Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 17:59:20.658 00:00:10.325 TCP 23.104.0.1:56530 -> 1.101.0.1:3000 11 1507 1 2025-09-05 17:59:34.517 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51228 10 6452 1 2025-09-05 18:00:21.022 00:00:10.366 TCP 23.104.0.1:38476 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:00:34.731 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53056 10 6452 1 2025-09-05 18:01:21.422 00:00:10.371 TCP 23.104.0.1:42306 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:01:34.952 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:37806 10 6452 1 2025-09-05 18:02:21.828 00:00:10.795 TCP 23.104.0.1:41258 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:02:35.181 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:55042 10 6452 1 2025-09-05 17:58:24.119 00:06:00.694 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 18:03:22.666 00:00:10.437 TCP 23.104.0.1:48132 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:03:41.271 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:03:41.263 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:03:35.403 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:43414 10 6452 1 2025-09-05 18:04:23.141 00:00:10.367 TCP 23.104.0.1:36782 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:04:35.598 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:36684 10 6452 1 2025-09-05 18:00:24.122 00:06:00.689 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 18:05:23.550 00:00:10.362 TCP 23.104.0.1:38392 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:05:35.824 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45298 10 6452 1 2025-09-05 18:06:23.954 00:00:10.378 TCP 23.104.0.1:42214 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:06:36.071 00:00:10.622 TCP 1.101.0.1:3000 -> 22.102.0.1:51926 10 6452 1 2025-09-05 18:07:24.376 00:00:10.372 TCP 23.104.0.1:48234 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:07:36.739 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:46936 10 6452 1 2025-09-05 18:08:24.788 00:00:10.437 TCP 23.104.0.1:34088 -> 1.101.0.1:3000 15 1926 1 2025-09-05 18:08:41.215 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:08:41.260 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:08:36.919 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:41450 12 10367 1 2025-09-05 18:09:25.267 00:00:10.358 TCP 23.104.0.1:43870 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:09:37.168 00:00:10.268 TCP 1.101.0.1:3000 -> 22.102.0.1:53206 10 6452 1 2025-09-05 18:05:24.120 00:06:00.695 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 18:10:25.669 00:00:10.372 TCP 23.104.0.1:46230 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:10:37.470 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:58188 10 6452 1 2025-09-05 18:11:26.100 00:00:10.374 TCP 23.104.0.1:39542 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:11:37.639 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44030 10 6452 1 2025-09-05 18:07:24.123 00:06:00.689 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 18:12:26.504 00:00:10.365 TCP 23.104.0.1:46094 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:12:37.858 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:38748 10 6452 1 2025-09-05 18:13:26.911 00:00:10.434 TCP 23.104.0.1:49082 -> 1.101.0.1:3000 15 1926 1 2025-09-05 18:13:41.585 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:13:41.305 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:13:38.099 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51740 12 10365 1 2025-09-05 18:14:27.382 00:00:10.366 TCP 23.104.0.1:51106 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:14:38.317 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48824 10 6452 1 2025-09-05 18:15:27.787 00:00:10.362 TCP 23.104.0.1:50530 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:15:38.531 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42490 10 6452 1 2025-09-05 18:16:28.184 00:00:10.374 TCP 23.104.0.1:43322 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:16:38.746 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:59274 10 6452 1 2025-09-05 18:12:24.121 00:06:00.695 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 18:17:28.594 00:00:10.368 TCP 23.104.0.1:48134 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:17:38.980 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:42980 10 6452 1 2025-09-05 18:18:41.514 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:18:41.326 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:18:29.000 00:00:10.369 TCP 23.104.0.1:42828 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:18:39.213 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55098 10 6452 1 2025-09-05 18:14:24.125 00:06:00.690 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 18:19:29.411 00:00:10.327 TCP 23.104.0.1:56416 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:19:39.426 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41570 10 6452 1 2025-09-05 18:20:29.787 00:00:10.363 TCP 23.104.0.1:37786 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:20:39.643 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49680 10 6452 1 2025-09-05 18:21:30.184 00:00:10.363 TCP 23.104.0.1:43872 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:21:39.855 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:43212 10 6452 1 2025-09-05 18:22:30.589 00:00:10.369 TCP 23.104.0.1:38742 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:22:40.040 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37242 10 6452 1 2025-09-05 18:23:41.601 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:23:41.583 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:23:31.002 00:00:10.360 TCP 23.104.0.1:41694 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:23:40.252 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35066 10 6452 1 2025-09-05 18:19:24.124 00:06:00.694 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 18:24:31.402 00:00:10.366 TCP 23.104.0.1:51776 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:24:40.471 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43986 10 6452 1 2025-09-05 18:25:31.804 00:00:10.336 TCP 23.104.0.1:56788 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:25:40.694 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42248 10 6452 1 2025-09-05 18:21:24.125 00:06:00.691 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 18:26:32.172 00:00:10.363 TCP 23.104.0.1:34462 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:26:40.903 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55190 10 6452 1 2025-09-05 18:27:32.575 00:00:10.364 TCP 23.104.0.1:60840 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:27:41.118 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48002 10 6452 1 2025-09-05 18:28:41.670 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:28:41.671 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:28:32.978 00:00:10.493 TCP 23.104.0.1:34266 -> 1.101.0.1:3000 15 1926 1 2025-09-05 18:28:41.331 00:00:10.220 TCP 1.101.0.1:3000 -> 22.102.0.1:50694 12 10367 1 2025-09-05 18:29:33.510 00:00:10.369 TCP 23.104.0.1:36056 