Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-23 16:58:58.458 00:00:10.367 TCP 23.104.0.1:49992 -> 1.101.0.1:3000 11 1507 1 2025-09-23 16:59:13.707 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54316 10 6452 1 2025-09-23 16:59:58.864 00:00:10.330 TCP 23.104.0.1:47854 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:00:13.917 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:39404 10 6452 1 2025-09-23 16:56:32.507 00:05:01.434 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:00:59.235 00:00:10.332 TCP 23.104.0.1:38252 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:01:14.158 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:36114 12 10367 1 2025-09-23 16:57:32.510 00:05:01.429 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:01:59.610 00:00:10.444 TCP 23.104.0.1:51338 -> 1.101.0.1:3000 15 1926 1 2025-09-23 17:02:14.404 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:33400 10 6452 1 2025-09-23 17:02:26.893 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:02:27.046 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:03:00.109 00:00:10.322 TCP 23.104.0.1:46658 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:03:14.602 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33676 10 6452 1 2025-09-23 17:04:00.470 00:00:10.375 TCP 23.104.0.1:41074 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:05:00.895 00:00:10.381 TCP 23.104.0.1:47008 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:04:14.822 00:01:10.347 TCP 1.101.0.1:3000 -> 22.102.0.1:46696 20 12904 1 2025-09-23 17:06:01.309 00:00:10.367 TCP 23.104.0.1:45420 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:06:15.207 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:49460 10 6452 1 2025-09-23 17:02:32.508 00:05:01.434 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:07:01.717 00:00:10.375 TCP 23.104.0.1:59294 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:07:15.434 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53456 10 6452 1 2025-09-23 17:07:27.251 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:07:27.148 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:03:32.513 00:05:01.427 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:08:02.135 00:00:10.361 TCP 23.104.0.1:47296 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:08:15.650 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:53340 10 6452 1 2025-09-23 17:09:02.533 00:00:10.369 TCP 23.104.0.1:51868 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:09:15.869 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:34002 10 6452 1 2025-09-23 17:10:02.938 00:00:10.385 TCP 23.104.0.1:43272 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:10:16.099 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53282 10 6452 1 2025-09-23 17:11:03.361 00:00:10.361 TCP 23.104.0.1:54964 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:11:16.312 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48598 10 6452 1 2025-09-23 17:12:03.764 00:00:10.331 TCP 23.104.0.1:43932 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:12:16.533 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32986 10 6452 1 2025-09-23 17:12:27.337 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:12:27.323 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:08:32.510 00:05:01.434 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:13:04.140 00:00:10.326 TCP 23.104.0.1:38316 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:13:16.743 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42604 10 6452 1 2025-09-23 17:09:32.514 00:05:01.429 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:14:04.501 00:00:10.327 TCP 23.104.0.1:35658 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:14:16.961 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:41186 10 6452 1 2025-09-23 17:15:04.865 00:00:10.370 TCP 23.104.0.1:34114 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:15:17.148 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49468 10 6452 1 2025-09-23 17:16:05.273 00:00:10.365 TCP 23.104.0.1:39024 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:16:17.360 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:41198 12 6556 1 2025-09-23 17:17:05.678 00:00:10.364 TCP 23.104.0.1:57656 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:17:27.396 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:17:27.426 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:17:17.595 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41634 10 6452 1 2025-09-23 17:18:06.104 00:00:10.333 TCP 23.104.0.1:47542 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:18:17.810 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34928 10 6452 1 2025-09-23 17:14:32.511 00:05:01.434 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:19:06.473 00:00:10.366 TCP 23.104.0.1:42620 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:19:18.035 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:48764 10 6452 1 2025-09-23 17:15:32.514 00:05:01.429 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:20:06.875 00:00:10.360 TCP 23.104.0.1:52048 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:20:18.203 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50322 10 6452 1 2025-09-23 17:21:07.273 00:00:10.375 TCP 23.104.0.1:47492 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:21:18.430 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:44062 10 6452 1 2025-09-23 17:22:07.686 00:00:10.365 TCP 23.104.0.1:53744 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:22:27.705 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:22:27.811 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:22:18.603 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41206 10 6452 1 2025-09-23 17:23:08.106 00:00:10.361 TCP 23.104.0.1:47258 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:23:18.815 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35530 10 6452 1 2025-09-23 17:24:08.503 00:00:10.363 TCP 23.104.0.1:38256 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:24:19.040 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57034 10 6452 1 2025-09-23 17:20:32.514 00:05:01.433 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:25:08.909 00:00:10.325 TCP 23.104.0.1:48276 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:25:19.253 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48728 10 6452 1 2025-09-23 17:21:32.518 00:05:01.425 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:26:09.272 00:00:10.505 TCP 23.104.0.1:37928 -> 1.101.0.1:3000 15 1926 1 2025-09-23 17:26:19.473 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:52340 12 10365 1 2025-09-23 17:27:09.819 00:00:10.366 TCP 23.104.0.1:34632 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:27:27.467 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:27:27.653 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:27:19.726 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60032 10 6452 1 2025-09-23 17:28:10.219 00:00:11.067 TCP 23.104.0.1:37576 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:28:19.937 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:51686 10 6452 1 2025-09-23 17:29:11.326 00:00:10.364 TCP 23.104.0.1:51504 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:29:20.175 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59444 10 6452 