Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-10 03:58:44.806 00:00:10.330 TCP 23.104.0.1:46210 -> 1.101.0.1:3000 11 1507 1 2025-09-10 03:59:02.956 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46738 10 6452 1 2025-09-10 03:59:45.173 00:00:10.364 TCP 23.104.0.1:53378 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:00:03.179 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:38014 10 6452 1 2025-09-10 04:00:45.574 00:00:10.365 TCP 23.104.0.1:37200 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:00:56.053 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:00:55.734 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:01:03.345 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59166 10 6452 1 2025-09-10 03:57:26.190 00:04:00.800 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-09-10 04:01:45.981 00:00:10.364 TCP 23.104.0.1:58600 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:02:03.559 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36740 10 6452 1 2025-09-10 04:02:46.381 00:00:10.366 TCP 23.104.0.1:60010 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:03:03.771 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45194 10 6452 1 2025-09-10 03:59:26.188 00:04:00.805 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-09-10 04:02:26.192 00:01:00.800 TCP 179.1.22.22:39396 -> 179.1.22.1:179 4 246 1 2025-09-10 04:03:46.784 00:00:10.364 TCP 23.104.0.1:41398 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:04:03.982 00:00:10.805 TCP 1.101.0.1:3000 -> 22.102.0.1:36674 10 6452 1 2025-09-10 04:04:47.186 00:00:10.369 TCP 23.104.0.1:46618 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:05:04.835 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46046 10 6452 1 2025-09-10 04:04:26.190 00:01:00.803 TCP 179.1.22.1:179 -> 179.1.22.22:39396 4 246 1 2025-09-10 04:05:56.245 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:05:56.058 00:00:00.042 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:05:47.593 00:00:10.382 TCP 23.104.0.1:46482 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:06:05.072 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43550 10 6452 1 2025-09-10 04:06:48.008 00:00:10.365 TCP 23.104.0.1:42310 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:07:05.291 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55992 10 6452 1 2025-09-10 04:07:48.413 00:00:10.338 TCP 23.104.0.1:55766 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:08:05.506 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34312 10 6452 1 2025-09-10 04:04:26.192 00:04:00.800 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-09-10 04:08:48.803 00:00:10.369 TCP 23.104.0.1:42460 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:09:05.718 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53540 10 6452 1 2025-09-10 04:09:49.219 00:00:10.366 TCP 23.104.0.1:46130 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:10:05.928 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:50286 10 6452 1 2025-09-10 04:06:26.189 00:04:00.804 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-09-10 04:10:56.523 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:10:56.440 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:10:49.621 00:00:10.368 TCP 23.104.0.1:36172 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:11:06.164 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39668 10 6452 1 2025-09-10 04:11:50.023 00:00:10.367 TCP 23.104.0.1:55336 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:12:06.380 00:00:10.408 TCP 1.101.0.1:3000 -> 22.102.0.1:40768 10 6452 1 2025-09-10 04:12:50.424 00:00:10.369 TCP 23.104.0.1:39818 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:13:06.826 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41946 10 6452 1 2025-09-10 04:09:26.193 00:04:00.801 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-09-10 04:13:50.830 00:00:10.392 TCP 23.104.0.1:45106 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:14:07.044 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47660 10 6452 1 2025-09-10 04:14:51.265 00:00:10.322 TCP 23.104.0.1:53786 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:15:07.252 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59966 10 6452 1 2025-09-10 04:11:26.192 00:04:00.806 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-09-10 04:15:55.970 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:15:56.335 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:15:51.621 00:00:10.363 TCP 23.104.0.1:38068 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:16:07.467 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42940 10 6452 1 2025-09-10 04:16:52.023 00:00:10.322 TCP 23.104.0.1:57914 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:17:07.681 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40100 10 6452 1 2025-09-10 04:17:52.385 00:00:10.366 TCP 23.104.0.1:59294 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:18:07.904 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49426 10 6452 1 2025-09-10 04:14:26.195 00:04:00.799 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-09-10 04:18:52.788 00:00:10.366 TCP 23.104.0.1:38106 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:19:08.120 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57852 10 6452 1 2025-09-10 04:19:53.192 00:00:10.369 TCP 23.104.0.1:52886 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:20:08.333 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51646 10 6452 1 2025-09-10 04:16:26.192 00:04:00.804 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-09-10 04:20:56.350 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:20:56.078 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:20:53.601 00:00:10.364 TCP 23.104.0.1:38164 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:21:08.551 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48842 10 6452 1 2025-09-10 04:21:54.003 00:00:10.908 TCP 23.104.0.1:32988 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:22:08.772 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:36962 10 6452 1 2025-09-10 04:22:54.955 00:00:10.327 TCP 23.104.0.1:41114 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:23:08.960 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42256 10 6452 1 2025-09-10 04:19:26.195 00:04:00.800 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-09-10 04:23:55.315 00:00:10.367 TCP 23.104.0.1:52914 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:24:09.195 00:00:10.377 TCP 1.101.0.1:3000 -> 22.102.0.1:43482 10 6452 1 2025-09-10 04:24:55.720 00:00:10.378 TCP 23.104.0.1:35206 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:25:09.624 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:39852 10 6452 1 2025-09-10 04:21:26.195 00:04:00.803 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-09-10 04:25:56.514 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:25:56.362 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:25:56.131 00:00:10.365 TCP 23.104.0.1:59908 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:26:09.835 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33370 10 6452 1 2025-09-10 04:26:56.534 00:00:10.365 TCP 23.104.0.1:33818 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:27:10.070 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59958 10 6452 1 2025-09-10 04:27:56.939 00:00:10.373 TCP 23.104.0.1:33412 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:28:10.285 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39308 10 6452 1 2025-09-10 04:24:26.198 00:04:00.798 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-09-10 04:28:57.354 00:00:10.322 TCP 