Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 09:59:07.820 00:00:10.370 TCP 23.104.0.1:46420 -> 1.101.0.1:3000 11 1507 1 2025-10-05 09:59:22.754 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59168 10 6452 1 2025-10-05 10:00:08.232 00:00:10.372 TCP 23.104.0.1:46372 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:00:22.975 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:36630 10 6452 1 2025-10-05 09:56:37.913 00:05:02.003 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:01:08.638 00:00:10.364 TCP 23.104.0.1:49950 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:01:23.223 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38788 10 6452 1 2025-10-05 09:57:37.917 00:05:01.997 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:02:09.057 00:00:10.795 TCP 23.104.0.1:35128 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:02:23.444 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:46452 10 6452 1 2025-10-05 10:03:05.178 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:03:05.645 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:03:09.890 00:00:10.384 TCP 23.104.0.1:38100 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:03:23.622 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:58992 10 6452 1 2025-10-05 10:04:10.307 00:00:10.372 TCP 23.104.0.1:38994 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:04:23.799 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43230 10 6452 1 2025-10-05 10:05:10.719 00:00:10.380 TCP 23.104.0.1:52266 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:05:24.011 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45924 10 6452 1 2025-10-05 10:06:11.137 00:00:10.365 TCP 23.104.0.1:33060 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:06:24.225 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:43998 10 6452 1 2025-10-05 10:02:37.915 00:05:02.003 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:07:11.539 00:00:10.371 TCP 23.104.0.1:48852 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:07:24.396 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:48266 10 6452 1 2025-10-05 10:03:37.918 00:05:01.999 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:08:05.247 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:08:05.266 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:08:11.945 00:00:10.432 TCP 23.104.0.1:57444 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:08:24.569 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40702 10 6452 1 2025-10-05 10:09:12.423 00:00:10.367 TCP 23.104.0.1:55670 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:09:24.780 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:42524 10 6452 1 2025-10-05 10:10:12.824 00:00:10.328 TCP 23.104.0.1:35188 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:10:24.954 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:38832 10 6452 1 2025-10-05 10:11:13.189 00:00:10.323 TCP 23.104.0.1:52902 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:11:25.182 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59362 10 6452 1 2025-10-05 10:12:13.549 00:00:10.359 TCP 23.104.0.1:37048 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:08:37.915 00:05:02.003 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:13:05.073 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:13:05.240 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:13:13.947 00:00:10.371 TCP 23.104.0.1:41612 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:12:25.389 00:01:10.406 TCP 1.101.0.1:3000 -> 22.102.0.1:43238 20 12904 1 2025-10-05 10:09:37.920 00:05:01.997 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:14:14.357 00:00:10.363 TCP 23.104.0.1:38162 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:14:25.833 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54908 10 6452 1 2025-10-05 10:15:14.760 00:00:10.372 TCP 23.104.0.1:50810 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:15:26.064 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:32928 10 6452 1 2025-10-05 10:16:15.174 00:00:10.366 TCP 23.104.0.1:51536 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:16:26.239 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53708 10 6452 1 2025-10-05 10:17:15.578 00:00:10.368 TCP 23.104.0.1:52824 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:17:26.452 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51796 10 6452 1 2025-10-05 10:18:05.373 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:18:05.662 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:18:15.983 00:00:10.372 TCP 23.104.0.1:44212 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:18:26.665 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43468 10 6452 1 2025-10-05 10:14:37.919 00:05:02.002 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:19:16.388 00:00:10.358 TCP 23.104.0.1:50018 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:19:26.885 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:36378 10 6452 1 2025-10-05 10:15:37.922 00:05:01.997 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:20:16.797 00:00:10.367 TCP 23.104.0.1:46396 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:20:27.110 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44422 10 6452 1 2025-10-05 10:21:17.204 00:00:10.365 TCP 23.104.0.1:41248 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:21:27.329 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44668 10 6452 1 2025-10-05 10:22:17.607 00:00:10.361 TCP 23.104.0.1:46776 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:22:27.545 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56326 10 6452 1 2025-10-05 10:23:05.449 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:23:05.703 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:23:18.005 00:00:10.373 TCP 23.104.0.1:36006 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:23:27.763 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:50670 10 6452 1 2025-10-05 10:24:18.422 00:00:10.364 TCP 23.104.0.1:56550 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:24:27.934 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:59970 10 6452 1 2025-10-05 10:20:37.921 00:05:02.003 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:25:18.825 00:00:10.363 TCP 23.104.0.1:43872 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:25:28.156 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:42366 10 6452 1 2025-10-05 10:21:37.923 00:05:01.998 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:26:19.223 00:00:10.363 TCP 23.104.0.1:51140 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:26:28.378 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44696 10 6452 1 2025-10-05 10:27:19.624 00:00:10.366 TCP 23.104.0.1:36856 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:27:28.591 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:42742 10 6452 1 2025-10-05 10:28:05.912 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:28:05.716 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:28:20.052 00:00:10.331 TCP 23.104.0.1:54612 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:28:28.761 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55866 10 6452 1 2025-10-05 10:29:20.414 00:00:10.372 TCP 23.104.0.1:43224 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:29:28.973 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:45778 10 6452 1 2025-10-05 10:30:20.828 00:00:10.361 TCP 23.104.0.1:55356 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:30:29.201 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:39256 10 6452 1 2025-10-05 10:26:37.922 00:05:02.004 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:31:21.224 00:00:10.323 TCP 23.104.0.1:48316 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:31:29.414 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44768 10 6452 1 2025-10-05 10:27:37.924 00:05:02.