Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 13:59:21.711 00:00:10.378 TCP 23.104.0.1:55806 -> 1.101.0.1:3000 11 1507 1 2025-10-15 13:59:27.736 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:50186 10 6452 1 2025-10-15 14:00:22.124 00:00:10.369 TCP 23.104.0.1:55228 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:00:27.905 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55214 10 6452 1 2025-10-15 13:56:42.634 00:05:02.539 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 13:56:42.633 00:05:02.544 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:01:22.528 00:00:10.425 TCP 23.104.0.1:45224 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:01:28.118 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58104 10 6452 1 2025-10-15 14:02:22.996 00:00:10.367 TCP 23.104.0.1:40152 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:02:28.335 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44164 10 6452 1 2025-10-15 14:02:58.828 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:02:58.857 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:03:23.397 00:00:10.361 TCP 23.104.0.1:59856 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:03:28.546 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41598 10 6452 1 2025-10-15 14:04:23.793 00:00:10.340 TCP 23.104.0.1:42746 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:04:28.763 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33192 10 6452 1 2025-10-15 14:05:24.169 00:00:10.362 TCP 23.104.0.1:41906 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:05:28.981 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:55082 10 6452 1 2025-10-15 14:06:24.572 00:00:10.371 TCP 23.104.0.1:51316 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:06:29.215 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:46564 10 6452 1 2025-10-15 14:02:42.635 00:05:02.541 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:02:42.633 00:05:02.546 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:07:24.982 00:00:10.367 TCP 23.104.0.1:60164 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:07:29.389 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:38128 10 6452 1 2025-10-15 14:07:58.757 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:07:59.317 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:08:25.384 00:00:10.324 TCP 23.104.0.1:49528 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:08:29.560 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56424 10 6452 1 2025-10-15 14:09:25.746 00:00:10.362 TCP 23.104.0.1:43014 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:09:29.790 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:33288 10 6452 1 2025-10-15 14:10:26.145 00:00:10.363 TCP 23.104.0.1:33288 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:10:29.964 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:47472 10 6452 1 2025-10-15 14:11:26.548 00:00:10.366 TCP 23.104.0.1:59464 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:11:30.199 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:38786 10 6452 1 2025-10-15 14:12:30.372 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:37120 10 6452 1 2025-10-15 14:12:26.952 00:00:10.370 TCP 23.104.0.1:59552 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:08:42.638 00:05:02.543 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:08:42.634 00:05:02.549 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:12:58.968 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:12:58.945 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:13:30.543 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51474 10 6452 1 2025-10-15 14:13:27.359 00:00:10.367 TCP 23.104.0.1:47940 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:14:27.774 00:00:10.373 TCP 23.104.0.1:50654 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:14:30.757 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:50092 10 6452 1 2025-10-15 14:15:28.184 00:00:10.369 TCP 23.104.0.1:36714 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:15:30.925 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:55198 10 6452 1 2025-10-15 14:16:31.126 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51374 10 6452 1 2025-10-15 14:16:28.591 00:00:10.368 TCP 23.104.0.1:33940 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:17:28.997 00:00:10.366 TCP 23.104.0.1:37348 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:17:31.344 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:53010 10 6452 1 2025-10-15 14:17:59.012 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:17:58.937 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:18:31.523 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36812 10 6452 1 2025-10-15 14:18:29.399 00:00:10.360 TCP 23.104.0.1:39224 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:14:42.638 00:05:02.543 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:14:42.636 00:05:02.549 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:19:29.792 00:00:10.391 TCP 23.104.0.1:53304 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:19:31.741 00:00:10.669 TCP 1.101.0.1:3000 -> 22.102.0.1:50618 10 6452 1 2025-10-15 14:20:30.223 00:00:10.361 TCP 23.104.0.1:59934 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:20:32.448 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42148 10 6452 1 2025-10-15 14:21:30.620 00:00:10.366 TCP 23.104.0.1:56112 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:21:32.661 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44892 10 6452 1 2025-10-15 14:22:31.028 00:00:10.744 TCP 23.104.0.1:34916 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:22:32.874 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57072 10 6452 1 2025-10-15 14:22:59.147 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:22:59.252 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:23:33.095 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47584 10 6452 1 2025-10-15 14:23:31.811 00:00:10.362 TCP 23.104.0.1:34558 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:24:32.217 00:00:10.387 TCP 23.104.0.1:47826 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:20:42.652 00:05:02.532 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:24:33.312 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:52486 10 6452 1 2025-10-15 14:20:42.649 00:05:02.537 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:25:33.488 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:50438 10 6452 1 2025-10-15 14:25:32.641 00:00:10.366 TCP 23.104.0.1:45232 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:26:33.069 00:00:10.368 TCP 23.104.0.1:35234 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:26:33.722 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49994 10 6452 1 2025-10-15 14:27:33.931 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:37228 10 6452 1 2025-10-15 14:27:33.469 00:00:10.364 TCP 23.104.0.1:46276 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:27:59.201 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:27:59.257 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:28:33.870 00:00:10.327 TCP 23.104.0.1:39044 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:28:34.153 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38770 10 6452 1 2025-10-15 14:29:34.233 00:00:11.099 TCP 23.104.0.1:50010 