Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 14:58:46.518 00:00:10.326 TCP 23.104.0.1:34114 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:59:41.633 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35876 10 6452 1 2025-10-15 14:59:46.883 00:00:10.342 TCP 23.104.0.1:54808 -> 1.101.0.1:3000 11 1507 1 2025-10-15 14:56:42.661 00:05:02.534 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 14:56:42.656 00:05:02.540 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:00:41.852 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:58998 10 6452 1 2025-10-15 15:00:47.267 00:00:10.363 TCP 23.104.0.1:57858 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:01:42.030 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44148 10 6452 1 2025-10-15 15:01:47.668 00:00:10.362 TCP 23.104.0.1:56136 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:02:42.243 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54660 10 6452 1 2025-10-15 15:02:59.938 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:02:48.091 00:00:10.366 TCP 23.104.0.1:57924 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:02:59.993 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:03:42.456 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48886 10 6452 1 2025-10-15 15:03:48.488 00:00:10.330 TCP 23.104.0.1:38530 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:04:42.674 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58198 10 6452 1 2025-10-15 15:04:48.852 00:00:10.380 TCP 23.104.0.1:40898 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:05:42.886 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:54120 10 6452 1 2025-10-15 15:05:49.271 00:00:10.368 TCP 23.104.0.1:46114 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:02:42.658 00:05:02.539 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:02:42.660 00:05:02.534 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:06:43.116 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41220 10 6452 1 2025-10-15 15:06:49.685 00:00:10.333 TCP 23.104.0.1:54540 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:07:43.330 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41882 10 6452 1 2025-10-15 15:08:00.383 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:07:50.065 00:00:10.324 TCP 23.104.0.1:43318 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:08:00.432 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:08:43.545 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56010 10 6452 1 2025-10-15 15:08:50.425 00:00:10.366 TCP 23.104.0.1:54408 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:09:43.761 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:34790 10 6452 1 2025-10-15 15:09:50.830 00:00:10.388 TCP 23.104.0.1:54648 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:10:43.975 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:37396 10 6452 1 2025-10-15 15:10:51.259 00:00:10.325 TCP 23.104.0.1:56820 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:11:44.216 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45906 10 6452 1 2025-10-15 15:11:51.625 00:00:10.373 TCP 23.104.0.1:37816 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:08:42.664 00:05:02.533 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:08:42.660 00:05:02.538 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:12:44.392 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:34926 10 6452 1 2025-10-15 15:13:00.142 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:13:00.095 00:00:00.047 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:12:52.030 00:00:10.370 TCP 23.104.0.1:48216 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:13:44.571 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37894 10 6452 1 2025-10-15 15:13:52.439 00:00:10.381 TCP 23.104.0.1:53246 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:14:44.781 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36556 10 6452 1 2025-10-15 15:14:52.856 00:00:10.382 TCP 23.104.0.1:36128 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:15:45.001 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58194 10 6452 1 2025-10-15 15:15:53.279 00:00:10.363 TCP 23.104.0.1:45172 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:16:45.216 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60900 10 6452 1 2025-10-15 15:16:53.680 00:00:10.370 TCP 23.104.0.1:37456 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:17:45.437 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:36226 10 6452 1 2025-10-15 15:18:00.129 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:18:00.418 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:17:54.105 00:00:10.332 TCP 23.104.0.1:49824 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:14:42.662 00:05:02.535 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:14:42.660 00:05:02.540 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:18:45.604 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48644 10 6452 1 2025-10-15 15:18:54.477 00:00:10.324 TCP 23.104.0.1:59380 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:19:45.816 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54526 10 6452 1 2025-10-15 15:19:54.835 00:00:10.384 TCP 23.104.0.1:39164 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:20:46.054 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:43928 10 6452 1 2025-10-15 15:20:55.257 00:00:10.373 TCP 23.104.0.1:54808 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:21:46.264 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45266 10 6452 1 2025-10-15 15:21:55.670 00:00:10.326 TCP 23.104.0.1:51716 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:22:46.475 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:59456 10 6452 1 2025-10-15 15:23:00.546 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:23:00.492 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:22:56.032 00:00:10.363 TCP 23.104.0.1:34078 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:23:46.684 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:32848 10 6452 1 2025-10-15 15:23:56.432 00:00:10.625 TCP 23.104.0.1:33904 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:20:42.663 00:05:02.538 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:20:42.666 00:05:02.533 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:24:46.900 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:35902 10 6452 1 2025-10-15 15:24:57.107 00:00:10.323 TCP 23.104.0.1:59736 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:25:47.084 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53242 10 6452 1 2025-10-15 15:25:57.469 00:00:10.370 TCP 23.104.0.1:32804 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:26:47.297 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:41854 10 6452 1 2025-10-15 15:26:57.878 00:00:10.386 TCP 23.104.0.1:47954 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:28:00.505 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:27:47.470 00:00:10.518 TCP 1.101.0.1:3000 -> 22.102.0.1:33692 10 6452 1 2025-10-15 15:28:00.506 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:27:58.304 00:00:11.067 TCP 23.104.0.1:49582 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:28:48.043 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51298 10 6452 1 2025-10-15 15:28:59.411 00:00:10.324 TCP 23.104.0.1:44410 