Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 08:59:12.017 00:00:10.326 TCP 23.104.0.1:34312 -> 1.101.0.1:3000 11 1507 1 2025-10-22 08:59:23.283 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:34010 10 6452 1 2025-10-22 08:55:45.804 00:05:02.902 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:00:12.377 00:00:10.365 TCP 23.104.0.1:47904 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:00:23.460 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48922 10 6452 1 2025-10-22 08:56:45.805 00:05:02.905 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:01:14.748 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:01:14.949 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:01:12.780 00:00:10.370 TCP 23.104.0.1:52200 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:01:23.681 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:56704 10 6452 1 2025-10-22 09:02:13.185 00:00:10.327 TCP 23.104.0.1:34796 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:02:23.904 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:49334 10 6452 1 2025-10-22 09:03:13.553 00:00:10.365 TCP 23.104.0.1:50396 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:03:24.129 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:55866 10 6452 1 2025-10-22 09:04:13.955 00:00:10.324 TCP 23.104.0.1:36070 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:04:24.353 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:55692 10 6452 1 2025-10-22 09:05:14.314 00:00:10.359 TCP 23.104.0.1:53624 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:05:24.578 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50016 10 6452 1 2025-10-22 09:01:45.808 00:05:02.899 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:06:14.858 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:06:14.796 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:06:14.711 00:00:10.362 TCP 23.104.0.1:46678 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:06:24.795 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:39798 10 6452 1 2025-10-22 09:02:45.805 00:05:02.904 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:07:15.111 00:00:10.368 TCP 23.104.0.1:33420 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:07:24.961 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44624 10 6452 1 2025-10-22 09:08:15.511 00:00:10.366 TCP 23.104.0.1:51786 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:08:25.182 00:00:10.879 TCP 1.101.0.1:3000 -> 22.102.0.1:42576 10 6452 1 2025-10-22 09:09:15.917 00:00:10.463 TCP 23.104.0.1:43658 -> 1.101.0.1:3000 15 1926 1 2025-10-22 09:09:26.098 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:46580 12 10375 1 2025-10-22 09:10:16.428 00:00:10.372 TCP 23.104.0.1:55120 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:10:26.339 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:33734 10 6452 1 2025-10-22 09:11:15.220 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:11:15.357 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:11:16.836 00:00:10.388 TCP 23.104.0.1:42666 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:11:26.557 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48064 10 6452 1 2025-10-22 09:07:45.812 00:05:02.898 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:12:17.269 00:00:10.376 TCP 23.104.0.1:57440 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:12:26.771 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57182 10 6452 1 2025-10-22 09:08:45.811 00:05:02.906 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:13:17.683 00:00:10.371 TCP 23.104.0.1:46466 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:13:26.987 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:43312 10 6452 1 2025-10-22 09:14:18.110 00:00:10.326 TCP 23.104.0.1:38154 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:14:27.227 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40454 10 6452 1 2025-10-22 09:15:18.480 00:00:10.366 TCP 23.104.0.1:38762 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:15:27.446 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:45970 10 6452 1 2025-10-22 09:16:15.283 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:16:15.151 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:16:18.894 00:00:10.337 TCP 23.104.0.1:40792 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:16:27.677 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56438 10 6452 1 2025-10-22 09:17:19.270 00:00:10.873 TCP 23.104.0.1:34676 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:17:27.899 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:38538 10 6452 1 2025-10-22 09:13:45.814 00:05:02.898 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:18:20.182 00:00:10.364 TCP 23.104.0.1:58142 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:18:28.117 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54636 10 6452 1 2025-10-22 09:14:45.814 00:05:02.903 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:19:20.585 00:00:10.326 TCP 23.104.0.1:48434 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:19:28.345 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53436 10 6452 1 2025-10-22 09:20:20.950 00:00:10.368 TCP 23.104.0.1:34446 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:20:28.573 00:00:10.389 TCP 1.101.0.1:3000 -> 22.102.0.1:44632 10 6452 1 2025-10-22 09:21:15.150 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:21:15.420 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:21:21.358 00:00:10.367 TCP 23.104.0.1:39850 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:21:29.002 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40192 10 6452 1 2025-10-22 09:22:21.760 00:00:10.375 TCP 23.104.0.1:40422 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:22:29.229 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34676 10 6452 1 2025-10-22 09:23:22.176 00:00:10.466 TCP 23.104.0.1:59848 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:23:29.450 00:00:10.288 TCP 1.101.0.1:3000 -> 22.102.0.1:45484 10 6452 1 2025-10-22 09:19:45.817 00:05:02.900 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:24:22.681 00:00:10.370 TCP 23.104.0.1:43450 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:24:29.777 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57946 10 6452 1 2025-10-22 09:20:45.817 00:05:02.904 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:25:23.107 00:00:10.370 TCP 23.104.0.1:33664 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:25:29.989 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54910 10 6452 1 2025-10-22 09:26:15.586 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:26:15.528 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:26:23.509 00:00:10.326 TCP 23.104.0.1:56808 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:26:30.211 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:41692 10 6452 1 2025-10-22 09:27:23.876 00:00:10.361 TCP 23.104.0.1:56900 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:27:30.443 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55876 10 6452 1 2025-10-22 09:28:24.275 00:00:10.365 TCP 23.104.0.1:57698 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:28:30.663 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:38992 10 6452 1 2025-10-22 09:29:24.679 00:00:10.363 TCP 23.104.0.1:37348 