Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-07 00:59:00.848 00:00:10.377 TCP 23.104.0.1:48602 -> 1.101.0.1:3000 11 1507 1 2025-10-07 00:59:18.102 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40290 10 6452 1 2025-10-07 01:00:01.263 00:00:10.359 TCP 23.104.0.1:57104 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:00:18.318 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52294 10 6452 1 2025-10-07 00:56:38.766 00:05:01.994 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:01:01.663 00:00:10.340 TCP 23.104.0.1:52584 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:01:18.527 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:45780 10 6452 1 2025-10-07 00:57:38.770 00:05:01.989 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:02:02.061 00:00:10.363 TCP 23.104.0.1:36672 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:02:18.705 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:54786 11 6492 1 2025-10-07 01:03:02.466 00:00:10.377 TCP 23.104.0.1:60664 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:03:18.874 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:59178 10 6452 1 2025-10-07 01:03:51.889 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:03:52.002 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:04:02.884 00:00:10.389 TCP 23.104.0.1:54320 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:04:19.099 00:00:10.264 TCP 1.101.0.1:3000 -> 22.102.0.1:41748 10 6452 1 2025-10-07 01:05:03.311 00:00:10.324 TCP 23.104.0.1:49954 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:05:19.408 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:48676 10 6452 1 2025-10-07 01:06:03.672 00:00:10.357 TCP 23.104.0.1:60588 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:06:19.634 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:42506 10 6452 1 2025-10-07 01:02:38.770 00:05:01.993 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:07:04.098 00:00:10.361 TCP 23.104.0.1:47938 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:07:19.821 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41456 10 6452 1 2025-10-07 01:03:38.772 00:05:01.988 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:08:04.499 00:00:10.366 TCP 23.104.0.1:34418 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:08:20.063 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45344 10 6452 1 2025-10-07 01:08:52.207 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:08:52.178 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:09:04.902 00:00:10.339 TCP 23.104.0.1:41966 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:09:20.276 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39168 10 6452 1 2025-10-07 01:10:05.278 00:00:10.367 TCP 23.104.0.1:37584 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:10:20.493 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:51368 10 6452 1 2025-10-07 01:11:05.685 00:00:10.363 TCP 23.104.0.1:42040 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:11:20.703 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:50416 10 6452 1 2025-10-07 01:12:06.106 00:00:10.363 TCP 23.104.0.1:50948 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:12:20.912 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34590 10 6452 1 2025-10-07 01:08:38.771 00:05:01.996 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:13:06.511 00:00:10.365 TCP 23.104.0.1:40300 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:13:21.125 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:58362 10 6452 1 2025-10-07 01:09:38.772 00:05:01.991 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:13:52.553 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:13:52.654 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:14:06.913 00:00:10.365 TCP 23.104.0.1:56826 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:14:21.353 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53230 10 6452 1 2025-10-07 01:15:07.317 00:00:10.324 TCP 23.104.0.1:55478 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:15:21.565 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36628 10 6452 1 2025-10-07 01:16:07.678 00:00:10.365 TCP 23.104.0.1:46520 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:16:21.783 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45250 10 6452 1 2025-10-07 01:17:08.096 00:00:10.367 TCP 23.104.0.1:45134 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:17:21.997 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48124 10 6452 1 2025-10-07 01:18:08.507 00:00:10.330 TCP 23.104.0.1:39910 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:18:22.217 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41976 10 6452 1 2025-10-07 01:14:38.772 00:05:01.996 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:18:52.406 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:18:52.486 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:19:08.874 00:00:10.368 TCP 23.104.0.1:60900 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:19:22.431 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59378 10 6452 1 2025-10-07 01:15:38.776 00:05:01.991 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:20:09.276 00:00:10.366 TCP 23.104.0.1:35440 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:20:22.642 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45272 10 6452 1 2025-10-07 01:21:09.689 00:00:10.368 TCP 23.104.0.1:38284 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:21:22.858 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:54864 10 6452 1 2025-10-07 01:22:10.105 00:00:10.361 TCP 23.104.0.1:55600 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:22:23.091 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:55250 10 6452 1 2025-10-07 01:23:10.504 00:00:10.371 TCP 23.104.0.1:60466 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:23:23.260 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42396 10 6452 1 2025-10-07 01:23:52.391 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:23:52.583 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:24:10.917 00:00:10.366 TCP 23.104.0.1:40452 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:24:23.473 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34430 10 6452 1 2025-10-07 01:20:38.777 00:05:01.995 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:25:11.322 00:00:10.362 TCP 23.104.0.1:32928 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:25:23.688 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:41980 10 6452 1 2025-10-07 01:21:38.780 00:05:01.989 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:26:11.723 00:00:10.368 TCP 23.104.0.1:56774 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:26:23.857 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53082 10 6452 1 2025-10-07 01:27:12.131 00:00:10.363 TCP 23.104.0.1:33498 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:27:24.086 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48638 10 6452 1 2025-10-07 01:28:12.533 00:00:10.369 TCP 23.104.0.1:36362 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:28:24.299 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43698 10 6452 1 2025-10-07 01:28:53.112 00:00:00.043 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:28:53.006 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:29:12.946 00:00:10.372 