Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 08:59:18.799 00:00:10.370 TCP 23.104.0.1:58196 -> 1.101.0.1:3000 11 1507 1 2025-10-23 08:59:30.861 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:39484 12 10375 1 2025-10-23 08:55:46.258 00:05:02.983 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:00:19.209 00:00:11.168 TCP 23.104.0.1:51534 -> 1.101.0.1:3000 15 1926 1 2025-10-23 09:00:31.113 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38766 10 6452 1 2025-10-23 08:56:46.256 00:05:02.988 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:01:20.414 00:00:10.368 TCP 23.104.0.1:44582 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:01:31.334 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:54804 10 6452 1 2025-10-23 09:01:43.961 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:01:43.873 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:02:20.818 00:00:10.364 TCP 23.104.0.1:54908 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:02:31.516 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45098 10 6452 1 2025-10-23 09:03:21.223 00:00:10.325 TCP 23.104.0.1:47094 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:03:31.737 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59418 10 6452 1 2025-10-23 09:04:21.585 00:00:10.419 TCP 23.104.0.1:54120 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:04:31.957 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:41658 12 6556 1 2025-10-23 09:05:22.056 00:00:11.056 TCP 23.104.0.1:37336 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:05:32.184 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:32774 10 6452 1 2025-10-23 09:01:46.262 00:05:02.981 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:06:23.150 00:00:10.366 TCP 23.104.0.1:49184 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:06:43.887 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:06:32.406 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58096 10 6452 1 2025-10-23 09:06:44.176 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:02:46.259 00:05:02.986 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:07:23.554 00:00:10.363 TCP 23.104.0.1:44900 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:07:32.620 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41992 10 6452 1 2025-10-23 09:08:23.961 00:00:10.368 TCP 23.104.0.1:35910 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:08:32.833 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:50122 10 6452 1 2025-10-23 09:09:24.365 00:00:10.368 TCP 23.104.0.1:53628 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:09:33.007 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56718 10 6452 1 2025-10-23 09:10:24.776 00:00:10.330 TCP 23.104.0.1:52228 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:10:33.223 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47566 10 6452 1 2025-10-23 09:11:25.148 00:00:10.323 TCP 23.104.0.1:53288 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:11:44.554 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:11:33.430 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33084 10 6452 1 2025-10-23 09:11:44.215 00:00:00.036 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:07:46.262 00:05:02.986 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:12:25.514 00:00:10.364 TCP 23.104.0.1:34916 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:12:33.640 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43096 10 6452 1 2025-10-23 09:08:46.259 00:05:02.990 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:13:25.918 00:00:10.384 TCP 23.104.0.1:38834 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:13:33.850 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35314 10 6452 1 2025-10-23 09:14:26.343 00:00:10.335 TCP 23.104.0.1:60902 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:14:34.079 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:42102 10 6452 1 2025-10-23 09:15:26.719 00:00:10.369 TCP 23.104.0.1:47032 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:15:34.248 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33066 10 6452 1 2025-10-23 09:16:27.130 00:00:10.324 TCP 23.104.0.1:35666 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:16:34.458 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:48742 10 6452 1 2025-10-23 09:16:43.998 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:16:44.001 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:17:27.507 00:00:10.370 TCP 23.104.0.1:46380 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:17:34.634 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:39162 10 6452 1 2025-10-23 09:13:46.264 00:05:02.985 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:18:27.922 00:00:10.383 TCP 23.104.0.1:56900 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:18:34.811 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40978 12 6556 1 2025-10-23 09:14:46.261 00:05:02.991 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:19:28.343 00:00:10.323 TCP 23.104.0.1:41630 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:19:35.044 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41822 10 6452 1 2025-10-23 09:20:28.704 00:00:10.365 TCP 23.104.0.1:38260 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:20:35.258 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43236 10 6452 1 2025-10-23 09:21:29.112 00:00:10.754 TCP 23.104.0.1:47934 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:21:35.469 00:00:10.497 TCP 1.101.0.1:3000 -> 22.102.0.1:58694 10 6452 1 2025-10-23 09:21:44.265 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:21:44.082 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:22:29.900 00:00:10.336 TCP 23.104.0.1:54822 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:22:36.010 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43476 10 6452 1 2025-10-23 09:23:30.269 00:00:10.364 TCP 23.104.0.1:53610 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:23:36.231 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52984 10 6452 1 2025-10-23 09:19:46.265 00:05:02.985 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:24:30.671 00:00:10.327 TCP 23.104.0.1:59470 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:24:36.444 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:55602 10 6452 1 2025-10-23 09:20:46.264 00:05:02.989 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:25:31.063 00:00:10.324 TCP 23.104.0.1:38252 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:25:36.676 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35910 10 6452 1 2025-10-23 09:26:44.147 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:26:44.485 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:26:31.424 00:00:11.253 TCP 23.104.0.1:46096 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:26:36.891 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:42130 10 6452 1 2025-10-23 09:27:32.721 00:00:10.372 TCP 23.104.0.1:42440 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:27:37.079 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34916 10 6452 1 2025-10-23 09:28:33.125 00:00:10.364 TCP 23.104.0.1:50540 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:28:37.290 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53876 10 6452 1 2025-10-23 09:29:33.533 