Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 15:58:53.508 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:41878 10 6452 1 2025-10-24 15:55:46.841 00:05:03.039 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 15:59:36.752 00:00:10.385 TCP 23.104.0.1:44458 -> 1.101.0.1:3000 11 1507 1 2025-10-24 15:59:53.724 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:53684 10 6452 1 2025-10-24 15:56:46.837 00:05:03.044 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:00:37.173 00:00:10.380 TCP 23.104.0.1:46696 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:00:53.945 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:40262 10 6452 1 2025-10-24 16:01:37.588 00:00:10.377 TCP 23.104.0.1:56778 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:01:54.194 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:36678 10 6452 1 2025-10-24 16:02:21.424 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:02:21.682 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:02:38.006 00:00:10.366 TCP 23.104.0.1:43014 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:02:54.368 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44364 10 6452 1 2025-10-24 16:03:38.424 00:00:10.363 TCP 23.104.0.1:51334 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:03:54.583 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45418 10 6452 1 2025-10-24 16:04:38.827 00:00:10.392 TCP 23.104.0.1:43804 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:04:54.800 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33058 10 6452 1 2025-10-24 16:05:39.253 00:00:10.335 TCP 23.104.0.1:47086 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:01:46.844 00:05:03.037 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 16:05:55.022 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40176 10 6452 1 2025-10-24 16:02:46.840 00:05:03.043 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:06:39.612 00:00:10.365 TCP 23.104.0.1:48102 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:06:55.228 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:47308 10 6452 1 2025-10-24 16:07:21.534 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:07:21.623 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:07:40.014 00:00:10.362 TCP 23.104.0.1:44540 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:07:55.454 00:00:10.573 TCP 1.101.0.1:3000 -> 22.102.0.1:36884 10 6452 1 2025-10-24 16:08:40.415 00:00:10.328 TCP 23.104.0.1:46100 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:08:56.081 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59304 10 6452 1 2025-10-24 16:09:40.773 00:00:10.370 TCP 23.104.0.1:53698 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:09:56.296 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:47606 10 6452 1 2025-10-24 16:10:41.181 00:00:10.366 TCP 23.104.0.1:38738 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:10:56.469 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39286 10 6452 1 2025-10-24 16:11:41.587 00:00:10.365 TCP 23.104.0.1:34050 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:07:46.847 00:05:03.036 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 16:11:56.693 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43890 10 6452 1 2025-10-24 16:12:21.813 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:12:21.752 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:08:46.844 00:05:03.041 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:12:41.991 00:00:10.372 TCP 23.104.0.1:53458 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:12:56.865 00:00:10.224 TCP 1.101.0.1:3000 -> 22.102.0.1:42608 10 6452 1 2025-10-24 16:13:42.407 00:00:10.553 TCP 23.104.0.1:57022 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:13:57.139 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46992 10 6452 1 2025-10-24 16:14:42.993 00:00:10.376 TCP 23.104.0.1:42964 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:14:57.354 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:46120 10 6452 1 2025-10-24 16:15:43.407 00:00:10.374 TCP 23.104.0.1:43064 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:15:57.527 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48968 10 6452 1 2025-10-24 16:16:43.809 00:00:10.367 TCP 23.104.0.1:33014 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:16:57.749 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38096 10 6452 1 2025-10-24 16:17:21.812 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:17:21.756 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:13:46.847 00:05:03.039 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 16:17:44.212 00:00:10.370 TCP 23.104.0.1:46290 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:17:57.967 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:45160 10 6452 1 2025-10-24 16:14:46.845 00:05:03.044 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:18:44.618 00:00:10.363 TCP 23.104.0.1:53974 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:18:58.191 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33898 10 6452 1 2025-10-24 16:19:45.021 00:00:10.366 TCP 23.104.0.1:33092 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:19:58.409 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:41306 10 6452 1 2025-10-24 16:20:45.426 00:00:10.368 TCP 23.104.0.1:47248 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:20:58.582 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60716 10 6452 1 2025-10-24 16:21:45.832 00:00:10.375 TCP 23.104.0.1:49230 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:21:58.797 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47516 10 6452 1 2025-10-24 16:22:21.598 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:22:21.660 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:22:46.245 00:00:10.378 TCP 23.104.0.1:44700 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:22:59.031 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:49880 10 6452 1 2025-10-24 16:19:46.848 00:05:03.039 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 16:23:46.667 00:00:10.325 TCP 23.104.0.1:34240 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:23:59.253 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:33706 10 6452 1 2025-10-24 16:20:46.847 00:05:03.045 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:24:47.032 00:00:10.326 TCP 23.104.0.1:40316 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:24:59.478 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34824 10 6452 1 2025-10-24 16:25:47.399 00:00:10.368 TCP 23.104.0.1:33714 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:25:59.693 00:00:11.365 TCP 1.101.0.1:3000 -> 22.102.0.1:45306 10 6452 1 2025-10-24 16:26:47.811 00:00:10.360 TCP 23.104.0.1:42268 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:27:01.095 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59644 10 6452 1 2025-10-24 16:27:21.955 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:27:22.184 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:27:48.212 00:00:10.365 TCP 23.104.0.1:57352 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:28:01.306 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58020 10 6452 1 2025-10-24 16:28:48.615 00:00:10.367 TCP 23.104.0.1:44030 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:29:01.527 00:00:10.892 TCP 1.101.0.1:3000 -> 22.102.0.1:54862 