Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-18 12:59:15.676 00:00:10.373 TCP 23.104.0.1:55260 -> 1.101.0.1:3000 11 1507 1 2025-09-18 12:59:31.736 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35388 10 6452 1 2025-09-18 12:59:57.700 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 12:59:57.745 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:00:16.107 00:00:10.334 TCP 23.104.0.1:38764 -> 1.101.0.1:3000 11 1507 1 2025-09-18 12:56:30.140 00:05:01.187 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:00:31.957 00:00:10.227 TCP 1.101.0.1:3000 -> 22.102.0.1:36558 12 10367 1 2025-09-18 13:01:16.474 00:00:10.446 TCP 23.104.0.1:35264 -> 1.101.0.1:3000 15 1926 1 2025-09-18 12:57:30.142 00:05:01.183 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:01:32.224 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38800 10 6452 1 2025-09-18 13:02:16.972 00:00:10.365 TCP 23.104.0.1:59688 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:02:32.439 00:00:21.410 TCP 1.101.0.1:3000 -> 22.102.0.1:45694 10 6452 1 2025-09-18 13:03:17.375 00:00:10.331 TCP 23.104.0.1:53208 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:03:43.895 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47626 10 6452 1 2025-09-18 13:04:17.746 00:00:10.377 TCP 23.104.0.1:50242 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:04:57.706 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:04:44.112 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40842 10 6452 1 2025-09-18 13:04:58.116 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:05:18.147 00:00:10.370 TCP 23.104.0.1:42992 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:05:44.326 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55790 10 6452 1 2025-09-18 13:06:18.564 00:00:10.326 TCP 23.104.0.1:46388 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:02:30.140 00:05:01.188 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:06:44.536 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:48574 10 6452 1 2025-09-18 13:07:18.927 00:00:10.397 TCP 23.104.0.1:50976 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:03:30.142 00:05:01.184 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:07:44.715 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49066 12 6556 1 2025-09-18 13:08:19.362 00:00:10.369 TCP 23.104.0.1:38102 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:08:44.925 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:35196 10 6452 1 2025-09-18 13:09:19.768 00:00:10.372 TCP 23.104.0.1:42766 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:09:45.161 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:42726 10 6452 1 2025-09-18 13:09:58.181 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:09:58.339 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:10:20.181 00:00:10.367 TCP 23.104.0.1:44022 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:10:45.390 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44314 10 6452 1 2025-09-18 13:11:20.582 00:00:10.369 TCP 23.104.0.1:48204 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:11:45.612 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37066 10 6452 1 2025-09-18 13:12:20.988 00:00:10.416 TCP 23.104.0.1:39872 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:08:30.141 00:05:01.191 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:12:45.824 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38924 10 6452 1 2025-09-18 13:09:30.144 00:05:01.185 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:13:21.447 00:00:10.362 TCP 23.104.0.1:50938 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:13:46.073 00:00:10.708 TCP 1.101.0.1:3000 -> 22.102.0.1:51996 10 6452 1 2025-09-18 13:14:21.844 00:00:10.388 TCP 23.104.0.1:52548 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:14:46.825 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55224 10 6452 1 2025-09-18 13:14:57.955 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:14:58.011 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:15:22.267 00:00:10.363 TCP 23.104.0.1:48696 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:15:47.045 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49360 10 6452 1 2025-09-18 13:16:22.670 00:00:10.375 TCP 23.104.0.1:56694 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:16:47.256 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:43220 10 6452 1 2025-09-18 13:17:23.102 00:00:10.326 TCP 23.104.0.1:33700 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:17:47.428 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:43930 10 6452 1 2025-09-18 13:14:30.142 00:05:01.190 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:18:23.466 00:00:10.362 TCP 23.104.0.1:55254 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:18:47.655 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60240 10 6452 1 2025-09-18 13:15:30.147 00:05:01.184 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:19:23.869 00:00:10.366 TCP 23.104.0.1:45418 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:19:58.048 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:19:58.145 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:19:47.875 00:00:21.745 TCP 1.101.0.1:3000 -> 22.102.0.1:50004 10 6452 1 2025-09-18 13:20:24.273 00:00:10.367 TCP 23.104.0.1:32814 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:20:59.662 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41424 10 6452 1 2025-09-18 13:21:24.679 00:00:10.372 TCP 23.104.0.1:54818 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:21:59.875 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:60770 10 6452 1 2025-09-18 13:22:25.104 00:00:10.324 TCP 23.104.0.1:38508 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:23:00.098 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53236 10 6452 1 2025-09-18 13:23:25.465 00:00:10.367 TCP 23.104.0.1:56814 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:24:00.316 00:00:10.759 TCP 1.101.0.1:3000 -> 22.102.0.1:58272 10 6452 1 2025-09-18 13:20:30.145 00:05:01.189 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:24:25.868 00:00:10.370 TCP 23.104.0.1:49896 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:24:58.253 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:24:58.305 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:25:01.110 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:37986 10 6452 1 2025-09-18 13:21:30.147 00:05:01.184 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:25:26.279 00:00:10.368 TCP 23.104.0.1:49180 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:26:01.336 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48146 10 6452 1 2025-09-18 13:26:26.683 00:00:10.377 TCP 23.104.0.1:54122 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:27:01.554 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:43226 10 6452 1 2025-09-18 13:27:27.103 00:00:10.362 TCP 23.104.0.1:45602 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:28:01.748 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38500 10 6452 1 2025-09-18 13:28:27.507 00:00:10.370 TCP 23.104.0.1:48670 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:29:01.959 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:51278 10 6452 1 2025-09-18 13:29:27.913 00:00:10.368 TCP 23.104.0.1:56808 