00:00:10.335 TCP 23.104.0.1:49032 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:25:46.267 00:05:02.984 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:29:37.501 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44436 10 6452 1 2025-10-23 09:30:33.908 00:00:10.366 TCP 23.104.0.1:47884 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:30:37.724 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:41284 10 6452 1 2025-10-23 09:26:46.267 00:05:02.989 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:31:44.234 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:31:34.314 00:00:10.362 TCP 23.104.0.1:48872 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:31:44.301 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:31:37.947 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:49528 10 6452 1 2025-10-23 09:32:34.717 00:00:10.395 TCP 23.104.0.1:47568 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:32:38.190 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:50038 10 6452 1 2025-10-23 09:33:35.145 00:00:10.368 TCP 23.104.0.1:35980 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:33:38.416 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60870 10 6452 1 2025-10-23 09:34:35.552 00:00:10.440 TCP 23.104.0.1:60816 -> 1.101.0.1:3000 15 1926 1 2025-10-23 09:34:38.640 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:51006 12 10375 1 2025-10-23 09:35:36.030 00:00:10.365 TCP 23.104.0.1:57694 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:31:46.268 00:05:02.986 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:35:38.842 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35820 10 6452 1 2025-10-23 09:36:44.492 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:36:36.437 00:00:10.370 TCP 23.104.0.1:50204 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:36:44.558 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:36:39.075 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46390 10 6452 1 2025-10-23 09:32:46.266 00:05:02.992 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:37:36.846 00:00:10.864 TCP 23.104.0.1:47180 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:37:39.281 00:00:10.715 TCP 1.101.0.1:3000 -> 22.102.0.1:55062 10 6452 1 2025-10-23 09:38:37.748 00:00:10.319 TCP 23.104.0.1:47330 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:38:40.048 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43900 10 6452 1 2025-10-23 09:39:38.110 00:00:10.435 TCP 23.104.0.1:49704 -> 1.101.0.1:3000 15 1926 1 2025-10-23 09:39:40.259 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:56014 12 10369 1 2025-10-23 09:40:38.579 00:00:10.366 TCP 23.104.0.1:48826 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:40:40.503 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:37726 10 6452 1 2025-10-23 09:41:44.665 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:41:44.664 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:41:40.681 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:49048 10 6452 1 2025-10-23 09:37:46.269 00:05:02.989 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:41:38.979 00:00:10.373 TCP 23.104.0.1:46988 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:42:40.872 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:55468 10 6452 1 2025-10-23 09:38:46.266 00:05:02.994 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:42:39.388 00:00:10.366 TCP 23.104.0.1:44534 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:43:41.091 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:33584 10 6452 1 2025-10-23 09:43:39.788 00:00:10.325 TCP 23.104.0.1:43484 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:44:41.266 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:59594 12 10584 1 2025-10-23 09:44:40.149 00:00:10.438 TCP 23.104.0.1:45670 -> 1.101.0.1:3000 15 1926 1 2025-10-23 09:45:41.506 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:44994 10 6661 1 2025-10-23 09:45:40.623 00:00:10.329 TCP 23.104.0.1:45708 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:46:44.738 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:46:44.684 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:46:40.983 00:00:10.378 TCP 23.104.0.1:59562 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:46:41.678 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54184 10 6661 1 2025-10-23 09:47:41.400 00:00:10.378 TCP 23.104.0.1:36082 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:43:46.269 00:05:02.989 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:47:41.858 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:60398 10 6661 1 2025-10-23 09:48:41.820 00:00:10.369 TCP 23.104.0.1:55550 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:44:46.267 00:05:02.994 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:48:42.099 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51862 10 6661 1 2025-10-23 09:49:42.229 00:00:10.364 TCP 23.104.0.1:54534 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:49:42.312 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39152 10 6661 1 2025-10-23 09:50:42.630 00:00:18.436 TCP 23.104.0.1:55478 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:50:42.486 00:00:18.414 TCP 1.101.0.1:3000 -> 22.102.0.1:49110 10 6661 1 2025-10-23 09:51:44.711 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:51:44.776 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:51:50.948 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:59606 10 6661 1 2025-10-23 09:51:51.147 00:00:10.322 TCP 23.104.0.1:35576 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:52:51.509 00:00:10.329 TCP 23.104.0.1:53512 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:52:51.128 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49418 10 6661 1 2025-10-23 09:49:46.272 00:05:02.988 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-23 09:53:51.346 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33850 10 6661 1 2025-10-23 09:53:51.876 00:00:10.365 TCP 23.104.0.1:40334 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:50:46.271 00:05:02.992 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-23 09:54:51.515 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39790 10 6661 1 2025-10-23 09:54:52.277 00:00:10.365 TCP 23.104.0.1:53210 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:55:51.726 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54672 10 6661 1 2025-10-23 09:55:52.680 00:00:10.367 TCP 23.104.0.1:59300 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:56:44.711 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 09:56:44.951 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-23 09:56:51.939 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:57166 10 6661 1 2025-10-23 09:56:53.106 00:00:10.366 TCP 23.104.0.1:52484 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:57:53.512 00:00:10.363 TCP 23.104.0.1:37286 -> 1.101.0.1:3000 11 1507 1 2025-10-23 09:57:52.143 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:54872 10 6661 1 Summary: total flows: 162, total bytes: 510885, total packets: 1579, avg bps: 1093, avg pps: 0, avg bpp: 323 Time window: 2025-10-23 08:55:46 - 2025-10-23 09:58:03 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0037s User: 0.0009s Wall: 0.0014s flows/second: 114563.7 Runtime: 0.0014s