Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 10:59:07.535 00:00:10.386 TCP 23.104.0.1:46752 -> 1.101.0.1:3000 11 1507 1 2025-10-15 10:59:37.171 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:39920 10 6452 1 2025-10-15 11:00:07.961 00:00:10.366 TCP 23.104.0.1:43686 -> 1.101.0.1:3000 11 1507 1 2025-10-15 10:56:42.580 00:05:02.534 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 10:56:42.584 00:05:02.528 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:00:37.407 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54284 10 6452 1 2025-10-15 11:01:08.364 00:00:10.366 TCP 23.104.0.1:45552 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:01:37.621 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51040 10 6452 1 2025-10-15 11:02:08.767 00:00:10.333 TCP 23.104.0.1:48908 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:02:37.835 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54426 10 6452 1 2025-10-15 11:02:55.185 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:02:55.134 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:03:09.136 00:00:10.367 TCP 23.104.0.1:36088 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:03:38.074 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51458 10 6452 1 2025-10-15 11:04:09.540 00:00:10.367 TCP 23.104.0.1:57212 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:04:38.285 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35116 10 6452 1 2025-10-15 11:05:09.951 00:00:10.368 TCP 23.104.0.1:35694 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:05:38.499 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56150 10 6452 1 2025-10-15 11:06:10.354 00:00:10.369 TCP 23.104.0.1:54550 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:02:42.582 00:05:02.534 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 11:02:42.585 00:05:02.529 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:06:38.714 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46748 10 6452 1 2025-10-15 11:07:10.768 00:00:10.367 TCP 23.104.0.1:52770 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:07:38.889 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:48186 10 6452 1 2025-10-15 11:07:55.493 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:07:55.508 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:08:11.173 00:00:10.722 TCP 23.104.0.1:55738 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:08:39.113 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38128 10 6452 1 2025-10-15 11:09:11.934 00:00:10.377 TCP 23.104.0.1:42742 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:09:39.327 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:49684 10 6452 1 2025-10-15 11:10:12.350 00:00:10.369 TCP 23.104.0.1:49214 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:10:39.506 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53234 10 6452 1 2025-10-15 11:11:12.766 00:00:10.413 TCP 23.104.0.1:54650 -> 1.101.0.1:3000 15 1926 1 2025-10-15 11:11:39.732 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:42600 12 10375 1 2025-10-15 11:12:13.220 00:00:10.364 TCP 23.104.0.1:46232 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:08:42.587 00:05:02.529 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:08:42.586 00:05:02.534 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 11:12:39.927 00:00:10.162 TCP 1.101.0.1:3000 -> 22.102.0.1:58710 10 6452 1 2025-10-15 11:12:55.386 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:12:55.450 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:13:13.625 00:00:10.368 TCP 23.104.0.1:55462 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:13:40.129 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50322 10 6452 1 2025-10-15 11:14:14.032 00:00:10.358 TCP 23.104.0.1:44718 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:14:40.352 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55114 10 6452 1 2025-10-15 11:15:14.427 00:00:10.570 TCP 23.104.0.1:60384 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:15:40.565 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40082 10 6452 1 2025-10-15 11:16:15.033 00:00:10.360 TCP 23.104.0.1:60022 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:16:40.777 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38668 10 6452 1 2025-10-15 11:17:15.433 00:00:10.363 TCP 23.104.0.1:39188 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:17:40.990 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56406 10 6452 1 2025-10-15 11:17:55.372 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:17:55.557 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:18:15.834 00:00:10.388 TCP 23.104.0.1:47216 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:14:42.587 00:05:02.536 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 11:14:42.590 00:05:02.530 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:18:41.213 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:43856 10 6452 1 2025-10-15 11:19:16.262 00:00:10.366 TCP 23.104.0.1:57286 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:19:41.387 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48180 10 6452 1 2025-10-15 11:20:16.663 00:00:10.364 TCP 23.104.0.1:45612 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:20:41.604 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39740 10 6452 1 2025-10-15 11:21:17.096 00:00:10.369 TCP 23.104.0.1:52616 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:21:41.827 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:43440 10 6452 1 2025-10-15 11:22:17.500 00:00:10.363 TCP 23.104.0.1:51786 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:22:55.721 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:22:55.480 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:22:42.002 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54338 10 6452 1 2025-10-15 11:23:17.901 00:00:10.328 TCP 23.104.0.1:36046 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:23:42.221 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55824 10 6452 1 2025-10-15 11:24:18.269 00:00:10.363 TCP 23.104.0.1:58758 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:20:42.592 00:05:02.530 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:20:42.589 00:05:02.534 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 11:24:42.439 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:50280 10 6452 1 2025-10-15 11:25:18.672 00:00:10.370 TCP 23.104.0.1:44700 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:25:42.601 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59858 10 6452 1 2025-10-15 11:26:19.104 00:00:10.364 TCP 23.104.0.1:46810 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:26:42.817 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:34104 10 6452 1 2025-10-15 11:27:19.509 00:00:10.363 TCP 23.104.0.1:37424 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:27:55.686 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:27:43.015 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55574 10 6452 1 2025-10-15 11:27:55.419 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:28:19.911 00:00:10.375 TCP 23.104.0.1:59722 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:28:43.230 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:51850 10 6452 1 2025-10-15 11:29:20.325 00:00:10.367 TCP 23.104.0.1:42908 