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:29:30.847 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36340 10 6452 1 2025-10-22 09:25:45.822 00:05:02.899 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:30:25.101 00:00:10.363 TCP 23.104.0.1:60368 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:30:31.077 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54660 10 6452 1 2025-10-22 09:26:45.819 00:05:02.905 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:31:15.665 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:31:15.738 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:31:25.502 00:00:10.835 TCP 23.104.0.1:59344 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:31:31.295 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45222 10 6452 1 2025-10-22 09:32:26.377 00:00:10.368 TCP 23.104.0.1:36550 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:32:31.468 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39766 10 6452 1 2025-10-22 09:33:26.788 00:00:10.375 TCP 23.104.0.1:58046 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:33:31.683 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36738 10 6452 1 2025-10-22 09:34:27.203 00:00:10.367 TCP 23.104.0.1:41312 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:34:31.894 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43234 10 6452 1 2025-10-22 09:35:27.611 00:00:10.365 TCP 23.104.0.1:46290 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:35:32.109 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48678 10 6452 1 2025-10-22 09:31:45.824 00:05:02.899 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:36:15.314 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:36:15.665 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:36:28.016 00:00:10.376 TCP 23.104.0.1:34024 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:36:32.327 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44724 10 6452 1 2025-10-22 09:32:45.823 00:05:02.903 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:37:28.434 00:00:10.326 TCP 23.104.0.1:45596 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:37:32.547 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:55156 10 6452 1 2025-10-22 09:38:28.798 00:00:10.333 TCP 23.104.0.1:42398 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:38:32.791 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:57176 10 6452 1 2025-10-22 09:39:29.174 00:00:10.365 TCP 23.104.0.1:47824 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:39:33.027 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46320 10 6452 1 2025-10-22 09:40:29.573 00:00:10.374 TCP 23.104.0.1:52134 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:40:33.250 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:56006 10 6452 1 2025-10-22 09:41:15.780 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:41:15.792 00:00:00.028 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:41:29.978 00:00:10.417 TCP 23.104.0.1:52546 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:41:33.496 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45922 10 6452 1 2025-10-22 09:37:45.826 00:05:02.897 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:42:30.431 00:00:10.365 TCP 23.104.0.1:58196 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:42:33.719 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48466 10 6452 1 2025-10-22 09:38:45.824 00:05:02.904 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:43:30.833 00:00:10.389 TCP 23.104.0.1:36654 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:43:33.931 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:42684 10 6452 1 2025-10-22 09:44:31.259 00:00:10.370 TCP 23.104.0.1:52676 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:44:34.161 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:34534 10 6452 1 2025-10-22 09:45:31.676 00:00:10.333 TCP 23.104.0.1:49366 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:45:34.333 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:47966 10 6452 1 2025-10-22 09:46:15.751 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:46:15.670 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:46:34.506 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:41882 10 6452 1 2025-10-22 09:46:32.061 00:00:10.367 TCP 23.104.0.1:51430 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:47:32.464 00:00:10.416 TCP 23.104.0.1:60520 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:47:34.738 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40330 10 6452 1 2025-10-22 09:43:45.827 00:05:02.901 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:48:34.954 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:38080 10 6452 1 2025-10-22 09:48:32.919 00:00:10.372 TCP 23.104.0.1:40546 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:44:45.824 00:05:02.906 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:49:33.335 00:00:10.321 TCP 23.104.0.1:41546 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:49:35.189 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57634 10 6452 1 2025-10-22 09:50:35.402 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56568 10 6452 1 2025-10-22 09:50:33.701 00:00:10.339 TCP 23.104.0.1:59918 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:51:15.638 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:51:15.789 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:51:35.620 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:45970 10 6452 1 2025-10-22 09:51:34.110 00:00:10.363 TCP 23.104.0.1:54454 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:52:34.512 00:00:10.326 TCP 23.104.0.1:40980 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:52:35.852 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:40520 10 6452 1 2025-10-22 09:53:36.088 00:00:10.279 TCP 1.101.0.1:3000 -> 22.102.0.1:40166 10 6452 1 2025-10-22 09:53:34.874 00:00:10.365 TCP 23.104.0.1:37468 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:49:45.828 00:05:02.900 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-22 09:54:36.407 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34168 10 6452 1 2025-10-22 09:54:35.275 00:00:10.322 TCP 23.104.0.1:35156 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:50:45.826 00:05:02.909 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-22 09:55:36.629 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:55330 10 6452 1 2025-10-22 09:55:35.640 00:00:10.368 TCP 23.104.0.1:50586 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:56:15.895 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-22 09:56:15.966 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 09:56:36.055 00:00:10.323 TCP 23.104.0.1:46330 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:56:36.795 00:00:17.015 TCP 1.101.0.1:3000 -> 22.102.0.1:48330 10 6452 1 2025-10-22 09:57:36.412 00:00:10.335 TCP 23.104.0.1:35668 -> 1.101.0.1:3000 11 1507 1 2025-10-22 09:57:43.844 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38368 10 6452 1 2025-10-22 09:58:36.782 00:00:10.321 TCP 23.104.0.1:60850 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496238, total packets: 1568, avg bps: 1049, avg pps: 0, avg bpp: 316 Time window: 2025-10-22 08:55:45 - 2025-10-22 09:58:47 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0030s User: 0.0020s Wall: 0.0022s flows/second: 75677.6 Runtime: 0.0022s