Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 14:58:57.862 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 14:58:57.803 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 14:59:23.206 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57976 10 6452 1 2025-10-17 14:59:38.059 00:00:10.368 TCP 23.104.0.1:56198 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:00:23.427 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:54426 10 6452 1 2025-10-17 14:56:43.640 00:05:02.641 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:00:38.469 00:00:10.323 TCP 23.104.0.1:60228 -> 1.101.0.1:3000 11 1507 1 2025-10-17 14:56:43.643 00:05:02.636 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:01:23.656 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44166 10 6452 1 2025-10-17 15:01:38.832 00:00:10.377 TCP 23.104.0.1:33592 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:02:23.879 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:36582 10 6452 1 2025-10-17 15:02:39.245 00:00:10.327 TCP 23.104.0.1:41566 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:03:24.106 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51700 10 6452 1 2025-10-17 15:03:39.605 00:00:10.323 TCP 23.104.0.1:48180 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:03:57.932 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:03:58.148 00:00:00.015 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:04:24.323 00:00:10.982 TCP 1.101.0.1:3000 -> 22.102.0.1:59864 10 6452 1 2025-10-17 15:04:39.967 00:00:10.368 TCP 23.104.0.1:58888 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:05:25.343 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:40894 10 6452 1 2025-10-17 15:05:40.375 00:00:10.369 TCP 23.104.0.1:46458 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:06:25.511 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34202 10 6452 1 2025-10-17 15:02:43.647 00:05:02.639 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:02:43.649 00:05:02.635 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:06:40.781 00:00:10.365 TCP 23.104.0.1:53906 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:07:25.725 00:00:11.002 TCP 1.101.0.1:3000 -> 22.102.0.1:40144 12 10369 1 2025-10-17 15:07:41.183 00:00:10.442 TCP 23.104.0.1:52094 -> 1.101.0.1:3000 15 1926 1 2025-10-17 15:08:26.761 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60394 10 6452 1 2025-10-17 15:08:41.664 00:00:10.326 TCP 23.104.0.1:38154 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:08:57.869 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:08:58.123 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:09:26.974 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:55860 10 6452 1 2025-10-17 15:09:42.031 00:00:10.368 TCP 23.104.0.1:51192 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:10:27.199 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35634 10 6452 1 2025-10-17 15:10:42.431 00:00:10.364 TCP 23.104.0.1:40092 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:11:27.417 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41416 10 6452 1 2025-10-17 15:11:42.833 00:00:10.410 TCP 23.104.0.1:57760 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:12:27.632 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54554 10 6452 1 2025-10-17 15:08:43.649 00:05:02.641 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:08:43.652 00:05:02.636 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:12:43.289 00:00:10.340 TCP 23.104.0.1:46678 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:13:27.838 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:51888 10 6452 1 2025-10-17 15:13:43.669 00:00:10.366 TCP 23.104.0.1:34890 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:13:58.003 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:13:58.007 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:14:28.073 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:54090 10 6452 1 2025-10-17 15:14:44.100 00:00:10.321 TCP 23.104.0.1:47312 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:15:28.283 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47200 10 6452 1 2025-10-17 15:15:44.461 00:00:10.370 TCP 23.104.0.1:43306 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:16:28.497 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42212 10 6452 1 2025-10-17 15:16:44.864 00:00:10.372 TCP 23.104.0.1:40894 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:17:28.704 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:40676 10 6452 1 2025-10-17 15:17:45.274 00:00:10.327 TCP 23.104.0.1:45472 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:18:28.876 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:42568 10 6452 1 2025-10-17 15:14:43.651 00:05:02.641 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:14:43.654 00:05:02.635 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:18:45.634 00:00:10.322 TCP 23.104.0.1:40710 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:18:58.180 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:18:57.984 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:19:29.106 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37188 10 6452 1 2025-10-17 15:19:45.994 00:00:10.365 TCP 23.104.0.1:51688 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:20:29.315 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59060 10 6452 1 2025-10-17 15:20:46.395 00:00:10.367 TCP 23.104.0.1:56610 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:21:29.531 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:58964 10 6452 1 2025-10-17 15:21:46.802 00:00:10.368 TCP 23.104.0.1:36408 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:22:29.702 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:53978 10 6452 1 2025-10-17 15:22:47.217 00:00:10.364 TCP 23.104.0.1:42082 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:23:29.929 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:37602 10 6452 1 2025-10-17 15:23:58.205 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:23:58.147 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:23:47.617 00:00:10.369 TCP 23.104.0.1:45750 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:24:30.168 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39130 10 6452 1 2025-10-17 15:20:43.652 00:05:02.642 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:20:43.654 00:05:02.636 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:24:48.028 00:00:10.365 TCP 23.104.0.1:42466 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:25:30.388 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39884 10 6452 1 2025-10-17 15:25:48.433 00:00:11.659 TCP 23.104.0.1:52232 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:26:30.596 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43036 10 6452 1 2025-10-17 15:26:50.133 00:00:10.366 TCP 23.104.0.1:45162 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:27:30.809 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40864 10 6452 1 2025-10-17 15:27:50.540 00:00:10.364 TCP 23.104.0.1:42050 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:28:31.030 00:00:10.617 TCP 1.101.0.1:3000 -> 22.102.0.1:51772 10 6452 1 2025-10-17 15:28:58.073 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:28:50.942 00:00:10.370 TCP 23.104.0.1:32852 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:28:58.385 