Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 01:59:11.019 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 01:59:10.705 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 01:59:01.485 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:56322 10 6452 1 2025-10-18 01:59:24.398 00:00:10.367 TCP 23.104.0.1:53636 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:00:01.660 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40446 10 6452 1 2025-10-18 02:00:24.811 00:00:10.337 TCP 23.104.0.1:55928 -> 1.101.0.1:3000 11 1507 1 2025-10-18 01:56:43.897 00:05:02.594 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 01:56:43.900 00:05:02.589 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:01:01.878 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:44098 10 6452 1 2025-10-18 02:01:25.183 00:00:10.323 TCP 23.104.0.1:42668 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:02:02.105 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:56340 10 6452 1 2025-10-18 02:02:25.545 00:00:10.365 TCP 23.104.0.1:46338 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:03:02.278 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35082 10 6452 1 2025-10-18 02:03:25.948 00:00:10.366 TCP 23.104.0.1:43146 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:04:11.255 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:04:11.348 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:04:02.505 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:54044 10 6452 1 2025-10-18 02:04:26.353 00:00:10.362 TCP 23.104.0.1:51016 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:05:02.754 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55876 10 6452 1 2025-10-18 02:05:26.756 00:00:10.344 TCP 23.104.0.1:56570 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:06:02.966 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:45140 10 6452 1 2025-10-18 02:06:27.135 00:00:10.364 TCP 23.104.0.1:59844 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:02:43.901 00:05:02.589 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:02:43.899 00:05:02.594 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 02:07:03.204 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59470 10 6452 1 2025-10-18 02:07:27.536 00:00:10.371 TCP 23.104.0.1:60116 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:08:03.418 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:38020 10 6452 1 2025-10-18 02:08:27.942 00:00:15.411 TCP 23.104.0.1:59820 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:09:11.484 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:09:11.203 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:09:03.649 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45252 10 6452 1 2025-10-18 02:09:33.393 00:00:10.376 TCP 23.104.0.1:52952 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:10:03.867 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:60098 10 6452 1 2025-10-18 02:10:33.812 00:00:10.361 TCP 23.104.0.1:38018 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:11:04.096 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43820 10 6452 1 2025-10-18 02:11:34.213 00:00:10.321 TCP 23.104.0.1:54212 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:12:04.315 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38958 10 6452 1 2025-10-18 02:12:34.573 00:00:10.322 TCP 23.104.0.1:47732 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:08:43.903 00:05:02.589 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:08:43.901 00:05:02.594 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 02:13:04.526 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50890 10 6452 1 2025-10-18 02:13:34.937 00:00:10.342 TCP 23.104.0.1:33878 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:14:11.316 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:14:11.188 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:14:04.739 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42276 10 6452 1 2025-10-18 02:14:35.318 00:00:10.362 TCP 23.104.0.1:46020 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:15:04.956 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:57932 10 6452 1 2025-10-18 02:15:35.721 00:00:10.371 TCP 23.104.0.1:41004 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:16:05.193 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:35060 10 6452 1 2025-10-18 02:16:36.130 00:00:10.361 TCP 23.104.0.1:40038 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:17:05.412 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39462 10 6452 1 2025-10-18 02:17:36.532 00:00:10.365 TCP 23.104.0.1:43304 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:18:05.632 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55632 10 6452 1 2025-10-18 02:14:43.904 00:05:02.588 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:14:43.902 00:05:02.593 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 02:18:36.934 00:00:10.396 TCP 23.104.0.1:43498 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:19:11.073 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:19:11.231 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:19:05.853 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60512 10 6452 1 2025-10-18 02:19:37.372 00:00:10.360 TCP 23.104.0.1:51172 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:20:06.088 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49094 10 6452 1 2025-10-18 02:20:37.773 00:00:10.365 TCP 23.104.0.1:50662 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:21:06.306 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54890 10 6452 1 2025-10-18 02:21:38.180 00:00:10.326 TCP 23.104.0.1:53212 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:22:06.522 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:33060 12 10375 1 2025-10-18 02:22:38.545 00:00:10.446 TCP 23.104.0.1:43492 -> 1.101.0.1:3000 15 1926 1 2025-10-18 02:23:06.774 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:42172 10 6452 1 2025-10-18 02:23:39.034 00:00:10.367 TCP 23.104.0.1:35184 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:24:11.749 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:24:11.461 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:24:07.006 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:46722 10 6452 1 2025-10-18 02:20:43.903 00:05:02.593 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 02:24:39.449 00:00:10.372 TCP 23.104.0.1:42498 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:20:43.905 00:05:02.587 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:25:07.225 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:44750 10 6452 1 2025-10-18 02:25:39.880 00:00:10.364 TCP 23.104.0.1:45160 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:26:07.452 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33114 10 6452 1 2025-10-18 02:26:40.282 00:00:10.365 TCP 23.104.0.1:51204 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:27:07.666 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38258 10 6452 1 2025-10-18 02:27:40.683 00:00:10.360 TCP 23.104.0.1:43250 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:28:07.880 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51084 10 6452 1 2025-10-18 02:28:41.104 00:00:10.330 TCP 23.104.0.1:56330 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:29:11.551 