Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-25 09:58:48.960 00:00:10.366 TCP 23.104.0.1:50592 -> 1.101.0.1:3000 11 1507 1 2025-08-25 09:59:08.125 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37544 10 6452 1 2025-08-25 09:54:17.441 00:06:00.026 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 09:59:49.365 00:00:10.363 TCP 23.104.0.1:50796 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:00:08.337 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:38410 10 6452 1 2025-08-25 09:55:17.461 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-25 10:00:49.767 00:00:10.374 TCP 23.104.0.1:39028 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:01:08.510 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:53414 10 6452 1 2025-08-25 10:01:50.186 00:00:10.372 TCP 23.104.0.1:59706 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:02:08.737 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:55352 10 6452 1 2025-08-25 10:02:50.595 00:00:10.406 TCP 23.104.0.1:41782 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:03:13.522 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:03:13.612 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:03:08.922 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33926 10 6452 1 2025-08-25 10:03:51.059 00:00:10.328 TCP 23.104.0.1:34262 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:04:09.132 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:46362 10 6452 1 2025-08-25 10:04:51.423 00:00:10.367 TCP 23.104.0.1:39390 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:05:09.312 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54880 10 6452 1 2025-08-25 10:05:51.827 00:00:10.364 TCP 23.104.0.1:36232 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:01:17.443 00:06:00.025 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 10:06:09.532 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:57988 10 6452 1 2025-08-25 10:06:52.232 00:00:10.371 TCP 23.104.0.1:40416 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:02:17.465 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-25 10:07:09.780 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:49060 10 6452 1 2025-08-25 10:07:52.650 00:00:10.371 TCP 23.104.0.1:51550 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:08:14.020 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:08:13.840 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:08:09.996 00:00:10.254 TCP 1.101.0.1:3000 -> 22.102.0.1:44616 10 6452 1 2025-08-25 10:08:53.082 00:00:10.367 TCP 23.104.0.1:33490 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:09:10.288 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44982 10 6452 1 2025-08-25 10:09:53.495 00:00:10.777 TCP 23.104.0.1:43750 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:10:10.498 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48300 10 6452 1 2025-08-25 10:10:54.312 00:00:10.364 TCP 23.104.0.1:56952 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:11:10.673 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:34210 10 6452 1 2025-08-25 10:11:54.722 00:00:10.368 TCP 23.104.0.1:33174 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:12:10.841 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50614 10 6452 1 2025-08-25 10:12:55.133 00:00:10.321 TCP 23.104.0.1:57066 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:13:13.780 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:13:13.855 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:13:11.087 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59570 10 6452 1 2025-08-25 10:08:17.444 00:06:00.025 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 10:13:55.489 00:00:10.362 TCP 23.104.0.1:58802 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:09:17.466 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-25 10:14:11.298 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48062 10 6452 1 2025-08-25 10:14:55.891 00:00:10.371 TCP 23.104.0.1:56646 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:15:11.513 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:38818 10 6452 1 2025-08-25 10:15:56.303 00:00:10.440 TCP 23.104.0.1:50872 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:16:11.736 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39226 10 6452 1 2025-08-25 10:16:56.783 00:00:10.366 TCP 23.104.0.1:58198 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:17:11.953 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:54414 10 6452 1 2025-08-25 10:17:57.188 00:00:10.370 TCP 23.104.0.1:33860 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:18:13.811 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:18:13.857 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:18:12.176 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:51682 10 6452 1 2025-08-25 10:18:57.595 00:00:10.369 TCP 23.104.0.1:51358 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:19:12.353 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:35074 10 6452 1 2025-08-25 10:19:58.009 00:00:10.362 TCP 23.104.0.1:47022 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:15:17.447 00:06:00.028 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 10:20:12.535 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33258 10 6452 1 2025-08-25 10:20:58.413 00:00:10.354 TCP 23.104.0.1:58550 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:16:17.465 00:06:00.005 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-25 10:21:12.756 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60710 10 6452 1 2025-08-25 10:21:58.806 00:00:10.366 TCP 23.104.0.1:55310 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:22:12.974 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:47874 10 6452 1 2025-08-25 10:22:59.216 00:00:10.366 TCP 23.104.0.1:43928 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:23:14.020 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:23:13.952 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:23:13.202 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54656 10 6452 1 2025-08-25 10:23:59.621 00:00:10.327 TCP 23.104.0.1:54662 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:24:13.415 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:53660 10 6452 1 2025-08-25 10:24:59.988 00:00:10.340 TCP 23.104.0.1:44216 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:25:13.588 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43072 10 6452 1 2025-08-25 10:26:00.367 00:00:10.328 TCP 23.104.0.1:52152 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:26:13.801 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58602 10 6452 1 2025-08-25 10:27:00.728 00:00:10.365 TCP 23.104.0.1:58544 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:22:17.447 00:06:00.028 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 10:27:14.015 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49762 10 6452 1 2025-08-25 10:28:13.793 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:28:01.131 00:00:10.369 TCP 23.104.0.1:37130 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:28:13.904 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:23:17.471 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-25 10:28:14.234 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51492 10 6452 1 2025-08-25 10:29:01.539 00:00:10.361 TCP 23.104.0.1:46924 