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:29:31.690 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40730 10 6452 1 2025-10-17 15:29:51.351 00:00:10.363 TCP 23.104.0.1:53072 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:26:43.657 00:05:02.637 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:30:31.897 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:52268 10 6452 1 2025-10-17 15:26:43.654 00:05:02.643 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:30:51.754 00:00:10.382 TCP 23.104.0.1:42120 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:31:32.082 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:52496 10 6452 1 2025-10-17 15:31:52.175 00:00:10.368 TCP 23.104.0.1:33850 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:32:32.285 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43344 10 6452 1 2025-10-17 15:32:52.583 00:00:10.368 TCP 23.104.0.1:44616 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:33:32.502 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34710 10 6452 1 2025-10-17 15:33:58.349 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:33:58.431 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:33:52.990 00:00:10.363 TCP 23.104.0.1:42554 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:34:32.728 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47984 10 6452 1 2025-10-17 15:34:53.393 00:00:10.328 TCP 23.104.0.1:48072 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:35:32.939 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:34916 10 6452 1 2025-10-17 15:35:53.759 00:00:10.376 TCP 23.104.0.1:60454 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:36:33.180 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:45348 10 6452 1 2025-10-17 15:32:43.657 00:05:02.638 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:32:43.655 00:05:02.643 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:36:54.172 00:00:10.365 TCP 23.104.0.1:57226 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:37:33.350 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54456 10 6452 1 2025-10-17 15:37:54.577 00:00:10.363 TCP 23.104.0.1:34904 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:38:33.523 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49374 10 6452 1 2025-10-17 15:38:58.587 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:38:58.532 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:38:54.985 00:00:10.369 TCP 23.104.0.1:48742 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:39:33.737 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48576 10 6452 1 2025-10-17 15:39:55.390 00:00:10.363 TCP 23.104.0.1:34748 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:40:33.947 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53464 10 6452 1 2025-10-17 15:40:55.796 00:00:10.372 TCP 23.104.0.1:56936 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:41:34.170 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53848 10 6452 1 2025-10-17 15:41:56.209 00:00:10.369 TCP 23.104.0.1:42022 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:38:43.659 00:05:02.640 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:42:34.386 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:42562 10 6452 1 2025-10-17 15:38:43.655 00:05:02.646 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:42:56.616 00:00:10.374 TCP 23.104.0.1:51322 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:43:34.557 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48256 12 6556 1 2025-10-17 15:43:58.865 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:43:58.405 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:43:57.047 00:00:10.363 TCP 23.104.0.1:60504 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:44:34.767 00:00:10.472 TCP 1.101.0.1:3000 -> 22.102.0.1:59366 10 6452 1 2025-10-17 15:44:57.450 00:00:10.374 TCP 23.104.0.1:44676 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:45:35.282 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:43830 10 6452 1 2025-10-17 15:45:57.864 00:00:10.377 TCP 23.104.0.1:48598 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:46:35.490 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53360 10 6452 1 2025-10-17 15:46:58.278 00:00:10.322 TCP 23.104.0.1:50326 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:47:35.703 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:36792 10 6452 1 2025-10-17 15:47:58.642 00:00:10.368 TCP 23.104.0.1:56332 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:44:43.660 00:05:02.639 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:48:35.879 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59030 10 6452 1 2025-10-17 15:44:43.659 00:05:02.644 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:48:58.789 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:48:58.819 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:48:59.083 00:00:10.365 TCP 23.104.0.1:48372 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:49:36.099 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:48300 10 6452 1 2025-10-17 15:49:59.491 00:00:10.324 TCP 23.104.0.1:59068 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:50:36.273 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51938 12 6556 1 2025-10-17 15:50:59.854 00:00:10.382 TCP 23.104.0.1:39088 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:51:36.486 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:59608 10 6452 1 2025-10-17 15:52:00.276 00:00:10.370 TCP 23.104.0.1:56522 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:52:36.735 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37146 10 6452 1 2025-10-17 15:53:00.680 00:00:10.368 TCP 23.104.0.1:32840 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:53:36.946 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:33854 10 6452 1 2025-10-17 15:53:58.745 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-17 15:53:58.596 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 15:54:01.100 00:00:10.328 TCP 23.104.0.1:59244 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:50:43.659 00:05:02.644 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-17 15:54:37.176 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:39298 10 6452 1 2025-10-17 15:50:43.662 00:05:02.638 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-17 15:55:01.463 00:00:10.321 TCP 23.104.0.1:57078 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:55:37.356 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49322 10 6452 1 2025-10-17 15:56:01.822 00:00:11.059 TCP 23.104.0.1:60004 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:56:37.566 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36446 10 6452 1 2025-10-17 15:57:02.926 00:00:10.350 TCP 23.104.0.1:53518 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:57:37.780 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:34576 10 6452 1 2025-10-17 15:58:03.316 00:00:10.363 TCP 23.104.0.1:36720 -> 1.101.0.1:3000 11 1507 1 2025-10-17 15:58:37.957 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:38316 10 6452 1 Summary: total flows: 163, total bytes: 501385, total packets: 1571, avg bps: 1076, avg pps: 0, avg bpp: 319 Time window: 2025-10-17 14:56:43 - 2025-10-17 15:58:48 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0043s User: 0.0009s Wall: 0.0028s flows/second: 57519.1 Runtime: 0.0029s