Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-08 19:59:18.312 00:00:10.326 TCP 23.104.0.1:42336 -> 1.101.0.1:3000 11 1507 1 2025-09-08 19:59:40.408 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45868 10 6452 1 2025-09-08 20:00:17.266 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:00:17.450 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:00:18.674 00:00:10.360 TCP 23.104.0.1:38842 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:00:40.624 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47466 10 6452 1 2025-09-08 20:01:19.102 00:00:10.367 TCP 23.104.0.1:48652 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:01:40.841 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48016 10 6452 1 2025-09-08 20:02:19.505 00:00:10.366 TCP 23.104.0.1:57154 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:02:41.083 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55656 10 6452 1 2025-09-08 19:59:25.532 00:05:00.822 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:03:19.912 00:00:10.363 TCP 23.104.0.1:44386 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:03:41.294 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:51814 10 6452 1 2025-09-08 20:00:25.530 00:05:00.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-08 20:04:20.319 00:00:10.371 TCP 23.104.0.1:48062 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:04:41.469 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52154 10 6452 1 2025-09-08 20:05:17.410 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:05:17.367 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:05:20.728 00:00:10.777 TCP 23.104.0.1:49896 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:05:41.686 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54964 12 6556 1 2025-09-08 20:06:21.548 00:00:10.371 TCP 23.104.0.1:53544 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:06:41.904 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40138 10 6452 1 2025-09-08 20:07:21.955 00:00:10.366 TCP 23.104.0.1:35608 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:07:42.117 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52462 10 6452 1 2025-09-08 20:08:22.357 00:00:10.321 TCP 23.104.0.1:36962 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:08:42.330 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:40008 10 6452 1 2025-09-08 20:05:25.537 00:05:00.818 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:09:22.717 00:00:10.373 TCP 23.104.0.1:40798 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:09:42.504 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47726 10 6452 1 2025-09-08 20:10:17.936 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:10:17.673 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:06:25.533 00:05:00.824 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-08 20:10:23.132 00:00:10.363 TCP 23.104.0.1:49756 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:10:42.712 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38112 10 6452 1 2025-09-08 20:11:23.535 00:00:10.361 TCP 23.104.0.1:50912 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:11:42.926 00:00:10.162 TCP 1.101.0.1:3000 -> 22.102.0.1:35114 10 6452 1 2025-09-08 20:12:23.938 00:00:10.387 TCP 23.104.0.1:39118 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:12:43.125 00:00:10.450 TCP 1.101.0.1:3000 -> 22.102.0.1:51926 10 6452 1 2025-09-08 20:13:24.353 00:00:10.436 TCP 23.104.0.1:59984 -> 1.101.0.1:3000 15 1926 1 2025-09-08 20:13:43.613 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:34104 12 10367 1 2025-09-08 20:14:24.832 00:00:10.387 TCP 23.104.0.1:57714 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:14:43.854 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:37032 10 6452 1 2025-09-08 20:15:17.734 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:15:17.845 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:11:25.538 00:05:00.819 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:15:25.258 00:00:10.368 TCP 23.104.0.1:43184 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:15:44.088 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57088 10 6452 1 2025-09-08 20:12:25.535 00:05:00.824 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-08 20:16:25.674 00:00:10.385 TCP 23.104.0.1:52196 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:16:44.304 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59282 10 6452 1 2025-09-08 20:17:26.105 00:00:10.364 TCP 23.104.0.1:60428 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:17:44.513 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:44376 10 6452 1 2025-09-08 20:18:26.509 00:00:10.327 TCP 23.104.0.1:53268 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:18:44.678 00:00:10.484 TCP 1.101.0.1:3000 -> 22.102.0.1:51198 10 6452 1 2025-09-08 20:19:26.904 00:00:10.370 TCP 23.104.0.1:45450 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:19:45.204 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48352 10 6452 1 2025-09-08 20:20:17.912 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:20:17.981 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:20:27.314 00:00:10.359 TCP 23.104.0.1:47080 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:20:45.422 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59204 10 6452 1 2025-09-08 20:17:25.540 00:05:00.818 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:21:27.710 00:00:10.382 TCP 23.104.0.1:59884 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:21:45.648 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:43988 10 6452 1 2025-09-08 20:18:25.536 00:05:00.825 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-08 20:22:28.135 00:00:10.365 TCP 23.104.0.1:51494 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:22:45.816 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36054 10 6452 1 2025-09-08 20:23:28.543 00:00:10.370 TCP 23.104.0.1:53350 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:23:46.036 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49184 10 6452 1 2025-09-08 20:24:28.949 00:00:10.371 TCP 23.104.0.1:36972 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:24:46.257 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59806 10 6452 1 2025-09-08 20:25:17.945 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:25:17.706 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:25:29.368 00:00:10.322 TCP 23.104.0.1:47474 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:25:46.465 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:47542 10 6452 1 2025-09-08 20:26:29.725 00:00:10.326 TCP 23.104.0.1:58214 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:26:46.673 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:55548 10 6452 1 2025-09-08 20:23:25.539 00:05:00.820 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:27:30.112 00:00:10.326 TCP 23.104.0.1:57920 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:27:46.885 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:34648 10 6452 1 2025-09-08 20:24:25.538 00:05:00.826 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-08 20:28:30.477 00:00:10.368 TCP 23.104.0.1:55292 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:28:47.107 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52478 10 6452 1 2025-09-08 20:29:30.887 00:00:10.385 TCP 