Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 13:59:12.576 00:00:10.363 TCP 23.104.0.1:54848 -> 1.101.0.1:3000 11 1507 1 2025-10-09 13:59:30.691 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59044 10 6452 1 2025-10-09 14:00:05.497 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:00:05.585 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:00:12.982 00:00:10.362 TCP 23.104.0.1:36748 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:00:30.906 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:55826 10 6452 1 2025-10-09 13:56:39.882 00:05:02.252 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:01:13.384 00:00:10.513 TCP 23.104.0.1:52104 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:01:31.142 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:41392 10 6452 1 2025-10-09 13:57:39.886 00:05:02.246 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:02:13.939 00:00:10.367 TCP 23.104.0.1:38022 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:02:31.320 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:59558 10 6452 1 2025-10-09 14:03:14.345 00:00:10.323 TCP 23.104.0.1:49178 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:03:31.491 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60682 10 6452 1 2025-10-09 14:04:14.705 00:00:10.321 TCP 23.104.0.1:46262 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:04:31.704 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50694 10 6452 1 2025-10-09 14:05:05.924 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:05:05.356 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:05:15.086 00:00:10.328 TCP 23.104.0.1:54886 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:05:31.912 00:00:10.498 TCP 1.101.0.1:3000 -> 22.102.0.1:51016 10 6452 1 2025-10-09 14:06:15.453 00:00:10.367 TCP 23.104.0.1:39490 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:06:32.448 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35056 10 6452 1 2025-10-09 14:02:39.894 00:05:02.240 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:07:15.859 00:00:10.369 TCP 23.104.0.1:32780 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:07:32.664 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59086 10 6452 1 2025-10-09 14:03:39.886 00:05:02.244 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:08:16.279 00:00:10.361 TCP 23.104.0.1:45958 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:08:32.880 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46100 10 6452 1 2025-10-09 14:09:16.680 00:00:10.387 TCP 23.104.0.1:33892 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:09:33.102 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:45282 10 6452 1 2025-10-09 14:10:05.665 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:10:05.716 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:10:17.112 00:00:10.368 TCP 23.104.0.1:56414 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:10:33.315 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37038 10 6452 1 2025-10-09 14:11:17.518 00:00:10.360 TCP 23.104.0.1:44314 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:11:33.531 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:33598 10 6452 1 2025-10-09 14:12:17.919 00:00:10.375 TCP 23.104.0.1:35128 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:12:33.695 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39646 10 6452 1 2025-10-09 14:08:39.887 00:05:02.248 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:13:18.334 00:00:10.324 TCP 23.104.0.1:45490 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:09:39.890 00:05:02.243 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:13:33.909 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57642 10 6452 1 2025-10-09 14:14:18.703 00:00:10.371 TCP 23.104.0.1:36378 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:14:34.123 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55858 10 6452 1 2025-10-09 14:15:05.857 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:15:05.860 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:15:19.124 00:00:10.367 TCP 23.104.0.1:59898 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:15:34.332 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58902 10 6452 1 2025-10-09 14:16:19.530 00:00:10.372 TCP 23.104.0.1:45458 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:16:34.544 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:48188 10 6452 1 2025-10-09 14:17:19.946 00:00:10.386 TCP 23.104.0.1:50248 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:17:34.716 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58636 10 6452 1 2025-10-09 14:18:20.369 00:00:10.368 TCP 23.104.0.1:36464 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:18:34.935 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:58550 10 6452 1 2025-10-09 14:14:39.888 00:05:02.247 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:19:20.775 00:00:10.331 TCP 23.104.0.1:57620 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:19:35.167 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52460 10 6452 1 2025-10-09 14:15:39.890 00:05:02.242 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:20:05.867 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:20:05.866 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:20:21.142 00:00:10.327 TCP 23.104.0.1:39812 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:20:35.384 00:00:11.040 TCP 1.101.0.1:3000 -> 22.102.0.1:54538 10 6452 1 2025-10-09 14:21:21.507 00:00:10.369 TCP 23.104.0.1:36596 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:21:36.469 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38182 10 6452 1 2025-10-09 14:22:21.912 00:00:10.336 TCP 23.104.0.1:48342 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:22:36.680 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52238 10 6452 1 2025-10-09 14:23:22.286 00:00:10.365 TCP 23.104.0.1:56106 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:23:36.896 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46960 10 6452 1 2025-10-09 14:24:22.687 00:00:10.325 TCP 23.104.0.1:36934 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:20:39.889 00:05:02.250 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:24:37.115 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52272 10 6452 1 2025-10-09 14:25:06.069 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:25:05.885 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:25:23.052 00:00:10.327 TCP 23.104.0.1:57616 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:21:39.891 00:05:02.245 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:25:37.335 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56996 10 6452 1 2025-10-09 14:26:23.416 00:00:10.366 TCP 23.104.0.1:51732 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:26:37.550 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58146 10 6452 1 2025-10-09 14:27:23.818 00:00:10.367 TCP 23.104.0.1:53060 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:27:37.766 00:00:10.522 TCP 1.101.0.1:3000 -> 22.102.0.1:37810 10 6452 1 2025-10-09 14:28:24.236 00:00:10.362 TCP 23.104.0.1:36824 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:28:38.316 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52816 10 6452 1 2025-10-09 14:29:24.640 00:00:10.327 TCP 23.104.0.1:41612 