Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 16:59:30.498 00:00:10.363 TCP 23.104.0.1:47900 -> 1.101.0.1:3000 11 1507 1 2025-10-14 16:59:33.962 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:53958 10 6452 1 2025-10-14 17:00:30.895 00:00:10.347 TCP 23.104.0.1:58018 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:00:34.187 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49648 10 6452 1 2025-10-14 16:56:42.276 00:05:02.422 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 16:56:42.279 00:05:02.417 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:01:31.278 00:00:10.438 TCP 23.104.0.1:60216 -> 1.101.0.1:3000 15 1926 1 2025-10-14 17:01:34.398 00:00:10.252 TCP 1.101.0.1:3000 -> 22.102.0.1:39940 13 10427 1 2025-10-14 17:02:33.461 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:02:33.362 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:02:34.690 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:39328 10 6452 1 2025-10-14 17:02:31.759 00:00:10.333 TCP 23.104.0.1:51140 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:03:32.132 00:00:10.376 TCP 23.104.0.1:57014 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:03:34.862 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:47126 10 6452 1 2025-10-14 17:04:32.554 00:00:10.328 TCP 23.104.0.1:50348 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:04:35.090 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43708 10 6452 1 2025-10-14 17:05:35.310 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40818 10 6452 1 2025-10-14 17:05:32.923 00:00:10.360 TCP 23.104.0.1:57308 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:02:42.279 00:05:02.418 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:06:33.353 00:00:10.372 TCP 23.104.0.1:35900 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:06:35.477 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49982 10 6452 1 2025-10-14 17:02:42.277 00:05:02.423 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 17:07:33.699 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:07:33.537 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:07:33.765 00:00:10.375 TCP 23.104.0.1:56936 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:07:35.693 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47784 10 6452 1 2025-10-14 17:08:34.181 00:00:10.369 TCP 23.104.0.1:40534 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:08:35.922 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51124 10 6452 1 2025-10-14 17:09:34.592 00:00:10.366 TCP 23.104.0.1:39716 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:09:36.130 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45572 10 6452 1 2025-10-14 17:10:36.357 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:38560 10 6452 1 2025-10-14 17:10:34.999 00:00:10.364 TCP 23.104.0.1:37818 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:11:36.530 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45286 10 6452 1 2025-10-14 17:11:35.397 00:00:10.373 TCP 23.104.0.1:58472 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:12:33.748 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:12:33.639 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:12:36.749 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56634 10 6452 1 2025-10-14 17:08:42.278 00:05:02.422 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 17:08:42.282 00:05:02.417 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:12:35.809 00:00:10.337 TCP 23.104.0.1:60920 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:13:36.181 00:00:10.368 TCP 23.104.0.1:49798 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:13:36.963 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45140 10 6452 1 2025-10-14 17:14:36.588 00:00:10.323 TCP 23.104.0.1:46064 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:14:37.182 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57046 10 6452 1 2025-10-14 17:15:37.390 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52820 10 6452 1 2025-10-14 17:15:36.949 00:00:10.700 TCP 23.104.0.1:49112 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:16:37.687 00:00:10.413 TCP 23.104.0.1:38254 -> 1.101.0.1:3000 15 1926 1 2025-10-14 17:16:37.607 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:35408 12 10375 1 2025-10-14 17:17:33.975 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:17:33.867 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:17:37.848 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37558 10 6452 1 2025-10-14 17:17:38.141 00:00:10.363 TCP 23.104.0.1:51708 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:14:42.282 00:05:02.417 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:18:38.541 00:00:10.367 TCP 23.104.0.1:52130 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:14:42.278 00:05:02.422 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 17:18:38.079 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43660 10 6452 1 2025-10-14 17:19:38.946 00:00:10.328 TCP 23.104.0.1:45772 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:19:38.294 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48152 10 6452 1 2025-10-14 17:20:38.506 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43946 10 6452 1 2025-10-14 17:20:39.316 00:00:10.362 TCP 23.104.0.1:54998 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:21:39.718 00:00:10.447 TCP 23.104.0.1:59038 -> 1.101.0.1:3000 15 1926 1 2025-10-14 17:21:38.682 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:39508 12 10369 1 2025-10-14 17:22:33.948 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:22:33.843 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:22:40.206 00:00:10.367 TCP 23.104.0.1:38680 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:22:38.876 00:00:10.303 TCP 1.101.0.1:3000 -> 22.102.0.1:37412 10 6452 1 2025-10-14 17:23:40.616 00:00:10.322 TCP 23.104.0.1:33030 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:23:39.220 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55330 10 6452 1 2025-10-14 17:20:42.285 00:05:02.414 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:20:42.283 00:05:02.419 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 17:24:40.975 00:00:10.375 TCP 23.104.0.1:50824 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:24:39.440 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54184 10 6452 1 2025-10-14 17:25:41.381 00:00:10.322 TCP 23.104.0.1:50228 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:25:39.660 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:52624 10 6452 1 2025-10-14 17:26:39.836 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:47066 12 10375 1 2025-10-14 17:26:41.742 00:00:10.499 TCP 23.104.0.1:56886 -> 1.101.0.1:3000 15 1926 1 2025-10-14 17:27:33.991 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:27:34.155 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:27:40.084 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:46906 10 6452 1 2025-10-14 17:27:42.278 00:00:10.367 TCP 23.104.0.1:48978 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:28:40.253 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40206 10 6452 1 2025-10-14 17:28:42.685 00:00:10.326 TCP 23.104.0.1:47126 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:29:40.470 