Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 14:58:48.960 00:00:10.364 TCP 23.104.0.1:56782 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:59:07.224 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44102 10 6452 1 2025-10-01 14:59:49.357 00:00:10.366 TCP 23.104.0.1:51644 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:00:07.435 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:57814 10 6452 1 2025-10-01 14:56:36.187 00:05:01.730 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:00:49.765 00:00:10.372 TCP 23.104.0.1:55908 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:01:15.573 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:01:15.501 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:01:07.668 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:42236 10 6452 1 2025-10-01 14:57:36.190 00:05:01.724 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:01:50.180 00:00:10.367 TCP 23.104.0.1:56698 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:02:07.919 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:44554 10 6452 1 2025-10-01 15:02:50.584 00:00:10.371 TCP 23.104.0.1:44374 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:03:08.168 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:49990 10 6452 1 2025-10-01 15:03:50.992 00:00:10.364 TCP 23.104.0.1:49222 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:04:08.345 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45486 10 6452 1 2025-10-01 15:04:51.395 00:00:10.817 TCP 23.104.0.1:38200 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:05:08.569 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60386 12 6556 1 2025-10-01 15:05:52.246 00:00:10.364 TCP 23.104.0.1:34782 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:06:16.419 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:06:16.419 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:06:08.779 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36776 10 6452 1 2025-10-01 15:02:36.189 00:05:01.729 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:06:52.654 00:00:10.368 TCP 23.104.0.1:35224 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:07:08.999 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:43240 10 6452 1 2025-10-01 15:03:36.192 00:05:01.725 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:07:53.058 00:00:10.447 TCP 23.104.0.1:36318 -> 1.101.0.1:3000 15 1926 1 2025-10-01 15:08:09.220 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:45220 12 10369 1 2025-10-01 15:08:53.541 00:00:10.325 TCP 23.104.0.1:41278 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:09:09.463 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:50256 10 6452 1 2025-10-01 15:09:53.906 00:00:10.369 TCP 23.104.0.1:56052 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:10:09.637 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52058 10 6452 1 2025-10-01 15:10:54.309 00:00:10.366 TCP 23.104.0.1:39258 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:11:15.997 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:11:15.998 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:11:09.859 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:37712 10 6452 1 2025-10-01 15:11:54.715 00:00:10.369 TCP 23.104.0.1:46196 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:12:10.094 00:00:10.876 TCP 1.101.0.1:3000 -> 22.102.0.1:48396 10 6452 1 2025-10-01 15:08:36.190 00:05:01.729 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:12:55.126 00:00:10.331 TCP 23.104.0.1:41990 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:13:11.011 00:00:19.533 TCP 1.101.0.1:3000 -> 22.102.0.1:46744 10 6452 1 2025-10-01 15:09:36.192 00:05:01.724 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:13:55.492 00:00:10.379 TCP 23.104.0.1:47924 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:14:20.584 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:49516 10 6452 1 2025-10-01 15:14:55.909 00:00:10.362 TCP 23.104.0.1:37890 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:15:20.804 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58990 10 6452 1 2025-10-01 15:15:56.311 00:00:10.364 TCP 23.104.0.1:37294 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:16:16.004 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:16:16.008 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:16:21.023 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46122 10 6452 1 2025-10-01 15:16:56.717 00:00:10.388 TCP 23.104.0.1:37472 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:17:21.242 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37846 10 6452 1 2025-10-01 15:17:57.149 00:00:10.369 TCP 23.104.0.1:59610 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:18:21.459 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40072 10 6452 1 2025-10-01 15:14:36.190 00:05:01.730 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:18:57.554 00:00:10.973 TCP 23.104.0.1:54464 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:19:21.674 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:57176 10 6452 1 2025-10-01 15:15:36.194 00:05:01.724 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:19:58.568 00:00:10.364 TCP 23.104.0.1:60108 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:20:21.847 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:40050 10 6452 1 2025-10-01 15:20:58.973 00:00:10.368 TCP 23.104.0.1:48994 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:21:16.020 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:21:16.011 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:21:22.086 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39946 10 6452 1 2025-10-01 15:21:59.385 00:00:10.370 TCP 23.104.0.1:47200 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:22:22.299 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:59070 10 6452 1 2025-10-01 15:22:59.791 00:00:10.371 TCP 23.104.0.1:52082 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:23:22.508 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55402 10 6452 1 2025-10-01 15:24:00.199 00:00:10.360 TCP 23.104.0.1:44142 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:24:22.728 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46510 10 6452 1 2025-10-01 15:20:36.192 00:05:01.731 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:25:00.595 00:00:10.325 TCP 23.104.0.1:39072 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:25:22.943 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:56954 10 6452 1 2025-10-01 15:21:36.196 00:05:01.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:26:16.168 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:26:00.957 00:00:10.336 TCP 23.104.0.1:40738 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:26:16.247 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:27:01.333 00:00:10.835 TCP 23.104.0.1:51098 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:26:23.194 00:01:10.398 TCP 1.101.0.1:3000 -> 22.102.0.1:38944 20 12904 1 2025-10-01 15:28:02.207 00:00:10.332 TCP 23.104.0.1:56228 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:28:23.631 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39076 10 6452 1 2025-10-01 15:29:02.574 00:00:19.997 TCP 23.104.0.1:52948 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:29:23.842 00:00:10.286 TCP 1.101.0.1:3000 -> 22.102.0.1:38764 10 6452 1 2025-10-01 15:30:12.610 00:00:10.361 TCP 23.104.0.1:37928 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:30:24.169 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43150 10 6452 1 2025-10-01 15:26:36.192 00:05:01.737 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:31:16.513 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:31:16.431 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:31:13.013 00:00:10.361 TCP 23.104.0.1:50238 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:31:24.384 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:46840 10 6452 1 2025-10-01 15:27:36.196 00:05:01.