Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-15 11:59:14.418 00:00:10.362 TCP 23.104.0.1:57180 -> 1.101.0.1:3000 11 1507 1 2025-09-15 11:59:35.863 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:44416 10 6452 1 2025-09-15 12:00:14.820 00:00:11.157 TCP 23.104.0.1:46026 -> 1.101.0.1:3000 11 1507 1 2025-09-15 11:56:28.749 00:05:00.969 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:00:36.096 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:43476 10 6452 1 2025-09-15 12:01:16.016 00:00:10.367 TCP 23.104.0.1:60010 -> 1.101.0.1:3000 11 1507 1 2025-09-15 11:57:28.751 00:05:00.964 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:01:36.266 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51396 10 6452 1 2025-09-15 12:02:16.419 00:00:10.365 TCP 23.104.0.1:35484 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:02:36.477 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52972 10 6452 1 2025-09-15 12:03:29.945 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:03:16.823 00:00:10.364 TCP 23.104.0.1:37290 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:03:30.161 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:03:36.691 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33552 10 6452 1 2025-09-15 12:04:17.229 00:00:10.371 TCP 23.104.0.1:53854 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:04:36.901 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42334 10 6452 1 2025-09-15 12:05:17.640 00:00:10.364 TCP 23.104.0.1:50126 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:05:37.112 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:58942 10 6452 1 2025-09-15 12:06:18.044 00:00:10.358 TCP 23.104.0.1:55678 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:02:28.751 00:05:00.970 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:06:37.283 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39542 10 6452 1 2025-09-15 12:03:28.754 00:05:00.965 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:07:18.445 00:00:10.364 TCP 23.104.0.1:52084 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:07:37.493 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52596 10 6452 1 2025-09-15 12:08:30.364 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:08:18.846 00:00:10.379 TCP 23.104.0.1:59524 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:08:29.965 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:08:37.657 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44942 10 6452 1 2025-09-15 12:09:19.266 00:00:10.567 TCP 23.104.0.1:43592 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:09:37.873 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:38776 10 6452 1 2025-09-15 12:10:19.872 00:00:10.359 TCP 23.104.0.1:40204 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:10:38.106 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:54364 10 6452 1 2025-09-15 12:11:20.270 00:00:10.366 TCP 23.104.0.1:47942 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:11:38.335 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37488 10 6452 1 2025-09-15 12:12:20.676 00:00:10.371 TCP 23.104.0.1:53738 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:08:28.752 00:05:00.973 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:12:38.552 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:43324 10 6452 1 2025-09-15 12:13:30.276 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:13:30.242 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:09:28.755 00:05:00.967 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:13:21.107 00:00:10.364 TCP 23.104.0.1:57976 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:13:38.779 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:40654 10 6452 1 2025-09-15 12:14:21.507 00:00:10.328 TCP 23.104.0.1:57136 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:14:38.998 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33014 10 6452 1 2025-09-15 12:15:21.867 00:00:10.448 TCP 23.104.0.1:46284 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:15:39.220 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51426 10 6452 1 2025-09-15 12:16:22.349 00:00:10.840 TCP 23.104.0.1:39292 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:16:39.434 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50026 10 6452 1 2025-09-15 12:17:23.227 00:00:10.394 TCP 23.104.0.1:59528 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:17:39.643 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48356 10 6452 1 2025-09-15 12:18:30.482 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:14:28.753 00:05:00.972 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:18:30.397 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:18:23.668 00:00:10.393 TCP 23.104.0.1:46244 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:18:39.856 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41110 10 6452 1 2025-09-15 12:15:28.756 00:05:00.968 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:19:24.103 00:00:10.374 TCP 23.104.0.1:33688 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:19:40.086 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:55304 10 6452 1 2025-09-15 12:20:24.512 00:00:10.369 TCP 23.104.0.1:47446 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:20:40.298 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:54328 10 6452 1 2025-09-15 12:21:24.925 00:00:10.357 TCP 23.104.0.1:49580 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:21:40.520 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:35398 10 6452 1 2025-09-15 12:22:25.319 00:00:10.366 TCP 23.104.0.1:46188 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:22:40.743 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54358 10 6452 1 2025-09-15 12:23:30.991 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:23:31.095 00:00:00.031 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:23:25.721 00:00:10.341 TCP 23.104.0.1:57506 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:23:40.961 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:45572 10 6452 1 2025-09-15 12:20:28.754 00:05:00.975 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:24:26.106 00:00:10.371 TCP 23.104.0.1:37902 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:24:41.156 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60378 10 6452 1 2025-09-15 12:21:28.758 00:05:00.969 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:25:26.514 00:00:10.368 TCP 23.104.0.1:53360 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:25:41.373 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43746 10 6452 1 2025-09-15 12:26:26.918 00:00:10.349 TCP 23.104.0.1:42378 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:26:41.588 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45566 10 6452 1 2025-09-15 12:27:27.306 00:00:10.366 TCP 23.104.0.1:35824 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:27:41.795 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44032 10 6452 1 2025-09-15 12:28:30.455 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:28:30.470 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:28:27.707 00:00:10.371 TCP 23.104.0.1:36410 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:28:42.012 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:44832 10 6452 1 2025-09-15 12:29:28.111 00:00:10.366 TCP 