Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-11 08:59:21.353 00:00:10.371 TCP 23.104.0.1:36532 -> 1.101.0.1:3000 11 1507 1 2025-10-11 08:59:25.802 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34202 10 6452 1 2025-10-11 09:00:26.033 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:45282 10 6452 1 2025-10-11 09:00:21.759 00:00:10.371 TCP 23.104.0.1:35596 -> 1.101.0.1:3000 11 1507 1 2025-10-11 08:56:40.706 00:05:02.366 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 08:56:40.703 00:05:02.372 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:00:56.917 00:00:00.029 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:00:57.011 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:01:26.269 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:33792 10 6452 1 2025-10-11 09:01:22.169 00:00:10.363 TCP 23.104.0.1:56866 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:02:26.447 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48080 10 6452 1 2025-10-11 09:02:22.569 00:00:10.361 TCP 23.104.0.1:37930 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:03:22.968 00:00:10.390 TCP 23.104.0.1:43122 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:03:26.660 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33066 10 6452 1 2025-10-11 09:04:23.388 00:00:10.381 TCP 23.104.0.1:57922 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:04:26.877 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:39304 10 6452 1 2025-10-11 09:05:23.794 00:00:10.367 TCP 23.104.0.1:35388 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:05:27.104 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46116 10 6452 1 2025-10-11 09:05:57.370 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:05:57.423 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:06:24.200 00:00:10.362 TCP 23.104.0.1:54564 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:06:27.325 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58748 10 6452 1 2025-10-11 09:02:40.705 00:05:02.372 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:02:40.706 00:05:02.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 09:07:24.596 00:00:10.367 TCP 23.104.0.1:49118 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:07:27.539 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:60376 10 6452 1 2025-10-11 09:08:25.004 00:00:10.365 TCP 23.104.0.1:33500 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:08:27.767 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:48038 10 6452 1 2025-10-11 09:09:25.411 00:00:10.365 TCP 23.104.0.1:42560 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:09:27.993 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:53362 10 6452 1 2025-10-11 09:10:25.810 00:00:10.380 TCP 23.104.0.1:58784 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:10:28.221 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43096 10 6452 1 2025-10-11 09:10:57.422 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:10:57.488 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:11:26.227 00:00:10.366 TCP 23.104.0.1:34056 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:11:28.434 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:34464 10 6452 1 2025-10-11 09:12:26.630 00:00:10.365 TCP 23.104.0.1:36442 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:12:28.642 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41120 10 6452 1 2025-10-11 09:08:40.707 00:05:02.368 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 09:08:40.705 00:05:02.374 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:13:28.860 00:00:10.260 TCP 1.101.0.1:3000 -> 22.102.0.1:45074 11 6504 1 2025-10-11 09:13:27.031 00:00:10.361 TCP 23.104.0.1:50954 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:14:27.430 00:00:10.324 TCP 23.104.0.1:51824 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:14:29.163 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34526 10 6452 1 2025-10-11 09:15:27.794 00:00:10.333 TCP 23.104.0.1:56238 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:15:29.384 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:56210 10 6452 1 2025-10-11 09:15:57.674 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:15:57.316 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:16:28.165 00:00:10.334 TCP 23.104.0.1:58076 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:16:29.606 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45172 10 6452 1 2025-10-11 09:17:28.541 00:00:10.360 TCP 23.104.0.1:53816 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:17:29.818 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40676 10 6452 1 2025-10-11 09:18:28.943 00:00:10.377 TCP 23.104.0.1:36784 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:18:30.046 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37568 10 6452 1 2025-10-11 09:14:40.706 00:05:02.373 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:14:40.709 00:05:02.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 09:19:29.355 00:00:10.366 TCP 23.104.0.1:48132 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:19:30.259 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53992 10 6452 1 2025-10-11 09:20:29.760 00:00:10.330 TCP 23.104.0.1:60214 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:20:30.470 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:42722 10 6452 1 2025-10-11 09:20:57.512 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:20:57.521 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:21:30.127 00:00:10.368 TCP 23.104.0.1:50228 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:21:30.676 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44286 10 6452 1 2025-10-11 09:22:30.898 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35590 10 6452 1 2025-10-11 09:22:30.534 00:00:10.360 TCP 23.104.0.1:42644 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:23:31.119 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46128 10 6452 1 2025-10-11 09:23:30.934 00:00:10.383 TCP 23.104.0.1:47370 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:24:31.339 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:39790 10 6452 1 2025-10-11 09:24:31.355 00:00:10.368 TCP 23.104.0.1:51898 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:20:40.708 00:05:02.372 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:20:40.710 00:05:02.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 09:25:31.561 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:51346 10 6452 1 2025-10-11 09:25:31.757 00:00:10.331 TCP 23.104.0.1:60676 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:25:57.552 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:25:57.564 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:26:31.796 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60848 10 6452 1 2025-10-11 09:26:32.130 00:00:10.364 TCP 23.104.0.1:42218 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:27:32.537 00:00:10.364 TCP 23.104.0.1:47244 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:27:32.028 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58850 10 6452 1 2025-10-11 09:28:32.942 00:00:10.333 TCP 23.104.0.1:36612 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:28:32.236 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:59890 10 6452 1 2025-10-11 09:29:33.312 00:00:10.371 TCP 23.104.0.1:50784 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:29:32.409 00:00:10.836 TCP 1.101.0.1:3000 -> 22.102.0.1:60242 10 6452 1 2025-10-11 09:26:40.715 00:05:02.