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:29:34.362 00:00:10.930 TCP 1.101.0.1:3000 -> 22.102.0.1:57456 10 6452 1 2025-10-15 14:26:42.654 00:05:02.531 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:30:35.374 00:00:10.360 TCP 23.104.0.1:40604 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:30:35.331 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54416 10 6452 1 2025-10-15 14:26:42.651 00:05:02.536 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:31:35.772 00:00:10.365 TCP 23.104.0.1:42066 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:31:35.547 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55656 10 6452 1 2025-10-15 14:32:36.174 00:00:10.365 TCP 23.104.0.1:44992 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:32:35.767 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:36582 10 6452 1 2025-10-15 14:32:59.549 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:32:59.588 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:33:36.587 00:00:10.367 TCP 23.104.0.1:34492 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:33:35.975 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:59380 10 6452 1 2025-10-15 14:34:36.208 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43294 10 6452 1 2025-10-15 14:34:37.009 00:00:10.363 TCP 23.104.0.1:59622 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:35:36.378 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51248 10 6452 1 2025-10-15 14:35:37.411 00:00:10.328 TCP 23.104.0.1:36992 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:36:36.603 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60496 10 6452 1 2025-10-15 14:32:42.652 00:05:02.536 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:32:42.656 00:05:02.531 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:36:37.779 00:00:10.401 TCP 23.104.0.1:34420 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:37:38.225 00:00:10.365 TCP 23.104.0.1:33392 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:37:36.827 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36274 10 6452 1 2025-10-15 14:37:59.175 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:37:59.456 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:38:38.625 00:00:10.363 TCP 23.104.0.1:56934 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:38:37.059 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51696 10 6452 1 2025-10-15 14:39:39.030 00:00:10.322 TCP 23.104.0.1:45464 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:39:37.278 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:34278 10 6452 1 2025-10-15 14:40:39.394 00:00:10.366 TCP 23.104.0.1:48472 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:40:37.513 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55782 10 6452 1 2025-10-15 14:41:39.801 00:00:10.369 TCP 23.104.0.1:46410 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:41:37.728 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60368 10 6452 1 2025-10-15 14:38:42.657 00:05:02.532 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:38:42.655 00:05:02.537 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:42:37.945 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:33186 10 6452 1 2025-10-15 14:42:40.222 00:00:10.365 TCP 23.104.0.1:35126 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:42:59.528 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:42:59.625 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:43:40.624 00:00:10.325 TCP 23.104.0.1:43072 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:43:38.180 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57312 10 6452 1 2025-10-15 14:44:38.418 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45334 10 6452 1 2025-10-15 14:44:40.986 00:00:10.367 TCP 23.104.0.1:36382 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:45:38.628 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54254 10 6452 1 2025-10-15 14:45:41.392 00:00:10.362 TCP 23.104.0.1:46732 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:46:38.841 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39978 10 6452 1 2025-10-15 14:46:41.796 00:00:10.375 TCP 23.104.0.1:37328 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:47:39.078 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56310 10 6452 1 2025-10-15 14:47:42.215 00:00:10.367 TCP 23.104.0.1:38876 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:47:59.849 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:47:59.803 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:44:42.655 00:05:02.537 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:44:42.658 00:05:02.532 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:48:39.287 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:56610 10 6452 1 2025-10-15 14:48:42.618 00:00:10.363 TCP 23.104.0.1:47184 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:49:39.460 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50798 10 6452 1 2025-10-15 14:49:43.021 00:00:10.323 TCP 23.104.0.1:53374 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:50:39.669 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37778 10 6452 1 2025-10-15 14:50:43.385 00:00:10.327 TCP 23.104.0.1:38314 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:51:39.885 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:34674 10 6452 1 2025-10-15 14:51:43.749 00:00:10.363 TCP 23.104.0.1:46520 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:52:40.109 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:33400 10 6452 1 2025-10-15 14:52:44.147 00:00:10.365 TCP 23.104.0.1:49238 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:52:59.846 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:52:59.857 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:53:40.345 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55892 10 6452 1 2025-10-15 14:53:44.551 00:00:10.326 TCP 23.104.0.1:55702 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:50:42.658 00:05:02.535 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:50:42.655 00:05:02.540 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 14:54:40.557 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35472 10 6452 1 2025-10-15 14:54:44.912 00:00:10.319 TCP 23.104.0.1:48934 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:55:40.773 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32788 10 6452 1 2025-10-15 14:55:45.266 00:00:10.374 TCP 23.104.0.1:59904 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:56:40.991 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54606 10 6452 1 2025-10-15 14:56:45.679 00:00:10.371 TCP 23.104.0.1:40486 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:57:41.208 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45546 10 6452 1 2025-10-15 14:57:46.103 00:00:10.376 TCP 23.104.0.1:58770 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:57:59.815 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 14:57:59.849 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 14:58:41.416 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53156 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1065, avg pps: 0, avg bpp: 318 Time window: 2025-10-15 13:56:42 - 2025-10-15 14:58:51 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0036s User: 0.0018s Wall: 0.0024s flows/second: 67026.6 Runtime: 0.0025s