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:29:43.437 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51332 10 6452 1 2025-10-15 11:30:20.740 00:00:10.370 TCP 23.104.0.1:47838 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:26:42.596 00:05:02.527 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:26:42.593 00:05:02.533 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 11:30:43.650 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47140 10 6452 1 2025-10-15 11:31:21.145 00:00:10.366 TCP 23.104.0.1:50584 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:31:43.859 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:50540 10 6452 1 2025-10-15 11:32:21.554 00:00:10.323 TCP 23.104.0.1:45096 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:32:56.651 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:32:44.036 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37956 10 6452 1 2025-10-15 11:32:56.521 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:33:21.916 00:00:10.332 TCP 23.104.0.1:46798 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:33:44.208 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:55778 10 6452 1 2025-10-15 11:34:22.287 00:00:10.318 TCP 23.104.0.1:47234 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:34:44.390 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54506 10 6452 1 2025-10-15 11:35:22.648 00:00:10.366 TCP 23.104.0.1:34976 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:35:44.600 00:00:10.497 TCP 1.101.0.1:3000 -> 22.102.0.1:37610 10 6452 1 2025-10-15 11:36:23.062 00:00:10.365 TCP 23.104.0.1:33636 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:32:42.598 00:05:02.526 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:32:42.595 00:05:02.532 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 11:36:45.138 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56814 10 6452 1 2025-10-15 11:37:23.463 00:00:10.365 TCP 23.104.0.1:52232 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:37:55.863 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:37:45.354 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48648 10 6452 1 2025-10-15 11:37:55.803 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:38:23.866 00:00:10.366 TCP 23.104.0.1:59168 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:38:45.562 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:35778 10 6452 1 2025-10-15 11:39:24.270 00:00:10.326 TCP 23.104.0.1:43394 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:39:45.771 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37196 10 6452 1 2025-10-15 11:40:24.634 00:00:10.373 TCP 23.104.0.1:36212 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:40:45.984 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:45060 10 6452 1 2025-10-15 11:41:25.054 00:00:10.628 TCP 23.104.0.1:49198 -> 1.101.0.1:3000 15 1926 1 2025-10-15 11:41:46.218 00:00:10.463 TCP 1.101.0.1:3000 -> 22.102.0.1:46330 12 10375 1 2025-10-15 11:42:25.718 00:00:10.366 TCP 23.104.0.1:47156 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:38:42.599 00:05:02.527 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:38:42.596 00:05:02.532 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 11:42:56.024 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:42:46.718 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:60620 10 6452 1 2025-10-15 11:42:55.665 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:43:26.127 00:00:10.372 TCP 23.104.0.1:39734 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:43:46.893 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:58344 10 6452 1 2025-10-15 11:44:26.539 00:00:10.320 TCP 23.104.0.1:53536 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:44:47.080 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36972 10 6452 1 2025-10-15 11:45:26.902 00:00:10.366 TCP 23.104.0.1:54030 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:45:47.298 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58816 10 6452 1 2025-10-15 11:46:27.304 00:00:10.326 TCP 23.104.0.1:60420 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:46:47.513 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:57082 10 6452 1 2025-10-15 11:47:27.668 00:00:10.373 TCP 23.104.0.1:34448 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:47:56.219 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:47:56.018 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:47:47.690 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36922 10 6452 1 2025-10-15 11:48:28.105 00:00:10.363 TCP 23.104.0.1:53954 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:44:42.597 00:05:02.534 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 11:44:42.600 00:05:02.529 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:48:47.899 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:34640 10 6452 1 2025-10-15 11:49:28.511 00:00:10.365 TCP 23.104.0.1:33488 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:49:48.082 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:58216 10 6452 1 2025-10-15 11:50:28.909 00:00:10.363 TCP 23.104.0.1:46940 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:50:48.256 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58112 10 6452 1 2025-10-15 11:51:29.316 00:00:10.366 TCP 23.104.0.1:44160 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:51:48.470 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41958 10 6452 1 2025-10-15 11:52:29.720 00:00:10.323 TCP 23.104.0.1:34666 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:52:56.164 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:52:56.108 00:00:00.041 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:52:48.675 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60342 10 6452 1 2025-10-15 11:53:30.105 00:00:10.365 TCP 23.104.0.1:38904 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:53:48.889 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56674 10 6452 1 2025-10-15 11:54:30.512 00:00:10.363 TCP 23.104.0.1:39724 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:50:42.598 00:05:02.536 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 11:50:42.600 00:05:02.531 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 11:54:49.109 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38178 10 6452 1 2025-10-15 11:55:30.915 00:00:10.393 TCP 23.104.0.1:45242 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:55:49.325 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43676 10 6452 1 2025-10-15 11:56:31.342 00:00:10.375 TCP 23.104.0.1:36848 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:56:49.537 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:43192 10 6452 1 2025-10-15 11:57:31.754 00:00:10.383 TCP 23.104.0.1:40548 -> 1.101.0.1:3000 11 1507 1 2025-10-15 11:57:56.286 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 11:57:56.238 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 11:57:49.706 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46102 10 6452 1 2025-10-15 11:58:32.174 00:00:10.364 TCP 23.104.0.1:55590 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 500580, total packets: 1574, avg bps: 1076, avg pps: 0, avg bpp: 318 Time window: 2025-10-15 10:56:42 - 2025-10-15 11:58:42 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0037s User: 0.0015s Wall: 0.0022s flows/second: 73096.5 Runtime: 0.0023s