Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 12:59:15.729 00:00:10.372 TCP 23.104.0.1:33024 -> 1.101.0.1:3000 11 1507 1 2025-09-05 12:55:23.991 00:05:00.739 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 12:59:28.125 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:40702 10 6452 1 2025-09-05 13:00:16.154 00:00:10.362 TCP 23.104.0.1:54834 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:00:28.299 00:00:10.279 TCP 1.101.0.1:3000 -> 22.102.0.1:54722 10 6452 1 2025-09-05 13:01:16.553 00:00:10.325 TCP 23.104.0.1:57038 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:01:28.615 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:41960 10 6452 1 2025-09-05 13:02:16.916 00:00:10.321 TCP 23.104.0.1:44860 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:02:28.789 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40630 10 6452 1 2025-09-05 13:03:17.279 00:00:10.699 TCP 23.104.0.1:43376 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:03:35.088 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:03:35.103 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:03:29.005 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34164 10 6452 1 2025-09-05 13:00:23.991 00:05:00.744 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 13:04:18.014 00:00:10.315 TCP 23.104.0.1:33110 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:04:29.215 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:49304 10 6452 1 2025-09-05 13:01:23.995 00:05:00.736 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 13:05:18.371 00:00:10.364 TCP 23.104.0.1:48156 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:05:29.448 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:54446 10 6452 1 2025-09-05 13:06:18.767 00:00:10.379 TCP 23.104.0.1:35618 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:06:29.627 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:52372 10 6452 1 2025-09-05 13:07:19.180 00:00:10.370 TCP 23.104.0.1:52614 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:07:29.805 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32998 10 6452 1 2025-09-05 13:08:19.584 00:00:10.368 TCP 23.104.0.1:40030 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:08:35.362 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:08:35.365 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:08:30.029 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:52876 10 6452 1 2025-09-05 13:09:19.994 00:00:10.362 TCP 23.104.0.1:48192 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:09:30.235 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51128 10 6452 1 2025-09-05 13:06:23.995 00:05:00.740 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 13:10:20.392 00:00:10.364 TCP 23.104.0.1:53510 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:10:30.408 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:35276 10 6452 1 2025-09-05 13:07:23.996 00:05:00.735 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 13:11:20.800 00:00:10.368 TCP 23.104.0.1:57830 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:11:30.578 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47978 10 6452 1 2025-09-05 13:12:21.205 00:00:10.371 TCP 23.104.0.1:59628 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:12:30.792 00:00:10.319 TCP 1.101.0.1:3000 -> 22.102.0.1:37546 10 6452 1 2025-09-05 13:13:21.618 00:00:10.326 TCP 23.104.0.1:56578 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:13:35.096 00:00:00.042 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:13:35.386 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:13:31.144 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58724 10 6452 1 2025-09-05 13:14:21.984 00:00:10.371 TCP 23.104.0.1:58508 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:14:31.357 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:34202 10 6452 1 2025-09-05 13:15:22.398 00:00:10.366 TCP 23.104.0.1:45324 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:15:31.532 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45154 10 6452 1 2025-09-05 13:12:23.998 00:05:00.738 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 13:16:22.804 00:00:10.366 TCP 23.104.0.1:51752 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:16:31.752 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:53082 10 6452 1 2025-09-05 13:17:23.211 00:00:10.318 TCP 23.104.0.1:41932 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:17:31.935 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:60940 10 6452 1 2025-09-05 13:13:24.001 00:06:00.733 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 13:18:35.697 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:18:35.442 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:18:23.570 00:00:10.832 TCP 23.104.0.1:54732 -> 1.101.0.1:3000 15 1926 1 2025-09-05 13:18:32.172 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:57700 12 10367 1 2025-09-05 13:19:24.438 00:00:10.367 TCP 23.104.0.1:41068 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:19:32.413 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:45484 10 6452 1 2025-09-05 13:20:24.846 00:00:10.387 TCP 23.104.0.1:37710 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:20:32.584 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55312 10 6452 1 2025-09-05 13:21:25.272 00:00:10.363 TCP 23.104.0.1:33660 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:21:32.796 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:34876 10 6452 1 2025-09-05 13:22:25.674 00:00:10.394 TCP 23.104.0.1:52968 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:22:33.031 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:38110 10 6452 1 2025-09-05 13:18:24.001 00:06:00.737 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 13:23:35.497 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:23:26.105 00:00:10.445 TCP 23.104.0.1:46826 -> 1.101.0.1:3000 15 1926 1 2025-09-05 13:23:35.566 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:23:33.204 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:34752 12 10365 1 2025-09-05 13:24:26.588 00:00:10.368 TCP 23.104.0.1:50250 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:24:33.456 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56816 10 6452 1 2025-09-05 13:20:24.003 00:06:00.733 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 13:25:26.988 00:00:10.367 TCP 23.104.0.1:43576 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:25:33.674 00:00:10.473 TCP 1.101.0.1:3000 -> 22.102.0.1:52302 10 6452 1 2025-09-05 13:26:27.392 00:00:10.332 TCP 23.104.0.1:47710 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:26:34.188 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:56920 10 6452 1 2025-09-05 13:27:27.766 00:00:10.333 TCP 23.104.0.1:35516 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:27:34.398 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43186 10 6452 1 2025-09-05 13:28:35.497 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:28:35.639 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:28:28.135 00:00:10.368 TCP 23.104.0.1:45746 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:28:34.609 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49494 10 6452 1 2025-09-05 13:29:28.538 00:00:10.368 TCP 23.104.0.1:40052 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:29:34.829 