Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-10 17:58:52.400 00:00:10.350 TCP 23.104.0.1:54252 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:59:40.404 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34856 10 6452 1 2025-09-10 17:59:52.795 00:00:10.350 TCP 23.104.0.1:59824 -> 1.101.0.1:3000 11 1507 1 2025-09-10 17:56:26.454 00:05:00.831 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:00:40.618 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44138 10 6452 1 2025-09-10 18:00:53.187 00:00:10.372 TCP 23.104.0.1:48860 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:01:12.706 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:01:12.930 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:01:40.831 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39910 10 6452 1 2025-09-10 18:01:53.598 00:00:10.363 TCP 23.104.0.1:41272 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:02:41.072 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:52940 10 6452 1 2025-09-10 18:02:54.002 00:00:10.364 TCP 23.104.0.1:58730 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:03:41.256 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58246 10 6452 1 2025-09-10 18:03:54.405 00:00:10.799 TCP 23.104.0.1:54014 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:00:26.457 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 18:04:41.480 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60146 10 6452 1 2025-09-10 18:04:55.249 00:00:10.366 TCP 23.104.0.1:45962 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:05:41.654 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54588 10 6452 1 2025-09-10 18:05:55.655 00:00:10.369 TCP 23.104.0.1:58954 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:06:12.879 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:06:12.918 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:02:26.454 00:05:00.832 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:06:41.874 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:41778 10 6452 1 2025-09-10 18:06:56.080 00:00:10.332 TCP 23.104.0.1:48582 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:07:42.093 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:60268 10 6452 1 2025-09-10 18:07:56.448 00:00:10.365 TCP 23.104.0.1:50272 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:08:42.271 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:51990 10 6452 1 2025-09-10 18:08:56.852 00:00:10.387 TCP 23.104.0.1:52018 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:09:42.451 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:56510 10 6452 1 2025-09-10 18:09:57.278 00:00:10.367 TCP 23.104.0.1:57748 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:06:26.458 00:05:00.827 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 18:10:42.670 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34830 10 6452 1 2025-09-10 18:10:57.678 00:00:10.330 TCP 23.104.0.1:49508 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:11:13.129 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:11:13.277 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:11:42.891 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:33534 10 6452 1 2025-09-10 18:11:58.054 00:00:10.367 TCP 23.104.0.1:36142 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:08:26.456 00:05:00.834 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:12:43.118 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54780 10 6452 1 2025-09-10 18:12:58.468 00:00:10.321 TCP 23.104.0.1:50784 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:13:43.340 00:00:10.237 TCP 1.101.0.1:3000 -> 22.102.0.1:52216 12 10365 1 2025-09-10 18:13:58.827 00:00:10.437 TCP 23.104.0.1:35534 -> 1.101.0.1:3000 15 1926 1 2025-09-10 18:14:43.622 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60858 10 6452 1 2025-09-10 18:14:59.305 00:00:10.363 TCP 23.104.0.1:43810 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:15:43.847 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55040 10 6452 1 2025-09-10 18:15:59.710 00:00:10.401 TCP 23.104.0.1:55254 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:16:13.192 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:16:13.258 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:12:26.459 00:05:00.828 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 18:16:44.083 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54448 10 6452 1 2025-09-10 18:17:00.148 00:00:10.366 TCP 23.104.0.1:37722 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:17:44.300 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39644 10 6452 1 2025-09-10 18:18:00.550 00:00:10.370 TCP 23.104.0.1:33270 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:14:26.457 00:05:00.834 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:18:44.518 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37376 10 6452 1 2025-09-10 18:19:00.957 00:00:10.363 TCP 23.104.0.1:34290 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:19:44.732 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51012 10 6452 1 2025-09-10 18:20:01.356 00:00:10.367 TCP 23.104.0.1:49726 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:20:44.959 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49034 10 6452 1 2025-09-10 18:21:13.337 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:21:13.212 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:21:01.761 00:00:10.378 TCP 23.104.0.1:37280 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:21:45.178 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39388 10 6452 1 2025-09-10 18:22:02.178 00:00:10.373 TCP 23.104.0.1:52846 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:18:26.461 00:05:00.828 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 18:22:45.395 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:53842 10 6452 1 2025-09-10 18:23:02.592 00:00:10.385 TCP 23.104.0.1:54674 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:23:45.573 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54142 10 6452 1 2025-09-10 18:24:03.032 00:00:10.369 TCP 23.104.0.1:55086 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:20:26.464 00:05:00.829 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:24:45.784 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:39238 10 6452 1 2025-09-10 18:25:03.442 00:00:10.373 TCP 23.104.0.1:44550 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:25:45.954 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:35258 10 6452 1 2025-09-10 18:26:13.418 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:26:03.851 00:00:10.969 TCP 23.104.0.1:37856 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:26:13.255 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:26:46.184 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:47826 10 6452 1 2025-09-10 18:27:04.868 00:00:10.331 TCP 23.104.0.1:56566 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:27:46.409 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57008 10 6452 1 2025-09-10 18:28:05.234 00:00:10.376 TCP 23.104.0.1:41740 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:24:26.466 00:05:00.824 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 18:28:46.634 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36538 10 6452 1 2025-09-10 18:29:05.656 00:00:10.371 TCP 23.104.0.1:37138 