Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 09:58:44.506 00:00:11.243 TCP 23.104.0.1:35098 -> 1.101.0.1:3000 11 1507 1 2025-10-25 09:59:36.311 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46028 10 6452 1 2025-10-25 09:55:47.197 00:05:03.072 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 09:59:45.787 00:00:10.364 TCP 23.104.0.1:44684 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:00:36.538 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46962 10 6452 1 2025-10-25 09:56:47.194 00:05:03.079 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:00:46.189 00:00:10.366 TCP 23.104.0.1:34768 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:01:36.751 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46384 10 6452 1 2025-10-25 10:01:46.588 00:00:10.722 TCP 23.104.0.1:44848 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:02:43.767 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:02:43.787 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:02:36.971 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:52132 10 6452 1 2025-10-25 10:02:47.347 00:00:10.373 TCP 23.104.0.1:45668 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:03:37.160 00:00:10.409 TCP 1.101.0.1:3000 -> 22.102.0.1:37118 10 6452 1 2025-10-25 10:03:47.757 00:00:10.384 TCP 23.104.0.1:33242 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:04:37.609 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57048 10 6452 1 2025-10-25 10:04:48.178 00:00:10.358 TCP 23.104.0.1:59512 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:01:47.198 00:05:03.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 10:05:37.828 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39710 10 6452 1 2025-10-25 10:05:48.579 00:00:10.337 TCP 23.104.0.1:53532 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:02:47.196 00:05:03.080 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:06:38.074 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44174 10 6452 1 2025-10-25 10:06:48.955 00:00:10.557 TCP 23.104.0.1:46650 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:07:43.135 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:07:43.184 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:07:38.294 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55812 10 6452 1 2025-10-25 10:07:49.560 00:00:10.364 TCP 23.104.0.1:45484 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:08:38.512 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:46524 10 6452 1 2025-10-25 10:08:49.965 00:00:10.380 TCP 23.104.0.1:54236 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:09:38.687 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53662 10 6452 1 2025-10-25 10:09:50.385 00:00:10.369 TCP 23.104.0.1:33548 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:10:38.917 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42644 10 6452 1 2025-10-25 10:10:50.793 00:00:10.366 TCP 23.104.0.1:49560 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:11:39.127 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55440 10 6452 1 2025-10-25 10:07:47.201 00:05:03.074 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 10:11:51.195 00:00:10.320 TCP 23.104.0.1:59874 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:12:43.263 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:12:43.366 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:12:39.350 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54292 10 6452 1 2025-10-25 10:08:47.200 00:05:03.079 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:12:51.552 00:00:10.362 TCP 23.104.0.1:56304 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:13:39.562 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34068 10 6452 1 2025-10-25 10:13:51.955 00:00:10.368 TCP 23.104.0.1:32972 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:14:39.778 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:45072 10 6452 1 2025-10-25 10:14:52.361 00:00:10.367 TCP 23.104.0.1:37720 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:15:39.988 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:44010 10 6452 1 2025-10-25 10:15:52.772 00:00:10.329 TCP 23.104.0.1:38932 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:16:40.208 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54920 10 6452 1 2025-10-25 10:16:53.136 00:00:10.369 TCP 23.104.0.1:45742 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:17:43.463 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:17:43.419 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:13:47.203 00:05:03.074 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 10:17:40.424 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52538 10 6452 1 2025-10-25 10:17:53.543 00:00:10.364 TCP 23.104.0.1:35812 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:18:40.636 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38716 10 6452 1 2025-10-25 10:14:47.202 00:05:03.078 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:18:53.944 00:00:10.363 TCP 23.104.0.1:37134 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:19:40.849 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37506 10 6452 1 2025-10-25 10:19:54.347 00:00:10.370 TCP 23.104.0.1:52726 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:20:41.081 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54522 10 6452 1 2025-10-25 10:20:54.754 00:00:10.337 TCP 23.104.0.1:37602 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:21:41.297 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36696 10 6452 1 2025-10-25 10:21:55.126 00:00:10.327 TCP 23.104.0.1:37926 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:22:43.579 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:22:43.574 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:22:41.508 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45330 10 6452 1 2025-10-25 10:22:55.489 00:00:10.327 TCP 23.104.0.1:38752 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:19:47.204 00:05:03.075 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 10:23:41.718 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:38588 10 6452 1 2025-10-25 10:23:55.854 00:00:10.383 TCP 23.104.0.1:40552 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:20:47.203 00:05:03.080 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:24:41.888 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45310 10 6452 1 2025-10-25 10:24:56.275 00:00:10.381 TCP 23.104.0.1:34106 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:25:42.105 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39438 10 6452 1 2025-10-25 10:25:56.716 00:00:10.375 TCP 23.104.0.1:57370 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:26:42.277 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42386 10 6452 1 2025-10-25 10:26:57.129 00:00:10.363 TCP 23.104.0.1:42170 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:27:43.538 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:27:43.670 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:27:42.487 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39480 10 6452 1 2025-10-25 10:27:57.535 00:00:10.382 TCP 23.104.0.1:50484 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:28:42.707 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35234 10 6452 1 2025-10-25 10:28:57.958 00:00:10.331 TCP 23.104.0.1:37820 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:25:47.205 00:05:03.