Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 03:59:13.783 00:00:00.040 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 03:59:13.953 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 03:59:38.073 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:43068 10 6452 1 2025-10-18 03:59:38.363 00:00:10.367 TCP 23.104.0.1:43372 -> 1.101.0.1:3000 11 1507 1 2025-10-18 03:56:43.954 00:05:02.564 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:00:38.769 00:00:10.371 TCP 23.104.0.1:40506 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:00:38.243 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:52042 10 6452 1 2025-10-18 03:56:43.951 00:05:02.569 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:01:39.179 00:00:13.800 TCP 23.104.0.1:55668 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:01:38.453 00:00:14.435 TCP 1.101.0.1:3000 -> 22.102.0.1:60910 10 6452 1 2025-10-18 04:02:42.928 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:33424 10 6452 1 2025-10-18 04:02:43.020 00:00:10.326 TCP 23.104.0.1:50760 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:03:43.177 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:54518 10 6452 1 2025-10-18 04:03:43.383 00:00:10.323 TCP 23.104.0.1:45652 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:04:13.404 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:04:13.599 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:04:43.350 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:55510 10 6452 1 2025-10-18 04:04:43.745 00:00:10.361 TCP 23.104.0.1:59978 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:05:44.141 00:00:10.362 TCP 23.104.0.1:33638 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:05:43.531 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:40382 10 6452 1 2025-10-18 04:02:43.954 00:05:02.565 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:02:43.952 00:05:02.570 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:06:44.545 00:00:10.364 TCP 23.104.0.1:45798 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:06:43.744 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:35810 10 6452 1 2025-10-18 04:07:44.951 00:00:10.444 TCP 23.104.0.1:50942 -> 1.101.0.1:3000 15 1926 1 2025-10-18 04:07:43.978 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60276 12 10369 1 2025-10-18 04:08:44.194 00:00:10.976 TCP 1.101.0.1:3000 -> 22.102.0.1:51020 11 6504 1 2025-10-18 04:08:45.434 00:00:10.365 TCP 23.104.0.1:48042 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:09:13.732 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:09:13.772 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:09:45.837 00:00:10.385 TCP 23.104.0.1:36002 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:09:45.215 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41176 10 6452 1 2025-10-18 04:10:45.427 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35622 10 6452 1 2025-10-18 04:10:46.260 00:00:10.366 TCP 23.104.0.1:55656 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:11:45.641 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:58654 10 6452 1 2025-10-18 04:11:46.668 00:00:10.364 TCP 23.104.0.1:51040 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:08:43.957 00:05:02.564 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:08:43.954 00:05:02.569 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:12:45.811 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51280 10 6452 1 2025-10-18 04:12:47.100 00:00:10.373 TCP 23.104.0.1:44822 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:13:46.034 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44328 10 6452 1 2025-10-18 04:13:47.509 00:00:10.327 TCP 23.104.0.1:35570 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:14:13.517 00:00:00.065 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:14:13.431 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:14:46.242 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54220 10 6452 1 2025-10-18 04:14:47.872 00:00:10.322 TCP 23.104.0.1:35498 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:15:46.453 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38256 10 6452 1 2025-10-18 04:15:48.232 00:00:10.320 TCP 23.104.0.1:59878 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:16:46.663 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:53838 10 6452 1 2025-10-18 04:16:48.590 00:00:10.365 TCP 23.104.0.1:56034 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:17:46.844 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:53984 10 6452 1 2025-10-18 04:17:49.027 00:00:10.361 TCP 23.104.0.1:48804 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:14:43.957 00:05:02.570 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:14:43.961 00:05:02.564 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:18:49.431 00:00:10.373 TCP 23.104.0.1:36692 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:18:47.024 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38108 10 6452 1 2025-10-18 04:19:13.675 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:19:13.688 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:19:47.237 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35264 10 6452 1 2025-10-18 04:19:49.862 00:00:10.376 TCP 23.104.0.1:35706 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:20:47.456 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:57686 10 6452 1 2025-10-18 04:20:50.276 00:00:10.371 TCP 23.104.0.1:50598 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:21:50.703 00:00:10.370 TCP 23.104.0.1:33772 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:21:47.629 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57292 10 6452 1 2025-10-18 04:22:51.116 00:00:10.325 TCP 23.104.0.1:34354 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:22:47.846 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37298 10 6452 1 2025-10-18 04:23:48.086 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:42602 10 6452 1 2025-10-18 04:23:51.485 00:00:10.557 TCP 23.104.0.1:43258 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:24:13.748 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:24:14.022 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:20:43.960 00:05:02.566 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:20:43.957 00:05:02.570 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:24:48.256 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50702 10 6452 1 2025-10-18 04:24:52.106 00:00:10.326 TCP 23.104.0.1:34932 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:25:48.473 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53274 10 6452 1 2025-10-18 04:25:52.468 00:00:10.417 TCP 23.104.0.1:55762 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:26:48.686 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:41744 10 6452 1 2025-10-18 04:26:52.925 00:00:10.337 TCP 23.104.0.1:38444 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:27:48.895 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:54750 10 6452 1 2025-10-18 04:27:53.301 00:00:10.670 TCP 23.104.0.1:39732 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:28:49.117 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:39704 10 6452 1 2025-10-18 04:28:54.012 00:00:10.366 TCP 23.104.0.1:53320 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:29:14.723 