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:29:41.588 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36924 10 6452 1 2025-09-05 18:30:33.915 00:00:10.370 TCP 23.104.0.1:42534 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:30:41.801 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54016 10 6452 1 2025-09-05 18:26:24.124 00:06:00.697 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 18:31:34.320 00:00:10.366 TCP 23.104.0.1:44706 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:31:42.048 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51212 10 6452 1 2025-09-05 18:32:34.724 00:00:10.327 TCP 23.104.0.1:54818 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:32:42.268 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36682 10 6452 1 2025-09-05 18:28:24.127 00:06:00.692 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 18:33:41.516 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:33:41.471 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:33:35.105 00:00:10.437 TCP 23.104.0.1:48284 -> 1.101.0.1:3000 15 1926 1 2025-09-05 18:33:42.486 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:42084 12 10367 1 2025-09-05 18:34:35.581 00:00:10.670 TCP 23.104.0.1:49332 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:34:42.740 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:50828 10 6452 1 2025-09-05 18:35:36.293 00:00:10.369 TCP 23.104.0.1:35732 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:35:42.913 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54032 10 6452 1 2025-09-05 18:36:36.700 00:00:10.333 TCP 23.104.0.1:33272 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:36:43.122 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:50844 10 6452 1 2025-09-05 18:37:37.097 00:00:10.322 TCP 23.104.0.1:54984 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:37:43.367 00:00:10.384 TCP 1.101.0.1:3000 -> 22.102.0.1:55214 10 6452 1 2025-09-05 18:33:24.127 00:06:00.707 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 18:38:41.722 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:38:41.969 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:38:37.457 00:00:10.327 TCP 23.104.0.1:35284 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:38:43.784 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45850 10 6452 1 2025-09-05 18:39:37.821 00:00:10.372 TCP 23.104.0.1:44246 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:39:43.995 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:45198 10 6452 1 2025-09-05 18:35:24.129 00:06:00.701 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 18:40:38.228 00:00:10.369 TCP 23.104.0.1:59204 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:40:44.219 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:39226 10 6452 1 2025-09-05 18:41:38.631 00:00:10.365 TCP 23.104.0.1:53466 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:41:44.403 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:46090 10 6452 1 2025-09-05 18:42:39.033 00:00:10.372 TCP 23.104.0.1:37960 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:42:44.583 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:39232 10 6452 1 2025-09-05 18:43:41.890 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:43:42.053 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:43:39.454 00:00:10.323 TCP 23.104.0.1:42338 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:43:44.806 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52652 10 6452 1 2025-09-05 18:44:39.825 00:00:10.376 TCP 23.104.0.1:39366 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:44:45.036 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58606 10 6452 1 2025-09-05 18:40:24.128 00:06:00.706 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 18:45:40.228 00:00:10.366 TCP 23.104.0.1:42788 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:45:45.249 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47642 10 6452 1 2025-09-05 18:46:40.633 00:00:10.372 TCP 23.104.0.1:43212 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:46:45.457 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41160 10 6452 1 2025-09-05 18:42:24.133 00:06:00.698 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 18:47:41.057 00:00:10.366 TCP 23.104.0.1:33750 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:47:45.673 00:00:10.855 TCP 1.101.0.1:3000 -> 22.102.0.1:36588 10 6452 1 2025-09-05 18:48:42.108 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:48:42.172 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:48:41.457 00:00:10.366 TCP 23.104.0.1:40392 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:48:46.568 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35966 10 6452 1 2025-09-05 18:49:41.863 00:00:10.379 TCP 23.104.0.1:58932 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:49:46.791 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:51030 10 6452 1 2025-09-05 18:50:42.278 00:00:10.365 TCP 23.104.0.1:36920 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:50:46.981 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:52042 10 6452 1 2025-09-05 18:51:42.684 00:00:10.330 TCP 23.104.0.1:52396 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:51:47.227 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40272 10 6452 1 2025-09-05 18:47:24.133 00:06:00.701 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-05 18:52:43.058 00:00:10.364 TCP 23.104.0.1:49142 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:52:47.445 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:46090 10 6452 1 2025-09-05 18:53:41.922 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:53:42.038 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 18:53:43.463 00:00:10.373 TCP 23.104.0.1:46742 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:53:47.615 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:34118 10 6452 1 2025-09-05 18:49:24.136 00:06:00.696 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-05 18:54:43.897 00:00:10.378 TCP 23.104.0.1:43908 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:54:47.791 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:40910 10 6452 1 2025-09-05 18:55:44.309 00:00:10.320 TCP 23.104.0.1:42154 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:55:48.015 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55318 10 6452 1 2025-09-05 18:56:44.670 00:00:10.360 TCP 23.104.0.1:50560 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:56:48.232 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59648 10 6452 1 2025-09-05 18:57:45.091 00:00:10.365 TCP 23.104.0.1:49186 -> 1.101.0.1:3000 11 1507 1 2025-09-05 18:57:48.456 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:50732 10 6452 1 2025-09-05 18:58:42.234 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 18:58:42.364 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 Summary: total flows: 158, total bytes: 506739, total packets: 1559, avg bps: 1120, avg pps: 0, avg bpp: 325 Time window: 2025-09-05 17:58:24 - 2025-09-05 18:58:42 Total flows processed: 158, passed: 158, Blocks skipped: 0, Bytes read: 16496 Sys: 0.0031s User: 0.0015s Wall: 0.0024s flows/second: 66946.2 Runtime: 0.0024s