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 09:30:33.719 00:00:10.371 TCP 23.104.0.1:50788 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:30:33.284 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:50242 10 6452 1 2025-10-11 09:26:40.713 00:05:02.369 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:30:57.699 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:30:57.621 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:31:34.126 00:00:10.365 TCP 23.104.0.1:55238 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:31:33.454 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51022 10 6452 1 2025-10-11 09:32:34.531 00:00:10.329 TCP 23.104.0.1:32900 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:32:33.664 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48002 10 6452 1 2025-10-11 09:33:34.898 00:00:10.375 TCP 23.104.0.1:35704 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:33:33.880 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:54450 10 6452 1 2025-10-11 09:34:35.306 00:00:10.368 TCP 23.104.0.1:52898 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:34:34.105 00:00:10.489 TCP 1.101.0.1:3000 -> 22.102.0.1:58130 10 6452 1 2025-10-11 09:35:35.709 00:00:10.365 TCP 23.104.0.1:51092 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:35:34.623 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52436 10 6452 1 2025-10-11 09:35:58.323 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:35:57.670 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:36:34.846 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:53158 10 6452 1 2025-10-11 09:32:40.715 00:05:02.367 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:32:40.719 00:05:02.362 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 09:36:36.115 00:00:10.322 TCP 23.104.0.1:53060 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:37:36.475 00:00:10.363 TCP 23.104.0.1:56036 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:37:35.088 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51360 10 6452 1 2025-10-11 09:38:35.297 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48494 10 6452 1 2025-10-11 09:38:36.879 00:00:10.360 TCP 23.104.0.1:60124 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:39:35.519 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:59870 10 6452 1 2025-10-11 09:39:37.281 00:00:10.364 TCP 23.104.0.1:36764 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:40:35.743 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34384 10 6452 1 2025-10-11 09:40:37.686 00:00:10.365 TCP 23.104.0.1:60264 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:40:58.050 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:40:57.838 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:41:35.954 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:52040 10 6452 1 2025-10-11 09:41:38.105 00:00:10.374 TCP 23.104.0.1:53240 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:42:36.181 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59706 10 6452 1 2025-10-11 09:38:40.716 00:05:02.369 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:38:40.718 00:05:02.364 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 09:42:38.520 00:00:10.374 TCP 23.104.0.1:44198 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:43:36.393 00:00:10.865 TCP 1.101.0.1:3000 -> 22.102.0.1:53952 10 6452 1 2025-10-11 09:43:38.934 00:00:10.373 TCP 23.104.0.1:51680 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:44:39.354 00:00:10.455 TCP 23.104.0.1:47048 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:44:37.308 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35608 10 6452 1 2025-10-11 09:45:37.520 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:41004 10 6452 1 2025-10-11 09:45:39.876 00:00:10.326 TCP 23.104.0.1:53810 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:45:57.942 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:45:58.077 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:46:37.752 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55078 10 6452 1 2025-10-11 09:46:40.240 00:00:10.362 TCP 23.104.0.1:36046 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:47:40.638 00:00:16.936 TCP 23.104.0.1:55640 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:47:37.968 00:00:19.522 TCP 1.101.0.1:3000 -> 22.102.0.1:40430 10 6452 1 2025-10-11 09:44:40.717 00:05:02.369 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:44:40.719 00:05:02.364 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 09:48:47.637 00:00:10.364 TCP 23.104.0.1:51940 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:48:47.545 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:52622 10 6452 1 2025-10-11 09:49:48.058 00:00:10.372 TCP 23.104.0.1:57450 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:49:47.721 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54764 10 6452 1 2025-10-11 09:50:48.468 00:00:10.365 TCP 23.104.0.1:46036 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:50:58.167 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:50:58.251 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:50:47.940 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:49472 10 6452 1 2025-10-11 09:51:48.869 00:00:10.370 TCP 23.104.0.1:51246 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:51:48.174 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57754 10 6452 1 2025-10-11 09:52:48.386 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59092 10 6452 1 2025-10-11 09:52:49.279 00:00:10.371 TCP 23.104.0.1:51006 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:53:48.594 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57562 10 6452 1 2025-10-11 09:53:49.683 00:00:10.365 TCP 23.104.0.1:49186 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:50:40.720 00:05:02.363 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-11 09:50:40.718 00:05:02.369 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-11 09:54:48.807 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:38102 10 6452 1 2025-10-11 09:54:50.106 00:00:10.371 TCP 23.104.0.1:46272 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:55:50.511 00:00:10.321 TCP 23.104.0.1:55910 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:55:58.217 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 09:55:48.993 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49438 10 6452 1 2025-10-11 09:55:58.277 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-11 09:56:49.219 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55590 10 6452 1 2025-10-11 09:56:50.868 00:00:10.370 TCP 23.104.0.1:43044 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:57:51.278 00:00:10.330 TCP 23.104.0.1:50628 -> 1.101.0.1:3000 11 1507 1 2025-10-11 09:57:49.435 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50428 10 6452 1 Summary: total flows: 162, total bytes: 490441, total packets: 1552, avg bps: 1065, avg pps: 0, avg bpp: 316 Time window: 2025-10-11 08:56:40 - 2025-10-11 09:58:01 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0031s User: 0.0020s Wall: 0.0020s flows/second: 81815.4 Runtime: 0.0020s