Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-10 13:59:00.539 00:00:10.365 TCP 23.104.0.1:52604 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:59:27.831 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:56844 10 6452 1 2025-09-10 14:00:00.934 00:00:10.383 TCP 23.104.0.1:42980 -> 1.101.0.1:3000 11 1507 1 2025-09-10 13:56:26.382 00:05:00.832 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:00:28.007 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52114 10 6452 1 2025-09-10 14:01:01.355 00:00:10.363 TCP 23.104.0.1:51520 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:01:07.856 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:01:07.964 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:01:28.222 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50124 10 6452 1 2025-09-10 14:02:01.758 00:00:10.375 TCP 23.104.0.1:57780 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:02:28.440 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47364 10 6452 1 2025-09-10 14:03:02.174 00:00:10.371 TCP 23.104.0.1:53722 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:03:28.651 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45484 10 6452 1 2025-09-10 14:04:02.585 00:00:10.362 TCP 23.104.0.1:33388 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:00:26.386 00:05:00.827 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:04:28.863 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:32884 10 6452 1 2025-09-10 14:05:02.982 00:00:10.367 TCP 23.104.0.1:42656 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:05:29.087 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:55714 10 6452 1 2025-09-10 14:06:08.098 00:00:00.045 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:06:08.169 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:06:03.388 00:00:10.365 TCP 23.104.0.1:48750 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:02:26.383 00:05:00.833 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:06:29.296 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45952 10 6452 1 2025-09-10 14:07:03.794 00:00:10.360 TCP 23.104.0.1:59766 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:07:29.516 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:40166 10 6452 1 2025-09-10 14:08:04.190 00:00:10.370 TCP 23.104.0.1:53144 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:08:29.759 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37166 10 6452 1 2025-09-10 14:09:04.599 00:00:10.369 TCP 23.104.0.1:41286 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:09:29.967 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:33536 10 6452 1 2025-09-10 14:10:05.005 00:00:10.331 TCP 23.104.0.1:54228 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:06:26.389 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:10:30.204 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45704 10 6452 1 2025-09-10 14:11:08.109 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:11:08.382 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:11:05.377 00:00:10.364 TCP 23.104.0.1:34270 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:11:30.416 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45480 10 6452 1 2025-09-10 14:12:05.778 00:00:10.325 TCP 23.104.0.1:44128 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:08:26.389 00:05:00.829 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:12:30.624 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59824 10 6452 1 2025-09-10 14:13:06.139 00:00:10.527 TCP 23.104.0.1:44892 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:13:30.836 00:00:10.220 TCP 1.101.0.1:3000 -> 22.102.0.1:36192 12 10365 1 2025-09-10 14:14:06.703 00:00:10.443 TCP 23.104.0.1:46070 -> 1.101.0.1:3000 15 1926 1 2025-09-10 14:14:31.091 00:00:10.618 TCP 1.101.0.1:3000 -> 22.102.0.1:36380 10 6452 1 2025-09-10 14:15:07.185 00:00:10.366 TCP 23.104.0.1:49196 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:15:31.752 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56144 10 6452 1 2025-09-10 14:16:08.298 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:16:08.355 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:16:07.590 00:00:10.439 TCP 23.104.0.1:58470 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:12:26.394 00:05:00.823 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:16:31.972 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:58812 10 6452 1 2025-09-10 14:17:08.094 00:00:10.362 TCP 23.104.0.1:39936 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:17:32.207 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54648 10 6452 1 2025-09-10 14:18:08.493 00:00:10.372 TCP 23.104.0.1:52972 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:14:26.390 00:05:00.830 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:18:32.421 00:00:10.427 TCP 1.101.0.1:3000 -> 22.102.0.1:33772 10 6452 1 2025-09-10 14:19:08.904 00:00:10.367 TCP 23.104.0.1:48356 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:19:32.888 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39202 10 6452 1 2025-09-10 14:20:09.310 00:00:10.374 TCP 23.104.0.1:57244 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:20:33.111 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42298 10 6452 1 2025-09-10 14:21:08.466 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:21:08.393 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:21:09.721 00:00:10.370 TCP 23.104.0.1:57902 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:21:33.323 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:47380 10 6452 1 2025-09-10 14:22:10.127 00:00:10.361 TCP 23.104.0.1:52342 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:18:26.394 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:22:33.549 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56896 10 6452 1 2025-09-10 14:23:10.529 00:00:10.369 TCP 23.104.0.1:53104 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:23:33.768 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:52658 10 6452 1 2025-09-10 14:24:10.935 00:00:10.333 TCP 23.104.0.1:50470 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:20:26.392 00:05:00.832 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:24:34.006 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:49596 10 6452 1 2025-09-10 14:25:11.304 00:00:10.360 TCP 23.104.0.1:43846 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:25:34.242 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:35934 10 6452 1 2025-09-10 14:26:08.858 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:26:08.962 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:26:11.701 00:00:10.365 TCP 23.104.0.1:38322 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:26:34.492 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:47964 10 6452 1 2025-09-10 14:27:12.107 00:00:10.363 TCP 23.104.0.1:40230 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:27:34.704 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49282 10 6452 1 2025-09-10 14:28:12.510 00:00:10.365 TCP 23.104.0.1:34374 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:24:26.397 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:28:34.909 00:00:10.395 TCP 1.101.0.1:3000 -> 22.102.0.1:34008 10 6452 1 2025-09-10 14:29:12.913 00:00:10.365 TCP 23.104.0.1:51546 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:29:35.350 