Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-14 13:59:14.227 00:00:10.486 TCP 23.104.0.1:35652 -> 1.101.0.1:3000 11 1507 1 2025-09-14 13:59:32.361 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53140 10 6870 1 2025-09-14 14:00:14.752 00:00:10.386 TCP 23.104.0.1:60718 -> 1.101.0.1:3000 11 1507 1 2025-09-14 13:56:28.344 00:05:00.938 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:00:32.584 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35668 10 6870 1 2025-09-14 14:01:15.177 00:00:10.360 TCP 23.104.0.1:59274 -> 1.101.0.1:3000 11 1507 1 2025-09-14 13:57:28.346 00:05:00.933 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:01:32.805 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:41242 10 6870 1 2025-09-14 14:02:15.574 00:00:10.364 TCP 23.104.0.1:41946 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:02:33.038 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51730 10 6870 1 2025-09-14 14:03:04.028 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:03:03.984 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:03:15.979 00:00:10.323 TCP 23.104.0.1:57854 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:03:33.263 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50726 10 6870 1 2025-09-14 14:04:16.345 00:00:10.366 TCP 23.104.0.1:47292 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:04:33.496 00:00:10.528 TCP 1.101.0.1:3000 -> 22.102.0.1:44502 10 6870 1 2025-09-14 14:05:16.752 00:00:10.322 TCP 23.104.0.1:41546 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:05:34.083 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60584 10 6870 1 2025-09-14 14:02:28.345 00:05:00.937 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:06:17.115 00:00:10.368 TCP 23.104.0.1:57278 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:06:34.298 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52934 10 6870 1 2025-09-14 14:03:28.347 00:05:00.933 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:07:17.516 00:00:10.750 TCP 23.104.0.1:45888 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:07:34.522 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49482 10 6870 1 2025-09-14 14:08:03.614 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:08:03.475 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:08:18.307 00:00:10.580 TCP 23.104.0.1:43690 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:08:34.740 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58626 10 6870 1 2025-09-14 14:09:18.924 00:00:10.350 TCP 23.104.0.1:43346 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:09:34.955 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:55042 10 6870 1 2025-09-14 14:10:19.311 00:00:10.322 TCP 23.104.0.1:34122 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:10:35.191 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33146 10 6870 1 2025-09-14 14:11:19.670 00:00:10.383 TCP 23.104.0.1:59064 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:11:35.402 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50970 10 6870 1 2025-09-14 14:12:20.109 00:00:10.361 TCP 23.104.0.1:47362 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:08:28.346 00:05:00.938 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:12:35.616 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44648 10 6870 1 2025-09-14 14:13:03.643 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:13:03.865 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:13:20.521 00:00:10.340 TCP 23.104.0.1:53674 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:09:28.348 00:05:00.934 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:13:35.832 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:59648 10 6870 1 2025-09-14 14:14:20.921 00:00:10.347 TCP 23.104.0.1:58696 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:14:36.015 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:35838 10 6870 1 2025-09-14 14:15:21.319 00:00:10.364 TCP 23.104.0.1:46776 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:15:36.224 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44974 10 6870 1 2025-09-14 14:16:21.723 00:00:10.370 TCP 23.104.0.1:38402 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:16:36.437 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41248 10 6870 1 2025-09-14 14:17:22.124 00:00:10.369 TCP 23.104.0.1:32772 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:17:36.657 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53504 10 6870 1 2025-09-14 14:18:03.933 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:18:03.879 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:14:28.347 00:05:00.942 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:18:22.529 00:00:10.536 TCP 23.104.0.1:49584 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:18:36.877 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:46586 10 6870 1 2025-09-14 14:15:28.350 00:05:00.937 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:19:23.107 00:00:10.373 TCP 23.104.0.1:53192 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:19:37.103 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:39960 10 6870 1 2025-09-14 14:20:23.518 00:00:10.369 TCP 23.104.0.1:49282 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:20:37.327 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57698 10 6870 1 2025-09-14 14:21:23.922 00:00:10.894 TCP 23.104.0.1:41188 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:21:37.543 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41350 10 6870 1 2025-09-14 14:22:24.851 00:00:10.378 TCP 23.104.0.1:33496 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:22:37.758 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42136 10 6870 1 2025-09-14 14:23:03.804 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:23:03.983 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:23:25.267 00:00:10.322 TCP 23.104.0.1:55522 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:23:37.972 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:43878 10 6870 1 2025-09-14 14:20:28.349 00:05:00.943 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:24:25.628 00:00:10.367 TCP 23.104.0.1:37174 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:24:38.215 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:36592 10 6870 1 2025-09-14 14:21:28.352 00:05:00.939 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:25:26.032 00:00:10.364 TCP 23.104.0.1:41418 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:25:38.437 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51534 10 6870 1 2025-09-14 14:26:26.436 00:00:10.362 TCP 23.104.0.1:52994 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:26:38.653 00:00:10.232 TCP 1.101.0.1:3000 -> 22.102.0.1:59840 10 6870 1 2025-09-14 14:27:26.836 00:00:10.387 TCP 23.104.0.1:32994 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:27:38.922 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33430 10 6870 1 2025-09-14 14:28:04.093 00:00:00.033 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:28:04.167 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:28:27.264 00:00:10.321 TCP 23.104.0.1:34756 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:28:39.134 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39544 10 6870 1 2025-09-14 14:29:27.626 00:00:10.366 TCP 