Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 06:58:44.905 00:00:10.340 TCP 23.104.0.1:37140 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:59:40.828 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:54012 10 6452 1 2025-10-05 06:59:45.280 00:00:10.363 TCP 23.104.0.1:58950 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:56:37.858 00:05:01.997 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:00:41.012 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:59830 10 6452 1 2025-10-05 07:00:45.681 00:00:10.366 TCP 23.104.0.1:47656 -> 1.101.0.1:3000 11 1507 1 2025-10-05 06:57:37.861 00:05:01.993 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:01:41.187 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:59762 10 6452 1 2025-10-05 07:01:46.105 00:00:10.327 TCP 23.104.0.1:60300 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:02:41.418 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48102 10 6452 1 2025-10-05 07:02:46.471 00:00:10.365 TCP 23.104.0.1:48828 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:03:01.777 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:03:01.580 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:03:41.634 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:47520 10 6452 1 2025-10-05 07:03:46.885 00:00:10.381 TCP 23.104.0.1:46050 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:04:41.807 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:39022 10 6452 1 2025-10-05 07:04:47.303 00:00:10.366 TCP 23.104.0.1:36454 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:05:42.045 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:59070 10 6452 1 2025-10-05 07:05:47.707 00:00:10.380 TCP 23.104.0.1:49606 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:02:37.860 00:05:01.998 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:06:42.216 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38160 10 6452 1 2025-10-05 07:06:48.128 00:00:10.369 TCP 23.104.0.1:58876 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:03:37.862 00:05:01.992 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:07:42.435 00:00:10.300 TCP 1.101.0.1:3000 -> 22.102.0.1:36732 10 6452 1 2025-10-05 07:08:01.815 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:07:48.531 00:00:10.326 TCP 23.104.0.1:36462 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:08:01.531 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:08:42.773 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:50522 12 10369 1 2025-10-05 07:08:48.892 00:00:10.450 TCP 23.104.0.1:42774 -> 1.101.0.1:3000 15 1926 1 2025-10-05 07:09:43.010 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:36742 10 6452 1 2025-10-05 07:09:49.379 00:00:10.365 TCP 23.104.0.1:34702 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:10:43.241 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33468 10 6452 1 2025-10-05 07:10:49.782 00:00:10.364 TCP 23.104.0.1:37912 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:11:43.452 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:55094 10 6452 1 2025-10-05 07:11:50.186 00:00:10.365 TCP 23.104.0.1:59342 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:08:37.862 00:05:01.996 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:12:43.655 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:50722 10 6452 1 2025-10-05 07:13:01.814 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:13:01.725 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:12:50.589 00:00:10.361 TCP 23.104.0.1:37278 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:09:37.866 00:05:01.990 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:13:43.817 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:47566 10 6452 1 2025-10-05 07:13:50.991 00:00:10.370 TCP 23.104.0.1:49560 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:14:43.983 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:56192 10 6452 1 2025-10-05 07:14:51.398 00:00:10.369 TCP 23.104.0.1:33714 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:15:44.210 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:33974 10 6452 1 2025-10-05 07:15:51.813 00:00:10.370 TCP 23.104.0.1:48594 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:16:44.377 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36732 10 6452 1 2025-10-05 07:16:52.225 00:00:10.358 TCP 23.104.0.1:57206 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:17:44.590 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:45828 10 6452 1 2025-10-05 07:18:01.955 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:18:01.976 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:17:52.621 00:00:10.372 TCP 23.104.0.1:39316 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:14:37.865 00:05:01.995 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:18:44.768 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50100 10 6452 1 2025-10-05 07:18:53.034 00:00:10.367 TCP 23.104.0.1:59068 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:15:37.868 00:05:01.992 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:19:44.987 00:00:10.679 TCP 1.101.0.1:3000 -> 22.102.0.1:39038 10 6452 1 2025-10-05 07:19:53.446 00:00:10.366 TCP 23.104.0.1:46040 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:20:45.706 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45880 10 6452 1 2025-10-05 07:20:53.850 00:00:10.383 TCP 23.104.0.1:58190 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:21:45.914 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36916 10 6452 1 2025-10-05 07:21:54.270 00:00:10.362 TCP 23.104.0.1:34552 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:22:46.125 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56244 10 6452 1 2025-10-05 07:23:01.825 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:23:02.189 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:22:54.669 00:00:10.361 TCP 23.104.0.1:40200 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:23:46.341 00:00:10.969 TCP 1.101.0.1:3000 -> 22.102.0.1:42944 11 6504 1 2025-10-05 07:23:55.097 00:00:10.362 TCP 23.104.0.1:45090 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:20:37.867 00:05:01.997 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:24:47.349 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54242 10 6452 1 2025-10-05 07:24:55.496 00:00:10.367 TCP 23.104.0.1:50284 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:21:37.869 00:05:01.993 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:25:47.524 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:45566 10 6452 1 2025-10-05 07:25:55.901 00:00:10.329 TCP 23.104.0.1:47494 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:26:47.768 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48082 10 6452 1 2025-10-05 07:26:56.272 00:00:10.365 TCP 23.104.0.1:57514 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:28:01.869 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:27:47.979 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:46472 10 6452 1 2025-10-05 07:28:02.136 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:27:56.674 00:00:10.371 TCP 23.104.0.1:55474 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:28:48.211 00:00:10.484 TCP 1.101.0.1:3000 -> 22.102.0.1:55964 10 6452 1 2025-10-05 07:28:57.109 00:00:10.780 TCP 23.104.0.1:58920 