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49052 10 6452 1 2025-09-10 14:30:13.318 00:00:10.368 TCP 23.104.0.1:32836 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:26:26.393 00:05:00.833 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:30:35.570 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39992 10 6452 1 2025-09-10 14:31:08.590 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:31:08.659 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:31:13.725 00:00:10.366 TCP 23.104.0.1:37058 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:31:35.791 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38298 10 6452 1 2025-09-10 14:32:14.138 00:00:10.365 TCP 23.104.0.1:60234 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:32:36.014 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40876 10 6452 1 2025-09-10 14:33:14.557 00:00:10.359 TCP 23.104.0.1:36664 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:33:36.228 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:60186 10 6452 1 2025-09-10 14:34:14.956 00:00:10.327 TCP 23.104.0.1:36950 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:30:26.395 00:05:00.829 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:34:36.458 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46924 12 6556 1 2025-09-10 14:35:15.319 00:00:10.367 TCP 23.104.0.1:52262 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:35:36.677 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:40308 10 6452 1 2025-09-10 14:36:08.858 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:36:08.802 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:36:15.726 00:00:11.178 TCP 23.104.0.1:51518 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:32:26.393 00:05:00.834 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:36:36.845 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50104 10 6452 1 2025-09-10 14:37:16.950 00:00:10.333 TCP 23.104.0.1:52276 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:37:37.086 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33780 10 6452 1 2025-09-10 14:38:17.314 00:00:10.376 TCP 23.104.0.1:44214 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:38:37.304 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59478 10 6452 1 2025-09-10 14:39:17.734 00:00:10.369 TCP 23.104.0.1:53566 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:39:37.518 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:51082 10 6452 1 2025-09-10 14:40:18.143 00:00:10.361 TCP 23.104.0.1:60768 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:36:26.397 00:05:00.828 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:40:37.690 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52142 10 6452 1 2025-09-10 14:41:08.682 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:41:08.543 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:41:18.545 00:00:10.367 TCP 23.104.0.1:37460 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:41:37.907 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35010 10 6452 1 2025-09-10 14:38:26.396 00:05:00.832 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:42:18.952 00:00:10.332 TCP 23.104.0.1:53332 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:42:38.130 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45620 10 6452 1 2025-09-10 14:43:19.325 00:00:10.325 TCP 23.104.0.1:60068 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:43:38.351 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54460 10 6452 1 2025-09-10 14:44:19.691 00:00:10.370 TCP 23.104.0.1:55902 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:44:38.570 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:43648 10 6452 1 2025-09-10 14:45:20.111 00:00:10.361 TCP 23.104.0.1:38278 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:45:38.792 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40080 10 6452 1 2025-09-10 14:46:08.928 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:46:08.787 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:46:20.514 00:00:10.906 TCP 23.104.0.1:37932 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:42:26.401 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:46:39.009 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:42084 10 6452 1 2025-09-10 14:47:21.458 00:00:10.363 TCP 23.104.0.1:41462 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:47:39.191 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57064 10 6452 1 2025-09-10 14:44:26.398 00:05:00.832 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:48:21.856 00:00:10.377 TCP 23.104.0.1:44024 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:48:39.407 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46610 10 6452 1 2025-09-10 14:49:22.272 00:00:10.371 TCP 23.104.0.1:54810 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:49:39.625 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58170 10 6452 1 2025-09-10 14:50:22.679 00:00:10.368 TCP 23.104.0.1:39570 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:50:39.842 00:00:10.293 TCP 1.101.0.1:3000 -> 22.102.0.1:37224 10 6452 1 2025-09-10 14:51:09.022 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:51:08.998 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:51:23.107 00:00:10.362 TCP 23.104.0.1:35322 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:51:40.178 00:00:10.268 TCP 1.101.0.1:3000 -> 22.102.0.1:41950 10 6452 1 2025-09-10 14:48:26.402 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:52:23.510 00:00:10.754 TCP 23.104.0.1:49284 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:52:40.486 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39338 10 6452 1 2025-09-10 14:53:24.307 00:00:10.366 TCP 23.104.0.1:43380 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:53:40.700 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:58428 10 6452 1 2025-09-10 14:50:26.400 00:05:00.831 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 14:54:24.709 00:00:10.325 TCP 23.104.0.1:47370 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:54:40.919 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:44574 10 6452 1 2025-09-10 14:55:25.100 00:00:10.367 TCP 23.104.0.1:51922 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:55:41.156 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46686 10 6452 1 2025-09-10 14:56:09.242 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 14:56:09.210 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 14:56:25.506 00:00:10.368 TCP 23.104.0.1:43500 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:56:41.369 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36412 10 6452 1 2025-09-10 14:57:25.913 00:00:10.364 TCP 23.104.0.1:59832 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:57:41.586 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40890 10 6452 1 2025-09-10 14:54:26.402 00:05:00.828 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 14:58:26.313 00:00:10.439 TCP 23.104.0.1:35904 -> 1.101.0.1:3000 15 1926 1 Summary: total flows: 163, total bytes: 496751, total packets: 1574, avg bps: 1051, avg pps: 0, avg bpp: 315 Time window: 2025-09-10 13:56:26 - 2025-09-10 14:59:27 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0019s User: 0.0029s Wall: 0.0025s flows/second: 64503.4 Runtime: 0.0025s