Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-15 08:58:58.986 00:00:10.371 TCP 23.104.0.1:46296 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:59:30.876 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:37034 10 6452 1 2025-09-15 08:59:59.397 00:00:10.326 TCP 23.104.0.1:52784 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:56:28.690 00:05:00.961 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:00:31.103 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:55238 10 6452 1 2025-09-15 09:00:59.757 00:00:10.336 TCP 23.104.0.1:55118 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:57:28.692 00:05:00.957 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:01:31.274 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:44450 10 6452 1 2025-09-15 09:02:00.136 00:00:10.367 TCP 23.104.0.1:54300 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:02:31.500 00:00:10.902 TCP 1.101.0.1:3000 -> 22.102.0.1:47740 10 6452 1 2025-09-15 09:03:00.549 00:00:10.369 TCP 23.104.0.1:40104 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:03:26.976 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:03:27.054 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:03:32.439 00:00:10.238 TCP 1.101.0.1:3000 -> 22.102.0.1:37316 11 6504 1 2025-09-15 09:04:00.961 00:00:10.368 TCP 23.104.0.1:51560 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:04:32.717 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:56018 10 6452 1 2025-09-15 09:05:01.366 00:00:10.367 TCP 23.104.0.1:34544 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:05:32.941 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:50138 10 6452 1 2025-09-15 09:06:01.766 00:00:10.332 TCP 23.104.0.1:45560 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:02:28.695 00:05:00.959 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:06:33.178 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59650 10 6452 1 2025-09-15 09:07:02.136 00:00:10.377 TCP 23.104.0.1:43018 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:03:28.696 00:05:00.954 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:07:33.393 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:50794 10 6452 1 2025-09-15 09:08:02.540 00:00:10.370 TCP 23.104.0.1:43060 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:08:26.555 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:08:26.653 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:08:33.617 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47718 10 6452 1 2025-09-15 09:09:02.945 00:00:10.559 TCP 23.104.0.1:36940 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:09:33.842 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:43040 10 6452 1 2025-09-15 09:10:03.542 00:00:10.376 TCP 23.104.0.1:39960 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:10:34.084 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:41678 10 6452 1 2025-09-15 09:11:03.956 00:00:10.369 TCP 23.104.0.1:48052 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:11:34.298 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:48734 10 6452 1 2025-09-15 09:12:04.362 00:00:10.359 TCP 23.104.0.1:49198 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:08:28.695 00:05:00.963 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:12:34.538 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:58764 10 6452 1 2025-09-15 09:13:04.762 00:00:10.378 TCP 23.104.0.1:55664 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:13:26.606 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:13:26.598 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:09:28.698 00:05:00.958 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:13:34.762 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38434 10 6452 1 2025-09-15 09:14:05.181 00:00:10.359 TCP 23.104.0.1:41612 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:14:34.976 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:41694 10 6452 1 2025-09-15 09:15:05.580 00:00:10.362 TCP 23.104.0.1:39404 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:15:35.221 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:38310 10 6452 1 2025-09-15 09:16:05.982 00:00:10.370 TCP 23.104.0.1:49518 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:16:35.443 00:00:10.404 TCP 1.101.0.1:3000 -> 22.102.0.1:54964 10 6452 1 2025-09-15 09:17:06.385 00:00:10.359 TCP 23.104.0.1:55136 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:17:35.886 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:54944 10 6452 1 2025-09-15 09:18:06.789 00:00:10.361 TCP 23.104.0.1:40266 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:18:26.659 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:18:26.711 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:14:28.695 00:05:00.965 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:18:36.111 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41056 10 6452 1 2025-09-15 09:19:07.188 00:00:10.417 TCP 23.104.0.1:48418 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:15:28.697 00:05:00.960 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:19:36.337 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34892 10 6452 1 2025-09-15 09:20:07.642 00:00:10.370 TCP 23.104.0.1:45382 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:20:36.552 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:42778 10 6452 1 2025-09-15 09:21:08.048 00:00:10.367 TCP 23.104.0.1:39796 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:21:36.774 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:32946 10 6452 1 2025-09-15 09:22:08.480 00:00:10.364 TCP 23.104.0.1:41208 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:22:36.982 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:57316 10 6452 1 2025-09-15 09:23:08.884 00:00:10.342 TCP 23.104.0.1:33916 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:23:26.942 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:23:26.740 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:23:37.226 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46166 10 6452 1 2025-09-15 09:24:09.271 00:00:10.367 TCP 23.104.0.1:40784 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:20:28.697 00:05:00.965 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:24:37.445 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53946 10 6452 1 2025-09-15 09:25:09.676 00:00:10.366 TCP 23.104.0.1:51862 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:21:28.700 00:05:00.963 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:25:37.660 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:56632 10 6452 1 2025-09-15 09:26:10.103 00:00:10.422 TCP 23.104.0.1:37946 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:26:37.893 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54372 10 6452 1 2025-09-15 09:27:10.565 00:00:10.362 TCP 23.104.0.1:37290 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:27:38.110 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52214 10 6452 1 2025-09-15 09:28:10.964 00:00:10.901 TCP 23.104.0.1:42368 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:28:26.610 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:28:26.679 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:28:38.334 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45168 10 6452 1 2025-09-15 09:29:11.903 00:00:10.370 TCP 23.104.0.1:52354 