Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 05:59:03.399 00:00:10.329 TCP 23.104.0.1:39184 -> 1.101.0.1:3000 11 1507 1 2025-10-15 05:59:31.539 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:60932 10 6452 1 2025-10-15 06:00:03.768 00:00:10.328 TCP 23.104.0.1:47086 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:00:31.715 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34786 10 6452 1 2025-10-15 05:56:42.495 00:05:02.483 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 05:56:42.498 00:05:02.478 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:01:04.137 00:00:10.328 TCP 23.104.0.1:41092 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:01:31.933 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:32796 10 6452 1 2025-10-15 06:02:04.504 00:00:10.377 TCP 23.104.0.1:45334 -> 1.101.0.1:3000 12 1559 1 2025-10-15 06:02:32.127 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33168 10 6452 1 2025-10-15 06:02:49.138 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:02:49.230 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:03:04.913 00:00:10.363 TCP 23.104.0.1:36158 -> 1.101.0.1:3000 12 1559 1 2025-10-15 06:03:32.337 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:44268 10 6452 1 2025-10-15 06:04:05.311 00:00:10.374 TCP 23.104.0.1:35370 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:04:32.509 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48636 10 6452 1 2025-10-15 06:05:05.725 00:00:10.377 TCP 23.104.0.1:39168 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:05:32.726 00:00:10.735 TCP 1.101.0.1:3000 -> 22.102.0.1:48606 10 6452 1 2025-10-15 06:06:06.139 00:00:10.373 TCP 23.104.0.1:38388 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:02:42.496 00:05:02.487 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 06:06:33.493 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35010 10 6452 1 2025-10-15 06:02:42.499 00:05:02.481 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:07:06.549 00:00:10.365 TCP 23.104.0.1:48364 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:07:33.705 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59390 10 6452 1 2025-10-15 06:07:49.237 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:07:49.299 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:08:06.952 00:00:10.376 TCP 23.104.0.1:34924 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:08:33.924 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:39130 10 6452 1 2025-10-15 06:09:07.355 00:00:10.368 TCP 23.104.0.1:57934 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:09:34.124 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48228 10 6452 1 2025-10-15 06:10:07.755 00:00:10.380 TCP 23.104.0.1:44778 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:10:34.339 00:00:10.518 TCP 1.101.0.1:3000 -> 22.102.0.1:36884 10 6452 1 2025-10-15 06:11:08.176 00:00:10.365 TCP 23.104.0.1:60764 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:11:34.897 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55050 10 6452 1 2025-10-15 06:12:08.573 00:00:10.367 TCP 23.104.0.1:52726 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:12:35.113 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:37810 10 6452 1 2025-10-15 06:08:42.499 00:05:02.486 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 06:08:42.500 00:05:02.481 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:12:49.479 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:12:49.468 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:13:08.987 00:00:10.361 TCP 23.104.0.1:37798 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:13:35.285 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57098 10 6452 1 2025-10-15 06:14:09.386 00:00:10.363 TCP 23.104.0.1:55284 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:14:35.495 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:39244 10 6452 1 2025-10-15 06:15:09.786 00:00:10.431 TCP 23.104.0.1:42626 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:15:35.671 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:48284 10 6452 1 2025-10-15 06:16:10.250 00:00:10.366 TCP 23.104.0.1:33196 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:16:35.845 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38226 10 6452 1 2025-10-15 06:17:10.656 00:00:10.366 TCP 23.104.0.1:41990 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:17:49.411 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:17:36.078 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:53384 10 6452 1 2025-10-15 06:17:49.433 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:18:11.073 00:00:10.360 TCP 23.104.0.1:59580 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:18:36.249 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41584 10 6452 1 2025-10-15 06:14:42.501 00:05:02.484 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 06:14:42.505 00:05:02.479 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:19:11.471 00:00:10.375 TCP 23.104.0.1:43836 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:19:36.469 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47384 10 6452 1 2025-10-15 06:20:11.884 00:00:10.384 TCP 23.104.0.1:52892 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:20:36.683 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:52554 12 6556 1 2025-10-15 06:21:12.308 00:00:10.364 TCP 23.104.0.1:40838 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:21:36.894 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52286 10 6452 1 2025-10-15 06:22:12.724 00:00:10.367 TCP 23.104.0.1:60982 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:22:37.114 00:00:10.357 TCP 1.101.0.1:3000 -> 22.102.0.1:46758 10 6452 1 2025-10-15 06:22:49.644 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:22:49.451 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:23:13.130 00:00:10.372 TCP 23.104.0.1:43450 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:23:37.507 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48634 10 6452 1 2025-10-15 06:24:13.537 00:00:10.359 TCP 23.104.0.1:54514 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:20:42.508 00:05:02.476 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:20:42.506 00:05:02.482 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 06:24:37.679 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:34798 10 6452 1 2025-10-15 06:25:13.938 00:00:10.369 TCP 23.104.0.1:34830 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:25:37.862 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:45300 10 6452 1 2025-10-15 06:26:14.344 00:00:10.333 TCP 23.104.0.1:42802 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:26:38.037 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46664 10 6452 1 2025-10-15 06:27:14.713 00:00:10.604 TCP 23.104.0.1:34436 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:27:38.249 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57974 10 6452 1 2025-10-15 06:27:49.696 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:27:49.587 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:28:15.352 00:00:10.362 TCP 23.104.0.1:49700 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:28:38.464 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:37362 10 6452 1 2025-10-15 06:29:15.753 00:00:10.364 TCP 23.104.0.1:49608 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:29:38.635 