23.104.0.1:50160 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:29:47.318 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:52220 10 6452 1 2025-09-08 20:30:18.252 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:30:18.273 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:30:31.309 00:00:10.327 TCP 23.104.0.1:55524 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:30:47.545 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:42474 10 6452 1 2025-09-08 20:31:31.675 00:00:10.359 TCP 23.104.0.1:48422 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:31:47.718 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42500 10 6452 1 2025-09-08 20:32:32.097 00:00:10.365 TCP 23.104.0.1:52080 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:32:47.931 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:53102 10 6452 1 2025-09-08 20:29:25.544 00:05:00.817 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:33:32.504 00:00:10.365 TCP 23.104.0.1:50792 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:33:48.166 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45888 10 6452 1 2025-09-08 20:30:25.541 00:05:00.823 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-08 20:34:32.907 00:00:10.360 TCP 23.104.0.1:53602 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:34:48.377 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57618 10 6452 1 2025-09-08 20:35:18.060 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:35:17.993 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:35:33.307 00:00:10.363 TCP 23.104.0.1:53600 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:35:48.589 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:38762 10 6452 1 2025-09-08 20:36:33.712 00:00:10.386 TCP 23.104.0.1:34868 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:36:48.764 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51848 10 6452 1 2025-09-08 20:37:34.138 00:00:10.370 TCP 23.104.0.1:56778 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:37:48.972 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:59418 10 6452 1 2025-09-08 20:38:34.542 00:00:10.440 TCP 23.104.0.1:55150 -> 1.101.0.1:3000 15 1926 1 2025-09-08 20:38:49.210 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:45552 12 10367 1 2025-09-08 20:35:25.545 00:05:00.821 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:39:35.020 00:00:10.366 TCP 23.104.0.1:36092 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:39:49.448 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47290 10 6452 1 2025-09-08 20:40:18.315 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:40:18.220 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:36:25.541 00:05:00.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-08 20:40:35.422 00:00:10.369 TCP 23.104.0.1:41860 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:40:49.672 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36830 10 6452 1 2025-09-08 20:41:35.827 00:00:10.384 TCP 23.104.0.1:48036 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:41:49.893 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34800 10 6452 1 2025-09-08 20:42:36.249 00:00:10.367 TCP 23.104.0.1:44626 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:42:50.112 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:38748 10 6452 1 2025-09-08 20:43:36.651 00:00:10.410 TCP 23.104.0.1:57596 -> 1.101.0.1:3000 15 1926 1 2025-09-08 20:43:50.283 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:43266 12 10367 1 2025-09-08 20:44:37.114 00:00:10.362 TCP 23.104.0.1:37520 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:44:50.524 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:50426 10 6452 1 2025-09-08 20:45:18.261 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:45:18.251 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:41:25.545 00:05:00.822 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:45:37.521 00:00:10.362 TCP 23.104.0.1:47064 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:45:50.694 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34488 10 6452 1 2025-09-08 20:42:25.544 00:05:00.828 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-08 20:46:37.926 00:00:10.385 TCP 23.104.0.1:47864 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:46:50.913 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58464 10 6452 1 2025-09-08 20:47:38.349 00:00:10.374 TCP 23.104.0.1:38610 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:47:51.125 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:50168 10 6452 1 2025-09-08 20:48:38.759 00:00:10.379 TCP 23.104.0.1:55512 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:48:51.374 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59320 10 6452 1 2025-09-08 20:49:39.175 00:00:10.327 TCP 23.104.0.1:38200 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:49:51.583 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:55702 10 6452 1 2025-09-08 20:50:18.262 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:50:18.440 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:50:39.541 00:00:10.366 TCP 23.104.0.1:39024 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:50:51.752 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:57332 10 6452 1 2025-09-08 20:47:25.547 00:05:00.821 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:51:39.944 00:00:10.370 TCP 23.104.0.1:45760 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:51:51.959 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:60518 10 6452 1 2025-09-08 20:48:25.545 00:05:00.825 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-08 20:52:40.353 00:00:10.365 TCP 23.104.0.1:48286 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:52:52.154 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53858 10 6452 1 2025-09-08 20:53:40.761 00:00:10.330 TCP 23.104.0.1:34376 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:53:52.368 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40786 10 6452 1 2025-09-08 20:54:41.128 00:00:10.336 TCP 23.104.0.1:41906 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:54:52.584 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54556 10 6452 1 2025-09-08 20:55:18.251 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 20:55:18.221 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-08 20:55:41.513 00:00:10.367 TCP 23.104.0.1:38884 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:55:52.802 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:44892 10 6452 1 2025-09-08 20:56:41.917 00:00:10.393 TCP 23.104.0.1:38382 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:56:53.048 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49006 10 6452 1 2025-09-08 20:53:25.549 00:05:00.822 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-08 20:57:42.365 00:00:10.367 TCP 23.104.0.1:35248 -> 1.101.0.1:3000 11 1507 1 2025-09-08 20:57:53.270 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50114 10 6452 1 2025-09-08 20:54:25.547 00:05:00.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 Summary: total flows: 162, total bytes: 503495, total packets: 1571, avg bps: 1116, avg pps: 0, avg bpp: 320 Time window: 2025-09-08 19:59:18 - 2025-09-08 20:59:26 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0038s User: 0.0010s Wall: 0.0022s flows/second: 74105.9 Runtime: 0.0022s