Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-04 23:58:54.386 00:00:10.368 TCP 23.104.0.1:48572 -> 1.101.0.1:3000 11 1507 1 2025-09-04 23:55:23.755 00:05:00.683 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-04 23:59:32.116 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44556 10 6452 1 2025-09-04 23:59:54.790 00:00:10.324 TCP 23.104.0.1:36944 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:00:32.332 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:49804 10 6452 1 2025-09-05 00:00:55.152 00:00:10.363 TCP 23.104.0.1:47848 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:01:32.507 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36138 10 6452 1 2025-09-05 00:01:55.551 00:00:10.373 TCP 23.104.0.1:35378 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:02:32.719 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37662 10 6452 1 2025-09-05 00:02:55.972 00:00:10.380 TCP 23.104.0.1:46404 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:03:19.494 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:03:19.660 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:03:32.950 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:44656 10 6452 1 2025-09-05 00:03:56.394 00:00:10.384 TCP 23.104.0.1:56070 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:00:23.755 00:05:00.687 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:04:33.175 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46328 10 6452 1 2025-09-05 00:04:56.819 00:00:10.362 TCP 23.104.0.1:48300 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:01:23.758 00:05:00.683 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 00:05:33.390 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48526 10 6452 1 2025-09-05 00:05:57.233 00:00:10.366 TCP 23.104.0.1:60122 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:06:33.602 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:58440 10 6452 1 2025-09-05 00:06:57.638 00:00:10.363 TCP 23.104.0.1:39640 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:07:33.813 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47624 10 6452 1 2025-09-05 00:07:58.055 00:00:10.368 TCP 23.104.0.1:41776 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:08:19.716 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:08:19.661 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:08:34.034 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:40052 10 6452 1 2025-09-05 00:08:58.459 00:00:10.368 TCP 23.104.0.1:56652 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:09:34.271 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39612 10 6452 1 2025-09-05 00:09:58.860 00:00:10.373 TCP 23.104.0.1:55772 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:06:23.757 00:05:00.687 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:10:34.487 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35848 10 6452 1 2025-09-05 00:10:59.271 00:00:10.329 TCP 23.104.0.1:35292 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:07:23.758 00:05:00.683 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 00:11:34.702 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:59994 10 6452 1 2025-09-05 00:11:59.645 00:00:10.322 TCP 23.104.0.1:50212 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:12:34.910 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:60634 10 6452 1 2025-09-05 00:13:00.007 00:00:10.359 TCP 23.104.0.1:53182 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:13:19.678 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:13:19.669 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:13:35.094 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:37178 10 6452 1 2025-09-05 00:14:00.407 00:00:10.327 TCP 23.104.0.1:57776 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:14:35.322 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:52986 10 6452 1 2025-09-05 00:15:00.776 00:00:10.368 TCP 23.104.0.1:45194 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:15:35.492 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:56102 10 6452 1 2025-09-05 00:16:01.179 00:00:10.362 TCP 23.104.0.1:54442 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:12:23.756 00:05:00.689 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:16:35.701 00:00:10.272 TCP 1.101.0.1:3000 -> 22.102.0.1:46396 10 6452 1 2025-09-05 00:17:01.576 00:00:10.319 TCP 23.104.0.1:55940 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:13:23.760 00:05:00.683 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 00:17:36.009 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:60936 10 6452 1 2025-09-05 00:18:01.934 00:00:10.343 TCP 23.104.0.1:35838 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:18:19.852 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:18:19.670 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:18:36.233 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:55930 10 6452 1 2025-09-05 00:19:02.318 00:00:10.363 TCP 23.104.0.1:46998 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:19:36.414 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47070 10 6452 1 2025-09-05 00:20:02.720 00:00:10.374 TCP 23.104.0.1:49074 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:20:36.631 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38738 10 6452 1 2025-09-05 00:21:03.133 00:00:10.383 TCP 23.104.0.1:50502 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:21:36.848 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:53162 10 6452 1 2025-09-05 00:22:03.557 00:00:10.368 TCP 23.104.0.1:56760 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:18:23.757 00:05:00.688 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:22:37.083 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40722 10 6452 1 2025-09-05 00:23:03.959 00:00:10.398 TCP 23.104.0.1:52186 -> 1.101.0.1:3000 15 1926 1 2025-09-05 00:23:19.865 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:23:19.947 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:19:23.760 00:05:00.684 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 00:23:37.295 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:44684 12 10365 1 2025-09-05 00:24:04.396 00:00:10.326 TCP 23.104.0.1:44976 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:24:37.537 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:47186 10 6452 1 2025-09-05 00:25:04.761 00:00:10.379 TCP 23.104.0.1:42900 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:25:37.710 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60204 10 6452 1 2025-09-05 00:26:05.177 00:00:10.364 TCP 23.104.0.1:38008 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:26:37.918 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50438 10 6452 1 2025-09-05 00:27:05.582 00:00:10.368 TCP 23.104.0.1:39836 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:27:38.128 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39144 10 6452 1 2025-09-05 00:28:05.984 00:00:10.331 TCP 23.104.0.1:37482 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:28:19.689 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:28:19.918 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:24:23.759 00:05:00.689 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:28:38.340 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:32876 10 6452 1 2025-09-05 00:29:06.359 00:00:10.367 TCP 23.104.0.1:52216 