Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 05:59:19.444 00:00:10.363 TCP 23.104.0.1:50528 -> 1.101.0.1:3000 11 1507 1 2025-10-05 05:59:27.231 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51060 10 6452 1 2025-10-05 06:00:19.851 00:00:10.380 TCP 23.104.0.1:55408 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:00:27.456 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:34630 10 6452 1 2025-10-05 05:56:37.845 00:05:01.995 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:01:20.269 00:00:10.369 TCP 23.104.0.1:44358 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:01:27.677 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:57312 10 6452 1 2025-10-05 05:57:37.848 00:05:01.989 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:02:20.684 00:00:10.337 TCP 23.104.0.1:54286 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:02:27.858 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:51760 10 6452 1 2025-10-05 06:03:00.334 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:03:00.312 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:03:21.094 00:00:10.361 TCP 23.104.0.1:49260 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:03:28.081 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42232 10 6452 1 2025-10-05 06:04:21.489 00:00:10.367 TCP 23.104.0.1:44088 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:04:28.299 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:57304 10 6452 1 2025-10-05 06:05:21.895 00:00:10.372 TCP 23.104.0.1:56044 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:05:28.474 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39236 10 6452 1 2025-10-05 06:06:22.312 00:00:10.363 TCP 23.104.0.1:48466 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:06:28.685 00:00:10.776 TCP 1.101.0.1:3000 -> 22.102.0.1:34552 10 6452 1 2025-10-05 06:02:37.849 00:05:01.992 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:07:22.715 00:00:10.375 TCP 23.104.0.1:54244 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:07:29.500 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:56272 10 6452 1 2025-10-05 06:03:37.852 00:05:01.988 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:08:00.547 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:08:00.475 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:08:23.133 00:00:10.367 TCP 23.104.0.1:39006 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:08:29.673 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:41940 10 6452 1 2025-10-05 06:09:23.537 00:00:10.326 TCP 23.104.0.1:51934 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:09:29.895 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:43872 10 6452 1 2025-10-05 06:10:23.898 00:00:10.329 TCP 23.104.0.1:45326 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:10:30.121 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44672 10 6452 1 2025-10-05 06:11:24.265 00:00:10.327 TCP 23.104.0.1:46090 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:11:30.341 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33558 10 6452 1 2025-10-05 06:12:24.628 00:00:11.111 TCP 23.104.0.1:56296 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:12:30.551 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60348 10 6452 1 2025-10-05 06:08:37.849 00:05:01.994 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:13:00.533 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:13:00.634 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:13:25.779 00:00:10.366 TCP 23.104.0.1:37060 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:09:37.852 00:05:01.989 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:13:30.767 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46442 10 6452 1 2025-10-05 06:14:26.183 00:00:10.703 TCP 23.104.0.1:47080 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:14:30.981 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:37506 10 6452 1 2025-10-05 06:15:31.179 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47872 10 6452 1 2025-10-05 06:15:26.928 00:00:10.385 TCP 23.104.0.1:52710 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:16:31.392 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:36538 10 6452 1 2025-10-05 06:16:27.353 00:00:10.362 TCP 23.104.0.1:41616 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:17:27.749 00:00:10.367 TCP 23.104.0.1:44346 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:17:31.636 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:53114 10 6452 1 2025-10-05 06:18:00.843 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:18:00.685 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:18:28.152 00:00:10.397 TCP 23.104.0.1:58564 -> 1.101.0.1:3000 15 1926 1 2025-10-05 06:14:37.850 00:05:01.994 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:18:31.860 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:54836 12 10375 1 2025-10-05 06:15:37.852 00:05:01.989 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:19:28.585 00:00:10.368 TCP 23.104.0.1:43700 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:19:32.125 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50198 10 6452 1 2025-10-05 06:20:28.990 00:00:10.367 TCP 23.104.0.1:41380 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:20:32.340 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44828 10 6452 1 2025-10-05 06:21:29.400 00:00:10.366 TCP 23.104.0.1:43958 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:21:32.555 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:40306 10 6452 1 2025-10-05 06:22:29.800 00:00:10.366 TCP 23.104.0.1:54212 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:22:32.741 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:54238 10 6452 1 2025-10-05 06:23:00.583 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:23:00.793 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:23:30.200 00:00:10.371 TCP 23.104.0.1:49044 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:23:32.946 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:55238 10 6452 1 2025-10-05 06:20:37.853 00:05:01.993 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:24:30.604 00:00:10.369 TCP 23.104.0.1:38458 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:24:33.127 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52370 10 6452 1 2025-10-05 06:21:37.855 00:05:01.988 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:25:31.012 00:00:10.367 TCP 23.104.0.1:49804 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:25:33.343 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37128 10 6452 1 2025-10-05 06:26:31.411 00:00:10.370 TCP 23.104.0.1:52544 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:26:33.553 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55904 10 6452 1 2025-10-05 06:27:33.766 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41658 10 6452 1 2025-10-05 06:27:31.824 00:00:10.367 TCP 23.104.0.1:46260 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:28:00.650 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:28:00.928 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:28:32.227 00:00:10.329 TCP 23.104.0.1:37248 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:28:33.978 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:39572 10 6452 1 2025-10-05 06:29:34.225 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:51676 