10 6452 1 2025-10-24 16:25:46.850 00:05:03.040 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 16:29:49.021 00:00:10.368 TCP 23.104.0.1:33640 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:30:02.461 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55598 10 6452 1 2025-10-24 16:26:46.847 00:05:03.047 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:30:49.436 00:00:10.360 TCP 23.104.0.1:44862 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:31:02.679 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:54802 10 6452 1 2025-10-24 16:31:49.835 00:00:10.386 TCP 23.104.0.1:49350 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:32:02.902 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59296 10 6452 1 2025-10-24 16:32:22.260 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:32:22.027 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:32:50.257 00:00:10.360 TCP 23.104.0.1:56100 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:33:03.120 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54360 10 6452 1 2025-10-24 16:33:50.657 00:00:10.369 TCP 23.104.0.1:59510 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:34:03.335 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37734 10 6452 1 2025-10-24 16:34:51.092 00:00:10.366 TCP 23.104.0.1:52256 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:35:03.547 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:49190 12 10375 1 2025-10-24 16:31:46.852 00:05:03.042 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 16:36:03.785 00:00:12.879 TCP 1.101.0.1:3000 -> 22.102.0.1:34100 10 6452 1 2025-10-24 16:35:51.495 00:00:25.213 TCP 23.104.0.1:45898 -> 1.101.0.1:3000 15 1926 1 2025-10-24 16:32:46.848 00:05:03.049 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:37:06.761 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:35364 10 6452 1 2025-10-24 16:37:22.034 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:37:06.784 00:00:10.361 TCP 23.104.0.1:53678 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:37:22.064 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:38:06.997 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:56746 10 6452 1 2025-10-24 16:38:07.184 00:00:10.360 TCP 23.104.0.1:43526 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:39:07.582 00:00:10.373 TCP 23.104.0.1:56770 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:39:07.229 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:56702 10 6452 1 2025-10-24 16:40:07.449 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57170 10 6452 1 2025-10-24 16:40:07.997 00:00:10.366 TCP 23.104.0.1:41246 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:41:08.404 00:00:10.363 TCP 23.104.0.1:54864 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:41:07.666 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45966 10 6452 1 2025-10-24 16:37:46.852 00:05:03.045 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 16:42:08.802 00:00:10.364 TCP 23.104.0.1:51884 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:42:07.881 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48698 10 6452 1 2025-10-24 16:42:22.229 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:42:22.361 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:38:46.849 00:05:03.050 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:43:08.106 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:38870 10 6452 1 2025-10-24 16:43:09.209 00:00:10.364 TCP 23.104.0.1:55752 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:44:09.612 00:00:10.364 TCP 23.104.0.1:37712 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:44:08.273 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:32868 10 6452 1 2025-10-24 16:45:10.016 00:00:11.002 TCP 23.104.0.1:49746 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:45:08.486 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:40070 10 6452 1 2025-10-24 16:46:08.696 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44364 10 6452 1 2025-10-24 16:46:11.060 00:00:10.366 TCP 23.104.0.1:48330 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:47:11.466 00:00:10.365 TCP 23.104.0.1:57194 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:47:08.911 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58530 10 6452 1 2025-10-24 16:47:23.059 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:47:22.820 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:43:46.852 00:05:03.045 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 16:48:09.123 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49418 10 6452 1 2025-10-24 16:48:11.869 00:00:10.331 TCP 23.104.0.1:55944 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:44:46.851 00:05:03.049 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:49:12.231 00:00:18.094 TCP 23.104.0.1:41640 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:49:09.336 00:00:20.929 TCP 1.101.0.1:3000 -> 22.102.0.1:39162 10 6452 1 2025-10-24 16:50:20.372 00:00:10.323 TCP 23.104.0.1:39398 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:50:20.313 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39114 10 6452 1 2025-10-24 16:51:20.534 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57582 10 6452 1 2025-10-24 16:51:20.737 00:00:10.370 TCP 23.104.0.1:36612 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:52:22.453 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:52:22.421 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:52:21.146 00:00:10.361 TCP 23.104.0.1:48134 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:52:20.747 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40664 10 6452 1 2025-10-24 16:53:20.965 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:55294 10 6452 1 2025-10-24 16:53:21.544 00:00:10.370 TCP 23.104.0.1:42890 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:49:46.855 00:05:03.045 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-24 16:54:21.191 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:39418 10 6452 1 2025-10-24 16:54:21.952 00:00:10.365 TCP 23.104.0.1:50646 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:50:46.852 00:05:03.050 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-24 16:55:21.401 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47852 10 6452 1 2025-10-24 16:55:22.353 00:00:10.360 TCP 23.104.0.1:47776 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:56:21.624 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47072 10 6452 1 2025-10-24 16:56:22.752 00:00:10.369 TCP 23.104.0.1:59294 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:57:22.583 00:00:00.035 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 16:57:22.514 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-24 16:57:23.158 00:00:10.364 TCP 23.104.0.1:35310 -> 1.101.0.1:3000 11 1507 1 2025-10-24 16:57:21.835 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58436 10 6452 1 2025-10-24 16:58:22.068 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:42660 10 6452 1 2025-10-24 16:58:23.564 00:00:10.366 TCP 23.104.0.1:33372 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 501183, total packets: 1567, avg bps: 1064, avg pps: 0, avg bpp: 319 Time window: 2025-10-24 15:55:46 - 2025-10-24 16:58:33 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0028s User: 0.0028s Wall: 0.0022s flows/second: 75602.3 Runtime: 0.0022s