1 2025-09-23 17:30:11.731 00:00:10.423 TCP 23.104.0.1:36302 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:30:20.386 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60036 10 6452 1 2025-09-23 17:26:32.517 00:05:01.430 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:31:12.201 00:00:10.367 TCP 23.104.0.1:41274 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:31:20.596 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50410 10 6452 1 2025-09-23 17:27:32.520 00:05:01.424 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:32:12.598 00:00:10.359 TCP 23.104.0.1:49424 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:32:27.543 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:32:20.813 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58694 10 6452 1 2025-09-23 17:32:27.378 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:33:12.998 00:00:10.370 TCP 23.104.0.1:53226 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:33:21.025 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:33948 10 6452 1 2025-09-23 17:34:13.404 00:00:10.368 TCP 23.104.0.1:44756 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:34:21.198 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60110 10 6452 1 2025-09-23 17:35:13.816 00:00:10.361 TCP 23.104.0.1:39968 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:35:21.410 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51892 10 6452 1 2025-09-23 17:36:14.218 00:00:10.376 TCP 23.104.0.1:50550 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:36:21.627 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:44790 10 6452 1 2025-09-23 17:32:32.520 00:05:01.428 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:37:14.637 00:00:10.388 TCP 23.104.0.1:42026 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:37:27.810 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:37:21.803 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60050 10 6452 1 2025-09-23 17:37:27.803 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:33:32.523 00:05:01.423 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:38:15.091 00:00:10.369 TCP 23.104.0.1:58464 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:38:22.016 00:00:10.796 TCP 1.101.0.1:3000 -> 22.102.0.1:34112 10 6452 1 2025-09-23 17:39:15.500 00:00:10.372 TCP 23.104.0.1:58076 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:39:22.852 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41408 10 6452 1 2025-09-23 17:40:15.908 00:00:10.644 TCP 23.104.0.1:37718 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:40:23.086 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:55250 10 6452 1 2025-09-23 17:41:16.586 00:00:10.367 TCP 23.104.0.1:35660 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:41:23.314 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44680 10 6452 1 2025-09-23 17:42:28.299 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:42:28.252 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:42:16.987 00:00:10.375 TCP 23.104.0.1:37726 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:38:32.521 00:05:01.431 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:42:23.533 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54544 10 6452 1 2025-09-23 17:43:17.394 00:00:10.361 TCP 23.104.0.1:39500 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:39:32.523 00:05:01.426 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:43:23.749 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34324 10 6452 1 2025-09-23 17:44:17.792 00:00:10.368 TCP 23.104.0.1:39476 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:44:23.968 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:60056 10 6452 1 2025-09-23 17:45:18.202 00:00:10.369 TCP 23.104.0.1:39296 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:45:24.199 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59394 10 6452 1 2025-09-23 17:46:18.613 00:00:10.366 TCP 23.104.0.1:46064 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:46:24.411 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37032 10 6452 1 2025-09-23 17:47:28.034 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:47:27.783 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:47:19.023 00:00:10.373 TCP 23.104.0.1:59584 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:47:24.624 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:52532 10 6452 1 2025-09-23 17:48:19.439 00:00:10.319 TCP 23.104.0.1:39242 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:48:24.794 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48552 10 6452 1 2025-09-23 17:44:32.522 00:05:01.432 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:49:19.801 00:00:10.333 TCP 23.104.0.1:55724 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:45:32.525 00:05:01.427 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:49:25.009 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59554 10 6452 1 2025-09-23 17:50:20.171 00:00:10.325 TCP 23.104.0.1:58358 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:50:25.226 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:54466 10 6452 1 2025-09-23 17:51:20.543 00:00:10.523 TCP 23.104.0.1:33782 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:51:25.460 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35140 10 6452 1 2025-09-23 17:52:27.884 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:52:27.826 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:52:21.107 00:00:10.359 TCP 23.104.0.1:50566 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:52:25.676 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:54054 10 6452 1 2025-09-23 17:53:21.509 00:00:10.330 TCP 23.104.0.1:55476 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:53:25.859 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45228 10 6452 1 2025-09-23 17:54:26.087 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:34354 10 6452 1 2025-09-23 17:50:32.523 00:05:01.434 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-23 17:54:21.874 00:00:10.366 TCP 23.104.0.1:41104 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:55:22.283 00:00:10.374 TCP 23.104.0.1:40584 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:51:32.526 00:05:01.429 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-23 17:55:26.266 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41616 10 6452 1 2025-09-23 17:56:26.476 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55426 10 6452 1 2025-09-23 17:56:22.698 00:00:10.363 TCP 23.104.0.1:46054 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:57:28.054 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-23 17:57:23.102 00:00:10.321 TCP 23.104.0.1:39780 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:57:28.254 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-23 17:57:26.691 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53950 10 6452 1 2025-09-23 17:58:23.462 00:00:10.319 TCP 23.104.0.1:38348 -> 1.101.0.1:3000 11 1507 1 2025-09-23 17:58:26.911 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47836 10 6452 1 Summary: total flows: 163, total bytes: 507118, total packets: 1586, avg bps: 1089, avg pps: 0, avg bpp: 319 Time window: 2025-09-23 16:56:32 - 2025-09-23 17:58:37 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0034s User: 0.0011s Wall: 0.0021s flows/second: 77549.0 Runtime: 0.0021s