Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 04:59:00.362 00:00:10.366 TCP 23.104.0.1:56936 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:55:23.843 00:05:00.699 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:59:39.305 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:49914 10 6452 1 2025-09-05 05:00:00.767 00:00:10.373 TCP 23.104.0.1:60668 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:00:39.473 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51008 10 6452 1 2025-09-05 05:01:01.178 00:00:10.323 TCP 23.104.0.1:43308 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:01:39.682 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56934 10 6452 1 2025-09-05 05:02:01.539 00:00:10.367 TCP 23.104.0.1:34018 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:02:39.896 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47018 10 6452 1 2025-09-05 05:03:01.946 00:00:10.371 TCP 23.104.0.1:58496 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:03:25.878 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:03:25.717 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:03:40.120 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46256 10 6452 1 2025-09-05 05:04:02.354 00:00:10.385 TCP 23.104.0.1:59122 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:00:23.841 00:05:00.703 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:04:40.332 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:35302 10 6452 1 2025-09-05 05:05:02.793 00:00:10.363 TCP 23.104.0.1:37528 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:01:23.843 00:05:00.698 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 05:05:40.508 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40838 10 6452 1 2025-09-05 05:06:03.195 00:00:10.370 TCP 23.104.0.1:55220 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:06:40.722 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:32988 10 6452 1 2025-09-05 05:07:03.606 00:00:10.366 TCP 23.104.0.1:58646 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:07:40.933 00:00:10.450 TCP 1.101.0.1:3000 -> 22.102.0.1:41002 10 6452 1 2025-09-05 05:08:04.011 00:00:10.365 TCP 23.104.0.1:49646 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:08:25.401 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:08:25.756 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:08:41.420 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38752 10 6452 1 2025-09-05 05:09:04.414 00:00:10.364 TCP 23.104.0.1:48366 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:09:41.639 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:54252 10 6452 1 2025-09-05 05:10:04.821 00:00:10.368 TCP 23.104.0.1:51570 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:06:23.842 00:05:00.705 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:10:41.812 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:53008 10 6452 1 2025-09-05 05:11:05.229 00:00:10.371 TCP 23.104.0.1:56578 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:07:23.844 00:05:00.700 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 05:11:42.025 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:42096 10 6452 1 2025-09-05 05:12:05.636 00:00:10.375 TCP 23.104.0.1:50598 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:12:42.197 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54066 10 6452 1 2025-09-05 05:13:06.062 00:00:10.369 TCP 23.104.0.1:43872 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:13:25.674 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:13:25.748 00:00:00.028 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:13:42.432 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60110 10 6452 1 2025-09-05 05:14:06.471 00:00:10.379 TCP 23.104.0.1:38542 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:14:42.615 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:34306 10 6452 1 2025-09-05 05:15:06.894 00:00:10.333 TCP 23.104.0.1:39832 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:15:42.788 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46816 10 6452 1 2025-09-05 05:16:07.260 00:00:10.416 TCP 23.104.0.1:42872 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:12:23.845 00:05:00.703 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:16:43.004 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52376 10 6452 1 2025-09-05 05:17:07.718 00:00:10.371 TCP 23.104.0.1:34076 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:13:23.848 00:05:00.698 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 05:17:43.219 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49840 10 6452 1 2025-09-05 05:18:08.131 00:00:10.362 TCP 23.104.0.1:42878 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:18:25.715 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:18:25.661 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:18:43.436 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39206 10 6452 1 2025-09-05 05:19:08.536 00:00:10.324 TCP 23.104.0.1:54576 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:19:43.656 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37366 10 6452 1 2025-09-05 05:20:08.899 00:00:10.374 TCP 23.104.0.1:49372 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:20:43.830 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45356 10 6452 1 2025-09-05 05:21:09.311 00:00:10.324 TCP 23.104.0.1:40850 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:21:44.071 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38860 10 6452 1 2025-09-05 05:22:09.676 00:00:10.367 TCP 23.104.0.1:40198 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:18:23.845 00:05:00.705 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:22:44.282 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:43990 10 6452 1 2025-09-05 05:23:10.099 00:00:10.371 TCP 23.104.0.1:42196 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:23:25.976 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:23:25.801 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:19:23.850 00:05:00.698 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 05:23:44.454 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60732 10 6452 1 2025-09-05 05:24:10.508 00:00:10.367 TCP 23.104.0.1:40790 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:24:44.663 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:32970 10 6452 1 2025-09-05 05:25:10.913 00:00:10.320 TCP 23.104.0.1:50596 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:25:44.880 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:45696 10 6452 1 2025-09-05 05:26:11.275 00:00:10.367 TCP 23.104.0.1:49836 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:26:45.102 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39592 10 6452 1 2025-09-05 05:27:11.683 00:00:10.365 TCP 23.104.0.1:43624 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:27:45.320 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59244 10 6452 1 2025-09-05 05:28:12.105 00:00:10.321 TCP 23.104.0.1:46180 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:28:25.920 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:28:25.848 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:24:23.848 00:05:00.704 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:28:45.521 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:53180 10 6452 1 2025-09-05 05:25:23.852 00:05:00.699 