Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 17:59:27.666 00:00:11.474 TCP 23.104.0.1:43148 -> 1.101.0.1:3000 11 1507 1 2025-10-05 17:59:31.171 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:35178 10 6452 1 2025-10-05 18:00:29.175 00:00:10.372 TCP 23.104.0.1:53244 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:00:31.413 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39416 10 6452 1 2025-10-05 17:56:38.138 00:05:01.987 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 17:57:38.140 00:05:01.982 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:01:29.583 00:00:12.702 TCP 23.104.0.1:54920 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:01:31.622 00:00:10.569 TCP 1.101.0.1:3000 -> 22.102.0.1:48356 10 6452 1 2025-10-05 18:02:32.231 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57004 10 6452 1 2025-10-05 18:02:32.324 00:00:10.362 TCP 23.104.0.1:34446 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:03:14.604 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:03:14.889 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:03:32.722 00:00:10.367 TCP 23.104.0.1:34644 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:03:32.452 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33234 10 6452 1 2025-10-05 18:04:33.130 00:00:10.361 TCP 23.104.0.1:37632 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:04:32.675 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:53994 10 6452 1 2025-10-05 18:05:33.532 00:00:10.323 TCP 23.104.0.1:45074 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:05:32.853 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58896 10 6452 1 2025-10-05 18:02:38.165 00:05:01.959 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 18:06:33.893 00:00:10.367 TCP 23.104.0.1:45762 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:06:33.082 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:36862 10 6452 1 2025-10-05 18:07:33.255 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58664 10 6452 1 2025-10-05 18:03:38.168 00:05:01.954 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:07:34.301 00:00:10.324 TCP 23.104.0.1:45576 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:08:14.762 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:08:14.822 00:00:00.029 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:08:33.470 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52874 10 6452 1 2025-10-05 18:08:34.663 00:00:10.328 TCP 23.104.0.1:46870 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:09:35.025 00:00:10.371 TCP 23.104.0.1:54252 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:09:33.678 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48176 10 6452 1 2025-10-05 18:10:35.432 00:00:10.369 TCP 23.104.0.1:44886 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:10:33.887 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47574 10 6452 1 2025-10-05 18:11:34.107 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51874 10 6452 1 2025-10-05 18:11:35.837 00:00:10.384 TCP 23.104.0.1:32856 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:08:38.165 00:05:01.960 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 18:12:34.322 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59366 10 6452 1 2025-10-05 18:12:36.261 00:00:10.368 TCP 23.104.0.1:37970 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:13:14.909 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:13:14.832 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:09:38.168 00:05:01.956 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:13:34.538 00:00:10.363 TCP 1.101.0.1:3000 -> 22.102.0.1:55916 10 6452 1 2025-10-05 18:13:36.666 00:00:10.369 TCP 23.104.0.1:35132 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:14:34.952 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:36960 10 6452 1 2025-10-05 18:14:37.105 00:00:10.366 TCP 23.104.0.1:60290 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:15:35.176 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59776 10 6452 1 2025-10-05 18:15:37.508 00:00:10.368 TCP 23.104.0.1:49154 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:16:35.390 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52984 10 6452 1 2025-10-05 18:16:37.913 00:00:10.427 TCP 23.104.0.1:46374 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:17:35.602 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:46898 10 6452 1 2025-10-05 18:17:38.378 00:00:10.367 TCP 23.104.0.1:51980 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:18:15.114 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:18:15.150 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:14:38.167 00:05:01.961 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 18:18:35.776 00:00:10.975 TCP 1.101.0.1:3000 -> 22.102.0.1:48712 12 10369 1 2025-10-05 18:18:38.776 00:00:10.444 TCP 23.104.0.1:55842 -> 1.101.0.1:3000 15 1926 1 2025-10-05 18:15:38.172 00:05:01.954 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:19:36.785 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:45798 10 6452 1 2025-10-05 18:19:39.261 00:00:10.361 TCP 23.104.0.1:50010 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:20:39.660 00:00:10.326 TCP 23.104.0.1:55564 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:20:36.957 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:55918 12 6556 1 2025-10-05 18:21:37.198 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46236 10 6452 1 2025-10-05 18:21:40.030 00:00:10.359 TCP 23.104.0.1:60198 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:22:37.420 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38334 10 6452 1 2025-10-05 18:22:40.424 00:00:10.335 TCP 23.104.0.1:48498 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:23:15.173 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:23:15.223 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:23:37.636 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54088 10 6452 1 2025-10-05 18:23:40.811 00:00:10.368 TCP 23.104.0.1:52018 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:20:38.172 00:05:01.959 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 18:24:37.851 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60932 10 6452 1 2025-10-05 18:24:41.220 00:00:10.369 TCP 23.104.0.1:33680 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:21:38.174 00:05:01.953 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:25:41.627 00:00:10.365 TCP 23.104.0.1:33444 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:25:38.086 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50168 10 6452 1 2025-10-05 18:26:38.296 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37966 10 6452 1 2025-10-05 18:26:42.034 00:00:10.330 TCP 23.104.0.1:54980 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:27:38.508 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40978 10 6452 1 2025-10-05 18:27:42.401 00:00:10.364 TCP 23.104.0.1:38950 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:28:15.266 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:28:15.072 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:28:38.721 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46156 10 6452 1 2025-10-05 18:28:42.804 00:00:10.379 TCP 23.104.0.1:39214 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:29:38.928 