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:32:13.414 00:00:10.371 TCP 23.104.0.1:36828 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:32:24.607 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:59926 10 6452 1 2025-10-01 15:33:13.820 00:00:10.657 TCP 23.104.0.1:51898 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:33:24.838 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40500 10 6452 1 2025-10-01 15:34:14.520 00:00:10.327 TCP 23.104.0.1:40762 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:34:25.079 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45754 10 6452 1 2025-10-01 15:35:14.891 00:00:10.819 TCP 23.104.0.1:59966 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:35:25.299 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:38624 10 6452 1 2025-10-01 15:36:16.537 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:36:16.392 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:36:15.748 00:00:10.365 TCP 23.104.0.1:53660 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:36:25.538 00:00:10.222 TCP 1.101.0.1:3000 -> 22.102.0.1:56978 10 6452 1 2025-10-01 15:32:36.198 00:05:01.732 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:37:16.151 00:00:10.419 TCP 23.104.0.1:51714 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:37:25.801 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39652 10 6452 1 2025-10-01 15:33:36.200 00:05:01.728 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:38:16.613 00:00:10.323 TCP 23.104.0.1:49100 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:38:26.006 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:32924 10 6452 1 2025-10-01 15:39:16.979 00:00:10.376 TCP 23.104.0.1:34738 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:39:26.231 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38180 10 6452 1 2025-10-01 15:40:17.397 00:00:10.712 TCP 23.104.0.1:55150 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:40:26.449 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:49114 10 6452 1 2025-10-01 15:41:16.557 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:41:16.558 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:41:18.145 00:00:10.362 TCP 23.104.0.1:38022 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:41:26.629 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:47792 10 6452 1 2025-10-01 15:42:18.542 00:00:10.365 TCP 23.104.0.1:43056 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:42:26.855 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:53560 10 6452 1 2025-10-01 15:38:36.199 00:05:01.734 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:43:18.945 00:00:10.370 TCP 23.104.0.1:43576 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:43:27.086 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35342 10 6452 1 2025-10-01 15:39:36.202 00:05:01.729 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:44:19.356 00:00:10.365 TCP 23.104.0.1:36758 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:44:27.304 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:53750 10 6452 1 2025-10-01 15:45:19.763 00:00:10.374 TCP 23.104.0.1:37160 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:45:27.527 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:49422 10 6452 1 2025-10-01 15:46:16.567 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:46:16.563 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:46:20.178 00:00:10.361 TCP 23.104.0.1:41550 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:46:27.739 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39728 10 6452 1 2025-10-01 15:47:20.576 00:00:10.362 TCP 23.104.0.1:41552 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:47:27.953 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:46202 12 6556 1 2025-10-01 15:48:20.982 00:00:10.375 TCP 23.104.0.1:58184 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:48:28.192 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58752 10 6452 1 2025-10-01 15:44:36.200 00:05:01.735 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:49:21.390 00:00:10.327 TCP 23.104.0.1:42344 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:49:28.404 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54780 10 6452 1 2025-10-01 15:45:36.203 00:05:01.730 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:50:21.758 00:00:10.376 TCP 23.104.0.1:58842 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:50:28.619 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50744 10 6452 1 2025-10-01 15:51:16.775 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:51:16.639 00:00:00.029 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:51:22.173 00:00:10.325 TCP 23.104.0.1:55324 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:51:28.833 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60120 10 6452 1 2025-10-01 15:52:22.534 00:00:10.365 TCP 23.104.0.1:52830 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:52:29.071 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40284 10 6452 1 2025-10-01 15:53:22.938 00:00:10.376 TCP 23.104.0.1:34618 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:53:29.289 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46570 10 6452 1 2025-10-01 15:54:23.353 00:00:10.365 TCP 23.104.0.1:41040 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:54:29.502 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43600 10 6452 1 2025-10-01 15:50:36.202 00:05:01.735 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-01 15:55:23.759 00:00:10.340 TCP 23.104.0.1:33838 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:51:36.204 00:05:01.729 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-01 15:55:29.715 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:44898 10 6452 1 2025-10-01 15:56:16.934 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 15:56:17.036 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-01 15:56:24.144 00:00:10.369 TCP 23.104.0.1:56362 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:56:29.882 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:42582 10 6452 1 2025-10-01 15:57:24.554 00:00:10.368 TCP 23.104.0.1:55080 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:57:30.104 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38412 10 6452 1 2025-10-01 15:58:24.965 00:00:10.372 TCP 23.104.0.1:44738 -> 1.101.0.1:3000 11 1507 1 2025-10-01 15:58:30.320 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53968 10 6452 1 Summary: total flows: 163, total bytes: 502892, total packets: 1582, avg bps: 1080, avg pps: 0, avg bpp: 317 Time window: 2025-10-01 14:56:36 - 2025-10-01 15:58:40 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0038s User: 0.0013s Wall: 0.0024s flows/second: 68033.8 Runtime: 0.0024s