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:45528 10 6452 1 2025-09-05 13:25:24.015 00:06:00.725 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 13:30:28.942 00:00:10.331 TCP 23.104.0.1:47088 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:30:35.002 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38632 10 6452 1 2025-09-05 13:31:29.308 00:00:10.329 TCP 23.104.0.1:37902 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:31:35.218 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44436 10 6452 1 2025-09-05 13:27:24.022 00:06:00.716 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 13:32:29.673 00:00:10.377 TCP 23.104.0.1:33172 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:32:35.432 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40624 10 6452 1 2025-09-05 13:33:35.711 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:33:35.673 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:33:30.105 00:00:10.324 TCP 23.104.0.1:34208 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:33:35.650 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:60790 10 6452 1 2025-09-05 13:34:30.465 00:00:10.368 TCP 23.104.0.1:59996 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:34:35.817 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57396 10 6452 1 2025-09-05 13:35:30.869 00:00:10.361 TCP 23.104.0.1:48936 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:35:36.036 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33956 10 6452 1 2025-09-05 13:36:31.270 00:00:10.326 TCP 23.104.0.1:37320 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:36:36.248 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39734 10 6452 1 2025-09-05 13:32:24.034 00:06:00.708 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 13:37:31.629 00:00:10.362 TCP 23.104.0.1:58328 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:37:36.462 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:41656 10 6452 1 2025-09-05 13:38:35.941 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:38:35.797 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:38:32.034 00:00:10.367 TCP 23.104.0.1:58046 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:38:36.634 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35326 10 6452 1 2025-09-05 13:34:24.039 00:06:00.701 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 13:39:36.846 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:59878 10 6452 1 2025-09-05 13:39:32.443 00:00:10.325 TCP 23.104.0.1:59462 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:40:32.804 00:00:10.366 TCP 23.104.0.1:53260 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:40:37.029 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45750 10 6452 1 2025-09-05 13:41:33.206 00:00:10.362 TCP 23.104.0.1:33794 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:41:37.243 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47670 10 6452 1 2025-09-05 13:42:33.605 00:00:10.371 TCP 23.104.0.1:45496 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:42:37.460 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:45564 10 6452 1 2025-09-05 13:43:35.789 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:43:35.970 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:43:34.013 00:00:10.363 TCP 23.104.0.1:45522 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:43:37.648 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43830 10 6452 1 2025-09-05 13:39:24.036 00:06:00.707 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 13:44:34.418 00:00:10.326 TCP 23.104.0.1:38942 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:44:37.865 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57050 10 6452 1 2025-09-05 13:45:34.783 00:00:10.406 TCP 23.104.0.1:35746 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:45:38.088 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48504 10 6452 1 2025-09-05 13:41:24.040 00:06:00.703 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 13:46:35.187 00:00:10.364 TCP 23.104.0.1:49176 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:46:38.297 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:51972 10 6452 1 2025-09-05 13:47:35.593 00:00:10.324 TCP 23.104.0.1:56606 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:47:38.501 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46392 10 6452 1 2025-09-05 13:48:35.833 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:48:36.123 00:00:00.031 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:48:35.954 00:00:10.326 TCP 23.104.0.1:44744 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:48:38.673 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:48802 10 6452 1 2025-09-05 13:49:36.316 00:00:10.366 TCP 23.104.0.1:59440 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:49:38.853 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:44494 10 6452 1 2025-09-05 13:50:39.081 00:00:10.666 TCP 1.101.0.1:3000 -> 22.102.0.1:56032 10 6452 1 2025-09-05 13:50:36.716 00:00:10.728 TCP 23.104.0.1:49654 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:46:24.051 00:06:00.694 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 13:51:39.788 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41428 10 6452 1 2025-09-05 13:51:37.480 00:00:10.327 TCP 23.104.0.1:36102 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:52:40.005 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46978 10 6452 1 2025-09-05 13:52:37.844 00:00:10.391 TCP 23.104.0.1:42034 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:48:24.054 00:06:00.689 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 13:53:36.329 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:53:36.164 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:53:40.222 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42208 10 6452 1 2025-09-05 13:53:38.271 00:00:10.326 TCP 23.104.0.1:46664 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:54:40.434 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:51520 10 6452 1 2025-09-05 13:54:38.637 00:00:10.363 TCP 23.104.0.1:36402 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:55:39.050 00:00:10.370 TCP 23.104.0.1:57902 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:55:40.644 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58808 10 6452 1 2025-09-05 13:56:40.858 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:38984 10 6452 1 2025-09-05 13:56:39.458 00:00:10.375 TCP 23.104.0.1:38216 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:57:41.069 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53048 10 6452 1 2025-09-05 13:57:39.867 00:00:11.002 TCP 23.104.0.1:53754 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:53:24.055 00:06:00.691 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 13:58:36.252 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 13:58:36.378 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 13:58:40.919 00:00:10.364 TCP 23.104.0.1:49976 -> 1.101.0.1:3000 11 1507 1 2025-09-05 13:58:41.286 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47680 10 6452 1 Summary: total flows: 162, total bytes: 507014, total packets: 1584, avg bps: 1056, avg pps: 0, avg bpp: 320 Time window: 2025-09-05 12:55:23 - 2025-09-05 13:59:24 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0015s User: 0.0030s Wall: 0.0041s flows/second: 39435.7 Runtime: 0.0041s