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:25:23.762 00:05:00.684 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 00:29:38.553 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:44698 10 6452 1 2025-09-05 00:30:06.764 00:00:10.392 TCP 23.104.0.1:49846 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:30:38.800 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43950 10 6452 1 2025-09-05 00:31:07.199 00:00:10.362 TCP 23.104.0.1:50620 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:31:39.025 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41774 10 6452 1 2025-09-05 00:32:07.595 00:00:10.991 TCP 23.104.0.1:40880 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:32:39.248 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:53314 10 6452 1 2025-09-05 00:33:08.628 00:00:10.321 TCP 23.104.0.1:57730 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:33:20.387 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:33:20.242 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:33:39.419 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54340 10 6452 1 2025-09-05 00:34:08.990 00:00:10.367 TCP 23.104.0.1:46538 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:30:23.760 00:05:00.689 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:34:39.624 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:48790 10 6452 1 2025-09-05 00:35:09.393 00:00:10.364 TCP 23.104.0.1:40304 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:31:23.765 00:05:00.684 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 00:35:39.841 00:00:10.522 TCP 1.101.0.1:3000 -> 22.102.0.1:44628 10 6452 1 2025-09-05 00:36:09.793 00:00:10.365 TCP 23.104.0.1:48782 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:36:40.401 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54850 10 6452 1 2025-09-05 00:37:10.199 00:00:10.376 TCP 23.104.0.1:39042 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:37:40.608 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55164 10 6452 1 2025-09-05 00:38:20.184 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:38:10.609 00:00:10.328 TCP 23.104.0.1:49266 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:38:20.278 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:38:40.825 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59748 10 6452 1 2025-09-05 00:39:10.972 00:00:10.368 TCP 23.104.0.1:49280 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:39:41.071 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45248 10 6452 1 2025-09-05 00:40:11.380 00:00:10.365 TCP 23.104.0.1:35570 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:36:23.764 00:05:00.688 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:40:41.283 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50308 10 6452 1 2025-09-05 00:37:23.766 00:05:00.682 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 00:41:11.784 00:00:10.365 TCP 23.104.0.1:57536 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:41:41.497 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:50690 10 6452 1 2025-09-05 00:42:12.189 00:00:10.367 TCP 23.104.0.1:51552 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:42:41.669 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33042 10 6452 1 2025-09-05 00:43:20.255 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:43:20.280 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:43:12.592 00:00:10.364 TCP 23.104.0.1:38164 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:43:41.881 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50628 10 6452 1 2025-09-05 00:44:13.001 00:00:10.363 TCP 23.104.0.1:39748 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:44:42.092 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42184 10 6452 1 2025-09-05 00:45:13.402 00:00:10.366 TCP 23.104.0.1:58870 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:45:42.304 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52780 10 6452 1 2025-09-05 00:46:13.804 00:00:10.366 TCP 23.104.0.1:42988 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:42:23.768 00:05:00.687 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:46:42.518 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43144 10 6452 1 2025-09-05 00:43:23.769 00:05:00.682 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 00:47:14.212 00:00:10.328 TCP 23.104.0.1:55762 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:47:42.734 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36650 10 6452 1 2025-09-05 00:48:20.453 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:48:20.291 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:48:14.581 00:00:10.373 TCP 23.104.0.1:39882 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:48:42.947 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:59056 10 6452 1 2025-09-05 00:49:14.996 00:00:10.369 TCP 23.104.0.1:39354 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:49:43.179 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59340 10 6452 1 2025-09-05 00:50:15.407 00:00:10.329 TCP 23.104.0.1:34544 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:50:43.388 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:42768 10 6452 1 2025-09-05 00:51:15.769 00:00:10.339 TCP 23.104.0.1:52660 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:51:43.561 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45138 10 6452 1 2025-09-05 00:52:16.145 00:00:10.369 TCP 23.104.0.1:46104 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:48:23.770 00:05:00.685 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:52:43.784 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46442 10 6452 1 2025-09-05 00:53:20.529 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:53:20.363 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:53:16.564 00:00:10.418 TCP 23.104.0.1:58916 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:49:23.774 00:05:00.680 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 00:53:43.995 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:47828 10 6452 1 2025-09-05 00:54:17.024 00:00:10.323 TCP 23.104.0.1:40034 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:54:44.179 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51732 10 6452 1 2025-09-05 00:55:17.387 00:00:10.366 TCP 23.104.0.1:45078 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:55:44.394 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56504 10 6452 1 2025-09-05 00:56:17.789 00:00:10.371 TCP 23.104.0.1:37218 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:56:44.618 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:49636 10 6452 1 2025-09-05 00:57:18.200 00:00:10.364 TCP 23.104.0.1:43768 -> 1.101.0.1:3000 11 1507 1 2025-09-05 00:57:44.794 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52936 10 6452 1 2025-09-05 00:58:20.532 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 00:58:20.654 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 00:54:23.771 00:05:00.686 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 00:58:18.605 00:00:10.364 TCP 23.104.0.1:48558 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496228, total packets: 1568, avg bps: 1033, avg pps: 0, avg bpp: 316 Time window: 2025-09-04 23:55:23 - 2025-09-05 00:59:24 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0036s User: 0.0012s Wall: 0.0023s flows/second: 71431.6 Runtime: 0.0023s