.573 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41284 10 6452 1 2025-08-14 08:21:11.110 00:04:00.787 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 08:26:01.784 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39886 10 6452 1 2025-08-14 08:25:56.829 00:00:10.394 TCP 23.104.0.1:48416 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:26:57.263 00:00:10.373 TCP 23.104.0.1:49660 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:27:01.999 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36526 10 6452 1 2025-08-14 08:27:53.820 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:27:54.024 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:27:57.675 00:00:10.365 TCP 23.104.0.1:34192 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:28:02.218 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37472 11 6492 1 2025-08-14 08:28:58.110 00:00:10.363 TCP 23.104.0.1:40716 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:25:11.109 00:04:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 08:29:02.431 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:35200 10 6452 1 2025-08-14 08:26:11.112 00:04:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 08:29:58.516 00:00:10.328 TCP 23.104.0.1:52948 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:30:02.603 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:59894 10 6452 1 2025-08-14 08:30:58.888 00:00:10.393 TCP 23.104.0.1:44868 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:31:02.792 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:35080 10 6452 1 2025-08-14 08:31:59.323 00:00:10.366 TCP 23.104.0.1:53930 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:32:03.030 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34594 10 6452 1 2025-08-14 08:32:53.846 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:32:53.756 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:32:59.729 00:00:10.376 TCP 23.104.0.1:58430 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:33:03.245 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37048 10 6452 1 2025-08-14 08:34:00.143 00:00:10.371 TCP 23.104.0.1:36036 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:34:03.458 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:38388 10 6452 1 2025-08-14 08:30:11.112 00:06:00.001 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 809 1 2025-08-14 08:35:00.553 00:00:10.331 TCP 23.104.0.1:43004 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:35:03.646 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:38714 10 6452 1 2025-08-14 08:36:00.922 00:00:10.346 TCP 23.104.0.1:51018 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:31:11.114 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 790 1 2025-08-14 08:36:03.829 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51094 10 6452 1 2025-08-14 08:37:01.301 00:00:10.368 TCP 23.104.0.1:54100 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:37:04.004 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45002 10 6452 1 2025-08-14 08:37:53.835 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:37:54.213 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:38:04.221 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35456 10 6452 1 2025-08-14 08:38:01.702 00:00:10.366 TCP 23.104.0.1:45916 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:39:04.441 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56794 10 6452 1 2025-08-14 08:39:02.106 00:00:10.367 TCP 23.104.0.1:55542 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:40:04.649 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34058 10 6452 1 2025-08-14 08:40:02.513 00:00:10.363 TCP 23.104.0.1:52336 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:36:11.902 00:06:00.001 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 790 1 2025-08-14 08:41:02.919 00:00:10.385 TCP 23.104.0.1:53980 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:41:04.863 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45662 10 6452 1 2025-08-14 08:37:11.900 00:05:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 11 686 1 2025-08-14 08:42:05.095 00:00:10.390 TCP 1.101.0.1:3000 -> 22.102.0.1:51878 10 6452 1 2025-08-14 08:42:03.350 00:00:10.323 TCP 23.104.0.1:44736 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:42:53.919 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:42:54.048 00:00:00.053 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:43:03.713 00:00:10.374 TCP 23.104.0.1:44610 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:43:05.521 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:60460 10 6452 1 2025-08-14 08:44:04.127 00:00:10.368 TCP 23.104.0.1:57256 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:44:05.692 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54966 10 6452 1 2025-08-14 08:45:04.533 00:00:10.375 TCP 23.104.0.1:48596 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:45:05.909 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41170 10 6452 1 2025-08-14 08:43:11.114 00:03:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 8 492 1 2025-08-14 08:46:04.946 00:00:10.328 TCP 23.104.0.1:36370 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:46:06.123 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39226 10 6452 1 2025-08-14 08:43:11.117 00:04:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 08:47:06.309 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38656 10 6452 1 2025-08-14 08:47:05.311 00:00:10.375 TCP 23.104.0.1:60000 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:47:54.619 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:47:54.601 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:48:05.727 00:00:10.337 TCP 23.104.0.1:54274 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:48:06.517 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36976 10 6452 1 2025-08-14 08:49:06.734 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57938 10 6452 1 2025-08-14 08:49:06.107 00:00:10.368 TCP 23.104.0.1:56784 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:50:06.514 00:00:10.327 TCP 23.104.0.1:36604 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:50:06.946 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:47952 10 6452 1 2025-08-14 08:47:11.115 00:04:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 08:51:07.139 00:00:10.392 TCP 1.101.0.1:3000 -> 22.102.0.1:54622 10 6452 1 2025-08-14 08:51:06.878 00:00:10.704 TCP 23.104.0.1:42394 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:48:11.118 00:04:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 08:52:07.608 00:00:10.372 TCP 23.104.0.1:51600 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:52:07.570 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43410 10 6452 1 2025-08-14 08:52:54.418 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:52:54.323 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:53:07.784 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37508 10 6452 1 2025-08-14 08:53:08.019 00:00:10.321 TCP 23.104.0.1:48468 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:54:08.378 00:00:10.323 TCP 23.104.0.1:42410 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:54:08.007 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:55258 10 6452 1 2025-08-14 08:55:08.740 00:00:10.375 TCP 23.104.0.1:47340 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:55:08.217 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42724 10 6452 1 2025-08-14 08:52:11.116 00:04:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 08:56:08.431 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58586 10 6452 1 2025-08-14 08:56:09.144 00:00:10.370 TCP 23.104.0.1:49520 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:53:11.120 00:04:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 08:57:09.550 00:00:10.348 TCP 23.104.0.1:41172 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:57:08.648 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40374 10 6452 1 2025-08-14 08:57:54.499 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 08:57:54.505 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 08:58:09.935 00:00:10.395 TCP 23.104.0.1:46284 -> 1.101.0.1:3000 11 1507 1 2025-08-14 08:58:08.869 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:44612 10 6452 1 Summary: total flows: 167, total bytes: 507529, total packets: 1593, avg bps: 1054, avg pps: 0, avg bpp: 318 Time window: 2025-08-14 07:54:11 - 2025-08-14 08:58:20 Total flows processed: 167, passed: 167, Blocks skipped: 0, Bytes read: 17432 Sys: 0.0036s User: 0.0000s Wall: 0.0018s flows/second: 93082.9 Runtime: 0.0018s