TCP 23.104.0.1:58662 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:29:24.507 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:44430 10 6452 1 2025-10-07 01:30:13.362 00:00:10.326 TCP 23.104.0.1:35180 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:30:24.686 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51854 10 6452 1 2025-10-07 01:26:38.778 00:05:01.995 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:31:13.728 00:00:10.368 TCP 23.104.0.1:42168 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:31:24.895 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:46478 10 6452 1 2025-10-07 01:27:38.781 00:05:01.990 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:32:14.137 00:00:10.367 TCP 23.104.0.1:34714 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:32:25.094 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45140 10 6452 1 2025-10-07 01:33:14.546 00:00:10.360 TCP 23.104.0.1:51088 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:33:25.305 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:34866 10 6452 1 2025-10-07 01:33:52.776 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:33:52.513 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:34:14.945 00:00:10.436 TCP 23.104.0.1:38112 -> 1.101.0.1:3000 15 1926 1 2025-10-07 01:34:25.484 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:56230 12 10369 1 2025-10-07 01:35:15.423 00:00:10.371 TCP 23.104.0.1:46696 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:35:25.722 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58150 10 6452 1 2025-10-07 01:36:15.836 00:00:10.393 TCP 23.104.0.1:60136 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:36:25.928 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:49502 10 6452 1 2025-10-07 01:32:38.778 00:05:01.996 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:37:16.266 00:00:10.366 TCP 23.104.0.1:42580 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:37:26.127 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35550 10 6452 1 2025-10-07 01:33:38.782 00:05:01.990 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:38:16.672 00:00:10.366 TCP 23.104.0.1:42182 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:38:26.350 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39300 10 6452 1 2025-10-07 01:38:52.762 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:38:52.775 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:39:17.103 00:00:10.366 TCP 23.104.0.1:60712 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:39:26.560 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43978 10 6452 1 2025-10-07 01:40:17.509 00:00:10.364 TCP 23.104.0.1:54062 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:40:26.773 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46168 10 6452 1 2025-10-07 01:41:17.909 00:00:10.368 TCP 23.104.0.1:44576 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:41:26.982 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57602 10 6452 1 2025-10-07 01:42:18.317 00:00:10.367 TCP 23.104.0.1:55140 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:42:27.202 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:56714 10 6452 1 2025-10-07 01:38:38.779 00:05:01.997 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:43:18.722 00:00:10.330 TCP 23.104.0.1:45426 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:39:38.783 00:05:01.992 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:43:27.374 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:39666 10 6452 1 2025-10-07 01:43:53.049 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:43:52.989 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:44:19.103 00:00:10.368 TCP 23.104.0.1:42906 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:44:27.543 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36344 10 6452 1 2025-10-07 01:45:19.509 00:00:10.366 TCP 23.104.0.1:50772 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:45:27.761 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37844 10 6452 1 2025-10-07 01:46:19.914 00:00:10.395 TCP 23.104.0.1:33316 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:46:27.940 00:00:10.456 TCP 1.101.0.1:3000 -> 22.102.0.1:36462 10 6452 1 2025-10-07 01:47:20.347 00:00:10.365 TCP 23.104.0.1:53174 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:47:28.434 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57222 10 6452 1 2025-10-07 01:48:20.752 00:00:10.374 TCP 23.104.0.1:41420 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:48:28.647 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46326 10 6452 1 2025-10-07 01:44:38.782 00:05:01.997 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:48:53.199 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:48:53.098 00:00:00.041 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:49:21.168 00:00:10.331 TCP 23.104.0.1:47410 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:49:28.817 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58038 10 6452 1 2025-10-07 01:45:38.784 00:05:01.992 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:50:21.541 00:00:10.370 TCP 23.104.0.1:45748 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:50:29.037 00:00:10.255 TCP 1.101.0.1:3000 -> 22.102.0.1:42728 10 6452 1 2025-10-07 01:51:21.946 00:00:11.059 TCP 23.104.0.1:35688 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:51:29.335 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45370 10 6452 1 2025-10-07 01:52:23.050 00:00:15.255 TCP 23.104.0.1:45182 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:52:29.552 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46018 10 6452 1 2025-10-07 01:53:28.369 00:00:10.364 TCP 23.104.0.1:46966 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:53:29.767 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54078 10 6452 1 2025-10-07 01:53:53.250 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-07 01:53:52.930 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-07 01:54:28.776 00:00:10.445 TCP 23.104.0.1:42364 -> 1.101.0.1:3000 15 1926 1 2025-10-07 01:54:29.983 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:48976 12 10375 1 2025-10-07 01:50:38.782 00:05:01.997 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-07 01:55:29.260 00:00:10.368 TCP 23.104.0.1:56264 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:51:38.784 00:05:01.993 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-07 01:55:30.241 00:00:11.125 TCP 1.101.0.1:3000 -> 22.102.0.1:42478 10 6452 1 2025-10-07 01:56:31.403 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56566 10 6452 1 2025-10-07 01:56:29.668 00:00:10.324 TCP 23.104.0.1:54248 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:57:31.611 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:48792 10 6452 1 2025-10-07 01:57:30.032 00:00:10.365 TCP 23.104.0.1:50148 -> 1.101.0.1:3000 11 1507 1 2025-10-07 01:58:31.779 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37214 10 6452 1 2025-10-07 01:58:30.436 00:00:10.363 TCP 23.104.0.1:32860 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 506562, total packets: 1579, avg bps: 1088, avg pps: 0, avg bpp: 320 Time window: 2025-10-07 00:56:38 - 2025-10-07 01:58:41 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0031s User: 0.0010s Wall: 0.0013s flows/second: 121901.2 Runtime: 0.0013s