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 10:29:42.919 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:48202 10 6452 1 2025-10-25 10:29:58.331 00:00:10.800 TCP 23.104.0.1:41822 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:26:47.204 00:05:03.084 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:30:43.107 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41726 10 6452 1 2025-10-25 10:30:59.169 00:00:10.365 TCP 23.104.0.1:37270 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:31:43.316 00:00:18.459 TCP 1.101.0.1:3000 -> 22.102.0.1:44314 10 6452 1 2025-10-25 10:31:59.574 00:00:10.365 TCP 23.104.0.1:59608 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:32:43.838 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:32:43.768 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:32:51.813 00:00:10.542 TCP 1.101.0.1:3000 -> 22.102.0.1:45690 10 6452 1 2025-10-25 10:32:59.977 00:00:10.369 TCP 23.104.0.1:49884 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:33:52.395 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:55348 10 6452 1 2025-10-25 10:34:00.381 00:00:10.368 TCP 23.104.0.1:45814 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:34:52.619 00:00:10.644 TCP 1.101.0.1:3000 -> 22.102.0.1:45988 10 6452 1 2025-10-25 10:35:00.787 00:00:10.372 TCP 23.104.0.1:45768 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:31:47.208 00:05:03.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 10:35:53.303 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:46978 12 10375 1 2025-10-25 10:36:01.199 00:00:10.441 TCP 23.104.0.1:47590 -> 1.101.0.1:3000 15 1926 1 2025-10-25 10:32:47.206 00:05:03.083 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:36:53.560 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45340 10 6452 1 2025-10-25 10:37:01.675 00:00:10.368 TCP 23.104.0.1:54050 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:37:44.209 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:37:43.796 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:37:53.779 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51872 10 6452 1 2025-10-25 10:38:02.108 00:00:10.394 TCP 23.104.0.1:45038 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:38:53.956 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:55692 10 6452 1 2025-10-25 10:39:02.548 00:00:10.363 TCP 23.104.0.1:33294 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:39:54.140 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48268 10 6452 1 2025-10-25 10:40:02.948 00:00:10.374 TCP 23.104.0.1:39540 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:40:54.361 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:38782 10 6452 1 2025-10-25 10:41:03.362 00:00:10.322 TCP 23.104.0.1:38194 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:37:47.210 00:05:03.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 10:41:54.584 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:43354 10 6452 1 2025-10-25 10:42:03.724 00:00:10.376 TCP 23.104.0.1:55188 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:42:43.823 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:42:43.909 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:38:47.207 00:05:03.084 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:42:54.805 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38044 10 6452 1 2025-10-25 10:43:04.132 00:00:10.363 TCP 23.104.0.1:48650 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:43:55.040 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38980 10 6452 1 2025-10-25 10:44:04.532 00:00:10.423 TCP 23.104.0.1:34798 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:44:55.262 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51284 10 6452 1 2025-10-25 10:45:04.996 00:00:10.363 TCP 23.104.0.1:33330 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:45:55.478 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37436 10 6452 1 2025-10-25 10:46:05.398 00:00:10.375 TCP 23.104.0.1:38588 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:46:55.692 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:44944 10 6452 1 2025-10-25 10:47:05.803 00:00:11.683 TCP 23.104.0.1:34544 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:47:43.881 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:47:43.976 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:43:47.211 00:05:03.079 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 10:47:55.924 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:54774 10 6452 1 2025-10-25 10:48:07.526 00:00:10.366 TCP 23.104.0.1:49902 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:44:47.209 00:05:03.084 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:48:56.126 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38290 10 6452 1 2025-10-25 10:49:07.925 00:00:10.369 TCP 23.104.0.1:35786 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:49:56.343 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36358 10 6452 1 2025-10-25 10:50:08.353 00:00:10.363 TCP 23.104.0.1:42508 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:50:56.558 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33302 10 6452 1 2025-10-25 10:51:08.757 00:00:10.333 TCP 23.104.0.1:56430 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:51:56.772 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:60126 10 6452 1 2025-10-25 10:52:09.128 00:00:10.367 TCP 23.104.0.1:52620 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:52:44.203 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:52:43.919 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:52:56.953 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:54860 10 6452 1 2025-10-25 10:53:09.534 00:00:10.365 TCP 23.104.0.1:35994 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:49:47.212 00:05:03.082 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 10:53:57.192 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36850 10 6452 1 2025-10-25 10:54:09.935 00:00:10.362 TCP 23.104.0.1:58742 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:50:47.210 00:05:03.087 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 10:54:57.415 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59080 10 6452 1 2025-10-25 10:55:10.334 00:00:12.374 TCP 23.104.0.1:56222 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:55:57.632 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:36380 10 6452 1 2025-10-25 10:56:12.760 00:00:10.373 TCP 23.104.0.1:49594 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:56:57.823 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56170 10 6452 1 2025-10-25 10:57:13.167 00:00:10.359 TCP 23.104.0.1:52088 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:57:44.311 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 10:57:44.188 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:57:58.038 00:00:10.518 TCP 1.101.0.1:3000 -> 22.102.0.1:46064 10 6452 1 2025-10-25 10:58:13.566 00:00:10.364 TCP 23.104.0.1:58420 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496238, total packets: 1568, avg bps: 1056, avg pps: 0, avg bpp: 316 Time window: 2025-10-25 09:55:47 - 2025-10-25 10:58:23 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0040s User: 0.0008s Wall: 0.0026s flows/second: 62883.7 Runtime: 0.0026s