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:29:48.253 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44268 10 6452 1 2025-10-15 15:29:59.773 00:00:10.325 TCP 23.104.0.1:46550 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:26:42.667 00:05:02.534 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:26:42.666 00:05:02.539 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:30:48.464 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33746 10 6452 1 2025-10-15 15:31:00.133 00:00:10.327 TCP 23.104.0.1:40250 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:31:48.682 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33496 10 6452 1 2025-10-15 15:32:00.498 00:00:10.364 TCP 23.104.0.1:46674 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:33:00.684 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:33:00.681 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:32:48.894 00:00:10.359 TCP 1.101.0.1:3000 -> 22.102.0.1:35998 10 6452 1 2025-10-15 15:33:00.905 00:00:10.371 TCP 23.104.0.1:35364 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:33:49.303 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38180 10 6452 1 2025-10-15 15:34:01.313 00:00:10.324 TCP 23.104.0.1:57826 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:34:49.520 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52332 10 6452 1 2025-10-15 15:35:01.677 00:00:10.360 TCP 23.104.0.1:49042 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:35:49.732 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45542 10 6452 1 2025-10-15 15:36:02.101 00:00:10.371 TCP 23.104.0.1:41388 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:32:42.668 00:05:02.540 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:32:42.671 00:05:02.534 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:36:49.945 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:36604 10 6452 1 2025-10-15 15:37:02.502 00:00:10.367 TCP 23.104.0.1:32890 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:38:00.763 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:37:50.173 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57394 10 6452 1 2025-10-15 15:38:00.621 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:38:02.907 00:00:10.365 TCP 23.104.0.1:58432 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:38:50.391 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43746 10 6452 1 2025-10-15 15:39:03.304 00:00:10.373 TCP 23.104.0.1:39560 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:39:50.601 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42740 10 6452 1 2025-10-15 15:40:03.720 00:00:10.386 TCP 23.104.0.1:55444 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:40:50.814 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36152 10 6452 1 2025-10-15 15:41:04.139 00:00:10.368 TCP 23.104.0.1:58544 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:41:51.034 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43208 10 6452 1 2025-10-15 15:42:04.543 00:00:10.367 TCP 23.104.0.1:35538 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:38:42.668 00:05:02.540 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:38:42.671 00:05:02.535 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:43:00.871 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:42:51.249 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:60548 10 6452 1 2025-10-15 15:43:00.943 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:43:04.941 00:00:10.378 TCP 23.104.0.1:39244 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:43:51.418 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34286 10 6452 1 2025-10-15 15:44:05.359 00:00:10.383 TCP 23.104.0.1:45944 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:44:51.625 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37878 10 6452 1 2025-10-15 15:45:05.786 00:00:10.369 TCP 23.104.0.1:45982 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:45:51.837 00:00:20.555 TCP 1.101.0.1:3000 -> 22.102.0.1:41752 10 6452 1 2025-10-15 15:46:06.206 00:00:10.389 TCP 23.104.0.1:44844 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:47:02.432 00:00:10.550 TCP 1.101.0.1:3000 -> 22.102.0.1:50256 10 6452 1 2025-10-15 15:47:06.631 00:00:11.059 TCP 23.104.0.1:44410 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:48:00.846 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:48:00.903 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:48:03.027 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55460 10 6452 1 2025-10-15 15:48:07.739 00:00:10.370 TCP 23.104.0.1:38262 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:44:42.684 00:05:02.524 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:44:42.681 00:05:02.530 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:49:03.243 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:54944 10 6452 1 2025-10-15 15:49:08.145 00:00:10.359 TCP 23.104.0.1:42036 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:50:03.453 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51610 10 6452 1 2025-10-15 15:50:08.544 00:00:10.371 TCP 23.104.0.1:37226 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:51:03.671 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:60166 10 6452 1 2025-10-15 15:51:08.955 00:00:10.364 TCP 23.104.0.1:37276 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:52:03.894 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49004 10 6452 1 2025-10-15 15:52:09.357 00:00:10.335 TCP 23.104.0.1:44942 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:53:00.968 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:53:00.857 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:53:04.114 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37944 10 6452 1 2025-10-15 15:53:09.734 00:00:10.364 TCP 23.104.0.1:33724 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:54:04.328 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:32802 10 6452 1 2025-10-15 15:54:10.133 00:00:10.369 TCP 23.104.0.1:55588 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:50:42.683 00:05:02.525 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-15 15:50:42.682 00:05:02.529 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-15 15:55:04.499 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45522 10 6452 1 2025-10-15 15:55:10.537 00:00:10.363 TCP 23.104.0.1:41854 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:56:04.714 00:00:13.023 TCP 1.101.0.1:3000 -> 22.102.0.1:60880 10 6452 1 2025-10-15 15:56:10.937 00:00:10.339 TCP 23.104.0.1:43820 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:57:11.316 00:00:10.370 TCP 23.104.0.1:36316 -> 1.101.0.1:3000 11 1507 1 2025-10-15 15:57:07.795 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38742 10 6452 1 2025-10-15 15:58:00.881 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-15 15:58:00.935 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-15 15:58:08.028 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46106 10 6452 1 2025-10-15 15:58:11.724 00:00:10.378 TCP 23.104.0.1:53836 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 491896, total packets: 1562, avg bps: 1063, avg pps: 0, avg bpp: 314 Time window: 2025-10-15 14:56:42 - 2025-10-15 15:58:22 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0029s User: 0.0020s Wall: 0.0022s flows/second: 73363.2 Runtime: 0.0022s