Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 08:59:04.348 00:00:11.630 TCP 23.104.0.1:53314 -> 1.101.0.1:3000 11 1507 1 2025-10-14 08:59:36.376 00:00:10.224 TCP 1.101.0.1:3000 -> 22.102.0.1:37680 11 6504 1 2025-10-14 09:00:06.019 00:00:10.362 TCP 23.104.0.1:43036 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:00:36.648 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:38412 10 6452 1 2025-10-14 08:56:42.088 00:05:02.441 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 08:56:42.091 00:05:02.436 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:01:06.416 00:00:10.326 TCP 23.104.0.1:42510 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:01:36.823 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:58096 10 6452 1 2025-10-14 09:02:06.779 00:00:10.364 TCP 23.104.0.1:40228 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:02:23.976 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:02:23.969 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:02:36.997 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41486 10 6452 1 2025-10-14 09:03:07.186 00:00:10.363 TCP 23.104.0.1:50912 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:03:37.208 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47238 10 6452 1 2025-10-14 09:04:07.586 00:00:10.360 TCP 23.104.0.1:58976 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:04:37.420 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35252 10 6452 1 2025-10-14 09:05:07.987 00:00:10.366 TCP 23.104.0.1:59420 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:05:37.639 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41600 10 6452 1 2025-10-14 09:06:08.392 00:00:10.377 TCP 23.104.0.1:44308 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:02:42.089 00:05:02.448 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 09:02:42.092 00:05:02.443 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:06:37.848 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45308 10 6452 1 2025-10-14 09:07:08.807 00:00:10.364 TCP 23.104.0.1:36092 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:07:23.809 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:07:24.149 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:07:38.080 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41644 10 6452 1 2025-10-14 09:08:09.209 00:00:10.381 TCP 23.104.0.1:59754 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:08:38.294 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39366 10 6452 1 2025-10-14 09:09:09.620 00:00:10.316 TCP 23.104.0.1:54424 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:09:38.513 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47548 10 6452 1 2025-10-14 09:10:09.979 00:00:10.380 TCP 23.104.0.1:58656 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:10:38.731 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40212 10 6452 1 2025-10-14 09:11:10.387 00:00:10.372 TCP 23.104.0.1:57318 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:11:38.945 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:33448 10 6452 1 2025-10-14 09:12:10.790 00:00:10.390 TCP 23.104.0.1:50320 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:12:24.059 00:00:00.028 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:12:24.147 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:08:42.094 00:05:02.443 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:08:42.092 00:05:02.447 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 09:12:39.137 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39236 10 6452 1 2025-10-14 09:13:11.207 00:00:10.368 TCP 23.104.0.1:35196 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:13:39.367 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59606 10 6452 1 2025-10-14 09:14:11.615 00:00:10.322 TCP 23.104.0.1:49902 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:14:39.583 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53112 10 6452 1 2025-10-14 09:15:11.977 00:00:10.376 TCP 23.104.0.1:36702 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:15:39.789 00:00:10.572 TCP 1.101.0.1:3000 -> 22.102.0.1:41418 11 6492 1 2025-10-14 09:16:12.394 00:00:10.326 TCP 23.104.0.1:44220 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:16:40.410 00:00:10.600 TCP 1.101.0.1:3000 -> 22.102.0.1:35214 10 6452 1 2025-10-14 09:17:24.207 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:17:24.263 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:17:12.766 00:00:10.385 TCP 23.104.0.1:48982 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:17:41.078 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53018 10 6452 1 2025-10-14 09:18:13.185 00:00:10.362 TCP 23.104.0.1:50088 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:14:42.093 00:05:02.448 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 09:14:42.095 00:05:02.443 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:18:41.300 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47440 10 6452 1 2025-10-14 09:19:13.586 00:00:10.458 TCP 23.104.0.1:51034 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:19:41.512 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53374 10 6452 1 2025-10-14 09:20:14.104 00:00:10.376 TCP 23.104.0.1:45290 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:20:41.724 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40742 10 6452 1 2025-10-14 09:21:14.518 00:00:15.872 TCP 23.104.0.1:60516 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:21:41.932 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:44214 10 6452 1 2025-10-14 09:22:24.003 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:22:24.360 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:22:20.458 00:00:10.323 TCP 23.104.0.1:54770 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:22:42.198 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57734 10 6452 1 2025-10-14 09:23:20.819 00:00:10.370 TCP 23.104.0.1:45586 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:23:42.415 00:00:19.473 TCP 1.101.0.1:3000 -> 22.102.0.1:35250 10 6452 1 2025-10-14 09:24:21.225 00:00:10.365 TCP 23.104.0.1:53718 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:20:42.097 00:05:02.446 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 09:20:42.100 00:05:02.440 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:24:51.930 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:51028 10 6452 1 2025-10-14 09:25:21.627 00:00:10.319 TCP 23.104.0.1:56566 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:25:52.123 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:46288 10 6452 1 2025-10-14 09:26:21.984 00:00:10.364 TCP 23.104.0.1:51802 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:26:52.331 00:00:10.362 TCP 1.101.0.1:3000 -> 22.102.0.1:52760 10 6452 1 2025-10-14 09:27:24.548 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:27:24.546 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:27:22.389 00:00:10.368 TCP 23.104.0.1:58640 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:27:52.738 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50460 10 6452 1 2025-10-14 09:28:22.792 00:00:10.337 TCP 23.104.0.1:48832 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:28:52.951 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:43798 10 6452 1 2025-10-14 09:29:23.166 00:00:10.366 TCP 23.104.0.1:46378 