10 6452 1 2025-10-05 06:29:32.591 00:00:10.363 TCP 23.104.0.1:37746 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:26:37.853 00:05:01.993 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:30:32.994 00:00:10.325 TCP 23.104.0.1:34090 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:30:34.394 00:00:10.459 TCP 1.101.0.1:3000 -> 22.102.0.1:44866 10 6452 1 2025-10-05 06:27:37.856 00:05:01.988 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:31:34.894 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38530 10 6452 1 2025-10-05 06:31:33.354 00:00:10.365 TCP 23.104.0.1:36930 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:32:35.106 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57580 10 6452 1 2025-10-05 06:32:33.753 00:00:10.380 TCP 23.104.0.1:49366 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:33:00.951 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:33:00.915 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:33:34.173 00:00:10.364 TCP 23.104.0.1:50092 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:33:35.325 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:36578 10 6452 1 2025-10-05 06:34:35.547 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51622 10 6452 1 2025-10-05 06:34:34.575 00:00:10.340 TCP 23.104.0.1:52164 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:35:34.955 00:00:10.382 TCP 23.104.0.1:40126 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:35:35.767 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:35094 10 6452 1 2025-10-05 06:32:37.854 00:05:01.993 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:36:35.392 00:00:10.369 TCP 23.104.0.1:59598 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:36:35.970 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:35302 10 6452 1 2025-10-05 06:33:37.857 00:05:01.988 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:37:36.197 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:58654 10 6452 1 2025-10-05 06:37:35.797 00:00:10.367 TCP 23.104.0.1:39072 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:38:00.860 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:38:00.970 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:38:36.405 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53998 10 6452 1 2025-10-05 06:38:36.200 00:00:10.366 TCP 23.104.0.1:42666 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:39:36.612 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41576 10 6452 1 2025-10-05 06:39:36.607 00:00:10.372 TCP 23.104.0.1:51564 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:40:36.824 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50452 10 6452 1 2025-10-05 06:40:37.020 00:00:10.324 TCP 23.104.0.1:49594 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:41:37.062 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:52376 10 6452 1 2025-10-05 06:41:37.386 00:00:10.369 TCP 23.104.0.1:53848 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:38:37.857 00:05:01.993 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:42:37.231 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56560 10 6452 1 2025-10-05 06:42:37.797 00:00:10.369 TCP 23.104.0.1:38108 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:43:01.148 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:43:01.063 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:39:37.860 00:05:01.988 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:43:37.443 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:44448 10 6452 1 2025-10-05 06:43:38.208 00:00:10.322 TCP 23.104.0.1:58296 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:44:37.620 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54620 10 6452 1 2025-10-05 06:44:38.596 00:00:10.329 TCP 23.104.0.1:59776 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:45:37.829 00:00:10.229 TCP 1.101.0.1:3000 -> 22.102.0.1:48370 11 6504 1 2025-10-05 06:45:38.965 00:00:10.381 TCP 23.104.0.1:39600 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:46:39.385 00:00:10.364 TCP 23.104.0.1:50072 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:46:38.099 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54210 10 6452 1 2025-10-05 06:47:38.319 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51124 10 6452 1 2025-10-05 06:47:39.788 00:00:10.371 TCP 23.104.0.1:58754 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:48:01.332 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:48:01.299 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:44:37.856 00:05:01.993 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:48:40.202 00:00:10.365 TCP 23.104.0.1:39170 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:48:38.531 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52212 10 6452 1 2025-10-05 06:45:37.859 00:05:01.988 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:49:38.745 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57160 10 6452 1 2025-10-05 06:49:40.599 00:00:10.366 TCP 23.104.0.1:45910 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:50:38.958 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50432 10 6452 1 2025-10-05 06:50:41.001 00:00:10.365 TCP 23.104.0.1:41318 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:51:39.181 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37678 10 6452 1 2025-10-05 06:51:41.403 00:00:10.367 TCP 23.104.0.1:38132 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:52:39.392 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50728 12 6556 1 2025-10-05 06:52:41.815 00:00:10.417 TCP 23.104.0.1:57504 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:53:01.467 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:53:01.347 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:53:39.606 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:58008 10 6452 1 2025-10-05 06:53:42.270 00:00:10.369 TCP 23.104.0.1:36312 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:50:37.858 00:05:01.993 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 06:54:39.781 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45032 10 6452 1 2025-10-05 06:54:42.676 00:00:10.935 TCP 23.104.0.1:39458 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:51:37.860 00:05:01.989 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 06:55:39.995 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:56288 10 6452 1 2025-10-05 06:55:43.660 00:00:10.372 TCP 23.104.0.1:58124 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:56:40.215 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:58388 10 6452 1 2025-10-05 06:56:44.099 00:00:10.361 TCP 23.104.0.1:56160 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:57:40.392 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48908 10 6452 1 2025-10-05 06:57:44.497 00:00:10.368 TCP 23.104.0.1:33756 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:58:01.532 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 06:58:01.468 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 06:58:40.607 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36006 10 6452 1 Summary: total flows: 163, total bytes: 501339, total packets: 1570, avg bps: 1074, avg pps: 0, avg bpp: 319 Time window: 2025-10-05 05:56:37 - 2025-10-05 06:58:50 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0030s User: 0.0007s Wall: 0.0019s flows/second: 86705.3 Runtime: 0.0019s