23.104.0.1:45358 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:29:39.360 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49464 10 6870 1 2025-09-14 14:26:28.351 00:05:00.944 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:30:28.032 00:00:10.371 TCP 23.104.0.1:33666 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:30:39.574 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:33054 10 6870 1 2025-09-14 14:27:28.353 00:05:00.939 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:31:28.464 00:00:10.365 TCP 23.104.0.1:38290 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:31:39.740 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:55122 10 6870 1 2025-09-14 14:32:28.867 00:00:10.379 TCP 23.104.0.1:41670 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:32:39.916 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:41496 10 6870 1 2025-09-14 14:33:04.294 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:33:04.283 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:33:29.287 00:00:10.361 TCP 23.104.0.1:46676 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:33:40.103 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54496 10 6870 1 2025-09-14 14:34:29.688 00:00:10.379 TCP 23.104.0.1:44172 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:34:40.328 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35576 10 6870 1 2025-09-14 14:35:30.118 00:00:10.368 TCP 23.104.0.1:41224 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:35:40.548 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45222 10 6870 1 2025-09-14 14:32:28.352 00:05:00.945 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:36:30.525 00:00:10.368 TCP 23.104.0.1:44228 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:36:40.763 00:00:10.445 TCP 1.101.0.1:3000 -> 22.102.0.1:46232 10 6870 1 2025-09-14 14:33:28.353 00:05:00.940 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:37:30.929 00:00:10.381 TCP 23.104.0.1:43554 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:37:41.245 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46500 10 6870 1 2025-09-14 14:38:04.311 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:38:04.461 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:38:31.348 00:00:10.364 TCP 23.104.0.1:46102 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:38:41.457 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54290 10 6870 1 2025-09-14 14:39:31.750 00:00:10.386 TCP 23.104.0.1:60728 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:39:41.668 00:00:10.251 TCP 1.101.0.1:3000 -> 22.102.0.1:45212 10 6870 1 2025-09-14 14:40:32.178 00:00:14.075 TCP 23.104.0.1:44978 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:40:41.957 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:60670 12 6974 1 2025-09-14 14:41:36.293 00:00:10.334 TCP 23.104.0.1:53600 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:41:42.200 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51844 10 6870 1 2025-09-14 14:38:28.354 00:05:00.943 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:42:36.663 00:00:10.371 TCP 23.104.0.1:44826 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:42:42.428 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:55438 10 6870 1 2025-09-14 14:43:04.320 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:43:04.446 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:39:28.357 00:05:00.937 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:43:37.091 00:00:10.361 TCP 23.104.0.1:60948 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:43:42.599 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48932 10 6870 1 2025-09-14 14:44:37.489 00:00:10.363 TCP 23.104.0.1:53976 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:44:42.818 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39134 10 6870 1 2025-09-14 14:45:37.891 00:00:11.025 TCP 23.104.0.1:49300 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:45:43.041 00:00:10.514 TCP 1.101.0.1:3000 -> 22.102.0.1:34902 10 6870 1 2025-09-14 14:46:38.953 00:00:10.367 TCP 23.104.0.1:59842 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:46:43.591 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57574 10 6870 1 2025-09-14 14:47:39.362 00:00:10.365 TCP 23.104.0.1:47174 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:47:43.816 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:59936 10 6870 1 2025-09-14 14:48:04.489 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:48:04.543 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:44:28.356 00:05:00.943 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:48:39.765 00:00:10.370 TCP 23.104.0.1:37128 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:48:44.055 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:38614 10 6870 1 2025-09-14 14:45:28.358 00:05:00.938 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:49:40.173 00:00:10.360 TCP 23.104.0.1:58336 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:49:44.279 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50778 10 6870 1 2025-09-14 14:50:40.577 00:00:10.483 TCP 23.104.0.1:52790 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:50:44.496 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58050 10 6870 1 2025-09-14 14:51:41.113 00:00:10.366 TCP 23.104.0.1:48404 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:51:44.709 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57470 10 6870 1 2025-09-14 14:52:41.516 00:00:10.362 TCP 23.104.0.1:56006 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:52:44.929 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:44176 10 6870 1 2025-09-14 14:53:04.608 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-14 14:53:04.582 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:53:45.172 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43010 10 6870 1 2025-09-14 14:53:41.919 00:00:10.376 TCP 23.104.0.1:60816 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:50:28.357 00:05:00.942 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-14 14:54:45.386 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46586 10 6870 1 2025-09-14 14:54:42.335 00:00:10.365 TCP 23.104.0.1:49886 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:51:28.359 00:05:00.938 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-14 14:55:42.745 00:00:10.365 TCP 23.104.0.1:53512 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:55:45.601 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40004 10 6870 1 2025-09-14 14:56:43.142 00:00:10.324 TCP 23.104.0.1:51622 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:56:45.773 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50842 10 6870 1 2025-09-14 14:57:43.507 00:00:10.376 TCP 23.104.0.1:59066 -> 1.101.0.1:3000 11 1507 1 2025-09-14 14:57:45.991 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:45294 10 6870 1 2025-09-14 14:58:04.583 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-14 14:58:04.632 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 Summary: total flows: 162, total bytes: 515155, total packets: 1553, avg bps: 1114, avg pps: 0, avg bpp: 331 Time window: 2025-09-14 13:56:28 - 2025-09-14 14:58:04 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0009s User: 0.0037s Wall: 0.0022s flows/second: 72772.5 Runtime: 0.0022s