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:29:53.191 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:32918 10 6452 1 2025-10-14 09:30:23.568 00:00:10.324 TCP 23.104.0.1:58514 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:26:42.101 00:05:02.442 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:26:42.098 00:05:02.448 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 09:30:53.408 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55378 10 6452 1 2025-10-14 09:31:23.938 00:00:10.375 TCP 23.104.0.1:40464 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:31:53.623 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40774 10 6452 1 2025-10-14 09:32:24.617 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:32:24.654 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:32:24.352 00:00:10.363 TCP 23.104.0.1:49108 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:32:53.834 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59954 10 6452 1 2025-10-14 09:33:24.757 00:00:10.373 TCP 23.104.0.1:51224 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:33:54.066 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56874 10 6452 1 2025-10-14 09:34:25.172 00:00:10.367 TCP 23.104.0.1:40822 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:34:54.279 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50828 10 6452 1 2025-10-14 09:35:25.576 00:00:10.372 TCP 23.104.0.1:40876 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:35:54.509 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60048 10 6452 1 2025-10-14 09:36:25.987 00:00:10.364 TCP 23.104.0.1:47666 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:32:42.103 00:05:02.445 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:32:42.101 00:05:02.450 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 09:36:54.718 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39872 10 6452 1 2025-10-14 09:37:24.531 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:37:24.557 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:37:26.390 00:00:10.358 TCP 23.104.0.1:60374 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:37:54.930 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:36566 10 6452 1 2025-10-14 09:38:26.792 00:00:11.017 TCP 23.104.0.1:41962 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:38:55.135 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:34370 10 6452 1 2025-10-14 09:39:27.851 00:00:10.378 TCP 23.104.0.1:60248 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:39:55.312 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43752 10 6452 1 2025-10-14 09:40:28.264 00:00:10.324 TCP 23.104.0.1:56796 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:40:55.525 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40582 10 6452 1 2025-10-14 09:41:28.632 00:00:10.374 TCP 23.104.0.1:43448 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:41:55.752 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:53222 10 6452 1 2025-10-14 09:42:24.602 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:42:24.587 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:42:29.047 00:00:10.323 TCP 23.104.0.1:47402 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:38:42.105 00:05:02.445 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:38:42.102 00:05:02.450 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 09:42:55.980 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:53972 10 6452 1 2025-10-14 09:43:29.410 00:00:10.328 TCP 23.104.0.1:48904 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:43:56.217 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52834 10 6452 1 2025-10-14 09:44:29.773 00:00:10.377 TCP 23.104.0.1:35464 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:44:56.437 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46092 10 6452 1 2025-10-14 09:45:30.184 00:00:10.368 TCP 23.104.0.1:44508 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:45:56.660 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51330 10 6452 1 2025-10-14 09:46:30.582 00:00:10.329 TCP 23.104.0.1:52024 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:46:56.870 00:00:10.364 TCP 1.101.0.1:3000 -> 22.102.0.1:40982 10 6452 1 2025-10-14 09:47:24.810 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:47:24.776 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:47:30.951 00:00:10.377 TCP 23.104.0.1:51378 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:47:57.280 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:48428 10 6452 1 2025-10-14 09:44:42.103 00:05:02.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 09:48:31.364 00:00:10.375 TCP 23.104.0.1:39360 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:44:42.106 00:05:02.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:48:57.501 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42950 10 6452 1 2025-10-14 09:49:31.782 00:00:10.372 TCP 23.104.0.1:59670 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:49:57.716 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60058 10 6452 1 2025-10-14 09:50:32.194 00:00:10.337 TCP 23.104.0.1:57590 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:50:57.938 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:54040 10 6452 1 2025-10-14 09:51:32.570 00:00:10.363 TCP 23.104.0.1:56102 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:51:58.188 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53932 10 6452 1 2025-10-14 09:52:24.905 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:52:24.931 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:52:32.971 00:00:10.368 TCP 23.104.0.1:46226 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:52:58.410 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60400 12 6556 1 2025-10-14 09:53:33.379 00:00:10.361 TCP 23.104.0.1:56786 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:53:58.630 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58650 10 6452 1 2025-10-14 09:50:42.122 00:05:02.433 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 09:54:33.776 00:00:10.328 TCP 23.104.0.1:38540 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:50:42.125 00:05:02.428 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 09:54:58.848 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43488 10 6452 1 2025-10-14 09:55:34.137 00:00:10.367 TCP 23.104.0.1:47560 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:55:59.089 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56520 10 6452 1 2025-10-14 09:56:34.543 00:00:10.368 TCP 23.104.0.1:35712 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:56:59.301 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53324 10 6452 1 2025-10-14 09:57:24.993 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:57:24.966 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 09:57:34.954 00:00:10.371 TCP 23.104.0.1:47976 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:57:59.515 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38712 10 6452 1 2025-10-14 09:58:35.362 00:00:10.364 TCP 23.104.0.1:59680 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 492092, total packets: 1566, avg bps: 1057, avg pps: 0, avg bpp: 314 Time window: 2025-10-14 08:56:42 - 2025-10-14 09:58:45 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0031s User: 0.0020s Wall: 0.0027s flows/second: 60129.4 Runtime: 0.0027s