23.104.0.1:41956 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:29:10.496 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51628 10 6452 1 2025-09-10 04:29:57.716 00:00:10.386 TCP 23.104.0.1:33884 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:30:10.708 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:39236 10 6452 1 2025-09-10 04:26:26.196 00:05:00.804 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 04:30:56.587 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:30:56.434 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:30:58.137 00:00:10.362 TCP 23.104.0.1:40804 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:31:10.928 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:50612 10 6452 1 2025-09-10 04:31:58.540 00:00:10.729 TCP 23.104.0.1:33670 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:32:11.126 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60056 10 6452 1 2025-09-10 04:32:59.311 00:00:10.365 TCP 23.104.0.1:54744 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:33:11.342 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51192 10 6452 1 2025-09-10 04:29:26.203 00:04:00.795 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-09-10 04:33:59.713 00:00:10.374 TCP 23.104.0.1:38092 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:34:11.553 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43406 10 6452 1 2025-09-10 04:35:00.126 00:00:10.321 TCP 23.104.0.1:50970 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:35:11.767 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54922 10 6452 1 2025-09-10 04:34:26.205 00:01:00.794 TCP 179.1.22.22:39396 -> 179.1.22.1:179 4 246 1 2025-09-10 04:35:56.623 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:35:56.553 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:36:00.486 00:00:10.377 TCP 23.104.0.1:58232 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:36:11.981 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:43976 10 6452 1 2025-09-10 04:32:26.201 00:05:00.803 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 04:37:00.909 00:00:10.368 TCP 23.104.0.1:53666 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:37:12.217 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45822 10 6452 1 2025-09-10 04:38:01.321 00:00:10.387 TCP 23.104.0.1:46678 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:38:12.430 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60858 10 6452 1 2025-09-10 04:39:01.752 00:00:10.376 TCP 23.104.0.1:56990 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:39:12.598 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53074 10 6452 1 2025-09-10 04:40:02.169 00:00:10.322 TCP 23.104.0.1:42918 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:40:12.809 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41014 10 6452 1 2025-09-10 04:36:26.205 00:05:00.796 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 04:40:56.719 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:40:56.871 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:41:02.529 00:00:10.372 TCP 23.104.0.1:60342 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:41:13.030 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35090 10 6452 1 2025-09-10 04:42:02.934 00:00:10.376 TCP 23.104.0.1:42308 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:42:13.243 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51972 10 6452 1 2025-09-10 04:38:26.203 00:05:00.802 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 04:43:03.352 00:00:10.363 TCP 23.104.0.1:45664 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:43:13.454 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:35256 10 6452 1 2025-09-10 04:44:03.754 00:00:10.393 TCP 23.104.0.1:41220 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:44:13.632 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:45072 10 6452 1 2025-09-10 04:45:04.188 00:00:10.333 TCP 23.104.0.1:38174 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:45:13.882 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:39522 10 6452 1 2025-09-10 04:45:56.726 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:45:57.038 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:46:04.553 00:00:10.327 TCP 23.104.0.1:54226 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:46:14.087 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51666 10 6452 1 2025-09-10 04:42:26.206 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 04:47:04.925 00:00:10.393 TCP 23.104.0.1:34472 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:47:14.301 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39354 10 6452 1 2025-09-10 04:48:05.357 00:00:10.855 TCP 23.104.0.1:36438 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:48:14.525 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58982 10 6452 1 2025-09-10 04:44:26.203 00:05:00.837 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 04:49:06.249 00:00:10.328 TCP 23.104.0.1:48120 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:49:14.738 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41746 10 6452 1 2025-09-10 04:50:06.616 00:00:10.365 TCP 23.104.0.1:54868 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:50:14.952 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:45564 10 6452 1 2025-09-10 04:50:57.005 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:50:57.055 00:00:00.057 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:51:07.025 00:00:10.366 TCP 23.104.0.1:56526 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:51:15.183 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:45162 10 6452 1 2025-09-10 04:52:07.429 00:00:10.366 TCP 23.104.0.1:34486 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:52:15.354 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:49152 10 6452 1 2025-09-10 04:48:26.207 00:05:00.832 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 04:53:07.838 00:00:10.423 TCP 23.104.0.1:50802 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:53:15.572 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33366 10 6452 1 2025-09-10 04:54:08.301 00:00:10.365 TCP 23.104.0.1:34846 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:54:15.782 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59802 10 6452 1 2025-09-10 04:50:26.206 00:05:00.837 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 04:55:08.704 00:00:10.369 TCP 23.104.0.1:39212 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:55:15.992 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:47110 10 6452 1 2025-09-10 04:55:56.979 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 04:55:57.378 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 04:56:09.110 00:00:10.371 TCP 23.104.0.1:58566 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:56:16.185 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49302 10 6452 1 2025-09-10 04:57:09.520 00:00:10.323 TCP 23.104.0.1:60976 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:57:16.396 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:45352 10 6452 1 2025-09-10 04:58:09.899 00:00:10.367 TCP 23.104.0.1:55854 -> 1.101.0.1:3000 11 1507 1 2025-09-10 04:58:16.568 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53264 10 6452 1 2025-09-10 04:54:26.210 00:05:00.835 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 Summary: total flows: 168, total bytes: 498348, total packets: 1572, avg bps: 1071, avg pps: 0, avg bpp: 317 Time window: 2025-09-10 03:57:26 - 2025-09-10 04:59:27 Total flows processed: 168, passed: 168, Blocks skipped: 0, Bytes read: 17536 Sys: 0.0030s User: 0.0010s Wall: 0.0027s flows/second: 63157.0 Runtime: 0.0027s