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:29:14.911 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:29:49.325 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42260 10 6452 1 2025-10-18 04:29:54.417 00:00:10.367 TCP 23.104.0.1:51798 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:26:43.958 00:05:02.572 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:26:43.961 00:05:02.567 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:30:49.537 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59896 10 6452 1 2025-10-18 04:30:54.819 00:00:10.397 TCP 23.104.0.1:39724 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:31:49.748 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51564 10 6452 1 2025-10-18 04:31:55.254 00:00:10.364 TCP 23.104.0.1:35054 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:32:49.929 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:48096 10 6452 1 2025-10-18 04:32:55.661 00:00:10.368 TCP 23.104.0.1:42704 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:33:50.161 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44002 10 6452 1 2025-10-18 04:33:56.094 00:00:10.364 TCP 23.104.0.1:55934 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:34:13.818 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:34:13.866 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:34:50.378 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32838 10 6452 1 2025-10-18 04:34:56.504 00:00:10.365 TCP 23.104.0.1:46132 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:35:50.589 00:00:10.436 TCP 1.101.0.1:3000 -> 22.102.0.1:41584 10 6452 1 2025-10-18 04:35:56.907 00:00:10.368 TCP 23.104.0.1:59190 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:32:43.962 00:05:02.567 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:32:43.961 00:05:02.572 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:36:51.077 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39152 10 6452 1 2025-10-18 04:36:57.312 00:00:10.362 TCP 23.104.0.1:35452 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:37:51.294 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:56914 10 6452 1 2025-10-18 04:37:57.714 00:00:10.322 TCP 23.104.0.1:45752 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:38:51.468 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45404 10 6452 1 2025-10-18 04:38:58.106 00:00:10.326 TCP 23.104.0.1:55828 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:39:13.943 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:39:14.021 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:39:51.679 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42366 10 6452 1 2025-10-18 04:39:58.472 00:00:10.398 TCP 23.104.0.1:34432 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:40:51.899 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45798 10 6452 1 2025-10-18 04:40:58.898 00:00:10.331 TCP 23.104.0.1:49086 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:41:52.114 00:00:10.610 TCP 1.101.0.1:3000 -> 22.102.0.1:38084 10 6452 1 2025-10-18 04:41:59.261 00:00:10.364 TCP 23.104.0.1:54400 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:38:43.964 00:05:02.568 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:38:43.961 00:05:02.573 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:42:52.761 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44488 10 6452 1 2025-10-18 04:42:59.673 00:00:10.327 TCP 23.104.0.1:47678 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:43:52.981 00:00:10.222 TCP 1.101.0.1:3000 -> 22.102.0.1:41210 10 6452 1 2025-10-18 04:44:00.061 00:00:10.329 TCP 23.104.0.1:51846 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:44:14.275 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:44:14.235 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:44:53.241 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43064 10 6452 1 2025-10-18 04:45:00.424 00:00:20.033 TCP 23.104.0.1:45492 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:45:53.460 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60026 10 6452 1 2025-10-18 04:46:10.508 00:00:10.367 TCP 23.104.0.1:41528 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:46:53.675 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54072 10 6452 1 2025-10-18 04:47:10.913 00:00:10.358 TCP 23.104.0.1:51552 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:47:53.888 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33710 10 6452 1 2025-10-18 04:48:11.316 00:00:10.364 TCP 23.104.0.1:35474 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:44:43.963 00:05:02.573 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:44:43.966 00:05:02.567 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:48:54.107 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39014 10 6452 1 2025-10-18 04:49:14.601 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:49:14.472 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:49:11.721 00:00:10.373 TCP 23.104.0.1:36472 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:49:54.322 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58642 10 6452 1 2025-10-18 04:50:12.136 00:00:10.365 TCP 23.104.0.1:43670 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:50:54.533 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53658 10 6452 1 2025-10-18 04:51:12.539 00:00:11.079 TCP 23.104.0.1:34830 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:51:54.746 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48670 10 6452 1 2025-10-18 04:52:13.657 00:00:10.399 TCP 23.104.0.1:49304 -> 1.101.0.1:3000 15 1926 1 2025-10-18 04:52:54.957 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:56384 12 10375 1 2025-10-18 04:53:14.106 00:00:10.359 TCP 23.104.0.1:58630 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:53:55.176 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44046 10 6452 1 2025-10-18 04:54:14.364 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-18 04:54:14.414 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-18 04:54:14.503 00:00:11.693 TCP 23.104.0.1:42040 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:50:43.973 00:05:02.563 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-18 04:50:43.970 00:05:02.568 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-18 04:54:55.392 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58544 10 6452 1 2025-10-18 04:55:16.236 00:00:10.362 TCP 23.104.0.1:60754 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:55:55.602 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43280 10 6452 1 2025-10-18 04:56:16.634 00:00:10.360 TCP 23.104.0.1:48490 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:56:55.809 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:50354 10 6452 1 2025-10-18 04:57:17.031 00:00:10.325 TCP 23.104.0.1:53200 -> 1.101.0.1:3000 11 1507 1 2025-10-18 04:57:55.978 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:38940 10 6452 1 2025-10-18 04:58:17.395 00:00:10.364 TCP 23.104.0.1:52488 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 499119, total packets: 1564, avg bps: 1078, avg pps: 0, avg bpp: 319 Time window: 2025-10-18 03:56:43 - 2025-10-18 04:58:27 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0427s User: 0.0027s Wall: 0.5900s flows/second: 274.6 Runtime: 0.5900s