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54172 10 6452 1 2025-10-14 17:29:43.059 00:00:10.365 TCP 23.104.0.1:58018 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:26:42.287 00:05:02.414 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:26:42.284 00:05:02.419 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 17:30:40.680 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55638 10 6452 1 2025-10-14 17:30:43.464 00:00:10.323 TCP 23.104.0.1:33184 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:31:40.895 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:60916 12 10584 1 2025-10-14 17:31:43.825 00:00:10.439 TCP 23.104.0.1:45502 -> 1.101.0.1:3000 15 1926 1 2025-10-14 17:32:34.148 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:32:34.033 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:32:41.150 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46662 10 6661 1 2025-10-14 17:32:44.306 00:00:10.365 TCP 23.104.0.1:45488 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:33:41.363 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:46780 10 6661 1 2025-10-14 17:33:44.710 00:00:10.326 TCP 23.104.0.1:54024 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:34:41.553 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35430 10 6661 1 2025-10-14 17:34:45.100 00:00:10.367 TCP 23.104.0.1:56618 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:35:41.769 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:44060 10 6661 1 2025-10-14 17:35:45.511 00:00:10.370 TCP 23.104.0.1:48618 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:32:42.288 00:05:02.416 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:32:42.285 00:05:02.421 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 17:36:45.921 00:00:10.460 TCP 23.104.0.1:42452 -> 1.101.0.1:3000 15 1926 1 2025-10-14 17:36:41.950 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:41794 12 10793 1 2025-10-14 17:37:34.193 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:37:34.258 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:37:42.203 00:00:10.386 TCP 1.101.0.1:3000 -> 22.102.0.1:39612 10 6870 1 2025-10-14 17:37:46.432 00:00:10.895 TCP 23.104.0.1:38450 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:38:42.639 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47516 10 6870 1 2025-10-14 17:38:47.371 00:00:10.365 TCP 23.104.0.1:37108 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:39:42.846 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:60796 10 6870 1 2025-10-14 17:39:47.772 00:00:10.379 TCP 23.104.0.1:35112 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:40:43.086 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38670 10 6870 1 2025-10-14 17:40:48.188 00:00:10.369 TCP 23.104.0.1:36774 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:41:43.299 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35404 10 6870 1 2025-10-14 17:41:48.594 00:00:10.367 TCP 23.104.0.1:34588 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:42:34.397 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:42:34.391 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:38:42.288 00:05:02.419 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 17:38:42.289 00:05:02.414 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:42:43.517 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:34536 10 6870 1 2025-10-14 17:42:48.995 00:00:10.366 TCP 23.104.0.1:47282 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:43:43.684 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56056 10 6870 1 2025-10-14 17:43:49.401 00:00:10.368 TCP 23.104.0.1:48694 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:44:43.898 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41974 10 6870 1 2025-10-14 17:44:49.803 00:00:10.364 TCP 23.104.0.1:46074 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:45:44.115 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38912 10 6870 1 2025-10-14 17:45:50.205 00:00:10.367 TCP 23.104.0.1:57460 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:46:44.326 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50944 10 6870 1 2025-10-14 17:46:50.609 00:00:10.370 TCP 23.104.0.1:35680 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:47:34.662 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:47:34.527 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:47:44.541 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60510 10 6870 1 2025-10-14 17:47:51.021 00:00:10.363 TCP 23.104.0.1:57996 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:44:42.288 00:05:02.420 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 17:44:42.290 00:05:02.415 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:48:44.757 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34940 10 6870 1 2025-10-14 17:48:51.422 00:00:10.373 TCP 23.104.0.1:38374 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:49:44.972 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:46262 10 6870 1 2025-10-14 17:49:51.833 00:00:10.387 TCP 23.104.0.1:43954 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:50:45.196 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40838 10 6870 1 2025-10-14 17:50:52.258 00:00:10.363 TCP 23.104.0.1:38126 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:51:45.417 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48834 10 6870 1 2025-10-14 17:51:52.658 00:00:10.372 TCP 23.104.0.1:50032 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:52:34.458 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:52:34.518 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:52:45.592 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:44980 10 6870 1 2025-10-14 17:52:53.098 00:00:10.360 TCP 23.104.0.1:58356 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:53:45.765 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57460 10 6870 1 2025-10-14 17:53:53.495 00:00:10.362 TCP 23.104.0.1:33884 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:50:42.292 00:05:02.418 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-14 17:50:42.294 00:05:02.414 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-14 17:54:45.978 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:45744 10 6870 1 2025-10-14 17:54:53.896 00:00:10.386 TCP 23.104.0.1:40688 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:55:46.171 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:55500 10 6870 1 2025-10-14 17:55:54.313 00:00:10.363 TCP 23.104.0.1:52842 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:56:46.342 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:60966 10 6870 1 2025-10-14 17:56:54.715 00:00:10.372 TCP 23.104.0.1:59556 -> 1.101.0.1:3000 11 1507 1 2025-10-14 17:57:34.520 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-14 17:57:34.702 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 17:57:46.565 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:33246 10 6870 1 2025-10-14 17:57:55.120 00:00:10.979 TCP 23.104.0.1:38028 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 526728, total packets: 1588, avg bps: 1143, avg pps: 0, avg bpp: 331 Time window: 2025-10-14 16:56:42 - 2025-10-14 17:58:06 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0034s User: 0.0017s Wall: 0.0027s flows/second: 60264.1 Runtime: 0.0027s