Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 07:58:43.441 00:00:10.369 TCP 23.104.0.1:35778 -> 1.101.0.1:3000 11 1507 1 2025-10-17 07:59:34.902 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40682 10 6452 1 2025-10-17 07:59:43.848 00:00:10.387 TCP 23.104.0.1:52938 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:00:35.117 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:58466 10 6452 1 2025-10-17 07:56:43.514 00:05:02.612 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 07:56:43.517 00:05:02.606 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:00:44.275 00:00:10.364 TCP 23.104.0.1:55672 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:01:35.291 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57272 10 6452 1 2025-10-17 08:01:44.684 00:00:10.364 TCP 23.104.0.1:46182 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:02:35.509 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56898 10 6452 1 2025-10-17 08:02:45.100 00:00:10.365 TCP 23.104.0.1:54014 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:03:35.727 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:36388 10 6452 1 2025-10-17 08:03:49.443 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:03:49.410 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:03:45.509 00:00:10.359 TCP 23.104.0.1:32904 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:04:35.895 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41040 10 6452 1 2025-10-17 08:04:45.908 00:00:10.366 TCP 23.104.0.1:59960 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:05:36.115 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:40740 10 6452 1 2025-10-17 08:05:46.312 00:00:10.364 TCP 23.104.0.1:56152 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:02:43.515 00:05:02.612 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 08:06:36.290 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39376 10 6452 1 2025-10-17 08:02:43.519 00:05:02.606 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:06:46.716 00:00:10.371 TCP 23.104.0.1:42812 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:07:36.503 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55434 10 6452 1 2025-10-17 08:07:47.129 00:00:10.372 TCP 23.104.0.1:34004 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:08:36.713 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36144 10 6452 1 2025-10-17 08:08:49.578 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:08:49.713 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:08:47.542 00:00:10.330 TCP 23.104.0.1:60156 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:09:36.925 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:52192 10 6452 1 2025-10-17 08:09:47.915 00:00:10.390 TCP 23.104.0.1:33530 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:10:37.111 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:45612 10 6452 1 2025-10-17 08:10:48.338 00:00:10.365 TCP 23.104.0.1:54870 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:11:37.283 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55274 10 6452 1 2025-10-17 08:11:48.739 00:00:10.365 TCP 23.104.0.1:54428 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:08:43.516 00:05:02.615 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 08:08:43.519 00:05:02.610 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:12:37.494 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:43470 10 6452 1 2025-10-17 08:12:49.138 00:00:10.330 TCP 23.104.0.1:52948 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:13:37.669 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57542 10 6452 1 2025-10-17 08:13:49.866 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:13:49.704 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:13:49.507 00:00:10.365 TCP 23.104.0.1:50042 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:14:37.879 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:39432 10 6452 1 2025-10-17 08:14:49.910 00:00:10.368 TCP 23.104.0.1:37142 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:15:38.078 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:44398 10 6452 1 2025-10-17 08:15:50.329 00:00:10.361 TCP 23.104.0.1:50126 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:16:38.252 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47946 10 6452 1 2025-10-17 08:16:50.733 00:00:10.369 TCP 23.104.0.1:56700 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:17:38.470 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33274 10 6452 1 2025-10-17 08:17:51.140 00:00:11.550 TCP 23.104.0.1:57140 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:14:43.520 00:05:02.612 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:18:49.478 00:00:00.031 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:18:49.649 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:18:38.683 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39064 10 6452 1 2025-10-17 08:14:43.518 00:05:02.617 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 08:18:52.727 00:00:10.375 TCP 23.104.0.1:57306 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:19:38.894 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:52678 10 6452 1 2025-10-17 08:19:53.140 00:00:10.396 TCP 23.104.0.1:38216 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:20:39.118 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49988 10 6452 1 2025-10-17 08:20:53.574 00:00:10.830 TCP 23.104.0.1:51974 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:21:39.331 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53476 10 6452 1 2025-10-17 08:21:54.441 00:00:10.359 TCP 23.104.0.1:45878 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:22:39.547 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34916 10 6452 1 2025-10-17 08:22:54.840 00:00:10.387 TCP 23.104.0.1:54478 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:23:50.050 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:23:49.993 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:23:39.760 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:44918 10 6452 1 2025-10-17 08:23:55.264 00:00:10.368 TCP 23.104.0.1:33658 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:20:43.521 00:05:02.613 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:20:43.519 00:05:02.619 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 08:24:39.967 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47464 10 6452 1 2025-10-17 08:24:55.674 00:00:10.372 TCP 23.104.0.1:51770 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:25:40.189 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38788 10 6452 1 2025-10-17 08:25:56.105 00:00:10.360 TCP 23.104.0.1:53384 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:26:40.402 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58674 10 6452 1 2025-10-17 08:26:56.507 00:00:10.368 TCP 23.104.0.1:59106 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:27:40.615 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59084 10 6452 1 2025-10-17 08:27:56.908 00:00:10.368 TCP 23.104.0.1:59066 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:28:49.759 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:28:40.832 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39210 10 6452 1 2025-10-17 08:28:49.839 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:28:57.315 00:00:10.365 TCP 23.104.0.1:39758 