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 05:29:12.465 00:00:10.365 TCP 23.104.0.1:52446 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:29:45.698 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37184 10 6452 1 2025-09-05 05:30:12.869 00:00:10.366 TCP 23.104.0.1:46440 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:30:45.912 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:60246 10 6452 1 2025-09-05 05:31:13.272 00:00:10.363 TCP 23.104.0.1:56396 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:31:46.144 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56596 10 6452 1 2025-09-05 05:32:13.675 00:00:10.376 TCP 23.104.0.1:38036 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:32:46.352 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52268 10 6452 1 2025-09-05 05:33:14.108 00:00:10.365 TCP 23.104.0.1:38934 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:33:26.138 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:33:26.219 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:33:46.565 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46536 10 6452 1 2025-09-05 05:34:14.506 00:00:10.365 TCP 23.104.0.1:45112 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:30:23.850 00:05:00.713 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:34:46.779 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49690 10 6452 1 2025-09-05 05:31:23.853 00:05:00.702 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 05:35:14.911 00:00:10.360 TCP 23.104.0.1:48156 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:35:46.991 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52126 10 6452 1 2025-09-05 05:36:15.313 00:00:10.377 TCP 23.104.0.1:52406 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:36:47.213 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:34196 10 6452 1 2025-09-05 05:37:15.734 00:00:10.368 TCP 23.104.0.1:37588 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:37:47.386 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:44372 10 6452 1 2025-09-05 05:38:26.146 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:38:26.278 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:38:16.144 00:00:10.362 TCP 23.104.0.1:51888 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:38:47.610 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:32964 10 6452 1 2025-09-05 05:39:16.548 00:00:10.365 TCP 23.104.0.1:45660 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:39:47.783 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:40842 10 6452 1 2025-09-05 05:36:23.852 00:05:00.707 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:40:16.957 00:00:10.363 TCP 23.104.0.1:57420 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:40:48.032 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58156 10 6452 1 2025-09-05 05:37:23.863 00:05:00.693 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 05:41:17.358 00:00:10.366 TCP 23.104.0.1:40562 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:41:48.248 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:37924 10 6452 1 2025-09-05 05:42:17.770 00:00:10.380 TCP 23.104.0.1:58692 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:42:48.427 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54656 10 6452 1 2025-09-05 05:43:26.401 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:43:26.504 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:43:18.184 00:00:10.367 TCP 23.104.0.1:43000 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:43:48.643 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:38070 10 6452 1 2025-09-05 05:44:18.597 00:00:10.366 TCP 23.104.0.1:36862 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:44:48.819 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:45644 10 6452 1 2025-09-05 05:45:19.003 00:00:10.368 TCP 23.104.0.1:53536 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:45:49.036 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57902 10 6452 1 2025-09-05 05:42:23.862 00:05:00.697 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:46:19.408 00:00:10.322 TCP 23.104.0.1:46020 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:46:49.253 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49622 10 6452 1 2025-09-05 05:43:23.865 00:05:00.691 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 05:47:19.774 00:00:10.370 TCP 23.104.0.1:55572 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:47:49.467 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37014 10 6452 1 2025-09-05 05:48:26.578 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:48:26.259 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:48:20.179 00:00:10.360 TCP 23.104.0.1:43838 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:48:49.675 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36024 10 6452 1 2025-09-05 05:49:20.578 00:00:10.364 TCP 23.104.0.1:45618 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:49:49.888 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:60780 10 6452 1 2025-09-05 05:50:20.980 00:00:10.337 TCP 23.104.0.1:41890 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:50:50.084 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:36192 10 6452 1 2025-09-05 05:51:21.354 00:00:10.366 TCP 23.104.0.1:53724 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:51:50.260 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:51036 10 6452 1 2025-09-05 05:48:23.866 00:05:00.695 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:52:21.756 00:00:10.380 TCP 23.104.0.1:50028 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:52:50.430 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:43676 10 6452 1 2025-09-05 05:53:26.415 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:49:23.870 00:05:00.689 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 05:53:26.544 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:53:22.179 00:00:10.361 TCP 23.104.0.1:43396 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:53:50.599 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54346 10 6452 1 2025-09-05 05:54:22.582 00:00:10.366 TCP 23.104.0.1:34948 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:54:50.770 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48416 10 6452 1 2025-09-05 05:55:22.986 00:00:10.370 TCP 23.104.0.1:59330 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:55:50.988 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:35604 10 6452 1 2025-09-05 05:56:23.398 00:00:10.369 TCP 23.104.0.1:38306 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:56:51.213 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55778 10 6452 1 2025-09-05 05:57:23.809 00:00:10.361 TCP 23.104.0.1:52626 -> 1.101.0.1:3000 11 1507 1 2025-09-05 05:57:51.428 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:37960 10 6452 1 2025-09-05 05:58:26.737 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 05:54:23.869 00:05:00.694 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 05:58:26.800 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 05:58:24.221 00:00:10.360 TCP 23.104.0.1:56492 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 491896, total packets: 1562, avg bps: 1024, avg pps: 0, avg bpp: 314 Time window: 2025-09-05 04:55:23 - 2025-09-05 05:59:24 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0036s User: 0.0018s Wall: 0.0027s flows/second: 60571.6 Runtime: 0.0027s