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33358 10 6452 1 2025-10-15 06:30:16.152 00:00:10.370 TCP 23.104.0.1:37132 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:26:42.509 00:05:02.477 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:26:42.506 00:05:02.482 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 06:30:38.848 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60512 10 6452 1 2025-10-15 06:31:16.561 00:00:10.373 TCP 23.104.0.1:50664 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:31:39.076 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34366 10 6452 1 2025-10-15 06:32:16.971 00:00:10.369 TCP 23.104.0.1:52792 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:32:39.285 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:50262 10 6452 1 2025-10-15 06:32:49.817 00:00:00.016 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:32:49.757 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:33:17.380 00:00:10.371 TCP 23.104.0.1:34126 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:33:39.496 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45304 10 6452 1 2025-10-15 06:34:17.788 00:00:12.494 TCP 23.104.0.1:40224 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:34:39.716 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58618 10 6452 1 2025-10-15 06:35:20.325 00:00:10.323 TCP 23.104.0.1:32964 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:35:39.927 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37494 10 6452 1 2025-10-15 06:36:20.683 00:00:10.323 TCP 23.104.0.1:58058 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:32:42.510 00:05:02.478 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:32:42.507 00:05:02.483 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 06:36:40.151 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49274 10 6452 1 2025-10-15 06:37:21.052 00:00:10.367 TCP 23.104.0.1:51856 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:37:49.849 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:37:40.367 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51122 10 6452 1 2025-10-15 06:37:49.663 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:38:21.451 00:00:10.362 TCP 23.104.0.1:59116 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:38:40.596 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:56610 10 6452 1 2025-10-15 06:39:21.851 00:00:10.381 TCP 23.104.0.1:59976 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:39:40.807 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:44038 10 6452 1 2025-10-15 06:40:22.269 00:00:10.325 TCP 23.104.0.1:57524 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:40:40.994 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:51398 10 6452 1 2025-10-15 06:41:22.638 00:00:10.369 TCP 23.104.0.1:40594 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:41:41.222 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55538 10 6452 1 2025-10-15 06:42:23.046 00:00:10.368 TCP 23.104.0.1:59278 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:38:42.508 00:05:02.484 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 06:38:42.510 00:05:02.480 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:42:41.434 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:50682 10 6452 1 2025-10-15 06:42:49.835 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:42:49.702 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:43:23.453 00:00:10.360 TCP 23.104.0.1:35306 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:43:41.664 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60476 10 6452 1 2025-10-15 06:44:23.852 00:00:10.573 TCP 23.104.0.1:49524 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:44:41.879 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44382 10 6452 1 2025-10-15 06:45:24.463 00:00:10.370 TCP 23.104.0.1:42110 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:45:42.106 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34500 10 6452 1 2025-10-15 06:46:24.871 00:00:10.322 TCP 23.104.0.1:43428 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:46:42.323 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38660 10 6452 1 2025-10-15 06:47:25.230 00:00:10.954 TCP 23.104.0.1:54728 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:47:50.418 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:47:50.323 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:47:42.540 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51338 10 6452 1 2025-10-15 06:48:26.225 00:00:10.363 TCP 23.104.0.1:33138 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:44:42.515 00:05:02.478 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:44:42.512 00:05:02.483 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 06:48:42.755 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52262 10 6452 1 2025-10-15 06:49:26.628 00:00:10.365 TCP 23.104.0.1:50744 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:49:42.970 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:42066 10 6452 1 2025-10-15 06:50:27.035 00:00:10.360 TCP 23.104.0.1:54622 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:50:43.164 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34536 10 6452 1 2025-10-15 06:51:27.434 00:00:10.362 TCP 23.104.0.1:48918 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:51:43.382 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:60908 10 6452 1 2025-10-15 06:52:27.837 00:00:10.395 TCP 23.104.0.1:32904 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:52:50.222 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:52:50.197 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:52:43.557 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60270 10 6452 1 2025-10-15 06:53:28.273 00:00:10.364 TCP 23.104.0.1:57030 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:53:43.769 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39722 10 6452 1 2025-10-15 06:54:28.680 00:00:10.379 TCP 23.104.0.1:37696 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:50:42.515 00:05:02.484 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 06:50:42.517 00:05:02.479 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 06:54:43.982 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:35858 10 6452 1 2025-10-15 06:55:29.102 00:00:10.322 TCP 23.104.0.1:41584 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:55:44.212 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56362 10 6452 1 2025-10-15 06:56:29.475 00:00:10.363 TCP 23.104.0.1:40204 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:56:44.425 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49890 10 6452 1 2025-10-15 06:57:29.880 00:00:10.388 TCP 23.104.0.1:35396 -> 1.101.0.1:3000 11 1507 1 2025-10-15 06:57:50.245 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 06:57:50.324 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 06:57:44.641 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36706 10 6452 1 2025-10-15 06:58:30.312 00:00:10.365 TCP 23.104.0.1:33238 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 492104, total packets: 1566, avg bps: 1058, avg pps: 0, avg bpp: 314 Time window: 2025-10-15 05:56:42 - 2025-10-15 06:58:40 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0030s User: 0.0020s Wall: 0.0022s flows/second: 75427.1 Runtime: 0.0022s