Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-25 03:58:53.382 00:00:10.368 TCP 23.104.0.1:54780 -> 1.101.0.1:3000 11 1507 1 2025-09-25 03:59:18.997 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:41854 10 6452 1 2025-09-25 03:59:53.791 00:00:10.373 TCP 23.104.0.1:48528 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:00:19.219 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38592 10 6452 1 2025-09-25 03:56:33.187 00:05:01.573 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:00:54.200 00:00:10.323 TCP 23.104.0.1:58504 -> 1.101.0.1:3000 11 1507 1 2025-09-25 03:57:33.191 00:05:01.567 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:01:19.435 00:00:13.080 TCP 1.101.0.1:3000 -> 22.102.0.1:58804 10 6452 1 2025-09-25 04:01:54.557 00:00:11.589 TCP 23.104.0.1:52974 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:02:22.555 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:50428 10 6452 1 2025-09-25 04:02:56.185 00:00:10.420 TCP 23.104.0.1:60612 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:03:09.144 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:03:09.231 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:03:22.779 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46390 10 6452 1 2025-09-25 04:03:56.636 00:00:10.322 TCP 23.104.0.1:57934 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:04:22.953 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:58032 10 6452 1 2025-09-25 04:04:56.993 00:00:10.363 TCP 23.104.0.1:46358 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:05:23.145 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:56974 10 6452 1 2025-09-25 04:05:57.392 00:00:10.325 TCP 23.104.0.1:33836 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:06:23.362 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:60800 12 10365 1 2025-09-25 04:02:33.191 00:05:01.570 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:06:57.753 00:00:10.462 TCP 23.104.0.1:33828 -> 1.101.0.1:3000 15 1926 1 2025-09-25 04:07:23.609 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:47684 10 6452 1 2025-09-25 04:03:33.193 00:05:01.566 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:08:09.424 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:08:09.423 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:07:58.252 00:00:10.360 TCP 23.104.0.1:43850 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:08:23.832 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:43156 10 6452 1 2025-09-25 04:08:58.652 00:00:10.367 TCP 23.104.0.1:54696 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:09:24.080 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53638 10 6452 1 2025-09-25 04:09:59.072 00:00:10.362 TCP 23.104.0.1:53124 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:10:24.303 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42280 10 6452 1 2025-09-25 04:10:59.472 00:00:10.360 TCP 23.104.0.1:52590 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:11:24.528 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:37182 10 6452 1 2025-09-25 04:11:59.879 00:00:10.387 TCP 23.104.0.1:54804 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:12:24.754 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55070 10 6452 1 2025-09-25 04:08:33.191 00:05:01.570 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:13:09.301 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:13:09.364 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:13:00.309 00:00:10.367 TCP 23.104.0.1:40310 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:13:24.979 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:44884 13 6608 1 2025-09-25 04:09:33.194 00:05:01.565 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:14:00.710 00:00:10.363 TCP 23.104.0.1:33826 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:14:25.239 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:44148 10 6452 1 2025-09-25 04:15:01.120 00:00:10.372 TCP 23.104.0.1:48692 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:15:25.460 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44066 10 6452 1 2025-09-25 04:16:01.525 00:00:10.367 TCP 23.104.0.1:58542 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:16:25.677 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39954 10 6452 1 2025-09-25 04:17:01.940 00:00:10.336 TCP 23.104.0.1:56936 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:17:25.899 00:00:17.767 TCP 1.101.0.1:3000 -> 22.102.0.1:38606 10 6452 1 2025-09-25 04:18:09.530 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:18:09.577 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:18:02.310 00:00:10.368 TCP 23.104.0.1:35460 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:14:33.192 00:05:01.571 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:18:33.758 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48936 10 6452 1 2025-09-25 04:19:02.718 00:00:10.375 TCP 23.104.0.1:57432 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:15:33.195 00:05:01.565 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:19:33.968 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:39992 10 6452 1 2025-09-25 04:20:03.128 00:00:10.326 TCP 23.104.0.1:51378 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:20:34.208 00:00:10.671 TCP 1.101.0.1:3000 -> 22.102.0.1:54134 10 6452 1 2025-09-25 04:21:03.491 00:00:10.326 TCP 23.104.0.1:45432 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:21:34.918 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41800 10 6452 1 2025-09-25 04:22:03.860 00:00:10.372 TCP 23.104.0.1:33858 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:22:35.130 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:40502 10 6452 1 2025-09-25 04:23:09.511 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:23:09.676 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:23:04.271 00:00:10.330 TCP 23.104.0.1:60982 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:23:35.351 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54486 10 6452 1 2025-09-25 04:24:04.637 00:00:10.322 TCP 23.104.0.1:54002 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:20:33.192 00:05:01.571 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:24:35.561 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48896 10 6452 1 2025-09-25 04:25:04.990 00:00:10.368 TCP 23.104.0.1:43732 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:21:33.200 00:05:01.561 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:25:35.770 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:58832 10 6452 1 2025-09-25 04:26:05.392 00:00:10.814 TCP 23.104.0.1:48172 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:26:35.946 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:51318 10 6452 1 2025-09-25 04:27:06.244 00:00:10.323 TCP 23.104.0.1:36068 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:27:36.172 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:58542 10 6452 1 2025-09-25 04:28:09.657 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:28:09.528 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:28:06.609 00:00:10.366 TCP 23.104.0.1:56068 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:28:36.392 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:44370 10 6452 1 2025-09-25 04:29:07.014 00:00:10.372 TCP 23.104.0.1:41490 