23.104.0.1:55730 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:29:42.180 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:33460 10 6452 1 2025-09-15 12:26:28.756 00:05:00.976 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:30:28.514 00:00:10.365 TCP 23.104.0.1:38854 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:30:42.414 00:00:10.253 TCP 1.101.0.1:3000 -> 22.102.0.1:58240 11 6504 1 2025-09-15 12:27:28.759 00:05:00.971 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:31:28.920 00:00:10.384 TCP 23.104.0.1:52516 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:31:42.706 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34452 10 6452 1 2025-09-15 12:32:29.342 00:00:10.368 TCP 23.104.0.1:37166 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:32:42.917 00:00:10.236 TCP 1.101.0.1:3000 -> 22.102.0.1:58576 10 6452 1 2025-09-15 12:33:30.792 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:33:30.495 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:33:29.749 00:00:10.391 TCP 23.104.0.1:39056 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:33:43.209 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53162 10 6452 1 2025-09-15 12:34:30.175 00:00:10.360 TCP 23.104.0.1:44252 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:34:43.433 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47208 10 6452 1 2025-09-15 12:35:30.572 00:00:10.361 TCP 23.104.0.1:46738 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:35:43.653 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:54450 10 6452 1 2025-09-15 12:32:28.758 00:05:00.976 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:36:30.976 00:00:10.367 TCP 23.104.0.1:35700 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:36:43.877 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:60158 10 6452 1 2025-09-15 12:33:28.762 00:05:00.971 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:37:31.377 00:00:10.360 TCP 23.104.0.1:52276 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:37:44.110 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49164 10 6452 1 2025-09-15 12:38:30.775 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:38:30.793 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:38:31.774 00:00:10.374 TCP 23.104.0.1:33842 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:38:44.321 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:45712 10 6452 1 2025-09-15 12:39:32.185 00:00:10.440 TCP 23.104.0.1:41832 -> 1.101.0.1:3000 15 1926 1 2025-09-15 12:39:44.495 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:42596 12 10365 1 2025-09-15 12:40:32.667 00:00:10.365 TCP 23.104.0.1:40484 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:40:44.732 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50980 10 6452 1 2025-09-15 12:41:33.097 00:00:10.369 TCP 23.104.0.1:51324 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:41:44.942 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:33458 10 6452 1 2025-09-15 12:38:28.758 00:05:00.976 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:42:33.508 00:00:10.369 TCP 23.104.0.1:38224 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:42:45.178 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57506 10 6452 1 2025-09-15 12:43:30.864 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:39:28.761 00:05:00.971 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:43:31.287 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:43:33.911 00:00:10.328 TCP 23.104.0.1:50744 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:43:45.392 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42920 10 6452 1 2025-09-15 12:44:34.270 00:00:10.368 TCP 23.104.0.1:48998 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:44:45.605 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40406 10 6452 1 2025-09-15 12:45:34.678 00:00:10.364 TCP 23.104.0.1:59584 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:45:45.811 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:49382 10 6452 1 2025-09-15 12:46:35.111 00:00:10.581 TCP 23.104.0.1:35566 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:46:46.038 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:57900 10 6452 1 2025-09-15 12:47:35.752 00:00:10.375 TCP 23.104.0.1:33702 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:47:46.247 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36228 10 6452 1 2025-09-15 12:48:31.193 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:44:28.762 00:05:00.973 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:48:30.955 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:48:36.163 00:00:10.370 TCP 23.104.0.1:35226 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:48:46.457 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47826 10 6452 1 2025-09-15 12:45:28.765 00:05:00.968 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:49:36.572 00:00:10.522 TCP 23.104.0.1:47810 -> 1.101.0.1:3000 17 2241 1 2025-09-15 12:49:46.675 00:00:10.713 TCP 1.101.0.1:3000 -> 22.102.0.1:37244 14 14282 1 2025-09-15 12:50:37.137 00:00:10.327 TCP 23.104.0.1:59194 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:50:47.429 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37728 10 6452 1 2025-09-15 12:51:37.503 00:00:10.370 TCP 23.104.0.1:56576 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:51:47.644 00:00:10.423 TCP 1.101.0.1:3000 -> 22.102.0.1:40540 10 6452 1 2025-09-15 12:52:37.933 00:00:10.386 TCP 23.104.0.1:45416 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:52:48.103 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:50442 10 6452 1 2025-09-15 12:53:30.971 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:53:30.878 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:53:38.368 00:00:10.369 TCP 23.104.0.1:42492 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:53:48.287 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49658 10 6452 1 2025-09-15 12:50:28.764 00:05:00.973 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 12:54:38.770 00:00:10.376 TCP 23.104.0.1:48646 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:54:48.505 00:00:10.271 TCP 1.101.0.1:3000 -> 22.102.0.1:44642 10 6452 1 2025-09-15 12:51:28.766 00:05:00.969 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 12:55:39.186 00:00:10.643 TCP 23.104.0.1:55584 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:55:48.812 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49658 10 6452 1 2025-09-15 12:56:39.870 00:00:10.366 TCP 23.104.0.1:53874 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:56:49.038 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:43814 10 6452 1 2025-09-15 12:57:40.275 00:00:10.367 TCP 23.104.0.1:43728 -> 1.101.0.1:3000 11 1507 1 2025-09-15 12:57:49.279 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:53272 10 6452 1 2025-09-15 12:58:30.971 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 12:58:30.894 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 12:58:40.680 00:00:10.379 TCP 23.104.0.1:54124 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 504844, total packets: 1579, avg bps: 1079, avg pps: 0, avg bpp: 319 Time window: 2025-09-15 11:56:28 - 2025-09-15 12:58:51 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0024s User: 0.0024s Wall: 0.0023s flows/second: 72277.4 Runtime: 0.0023s