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:29:58.583 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:29:58.542 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:30:02.190 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36222 10 6452 1 2025-09-18 13:26:30.146 00:05:01.190 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:30:28.325 00:00:10.362 TCP 23.104.0.1:38632 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:31:02.406 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:35928 10 6452 1 2025-09-18 13:27:30.149 00:05:01.213 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:31:28.725 00:00:10.372 TCP 23.104.0.1:44148 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:32:02.617 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:38234 10 6452 1 2025-09-18 13:32:29.140 00:00:10.324 TCP 23.104.0.1:58252 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:33:02.839 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:46940 10 6452 1 2025-09-18 13:33:29.510 00:00:10.366 TCP 23.104.0.1:53488 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:34:03.090 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48954 10 6452 1 2025-09-18 13:34:29.912 00:00:10.362 TCP 23.104.0.1:57456 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:34:58.546 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:34:58.451 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:35:03.303 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36348 10 6452 1 2025-09-18 13:35:30.315 00:00:10.323 TCP 23.104.0.1:36984 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:36:03.515 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42570 10 6452 1 2025-09-18 13:32:30.159 00:05:01.180 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:36:30.677 00:00:10.367 TCP 23.104.0.1:60028 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:37:03.729 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49198 10 6452 1 2025-09-18 13:33:30.161 00:05:01.175 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:37:31.108 00:00:10.367 TCP 23.104.0.1:53338 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:38:03.945 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45996 10 6452 1 2025-09-18 13:38:31.515 00:00:10.325 TCP 23.104.0.1:58464 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:39:04.169 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:57896 10 6452 1 2025-09-18 13:39:31.880 00:00:10.388 TCP 23.104.0.1:48396 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:39:58.759 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:39:58.443 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:40:04.376 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39694 10 6452 1 2025-09-18 13:40:32.309 00:00:10.365 TCP 23.104.0.1:54842 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:41:04.587 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37844 10 6452 1 2025-09-18 13:41:32.714 00:00:10.379 TCP 23.104.0.1:34156 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:42:04.806 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56890 10 6452 1 2025-09-18 13:38:30.159 00:05:01.181 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:42:33.131 00:00:10.675 TCP 23.104.0.1:40268 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:43:05.037 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:54208 10 6452 1 2025-09-18 13:39:30.163 00:05:01.175 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:43:33.849 00:00:10.389 TCP 23.104.0.1:39382 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:44:05.209 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59344 10 6452 1 2025-09-18 13:44:34.278 00:00:16.328 TCP 23.104.0.1:54076 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:44:59.018 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:44:59.047 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:45:05.420 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:51560 10 6452 1 2025-09-18 13:45:40.645 00:00:10.363 TCP 23.104.0.1:34354 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:46:05.606 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33638 10 6452 1 2025-09-18 13:46:41.061 00:00:10.361 TCP 23.104.0.1:32814 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:47:05.823 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:40844 10 6452 1 2025-09-18 13:47:41.461 00:00:10.360 TCP 23.104.0.1:36282 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:48:05.990 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55126 10 6452 1 2025-09-18 13:44:30.161 00:05:01.180 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:48:41.861 00:00:10.369 TCP 23.104.0.1:32936 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:49:06.206 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46676 10 6452 1 2025-09-18 13:45:30.166 00:05:01.174 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:49:42.268 00:00:10.369 TCP 23.104.0.1:60596 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:49:58.977 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:49:58.651 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:50:06.422 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44524 10 6452 1 2025-09-18 13:50:42.674 00:00:10.318 TCP 23.104.0.1:58210 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:51:06.635 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:37886 10 6452 1 2025-09-18 13:51:43.033 00:00:10.363 TCP 23.104.0.1:46042 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:52:06.853 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50880 10 6452 1 2025-09-18 13:52:43.441 00:00:10.325 TCP 23.104.0.1:39928 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:53:07.083 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:56316 10 6452 1 2025-09-18 13:53:43.805 00:00:10.363 TCP 23.104.0.1:44520 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:54:07.252 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56344 10 6452 1 2025-09-18 13:50:30.164 00:05:01.180 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 13:54:44.209 00:00:10.320 TCP 23.104.0.1:43808 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:54:58.949 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 13:54:58.861 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 13:55:07.464 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33384 10 6452 1 2025-09-18 13:51:30.166 00:05:01.175 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 13:55:44.570 00:00:11.024 TCP 23.104.0.1:52822 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:56:07.679 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:33156 10 6452 1 2025-09-18 13:56:45.634 00:00:10.361 TCP 23.104.0.1:45788 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:57:07.913 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38260 10 6452 1 2025-09-18 13:57:46.046 00:00:10.365 TCP 23.104.0.1:43082 -> 1.101.0.1:3000 11 1507 1 2025-09-18 13:58:08.122 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49670 10 6452 1 Summary: total flows: 162, total bytes: 494827, total packets: 1559, avg bps: 1067, avg pps: 0, avg bpp: 317 Time window: 2025-09-18 12:56:30 - 2025-09-18 13:58:18 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0029s User: 0.0019s Wall: 0.0026s flows/second: 61905.7 Runtime: 0.0026s