Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-28 08:59:20.386 00:00:10.370 TCP 23.104.0.1:44046 -> 1.101.0.1:3000 11 1507 1 2025-09-28 08:59:41.752 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 08:59:41.888 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 08:59:41.899 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:53056 10 6452 1 2025-09-28 09:00:20.795 00:00:10.363 TCP 23.104.0.1:42542 -> 1.101.0.1:3000 11 1507 1 2025-09-28 08:56:34.691 00:05:01.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:00:42.119 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40052 10 6452 1 2025-09-28 09:01:21.203 00:00:10.992 TCP 23.104.0.1:43788 -> 1.101.0.1:3000 11 1507 1 2025-09-28 08:57:34.693 00:05:01.609 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:01:42.331 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42528 10 6452 1 2025-09-28 09:02:22.238 00:00:10.488 TCP 23.104.0.1:32964 -> 1.101.0.1:3000 15 1926 1 2025-09-28 09:02:42.546 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:48034 12 10367 1 2025-09-28 09:03:22.771 00:00:10.329 TCP 23.104.0.1:56784 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:03:42.802 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55758 10 6452 1 2025-09-28 09:04:23.141 00:00:10.366 TCP 23.104.0.1:52106 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:04:41.904 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:04:41.917 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:04:43.023 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58898 10 6452 1 2025-09-28 09:05:23.545 00:00:10.367 TCP 23.104.0.1:56374 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:05:43.233 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:47678 10 6452 1 2025-09-28 09:06:23.956 00:00:10.368 TCP 23.104.0.1:35006 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:02:34.693 00:05:01.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:06:43.448 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47588 10 6452 1 2025-09-28 09:03:34.697 00:05:01.606 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:07:24.364 00:00:10.874 TCP 23.104.0.1:53702 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:07:43.663 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33652 10 6452 1 2025-09-28 09:08:25.284 00:00:10.327 TCP 23.104.0.1:34448 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:08:43.875 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:43602 10 6452 1 2025-09-28 09:09:25.656 00:00:10.373 TCP 23.104.0.1:47136 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:09:42.238 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:09:42.034 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:09:44.097 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52722 10 6452 1 2025-09-28 09:10:26.092 00:00:10.363 TCP 23.104.0.1:34864 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:10:44.320 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40890 10 6452 1 2025-09-28 09:11:26.494 00:00:10.364 TCP 23.104.0.1:35374 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:11:44.538 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:53992 10 6452 1 2025-09-28 09:08:34.696 00:05:01.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:12:26.902 00:00:10.327 TCP 23.104.0.1:49086 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:12:44.712 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:45068 10 6452 1 2025-09-28 09:13:27.272 00:00:10.358 TCP 23.104.0.1:45462 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:09:34.698 00:05:01.611 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:13:44.882 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:50922 10 6452 1 2025-09-28 09:14:27.669 00:00:10.323 TCP 23.104.0.1:48322 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:14:42.226 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:14:42.456 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:14:45.080 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:51260 10 6452 1 2025-09-28 09:15:28.029 00:00:10.359 TCP 23.104.0.1:60320 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:15:45.250 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34936 10 6452 1 2025-09-28 09:16:28.428 00:00:10.367 TCP 23.104.0.1:44220 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:16:45.471 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56182 10 6452 1 2025-09-28 09:17:28.829 00:00:10.387 TCP 23.104.0.1:47232 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:17:45.683 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43436 10 6452 1 2025-09-28 09:14:34.697 00:05:01.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:18:29.255 00:00:10.374 TCP 23.104.0.1:41828 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:18:45.903 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36588 10 6452 1 2025-09-28 09:15:34.699 00:05:01.606 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:19:41.782 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:19:29.667 00:00:10.368 TCP 23.104.0.1:59858 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:19:42.168 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:19:46.119 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44246 10 6452 1 2025-09-28 09:20:30.105 00:00:10.366 TCP 23.104.0.1:33392 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:20:46.335 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45874 10 6452 1 2025-09-28 09:21:30.518 00:00:10.324 TCP 23.104.0.1:38238 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:21:46.556 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:49556 10 6452 1 2025-09-28 09:22:30.880 00:00:10.381 TCP 23.104.0.1:36980 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:22:46.808 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:38168 10 6452 1 2025-09-28 09:23:31.300 00:00:10.331 TCP 23.104.0.1:49018 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:23:46.989 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:43110 10 6452 1 2025-09-28 09:20:34.704 00:05:01.607 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:24:42.044 00:00:00.051 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:24:42.271 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:24:31.664 00:00:10.369 TCP 23.104.0.1:45260 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:24:47.208 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57440 10 6452 1 2025-09-28 09:21:34.701 00:05:01.607 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:25:32.104 00:00:10.367 TCP 23.104.0.1:47360 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:25:47.428 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39924 10 6452 1 2025-09-28 09:26:32.505 00:00:10.323 TCP 23.104.0.1:35400 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:26:47.647 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41450 10 6452 1 2025-09-28 09:27:32.868 00:00:10.383 TCP 23.104.0.1:46060 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:27:47.874 00:00:10.235 TCP 1.101.0.1:3000 -> 22.102.0.1:57674 10 6452 1 2025-09-28 09:28:33.293 00:00:10.366 TCP 23.104.0.1:39292 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:28:48.136 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42840 10 6452 1 2025-09-28 09:29:42.234 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:29:42.384 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:29:33.698 00:00:10.369 TCP 23.104.0.1:46840 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:29:48.352 00:00:10.347 TCP 1.101.0.1:3000 -> 22.102.0.1:51044 10 6452 1 2025-09-28 09:26:34.699 00:05:01.