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:32:21.587 00:00:10.368 TCP 23.104.0.1:54900 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:32:29.631 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52944 10 6452 1 2025-10-05 10:33:05.850 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:33:05.901 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:33:21.992 00:00:10.365 TCP 23.104.0.1:55852 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:33:29.846 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48484 10 6452 1 2025-10-05 10:34:22.394 00:00:10.325 TCP 23.104.0.1:46386 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:34:30.086 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58898 10 6452 1 2025-10-05 10:35:22.765 00:00:10.374 TCP 23.104.0.1:48478 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:35:30.307 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:36620 10 6452 1 2025-10-05 10:36:23.170 00:00:10.367 TCP 23.104.0.1:43082 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:32:37.922 00:05:02.005 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:36:30.491 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46324 10 6452 1 2025-10-05 10:37:23.576 00:00:10.378 TCP 23.104.0.1:38416 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:37:30.711 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35556 10 6452 1 2025-10-05 10:33:37.924 00:05:02.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:38:05.756 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:38:05.910 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:38:23.992 00:00:10.321 TCP 23.104.0.1:50332 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:38:30.930 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:48746 10 6452 1 2025-10-05 10:39:24.350 00:00:10.326 TCP 23.104.0.1:36188 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:39:31.181 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38762 10 6452 1 2025-10-05 10:40:24.714 00:00:10.378 TCP 23.104.0.1:54520 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:40:31.393 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48150 10 6452 1 2025-10-05 10:41:25.132 00:00:10.323 TCP 23.104.0.1:42684 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:41:31.602 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51422 10 6452 1 2025-10-05 10:42:25.486 00:00:10.616 TCP 23.104.0.1:41464 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:38:37.926 00:05:02.006 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:42:31.818 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:51726 10 6452 1 2025-10-05 10:43:05.888 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:43:05.976 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:43:26.143 00:00:10.362 TCP 23.104.0.1:55888 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:39:37.928 00:05:02.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:43:31.985 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48440 10 6452 1 2025-10-05 10:44:26.544 00:00:10.372 TCP 23.104.0.1:34408 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:44:32.202 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52292 10 6452 1 2025-10-05 10:45:26.959 00:00:10.366 TCP 23.104.0.1:55498 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:45:32.415 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60598 10 6452 1 2025-10-05 10:46:27.362 00:00:10.362 TCP 23.104.0.1:42962 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:46:32.631 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52546 10 6452 1 2025-10-05 10:47:27.766 00:00:10.338 TCP 23.104.0.1:51918 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:47:32.840 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44502 10 6452 1 2025-10-05 10:48:06.004 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:48:06.029 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:48:28.143 00:00:10.447 TCP 23.104.0.1:59198 -> 1.101.0.1:3000 15 1926 1 2025-10-05 10:44:37.926 00:05:02.008 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:48:33.080 00:00:10.158 TCP 1.101.0.1:3000 -> 22.102.0.1:35380 12 10375 1 2025-10-05 10:49:28.623 00:00:10.366 TCP 23.104.0.1:39050 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:45:37.929 00:05:02.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:49:33.280 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:59810 10 6452 1 2025-10-05 10:50:29.026 00:00:10.366 TCP 23.104.0.1:56520 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:50:33.508 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:34974 10 6452 1 2025-10-05 10:51:29.432 00:00:10.328 TCP 23.104.0.1:52832 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:51:33.673 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43678 10 6452 1 2025-10-05 10:52:29.804 00:00:10.372 TCP 23.104.0.1:55146 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:52:33.890 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36904 10 6452 1 2025-10-05 10:53:06.354 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:53:06.070 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:53:30.212 00:00:10.368 TCP 23.104.0.1:49684 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:53:34.111 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55152 10 6452 1 2025-10-05 10:50:37.927 00:05:02.008 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 10:54:30.617 00:00:10.364 TCP 23.104.0.1:53194 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:54:34.325 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:35694 10 6452 1 2025-10-05 10:55:31.021 00:00:10.366 TCP 23.104.0.1:52010 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:51:37.930 00:05:02.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 10:55:34.495 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:48504 10 6452 1 2025-10-05 10:56:31.424 00:00:10.366 TCP 23.104.0.1:55358 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:56:34.724 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60080 10 6452 1 2025-10-05 10:57:31.823 00:00:10.363 TCP 23.104.0.1:38780 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:57:34.947 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:42632 10 6452 1 2025-10-05 10:58:06.377 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 10:58:06.202 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 10:58:32.224 00:00:10.367 TCP 23.104.0.1:35348 -> 1.101.0.1:3000 11 1507 1 2025-10-05 10:58:35.180 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:42686 10 6452 1 Summary: total flows: 163, total bytes: 502690, total packets: 1578, avg bps: 1078, avg pps: 0, avg bpp: 318 Time window: 2025-10-05 09:56:37 - 2025-10-05 10:58:45 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0020s User: 0.0020s Wall: 0.0021s flows/second: 77663.5 Runtime: 0.0021s