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:29:38.519 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43374 10 6452 1 2025-10-09 14:30:06.044 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:30:06.160 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:30:25.007 00:00:10.366 TCP 23.104.0.1:47288 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:26:39.893 00:05:02.248 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:30:38.734 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:53446 10 6452 1 2025-10-09 14:31:25.417 00:00:10.364 TCP 23.104.0.1:41032 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:27:39.894 00:05:02.243 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:31:38.901 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47668 10 6452 1 2025-10-09 14:32:25.819 00:00:10.366 TCP 23.104.0.1:34456 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:32:39.116 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48374 10 6452 1 2025-10-09 14:33:26.232 00:00:10.369 TCP 23.104.0.1:35580 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:33:39.325 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56090 10 6452 1 2025-10-09 14:34:26.647 00:00:10.371 TCP 23.104.0.1:54430 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:34:39.534 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52362 10 6452 1 2025-10-09 14:35:06.227 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:35:06.174 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:35:27.062 00:00:10.372 TCP 23.104.0.1:55018 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:35:39.751 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35280 10 6452 1 2025-10-09 14:36:27.472 00:00:10.328 TCP 23.104.0.1:38410 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:32:39.892 00:05:02.250 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:36:39.965 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:37576 10 6452 1 2025-10-09 14:37:27.852 00:00:10.376 TCP 23.104.0.1:55832 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:33:39.895 00:05:02.245 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:37:40.194 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55842 10 6452 1 2025-10-09 14:38:28.272 00:00:10.372 TCP 23.104.0.1:41812 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:38:40.406 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52258 10 6452 1 2025-10-09 14:39:28.682 00:00:10.368 TCP 23.104.0.1:47656 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:39:40.620 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47848 10 6452 1 2025-10-09 14:40:06.239 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:40:06.346 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:40:29.117 00:00:10.361 TCP 23.104.0.1:35336 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:40:40.827 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:37664 10 6452 1 2025-10-09 14:41:29.520 00:00:10.320 TCP 23.104.0.1:33720 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:41:41.008 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:33808 10 6452 1 2025-10-09 14:42:29.879 00:00:10.388 TCP 23.104.0.1:53144 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:38:39.895 00:05:02.248 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:42:41.228 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59300 10 6452 1 2025-10-09 14:43:30.306 00:00:10.365 TCP 23.104.0.1:56426 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:39:39.897 00:05:02.245 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:43:41.437 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47304 10 6452 1 2025-10-09 14:44:30.708 00:00:10.380 TCP 23.104.0.1:33246 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:44:41.656 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:33838 10 6452 1 2025-10-09 14:45:06.422 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:45:06.245 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:45:31.125 00:00:10.418 TCP 23.104.0.1:39886 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:45:41.866 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:38804 10 6452 1 2025-10-09 14:46:31.586 00:00:10.367 TCP 23.104.0.1:40196 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:46:42.094 00:00:10.393 TCP 1.101.0.1:3000 -> 22.102.0.1:58378 10 6452 1 2025-10-09 14:47:31.995 00:00:10.394 TCP 23.104.0.1:44060 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:47:42.525 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33500 10 6452 1 2025-10-09 14:48:32.425 00:00:10.328 TCP 23.104.0.1:49322 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:44:39.898 00:05:02.248 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:48:42.743 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44658 10 6452 1 2025-10-09 14:49:32.787 00:00:10.369 TCP 23.104.0.1:52000 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:45:39.901 00:05:02.244 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:49:42.961 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:39148 10 6452 1 2025-10-09 14:50:06.386 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:50:06.373 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:50:33.195 00:00:10.368 TCP 23.104.0.1:58874 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:50:43.147 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37860 10 6452 1 2025-10-09 14:51:33.617 00:00:10.365 TCP 23.104.0.1:34370 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:51:43.366 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46608 10 6452 1 2025-10-09 14:52:34.027 00:00:10.362 TCP 23.104.0.1:40138 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:52:43.586 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:40666 10 6452 1 2025-10-09 14:53:34.432 00:00:10.363 TCP 23.104.0.1:35770 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:53:43.764 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:43082 10 6452 1 2025-10-09 14:50:39.901 00:05:02.248 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-09 14:54:34.832 00:00:10.389 TCP 23.104.0.1:34618 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:54:43.937 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:39214 10 6452 1 2025-10-09 14:55:06.567 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-09 14:55:06.316 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-09 14:55:35.260 00:00:10.362 TCP 23.104.0.1:55814 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:51:39.904 00:05:02.243 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-09 14:55:44.174 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:55648 10 6452 1 2025-10-09 14:56:35.664 00:00:10.380 TCP 23.104.0.1:36398 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:56:44.343 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38836 10 6452 1 2025-10-09 14:57:36.092 00:00:10.363 TCP 23.104.0.1:57978 -> 1.101.0.1:3000 11 1507 1 2025-10-09 14:57:44.562 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:60330 10 6452 1 2025-10-09 14:58:36.497 00:00:10.808 TCP 23.104.0.1:58404 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 491896, total packets: 1562, avg bps: 1055, avg pps: 0, avg bpp: 314 Time window: 2025-10-09 13:56:39 - 2025-10-09 14:58:47 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0228s User: 0.0010s Wall: 0.0020s flows/second: 79784.3 Runtime: 0.0021s