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:30:34.107 00:00:10.322 TCP 23.104.0.1:50778 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:30:48.741 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34258 12 6556 1 2025-09-28 09:27:34.701 00:05:01.608 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:31:34.468 00:00:10.370 TCP 23.104.0.1:42458 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:31:48.957 00:00:10.275 TCP 1.101.0.1:3000 -> 22.102.0.1:50346 10 6452 1 2025-09-28 09:32:34.883 00:00:10.380 TCP 23.104.0.1:34648 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:32:49.270 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56232 10 6452 1 2025-09-28 09:33:35.298 00:00:10.360 TCP 23.104.0.1:38600 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:33:49.486 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53454 10 6452 1 2025-09-28 09:34:42.180 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:34:35.698 00:00:10.365 TCP 23.104.0.1:60552 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:34:42.539 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:34:49.699 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:60252 10 6452 1 2025-09-28 09:35:36.104 00:00:10.355 TCP 23.104.0.1:50190 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:35:49.921 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:56828 10 6452 1 2025-09-28 09:32:34.700 00:05:01.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:36:36.497 00:00:10.379 TCP 23.104.0.1:39854 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:36:50.125 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33506 10 6452 1 2025-09-28 09:33:34.703 00:05:01.608 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:37:36.912 00:00:10.359 TCP 23.104.0.1:58370 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:37:50.350 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33590 10 6452 1 2025-09-28 09:38:37.305 00:00:10.334 TCP 23.104.0.1:40200 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:38:50.564 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45958 10 6452 1 2025-09-28 09:39:42.552 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:39:42.663 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:39:37.682 00:00:10.324 TCP 23.104.0.1:58166 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:39:50.779 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49438 10 6452 1 2025-09-28 09:40:38.049 00:00:10.368 TCP 23.104.0.1:35644 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:40:50.998 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:43044 10 6452 1 2025-09-28 09:41:38.454 00:00:10.325 TCP 23.104.0.1:58400 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:41:51.179 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48702 10 6452 1 2025-09-28 09:38:34.704 00:05:01.610 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:42:38.821 00:00:10.368 TCP 23.104.0.1:55544 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:42:51.391 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47796 10 6452 1 2025-09-28 09:39:34.708 00:05:01.604 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:43:39.229 00:00:10.588 TCP 23.104.0.1:34264 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:43:51.613 00:00:10.608 TCP 1.101.0.1:3000 -> 22.102.0.1:49810 10 6452 1 2025-09-28 09:44:42.688 00:00:00.018 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:44:42.844 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:44:39.857 00:00:10.375 TCP 23.104.0.1:39398 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:44:52.253 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:33178 10 6452 1 2025-09-28 09:45:40.268 00:00:10.361 TCP 23.104.0.1:54222 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:45:52.496 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55794 10 6452 1 2025-09-28 09:46:40.669 00:00:10.365 TCP 23.104.0.1:48312 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:46:52.714 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:52554 10 6452 1 2025-09-28 09:47:41.092 00:00:10.404 TCP 23.104.0.1:49110 -> 1.101.0.1:3000 15 1926 1 2025-09-28 09:47:52.924 00:00:10.236 TCP 1.101.0.1:3000 -> 22.102.0.1:58896 14 10469 1 2025-09-28 09:44:34.705 00:05:01.611 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:48:41.533 00:00:10.364 TCP 23.104.0.1:43950 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:48:53.199 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45950 10 6452 1 2025-09-28 09:45:34.708 00:05:01.606 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:49:42.866 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:49:42.530 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:49:41.936 00:00:10.379 TCP 23.104.0.1:33876 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:49:53.418 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54218 10 6452 1 2025-09-28 09:50:42.355 00:00:10.365 TCP 23.104.0.1:52900 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:50:53.639 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59618 10 6452 1 2025-09-28 09:51:42.759 00:00:10.334 TCP 23.104.0.1:44420 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:51:53.855 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:39744 10 6452 1 2025-09-28 09:52:43.135 00:00:10.364 TCP 23.104.0.1:48692 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:52:54.032 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56850 10 6452 1 2025-09-28 09:53:43.537 00:00:10.364 TCP 23.104.0.1:40150 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:53:54.252 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:41342 10 6452 1 2025-09-28 09:50:34.708 00:05:01.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 09:54:42.952 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 09:54:42.852 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:54:43.935 00:00:10.408 TCP 23.104.0.1:39304 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:54:54.503 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36578 10 6452 1 2025-09-28 09:51:34.710 00:05:01.605 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 09:55:44.382 00:00:10.366 TCP 23.104.0.1:50664 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:55:54.715 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:50676 10 6452 1 2025-09-28 09:56:44.786 00:00:10.372 TCP 23.104.0.1:49392 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:56:54.903 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52924 10 6452 1 2025-09-28 09:57:45.196 00:00:10.366 TCP 23.104.0.1:52040 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:57:55.123 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38400 10 6452 1 Summary: total flows: 162, total bytes: 499263, total packets: 1567, avg bps: 1082, avg pps: 0, avg bpp: 318 Time window: 2025-09-28 08:56:34 - 2025-09-28 09:58:05 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0019s User: 0.0029s Wall: 0.0033s flows/second: 49600.5 Runtime: 0.0033s