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:29:38.548 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45758 10 6452 1 2025-09-15 09:30:12.310 00:00:10.834 TCP 23.104.0.1:55060 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:26:28.697 00:05:00.968 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:30:38.761 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48468 10 6452 1 2025-09-15 09:31:13.182 00:00:10.367 TCP 23.104.0.1:48806 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:27:28.700 00:05:00.964 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:31:38.973 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:34418 10 6452 1 2025-09-15 09:32:13.585 00:00:10.366 TCP 23.104.0.1:50066 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:32:39.212 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58946 10 6452 1 2025-09-15 09:33:26.943 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:33:13.986 00:00:10.366 TCP 23.104.0.1:42462 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:33:27.112 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:33:39.427 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60080 10 6452 1 2025-09-15 09:34:14.399 00:00:10.380 TCP 23.104.0.1:50454 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:34:39.651 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55370 10 6452 1 2025-09-15 09:35:14.829 00:00:10.388 TCP 23.104.0.1:42080 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:35:39.860 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:56066 10 6452 1 2025-09-15 09:36:15.260 00:00:10.368 TCP 23.104.0.1:43192 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:32:28.697 00:05:00.969 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:36:40.086 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:45010 10 6452 1 2025-09-15 09:37:15.679 00:00:10.369 TCP 23.104.0.1:47366 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:33:28.700 00:05:00.964 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:37:40.264 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59290 10 6452 1 2025-09-15 09:38:16.112 00:00:10.363 TCP 23.104.0.1:41000 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:38:27.203 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:38:27.080 00:00:00.033 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:38:40.476 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:56880 10 6452 1 2025-09-15 09:39:16.514 00:00:10.363 TCP 23.104.0.1:36914 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:39:40.683 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:57822 10 6452 1 2025-09-15 09:40:16.914 00:00:10.817 TCP 23.104.0.1:52682 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:40:40.897 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59310 10 6452 1 2025-09-15 09:41:17.768 00:00:10.372 TCP 23.104.0.1:41404 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:41:41.121 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:58026 10 6452 1 2025-09-15 09:42:18.181 00:00:10.408 TCP 23.104.0.1:45690 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:38:28.698 00:05:00.969 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:42:41.322 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36464 10 6452 1 2025-09-15 09:43:27.048 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:43:18.609 00:00:10.367 TCP 23.104.0.1:51206 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:39:28.701 00:05:00.969 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:43:27.220 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:43:41.536 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49868 10 6452 1 2025-09-15 09:44:19.012 00:00:10.373 TCP 23.104.0.1:59104 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:44:41.752 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:52558 10 6452 1 2025-09-15 09:45:19.424 00:00:10.366 TCP 23.104.0.1:54602 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:45:41.978 00:00:10.437 TCP 1.101.0.1:3000 -> 22.102.0.1:53004 10 6452 1 2025-09-15 09:46:19.825 00:00:10.362 TCP 23.104.0.1:37546 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:46:42.459 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:45864 10 6452 1 2025-09-15 09:47:20.222 00:00:10.368 TCP 23.104.0.1:46438 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:47:42.681 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:56474 10 6452 1 2025-09-15 09:48:27.311 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:44:28.699 00:05:00.974 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:48:20.628 00:00:10.367 TCP 23.104.0.1:44920 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:48:27.364 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:48:42.906 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42514 10 6452 1 2025-09-15 09:45:28.701 00:05:00.969 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:49:21.050 00:00:10.375 TCP 23.104.0.1:46348 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:49:43.120 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55700 10 6452 1 2025-09-15 09:50:21.468 00:00:10.358 TCP 23.104.0.1:40810 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:50:43.339 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52390 10 6452 1 2025-09-15 09:51:21.873 00:00:10.378 TCP 23.104.0.1:43326 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:51:43.557 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41742 10 6452 1 2025-09-15 09:52:22.288 00:00:10.323 TCP 23.104.0.1:41542 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:52:43.776 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:53892 10 6452 1 2025-09-15 09:53:27.560 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:53:27.701 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:53:22.647 00:00:10.372 TCP 23.104.0.1:42868 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:53:44.000 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50800 10 6452 1 2025-09-15 09:50:28.701 00:05:00.974 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 09:54:23.090 00:00:10.363 TCP 23.104.0.1:45226 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:54:44.212 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34174 10 6452 1 2025-09-15 09:51:28.704 00:05:00.970 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 09:55:23.493 00:00:10.362 TCP 23.104.0.1:42852 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:55:44.427 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50608 10 6452 1 2025-09-15 09:56:23.891 00:00:10.373 TCP 23.104.0.1:55674 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:56:44.648 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57938 10 6452 1 2025-09-15 09:57:24.305 00:00:10.321 TCP 23.104.0.1:53460 -> 1.101.0.1:3000 11 1507 1 2025-09-15 09:57:44.869 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:60290 10 6452 1 2025-09-15 09:58:27.595 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 09:58:27.712 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 09:58:24.668 00:00:10.365 TCP 23.104.0.1:60242 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 491948, total packets: 1563, avg bps: 1056, avg pps: 0, avg bpp: 314 Time window: 2025-09-15 08:56:28 - 2025-09-15 09:58:35 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0043s User: 0.0009s Wall: 0.0022s flows/second: 74980.4 Runtime: 0.0022s