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:29:46.854 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58438 10 6452 1 2025-09-10 18:30:06.106 00:00:10.367 TCP 23.104.0.1:54932 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:26:26.465 00:05:00.829 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:30:47.088 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39924 10 6452 1 2025-09-10 18:31:14.010 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:31:06.512 00:00:10.362 TCP 23.104.0.1:45956 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:31:13.838 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:31:47.308 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33596 10 6452 1 2025-09-10 18:32:06.911 00:00:10.326 TCP 23.104.0.1:58820 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:32:47.521 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33990 10 6452 1 2025-09-10 18:33:07.275 00:00:10.363 TCP 23.104.0.1:43596 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:33:47.732 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35108 10 6452 1 2025-09-10 18:34:07.680 00:00:10.372 TCP 23.104.0.1:36096 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:30:26.467 00:05:00.828 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 18:34:47.947 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:51946 10 6452 1 2025-09-10 18:35:08.104 00:00:10.328 TCP 23.104.0.1:54676 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:35:48.188 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59070 10 6452 1 2025-09-10 18:36:13.443 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:36:13.516 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:36:08.470 00:00:10.365 TCP 23.104.0.1:37868 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:32:26.466 00:05:00.831 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:36:48.410 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52986 10 6452 1 2025-09-10 18:37:08.876 00:00:10.328 TCP 23.104.0.1:35404 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:37:48.630 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:47058 10 6452 1 2025-09-10 18:38:09.238 00:00:10.369 TCP 23.104.0.1:38968 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:38:48.869 00:00:10.513 TCP 1.101.0.1:3000 -> 22.102.0.1:60800 10 6452 1 2025-09-10 18:39:09.636 00:00:10.368 TCP 23.104.0.1:57274 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:39:49.425 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34470 10 6452 1 2025-09-10 18:40:10.055 00:00:10.369 TCP 23.104.0.1:46438 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:36:26.469 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 18:40:49.645 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39824 10 6452 1 2025-09-10 18:41:13.591 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:41:13.486 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:41:10.460 00:00:10.364 TCP 23.104.0.1:50682 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:41:49.856 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:44216 10 6452 1 2025-09-10 18:42:10.862 00:00:10.371 TCP 23.104.0.1:41490 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:38:26.466 00:05:00.832 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:42:50.087 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41208 10 6452 1 2025-09-10 18:43:11.272 00:00:10.363 TCP 23.104.0.1:43554 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:43:50.302 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58068 10 6452 1 2025-09-10 18:44:11.672 00:00:10.362 TCP 23.104.0.1:48882 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:44:50.524 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50998 10 6452 1 2025-09-10 18:45:12.097 00:00:10.639 TCP 23.104.0.1:39134 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:45:50.748 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51748 10 6452 1 2025-09-10 18:46:13.690 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:46:13.851 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:46:12.776 00:00:10.367 TCP 23.104.0.1:38534 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:42:26.469 00:05:00.827 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 18:46:50.965 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44250 10 6452 1 2025-09-10 18:47:13.179 00:00:10.365 TCP 23.104.0.1:51386 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:47:51.182 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54750 10 6452 1 2025-09-10 18:48:13.581 00:00:10.366 TCP 23.104.0.1:60812 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:44:26.467 00:05:00.832 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:48:51.405 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36234 10 6452 1 2025-09-10 18:49:13.985 00:00:10.366 TCP 23.104.0.1:57804 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:49:51.626 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:49196 10 6452 1 2025-09-10 18:50:14.389 00:00:10.368 TCP 23.104.0.1:47292 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:50:51.869 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:34934 10 6452 1 2025-09-10 18:51:14.039 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:51:14.148 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:51:14.798 00:00:10.951 TCP 23.104.0.1:59528 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:51:52.102 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55310 10 6452 1 2025-09-10 18:52:15.789 00:00:10.365 TCP 23.104.0.1:45020 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:48:26.470 00:05:00.827 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 18:52:52.310 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48622 10 6452 1 2025-09-10 18:53:16.197 00:00:10.376 TCP 23.104.0.1:53240 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:53:52.519 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52834 10 6452 1 2025-09-10 18:54:16.609 00:00:10.327 TCP 23.104.0.1:58110 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:50:26.469 00:05:00.833 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 18:54:52.744 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:56022 10 6452 1 2025-09-10 18:55:16.972 00:00:10.377 TCP 23.104.0.1:56790 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:55:52.987 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:39056 10 6452 1 2025-09-10 18:56:13.974 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 18:56:14.006 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 18:56:17.387 00:00:10.367 TCP 23.104.0.1:48208 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:56:53.217 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38840 10 6452 1 2025-09-10 18:57:17.791 00:00:10.363 TCP 23.104.0.1:54436 -> 1.101.0.1:3000 11 1507 1 2025-09-10 18:57:53.429 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:34462 10 6452 1 2025-09-10 18:58:18.188 00:00:10.439 TCP 23.104.0.1:51918 -> 1.101.0.1:3000 15 1926 1 2025-09-10 18:54:26.471 00:05:00.828 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 Summary: total flows: 163, total bytes: 496647, total packets: 1572, avg bps: 1050, avg pps: 0, avg bpp: 315 Time window: 2025-09-10 17:56:26 - 2025-09-10 18:59:27 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0039s User: 0.0010s Wall: 0.0020s flows/second: 80262.0 Runtime: 0.0020s