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:29:11.543 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:29:08.103 00:00:10.493 TCP 1.101.0.1:3000 -> 22.102.0.1:53164 10 6452 1 2025-10-18 02:29:41.487 00:00:10.364 TCP 23.104.0.1:54974 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:30:08.637 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:58524 10 6452 1 2025-10-18 02:26:43.908 00:05:02.590 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 02:26:43.911 00:05:02.585 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:30:41.889 00:00:10.382 TCP 23.104.0.1:40072 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:31:08.849 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38602 10 6452 1 2025-10-18 02:31:42.306 00:00:17.207 TCP 23.104.0.1:40436 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:32:09.083 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43476 10 6452 1 2025-10-18 02:32:49.565 00:00:10.341 TCP 23.104.0.1:36218 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:33:09.315 00:00:10.583 TCP 1.101.0.1:3000 -> 22.102.0.1:36066 10 6452 1 2025-10-18 02:33:49.934 00:00:10.377 TCP 23.104.0.1:45232 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:34:11.370 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:34:11.420 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:34:09.938 00:00:10.162 TCP 1.101.0.1:3000 -> 22.102.0.1:38766 10 6452 1 2025-10-18 02:34:50.349 00:00:10.652 TCP 23.104.0.1:53872 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:35:10.132 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56726 10 6452 1 2025-10-18 02:35:51.033 00:00:10.366 TCP 23.104.0.1:37684 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:36:10.341 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48648 10 6452 1 2025-10-18 02:32:43.915 00:05:02.581 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:32:43.912 00:05:02.586 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 02:36:51.438 00:00:10.363 TCP 23.104.0.1:40634 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:37:10.553 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51794 10 6452 1 2025-10-18 02:37:51.843 00:00:10.381 TCP 23.104.0.1:39354 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:38:10.793 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45582 10 6452 1 2025-10-18 02:38:52.260 00:00:10.367 TCP 23.104.0.1:47036 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:39:11.493 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:39:11.828 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:39:11.007 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33764 10 6452 1 2025-10-18 02:39:52.665 00:00:10.379 TCP 23.104.0.1:33234 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:40:11.218 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48530 10 6452 1 2025-10-18 02:40:53.102 00:00:10.449 TCP 23.104.0.1:52294 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:41:11.429 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58796 10 6452 1 2025-10-18 02:41:53.588 00:00:10.441 TCP 23.104.0.1:39114 -> 1.101.0.1:3000 15 1926 1 2025-10-18 02:42:11.648 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:39236 12 10369 1 2025-10-18 02:38:43.914 00:05:02.586 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 02:38:43.916 00:05:02.581 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:42:54.095 00:00:10.362 TCP 23.104.0.1:50092 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:43:11.842 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54304 10 6452 1 2025-10-18 02:43:54.497 00:00:10.935 TCP 23.104.0.1:37748 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:44:12.323 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:44:12.330 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:44:12.073 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:39678 10 6452 1 2025-10-18 02:44:55.470 00:00:10.357 TCP 23.104.0.1:37456 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:45:12.282 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:40232 10 6452 1 2025-10-18 02:45:55.866 00:00:10.369 TCP 23.104.0.1:33698 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:46:12.521 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58806 10 6452 1 2025-10-18 02:46:56.270 00:00:10.365 TCP 23.104.0.1:33850 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:47:12.735 00:00:10.470 TCP 1.101.0.1:3000 -> 22.102.0.1:54962 10 6452 1 2025-10-18 02:47:56.674 00:00:10.362 TCP 23.104.0.1:35070 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:48:13.252 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56142 10 6452 1 2025-10-18 02:44:43.918 00:05:02.585 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:44:43.916 00:05:02.590 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 02:49:11.861 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:48:57.103 00:00:10.369 TCP 23.104.0.1:38956 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:49:11.921 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:49:13.463 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:40410 10 6452 1 2025-10-18 02:49:57.503 00:00:10.323 TCP 23.104.0.1:47948 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:50:13.641 00:00:10.250 TCP 1.101.0.1:3000 -> 22.102.0.1:49788 10 6452 1 2025-10-18 02:50:57.862 00:00:10.328 TCP 23.104.0.1:37504 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:51:13.930 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:38274 10 6452 1 2025-10-18 02:51:58.226 00:00:10.362 TCP 23.104.0.1:39246 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:52:14.170 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:33708 10 6452 1 2025-10-18 02:52:58.628 00:00:10.366 TCP 23.104.0.1:52184 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:53:14.343 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41856 10 6452 1 2025-10-18 02:53:59.032 00:00:10.364 TCP 23.104.0.1:59448 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:54:12.174 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 02:54:12.172 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 02:54:14.557 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33030 10 6452 1 2025-10-18 02:50:43.923 00:05:02.580 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 02:50:43.921 00:05:02.585 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 02:54:59.430 00:00:10.372 TCP 23.104.0.1:48632 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:55:14.771 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41458 10 6452 1 2025-10-18 02:55:59.838 00:00:10.345 TCP 23.104.0.1:39174 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:56:14.985 00:00:10.606 TCP 1.101.0.1:3000 -> 22.102.0.1:43958 10 6452 1 2025-10-18 02:57:00.225 00:00:10.371 TCP 23.104.0.1:41222 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:57:15.627 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44764 10 6452 1 2025-10-18 02:58:00.633 00:00:10.323 TCP 23.104.0.1:55106 -> 1.101.0.1:3000 11 1507 1 2025-10-18 02:58:15.839 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38854 10 6452 1 Summary: total flows: 163, total bytes: 505519, total packets: 1573, avg bps: 1092, avg pps: 0, avg bpp: 321 Time window: 2025-10-18 01:56:43 - 2025-10-18 02:58:26 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0044s User: 0.0009s Wall: 0.0029s flows/second: 56089.2 Runtime: 0.0029s