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55490 10 6452 1 2025-10-05 18:29:43.222 00:00:10.365 TCP 23.104.0.1:51458 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:26:38.175 00:05:01.957 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 18:30:39.151 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39030 10 6452 1 2025-10-05 18:30:43.625 00:00:10.368 TCP 23.104.0.1:54304 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:27:38.179 00:05:01.951 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:31:39.367 00:00:10.905 TCP 1.101.0.1:3000 -> 22.102.0.1:53936 10 6452 1 2025-10-05 18:31:44.032 00:00:25.644 TCP 23.104.0.1:46934 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:32:40.311 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60344 10 6452 1 2025-10-05 18:32:59.742 00:00:10.321 TCP 23.104.0.1:45830 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:33:15.436 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:33:15.421 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:33:40.486 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45840 10 6452 1 2025-10-05 18:34:00.114 00:00:10.316 TCP 23.104.0.1:33568 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:34:40.698 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34660 10 6452 1 2025-10-05 18:35:00.469 00:00:10.363 TCP 23.104.0.1:60112 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:35:40.916 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:58130 10 6452 1 2025-10-05 18:36:00.873 00:00:10.365 TCP 23.104.0.1:51164 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:32:38.177 00:05:01.956 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 18:36:41.135 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60990 10 6452 1 2025-10-05 18:37:01.279 00:00:10.362 TCP 23.104.0.1:39684 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:33:38.178 00:05:01.951 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:37:41.314 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:47398 10 6452 1 2025-10-05 18:38:15.402 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:38:15.160 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:38:01.679 00:00:10.365 TCP 23.104.0.1:37960 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:38:41.567 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:52902 10 6452 1 2025-10-05 18:39:02.099 00:00:10.365 TCP 23.104.0.1:35812 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:39:41.740 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:49360 10 6452 1 2025-10-05 18:40:02.502 00:00:10.368 TCP 23.104.0.1:57416 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:40:41.979 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:36088 10 6452 1 2025-10-05 18:41:02.911 00:00:10.364 TCP 23.104.0.1:39694 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:41:42.211 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56204 10 6452 1 2025-10-05 18:42:03.316 00:00:10.367 TCP 23.104.0.1:39534 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:38:38.177 00:05:01.957 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 18:42:42.424 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56894 10 6452 1 2025-10-05 18:43:15.692 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:43:15.576 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:43:03.722 00:00:10.370 TCP 23.104.0.1:36766 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:39:38.180 00:05:01.953 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:43:42.639 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:60904 10 6452 1 2025-10-05 18:44:04.134 00:00:10.573 TCP 23.104.0.1:44280 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:44:42.812 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:38418 10 6452 1 2025-10-05 18:45:04.752 00:00:10.326 TCP 23.104.0.1:49544 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:45:42.986 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40764 10 6452 1 2025-10-05 18:46:05.116 00:00:10.362 TCP 23.104.0.1:48352 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:46:43.205 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34160 10 6452 1 2025-10-05 18:47:05.521 00:00:10.324 TCP 23.104.0.1:41938 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:47:43.417 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:44222 10 6452 1 2025-10-05 18:48:05.889 00:00:10.337 TCP 23.104.0.1:42560 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:48:15.750 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:48:15.595 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:44:38.180 00:05:01.957 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 18:48:43.592 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52130 10 6452 1 2025-10-05 18:49:06.266 00:00:10.371 TCP 23.104.0.1:34700 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:45:38.184 00:05:01.951 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:49:43.809 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48704 10 6452 1 2025-10-05 18:50:06.676 00:00:10.365 TCP 23.104.0.1:49916 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:50:44.027 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:43300 10 6452 1 2025-10-05 18:51:07.100 00:00:10.369 TCP 23.104.0.1:37204 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:51:44.239 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:56574 10 6452 1 2025-10-05 18:52:07.505 00:00:10.324 TCP 23.104.0.1:59890 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:52:44.463 00:00:10.259 TCP 1.101.0.1:3000 -> 22.102.0.1:57028 10 6452 1 2025-10-05 18:53:15.587 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:53:15.836 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:53:07.867 00:00:10.367 TCP 23.104.0.1:49316 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:53:44.757 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58056 10 6452 1 2025-10-05 18:54:08.274 00:00:10.360 TCP 23.104.0.1:47912 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:50:38.182 00:05:01.957 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-05 18:54:44.965 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:43740 10 6452 1 2025-10-05 18:55:08.674 00:00:10.367 TCP 23.104.0.1:55406 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:51:38.186 00:05:01.951 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-05 18:55:45.190 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39594 10 6452 1 2025-10-05 18:56:09.115 00:00:10.371 TCP 23.104.0.1:47964 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:56:45.398 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:46192 10 6452 1 2025-10-05 18:57:09.528 00:00:10.363 TCP 23.104.0.1:54056 -> 1.101.0.1:3000 11 1507 1 2025-10-05 18:57:45.570 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43484 10 6452 1 2025-10-05 18:58:16.440 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-05 18:58:16.540 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 18:58:09.930 00:00:10.376 TCP 23.104.0.1:59422 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 494829, total packets: 1559, avg bps: 1069, avg pps: 0, avg bpp: 317 Time window: 2025-10-05 17:56:38 - 2025-10-05 18:58:20 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0029s User: 0.0019s Wall: 0.0019s flows/second: 86260.9 Runtime: 0.0019s