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:29:36.577 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35714 10 6452 1 2025-09-25 04:30:07.419 00:00:10.324 TCP 23.104.0.1:55510 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:26:33.193 00:05:01.572 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:30:36.796 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:33422 10 6452 1 2025-09-25 04:31:07.784 00:00:10.364 TCP 23.104.0.1:58712 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:27:33.197 00:05:01.566 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:31:36.980 00:00:10.228 TCP 1.101.0.1:3000 -> 22.102.0.1:60450 12 10365 1 2025-09-25 04:32:08.188 00:00:10.439 TCP 23.104.0.1:52364 -> 1.101.0.1:3000 15 1926 1 2025-09-25 04:32:37.251 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38838 10 6452 1 2025-09-25 04:33:09.586 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:33:09.817 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:33:08.668 00:00:10.364 TCP 23.104.0.1:38578 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:33:37.464 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:34996 10 6452 1 2025-09-25 04:34:09.099 00:00:10.365 TCP 23.104.0.1:51006 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:34:37.642 00:00:10.232 TCP 1.101.0.1:3000 -> 22.102.0.1:58334 11 6492 1 2025-09-25 04:35:09.503 00:00:10.417 TCP 23.104.0.1:39120 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:35:37.850 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:59250 10 6452 1 2025-09-25 04:36:09.962 00:00:10.323 TCP 23.104.0.1:49712 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:32:33.196 00:05:01.572 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:36:38.085 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54978 10 6452 1 2025-09-25 04:37:10.325 00:00:10.364 TCP 23.104.0.1:44474 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:33:33.197 00:05:01.567 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:37:38.304 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43628 10 6452 1 2025-09-25 04:38:09.844 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:38:09.893 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:38:10.728 00:00:10.373 TCP 23.104.0.1:47234 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:38:38.523 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:40746 10 6452 1 2025-09-25 04:39:11.136 00:00:10.363 TCP 23.104.0.1:53752 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:39:38.748 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:42226 10 6452 1 2025-09-25 04:40:11.540 00:00:10.358 TCP 23.104.0.1:50322 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:40:38.976 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:55542 10 6452 1 2025-09-25 04:41:11.931 00:00:10.460 TCP 23.104.0.1:59814 -> 1.101.0.1:3000 15 1926 1 2025-09-25 04:41:39.224 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:35556 12 10367 1 2025-09-25 04:42:12.424 00:00:10.322 TCP 23.104.0.1:42798 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:38:33.197 00:05:01.572 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:42:39.470 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:37106 10 6452 1 2025-09-25 04:43:10.032 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:43:10.279 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:43:12.786 00:00:10.369 TCP 23.104.0.1:51876 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:39:33.199 00:05:01.566 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:43:39.699 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36610 10 6452 1 2025-09-25 04:44:13.201 00:00:10.374 TCP 23.104.0.1:50910 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:44:39.914 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43810 10 6452 1 2025-09-25 04:45:13.619 00:00:10.369 TCP 23.104.0.1:43426 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:45:40.129 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:39654 10 6452 1 2025-09-25 04:46:14.026 00:00:10.370 TCP 23.104.0.1:37102 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:46:40.338 00:00:10.784 TCP 1.101.0.1:3000 -> 22.102.0.1:33408 10 6452 1 2025-09-25 04:47:14.435 00:00:10.363 TCP 23.104.0.1:53814 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:47:41.163 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34648 10 6452 1 2025-09-25 04:48:10.019 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:48:09.772 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:48:14.841 00:00:10.404 TCP 23.104.0.1:59836 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:44:33.198 00:05:01.574 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:48:41.380 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50462 10 6452 1 2025-09-25 04:49:15.280 00:00:10.360 TCP 23.104.0.1:33896 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:45:33.201 00:05:01.566 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:49:41.595 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51360 10 6452 1 2025-09-25 04:50:15.680 00:00:10.365 TCP 23.104.0.1:54712 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:50:41.807 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53444 10 6452 1 2025-09-25 04:51:16.103 00:00:10.364 TCP 23.104.0.1:57056 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:51:42.036 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56048 10 6452 1 2025-09-25 04:52:16.513 00:00:10.365 TCP 23.104.0.1:53922 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:52:42.250 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36110 10 6452 1 2025-09-25 04:53:09.909 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:53:10.148 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:53:16.914 00:00:10.368 TCP 23.104.0.1:57384 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:53:42.469 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:42204 10 6452 1 2025-09-25 04:54:17.325 00:00:10.365 TCP 23.104.0.1:45636 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:50:33.198 00:05:01.572 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-25 04:54:42.640 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51986 10 6452 1 2025-09-25 04:55:17.730 00:00:10.370 TCP 23.104.0.1:50818 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:51:33.200 00:05:01.567 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-25 04:55:42.855 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33916 10 6452 1 2025-09-25 04:56:18.138 00:00:10.400 TCP 23.104.0.1:47592 -> 1.101.0.1:3000 15 1926 1 2025-09-25 04:56:43.085 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:40808 12 10367 1 2025-09-25 04:57:18.576 00:00:10.365 TCP 23.104.0.1:43578 -> 1.101.0.1:3000 11 1507 1 2025-09-25 04:57:43.338 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33606 10 6452 1 2025-09-25 04:58:10.351 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-25 04:58:10.152 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 04:58:18.981 00:00:10.363 TCP 23.104.0.1:42746 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 509424, total packets: 1590, avg bps: 1096, avg pps: 0, avg bpp: 320 Time window: 2025-09-25 03:56:33 - 2025-09-25 04:58:29 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0020s User: 0.0030s Wall: 0.0021s flows/second: 77286.0 Runtime: 0.0021s