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:29:48.734 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44824 10 6452 1 2025-10-05 07:29:57.928 00:00:10.383 TCP 23.104.0.1:58388 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:26:37.868 00:05:01.999 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:30:48.949 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:35232 10 6452 1 2025-10-05 07:30:58.345 00:00:10.362 TCP 23.104.0.1:41718 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:27:37.872 00:05:01.993 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:31:49.179 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57870 10 6452 1 2025-10-05 07:31:58.744 00:00:10.364 TCP 23.104.0.1:46230 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:32:49.395 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:47038 10 6452 1 2025-10-05 07:33:02.025 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:33:02.110 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:32:59.152 00:00:10.372 TCP 23.104.0.1:50188 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:33:49.570 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:48542 10 6452 1 2025-10-05 07:33:59.560 00:00:10.364 TCP 23.104.0.1:59678 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:34:49.759 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42250 10 6452 1 2025-10-05 07:34:59.973 00:00:10.336 TCP 23.104.0.1:49512 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:35:49.974 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52912 10 6452 1 2025-10-05 07:36:00.348 00:00:10.366 TCP 23.104.0.1:57810 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:32:37.870 00:05:01.996 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:36:50.199 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47634 10 6452 1 2025-10-05 07:37:00.757 00:00:10.384 TCP 23.104.0.1:37794 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:33:37.875 00:05:01.991 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:38:02.411 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:37:50.418 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:47790 10 6452 1 2025-10-05 07:38:02.350 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:38:01.205 00:00:10.370 TCP 23.104.0.1:51630 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:38:50.597 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57554 10 6452 1 2025-10-05 07:39:01.615 00:00:10.366 TCP 23.104.0.1:51680 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:39:50.817 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57196 10 6452 1 2025-10-05 07:40:02.016 00:00:10.358 TCP 23.104.0.1:46970 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:40:51.041 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53280 10 6452 1 2025-10-05 07:41:02.413 00:00:10.364 TCP 23.104.0.1:58172 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:41:51.257 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51048 10 6452 1 2025-10-05 07:42:02.817 00:00:10.367 TCP 23.104.0.1:52860 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:38:37.873 00:05:01.995 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:42:51.473 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45948 10 6452 1 2025-10-05 07:43:02.527 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:43:02.178 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:43:03.222 00:00:10.369 TCP 23.104.0.1:58022 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:39:37.875 00:05:01.991 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:43:51.680 00:00:10.375 TCP 1.101.0.1:3000 -> 22.102.0.1:37626 12 10375 1 2025-10-05 07:44:03.635 00:00:10.437 TCP 23.104.0.1:35582 -> 1.101.0.1:3000 15 1926 1 2025-10-05 07:44:52.096 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42244 10 6452 1 2025-10-05 07:45:04.111 00:00:10.363 TCP 23.104.0.1:59936 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:45:52.312 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46870 10 6452 1 2025-10-05 07:46:04.512 00:00:10.363 TCP 23.104.0.1:54600 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:46:52.524 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:51626 10 6452 1 2025-10-05 07:47:04.919 00:00:10.370 TCP 23.104.0.1:41854 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:47:52.687 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34094 10 6452 1 2025-10-05 07:48:02.489 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:48:02.626 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:48:05.326 00:00:10.373 TCP 23.104.0.1:46684 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:44:37.879 00:05:01.991 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:48:52.900 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:41934 12 10375 1 2025-10-05 07:49:05.740 00:00:10.442 TCP 23.104.0.1:42026 -> 1.101.0.1:3000 15 1926 1 2025-10-05 07:45:37.882 00:05:01.986 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:49:53.147 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:58628 10 6452 1 2025-10-05 07:50:06.222 00:00:10.385 TCP 23.104.0.1:48906 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:50:53.386 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:59342 10 6452 1 2025-10-05 07:51:06.645 00:00:10.379 TCP 23.104.0.1:52644 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:51:53.607 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:59496 10 6452 1 2025-10-05 07:52:07.068 00:00:10.322 TCP 23.104.0.1:36048 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:53:02.514 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:52:53.837 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:59420 10 6452 1 2025-10-05 07:53:02.633 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:53:07.435 00:00:10.374 TCP 23.104.0.1:42256 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:53:54.023 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48378 10 6452 1 2025-10-05 07:54:07.848 00:00:10.345 TCP 23.104.0.1:54514 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:50:37.882 00:05:01.992 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 07:54:54.229 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49840 10 6452 1 2025-10-05 07:55:08.232 00:00:10.322 TCP 23.104.0.1:45144 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:51:37.883 00:05:01.988 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 07:55:54.445 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57740 10 6452 1 2025-10-05 07:56:08.591 00:00:10.322 TCP 23.104.0.1:38158 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:56:54.661 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35536 10 6452 1 2025-10-05 07:57:08.951 00:00:10.375 TCP 23.104.0.1:47438 -> 1.101.0.1:3000 11 1507 1 2025-10-05 07:57:54.874 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:44328 10 6452 1 2025-10-05 07:58:02.600 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 07:58:02.675 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 07:58:09.364 00:00:10.365 TCP 23.104.0.1:34988 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 504968, total packets: 1581, avg bps: 1091, avg pps: 0, avg bpp: 319 Time window: 2025-10-05 06:56:37 - 2025-10-05 07:58:19 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0028s User: 0.0019s Wall: 0.0029s flows/second: 55273.0 Runtime: 0.0030s