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:29:41.075 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42924 10 6452 1 2025-10-17 08:29:57.721 00:00:10.374 TCP 23.104.0.1:50750 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:26:43.523 00:05:02.613 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:30:41.304 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40482 10 6452 1 2025-10-17 08:26:43.520 00:05:02.618 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 08:30:58.142 00:00:10.366 TCP 23.104.0.1:47782 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:31:41.519 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:35106 10 6452 1 2025-10-17 08:31:58.549 00:00:10.322 TCP 23.104.0.1:58756 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:32:41.735 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:47320 10 6452 1 2025-10-17 08:32:58.910 00:00:10.325 TCP 23.104.0.1:38828 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:33:49.730 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:33:49.834 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:33:41.915 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50824 10 6452 1 2025-10-17 08:33:59.272 00:00:10.364 TCP 23.104.0.1:55842 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:34:42.132 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:58008 10 6452 1 2025-10-17 08:34:59.676 00:00:10.365 TCP 23.104.0.1:51730 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:35:42.300 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49518 10 6452 1 2025-10-17 08:36:00.106 00:00:10.366 TCP 23.104.0.1:47494 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:32:43.522 00:05:02.621 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 08:32:43.524 00:05:02.616 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:36:42.516 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51660 10 6452 1 2025-10-17 08:37:00.507 00:00:10.326 TCP 23.104.0.1:50378 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:37:42.733 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:48004 10 6452 1 2025-10-17 08:38:00.871 00:00:10.368 TCP 23.104.0.1:37074 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:38:50.233 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:38:49.871 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:38:42.933 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:55478 10 6452 1 2025-10-17 08:39:01.276 00:00:10.368 TCP 23.104.0.1:60362 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:39:43.174 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:58790 10 6452 1 2025-10-17 08:40:01.678 00:00:10.330 TCP 23.104.0.1:39058 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:40:43.386 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:37754 10 6452 1 2025-10-17 08:41:02.050 00:00:10.365 TCP 23.104.0.1:40380 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:41:43.614 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60946 10 6452 1 2025-10-17 08:42:02.453 00:00:10.367 TCP 23.104.0.1:48996 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:38:43.522 00:05:02.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 08:38:43.525 00:05:02.616 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:42:43.827 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55110 10 6452 1 2025-10-17 08:43:02.861 00:00:10.422 TCP 23.104.0.1:34488 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:43:50.135 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:43:50.089 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:43:44.040 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:34250 10 6452 1 2025-10-17 08:44:03.326 00:00:10.414 TCP 23.104.0.1:60508 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:44:44.244 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48492 10 6452 1 2025-10-17 08:45:03.778 00:00:10.366 TCP 23.104.0.1:58894 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:45:44.464 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:47938 10 6452 1 2025-10-17 08:46:04.182 00:00:10.327 TCP 23.104.0.1:48862 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:46:44.635 00:00:10.928 TCP 1.101.0.1:3000 -> 22.102.0.1:54992 10 6452 1 2025-10-17 08:47:04.548 00:00:10.362 TCP 23.104.0.1:46952 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:47:45.607 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:35508 10 6452 1 2025-10-17 08:48:04.953 00:00:10.364 TCP 23.104.0.1:36076 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:44:43.524 00:05:02.621 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 08:44:43.527 00:05:02.615 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:48:50.209 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:48:50.310 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:48:45.860 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:41088 10 6452 1 2025-10-17 08:49:05.357 00:00:10.363 TCP 23.104.0.1:48588 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:49:46.087 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38062 10 6452 1 2025-10-17 08:50:05.758 00:00:10.369 TCP 23.104.0.1:48162 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:50:46.310 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45272 10 6452 1 2025-10-17 08:51:06.167 00:00:10.363 TCP 23.104.0.1:59436 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:51:46.524 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:33342 10 6452 1 2025-10-17 08:52:06.571 00:00:10.522 TCP 23.104.0.1:42514 -> 1.101.0.1:3000 17 2241 1 2025-10-17 08:52:46.703 00:00:10.234 TCP 1.101.0.1:3000 -> 22.102.0.1:43088 16 14396 1 2025-10-17 08:53:07.136 00:00:10.368 TCP 23.104.0.1:45640 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:53:50.303 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:53:50.495 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 08:53:46.980 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:42448 10 6452 1 2025-10-17 08:54:07.540 00:00:10.367 TCP 23.104.0.1:54812 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:50:43.525 00:05:02.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 08:50:43.527 00:05:02.617 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 08:54:47.209 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41576 10 6452 1 2025-10-17 08:55:07.975 00:00:10.365 TCP 23.104.0.1:47802 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:55:47.426 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:59180 10 6452 1 2025-10-17 08:56:08.382 00:00:10.360 TCP 23.104.0.1:34260 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:56:47.645 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51294 10 6452 1 2025-10-17 08:57:08.782 00:00:10.369 TCP 23.104.0.1:38048 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:57:47.860 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:36392 10 6452 1 2025-10-17 08:58:09.205 00:00:10.329 TCP 23.104.0.1:58510 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:58:50.547 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 08:58:50.335 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 Summary: total flows: 163, total bytes: 500574, total packets: 1574, avg bps: 1074, avg pps: 0, avg bpp: 318 Time window: 2025-10-17 07:56:43 - 2025-10-17 08:58:50 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0030s User: 0.0020s Wall: 0.0021s flows/second: 76098.8 Runtime: 0.0022s