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:29:14.443 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35758 10 6452 1 2025-08-25 10:30:01.936 00:00:10.337 TCP 23.104.0.1:34478 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:30:14.661 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47804 10 6452 1 2025-08-25 10:31:02.315 00:00:10.362 TCP 23.104.0.1:53142 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:31:14.877 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55772 10 6452 1 2025-08-25 10:32:02.714 00:00:10.372 TCP 23.104.0.1:54016 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:32:15.099 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:36272 10 6452 1 2025-08-25 10:33:14.398 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:33:03.126 00:00:10.329 TCP 23.104.0.1:46920 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:33:14.241 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:33:15.271 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47916 10 6452 1 2025-08-25 10:34:03.492 00:00:10.367 TCP 23.104.0.1:37278 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:29:17.449 00:06:00.034 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 10:34:15.482 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59178 10 6452 1 2025-08-25 10:35:03.894 00:00:10.382 TCP 23.104.0.1:47722 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:30:17.474 00:06:00.007 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-25 10:35:15.698 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59640 10 6452 1 2025-08-25 10:36:04.314 00:00:10.367 TCP 23.104.0.1:40674 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:36:15.923 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:57744 10 6452 1 2025-08-25 10:37:04.720 00:00:10.378 TCP 23.104.0.1:45528 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:37:16.124 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55196 10 6452 1 2025-08-25 10:38:14.156 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:38:05.134 00:00:10.366 TCP 23.104.0.1:45304 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:38:14.382 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:38:16.336 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56856 10 6452 1 2025-08-25 10:39:05.540 00:00:10.367 TCP 23.104.0.1:59302 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:39:16.549 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46116 10 6452 1 2025-08-25 10:40:05.943 00:00:10.379 TCP 23.104.0.1:58150 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:40:16.758 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:39930 10 6452 1 2025-08-25 10:41:06.359 00:00:10.364 TCP 23.104.0.1:58692 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:36:17.451 00:06:00.034 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 10:41:16.978 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:36878 10 6452 1 2025-08-25 10:42:06.762 00:00:10.392 TCP 23.104.0.1:35814 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:37:17.482 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-25 10:42:17.207 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:56470 10 6452 1 2025-08-25 10:43:14.229 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:43:14.282 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:43:07.182 00:00:10.383 TCP 23.104.0.1:48988 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:43:17.381 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:32772 10 6452 1 2025-08-25 10:44:07.582 00:00:10.330 TCP 23.104.0.1:46666 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:44:17.594 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41784 10 6452 1 2025-08-25 10:45:07.954 00:00:10.364 TCP 23.104.0.1:41488 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:45:17.806 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47312 10 6452 1 2025-08-25 10:46:08.361 00:00:10.378 TCP 23.104.0.1:36562 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:46:17.980 00:00:10.597 TCP 1.101.0.1:3000 -> 22.102.0.1:56406 10 6452 1 2025-08-25 10:47:08.774 00:00:10.373 TCP 23.104.0.1:46850 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:47:18.611 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45216 10 6452 1 2025-08-25 10:48:14.184 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:48:09.177 00:00:10.363 TCP 23.104.0.1:60796 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:48:14.319 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:43:17.453 00:06:00.036 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 10:48:18.831 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:43490 10 6452 1 2025-08-25 10:44:17.482 00:06:00.005 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-25 10:49:09.578 00:00:10.366 TCP 23.104.0.1:50792 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:49:19.005 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:44304 10 6452 1 2025-08-25 10:50:09.986 00:00:10.338 TCP 23.104.0.1:51896 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:50:19.181 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:56070 10 6452 1 2025-08-25 10:51:10.363 00:00:10.323 TCP 23.104.0.1:43280 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:51:19.355 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:49536 10 6452 1 2025-08-25 10:52:10.725 00:00:10.372 TCP 23.104.0.1:46284 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:52:19.564 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56984 10 6452 1 2025-08-25 10:53:14.787 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:53:14.579 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:53:11.141 00:00:10.369 TCP 23.104.0.1:56570 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:53:19.774 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35066 10 6452 1 2025-08-25 10:54:11.547 00:00:10.322 TCP 23.104.0.1:37048 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:54:19.988 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:53370 10 6452 1 2025-08-25 10:50:17.454 00:06:00.053 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 10:55:11.908 00:00:10.373 TCP 23.104.0.1:48694 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:55:20.230 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46566 10 6452 1 2025-08-25 10:51:17.486 00:06:00.016 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 653 1 2025-08-25 10:56:12.321 00:00:10.367 TCP 23.104.0.1:39470 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:56:20.444 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:58044 10 6452 1 2025-08-25 10:57:12.733 00:00:10.367 TCP 23.104.0.1:38846 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:57:20.649 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:55628 10 6452 1 2025-08-25 10:58:14.810 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 10:58:14.873 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 10:58:13.144 00:00:10.367 TCP 23.104.0.1:51028 -> 1.101.0.1:3000 11 1507 1 2025-08-25 10:58:20.831 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42846 10 6452 1 Summary: total flows: 162, total bytes: 495966, total packets: 1524, avg bps: 1029, avg pps: 0, avg bpp: 325 Time window: 2025-08-25 09:54:17 - 2025-08-25 10:58:31 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0030s User: 0.0020s Wall: 0.0022s flows/second: 73600.2 Runtime: 0.0022s