Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 12:59:11.108 00:00:10.329 TCP 23.104.0.1:56110 -> 1.101.0.1:3000 11 1507 1 2025-10-25 12:59:32.937 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:60308 10 6452 1 2025-10-25 12:55:47.255 00:05:03.074 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:00:11.475 00:00:10.326 TCP 23.104.0.1:47528 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:00:33.130 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:37898 12 10369 1 2025-10-25 12:56:47.254 00:05:03.078 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:01:11.844 00:00:10.464 TCP 23.104.0.1:37620 -> 1.101.0.1:3000 15 1926 1 2025-10-25 13:01:33.374 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33162 10 6452 1 2025-10-25 13:02:12.346 00:00:10.368 TCP 23.104.0.1:43304 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:02:46.899 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:02:33.546 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41768 10 6452 1 2025-10-25 13:02:46.854 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:03:12.750 00:00:17.879 TCP 23.104.0.1:46254 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:03:33.749 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37368 10 6452 1 2025-10-25 13:04:20.658 00:00:10.365 TCP 23.104.0.1:39758 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:04:33.965 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:55564 10 6452 1 2025-10-25 13:05:21.089 00:00:10.363 TCP 23.104.0.1:50644 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:05:34.192 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:55268 10 6452 1 2025-10-25 13:01:47.261 00:05:03.069 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:06:21.494 00:00:10.364 TCP 23.104.0.1:54368 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:06:34.364 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42358 10 6452 1 2025-10-25 13:02:47.258 00:05:03.075 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:07:21.900 00:00:10.897 TCP 23.104.0.1:57420 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:07:46.898 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:07:46.731 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:07:34.574 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39528 10 6452 1 2025-10-25 13:08:22.840 00:00:10.348 TCP 23.104.0.1:47260 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:08:34.791 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55838 10 6452 1 2025-10-25 13:09:23.225 00:00:10.357 TCP 23.104.0.1:60260 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:09:35.038 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55296 10 6452 1 2025-10-25 13:10:23.619 00:00:10.325 TCP 23.104.0.1:34484 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:10:35.257 00:00:10.232 TCP 1.101.0.1:3000 -> 22.102.0.1:47558 12 10375 1 2025-10-25 13:11:23.983 00:00:10.440 TCP 23.104.0.1:56646 -> 1.101.0.1:3000 15 1926 1 2025-10-25 13:11:35.542 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51568 10 6452 1 2025-10-25 13:07:47.261 00:05:03.069 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:12:24.456 00:00:14.358 TCP 23.104.0.1:34246 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:12:35.754 00:00:10.354 TCP 1.101.0.1:3000 -> 22.102.0.1:59408 10 6452 1 2025-10-25 13:12:46.799 00:00:00.030 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:12:46.991 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:08:47.260 00:05:03.074 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:13:28.868 00:00:10.324 TCP 23.104.0.1:51874 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:13:36.145 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46020 10 6452 1 2025-10-25 13:14:29.236 00:00:10.363 TCP 23.104.0.1:57046 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:14:36.368 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:57668 10 6452 1 2025-10-25 13:15:29.647 00:00:10.407 TCP 23.104.0.1:49486 -> 1.101.0.1:3000 15 1926 1 2025-10-25 13:15:36.546 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:57498 12 10369 1 2025-10-25 13:16:30.100 00:00:10.369 TCP 23.104.0.1:43016 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:16:36.792 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50984 10 6452 1 2025-10-25 13:17:30.504 00:00:10.369 TCP 23.104.0.1:44644 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:17:47.395 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:13:47.264 00:05:03.070 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:17:37.009 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35078 10 6452 1 2025-10-25 13:17:47.446 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:18:30.910 00:00:10.418 TCP 23.104.0.1:55606 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:18:37.231 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60732 10 6452 1 2025-10-25 13:14:47.261 00:05:03.075 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:19:31.369 00:00:10.364 TCP 23.104.0.1:48110 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:19:37.441 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44018 10 6452 1 2025-10-25 13:20:31.769 00:00:10.405 TCP 23.104.0.1:34890 -> 1.101.0.1:3000 15 1926 1 2025-10-25 13:20:37.652 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39822 13 13943 1 2025-10-25 13:21:32.217 00:00:10.370 TCP 23.104.0.1:43146 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:21:37.870 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:43140 10 6452 1 2025-10-25 13:22:32.626 00:00:13.445 TCP 23.104.0.1:34178 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:22:47.262 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:22:38.098 00:00:10.396 TCP 1.101.0.1:3000 -> 22.102.0.1:53260 10 6452 1 2025-10-25 13:22:47.200 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:23:36.110 00:00:10.361 TCP 23.104.0.1:49660 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:23:38.533 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43154 10 6452 1 2025-10-25 13:19:47.265 00:05:03.072 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:24:36.515 00:00:10.366 TCP 23.104.0.1:41514 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:24:38.708 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45368 10 6452 1 2025-10-25 13:20:47.264 00:05:03.077 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:25:38.928 00:00:18.463 TCP 1.101.0.1:3000 -> 22.102.0.1:36170 10 6452 1 2025-10-25 13:25:36.923 00:00:20.561 TCP 23.104.0.1:60854 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:26:47.428 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52010 10 6452 1 2025-10-25 13:26:47.523 00:00:10.361 TCP 23.104.0.1:59166 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:27:47.179 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:27:47.334 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:27:47.924 00:00:10.367 TCP 23.104.0.1:42172 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:27:47.657 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40736 10 6452 1 2025-10-25 13:28:48.331 00:00:10.371 TCP 23.104.0.1:58260 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:28:47.876 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:40620 10 6452 1 2025-10-25 13:25:47.269 00:05:03.074 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:29:48.747 00:00:10.366 TCP 23.104.0.1:55486 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:29:48.067 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41686 10 6452 1 2025-10-25 13:26:47.266 00:05:03.079 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:30:49.152 00:00:10.363 TCP 23.104.0.1:43270 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:30:48.286 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46940 10 6452 1 2025-10-25 13:31:48.503 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51046 10 6452 1 2025-10-25 13:31:49.554 00:00:10.358 TCP 23.104.0.1:52796 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:32:47.430 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:32:47.407 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:32:48.709 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:56606 10 6452 1 2025-10-25 13:32:49.951 00:00:10.331 TCP 23.104.0.1:46534 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:33:48.882 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:37130 10 6452 1 2025-10-25 13:33:50.318 00:00:10.360 TCP 23.104.0.1:36862 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:34:50.715 00:00:10.322 TCP 23.104.0.1:54132 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:34:49.115 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:41190 10 6452 1 2025-10-25 13:31:47.270 00:05:03.074 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:35:49.298 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39216 10 6452 1 2025-10-25 13:35:51.112 00:00:10.365 TCP 23.104.0.1:40780 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:32:47.266 00:05:03.079 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:36:51.514 00:00:10.365 TCP 23.104.0.1:41640 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:36:49.511 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46742 10 6452 1 2025-10-25 13:37:47.599 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:37:47.330 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:37:49.729 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38356 10 6452 1 2025-10-25 13:37:51.920 00:00:10.393 TCP 23.104.0.1:56362 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:38:49.944 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:51370 10 6452 1 2025-10-25 13:38:52.350 00:00:10.369 TCP 23.104.0.1:59120 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:39:50.136 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44940 10 6452 1 2025-10-25 13:39:52.763 00:00:10.384 TCP 23.104.0.1:52472 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:40:50.360 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:47042 12 10584 1 2025-10-25 13:40:53.184 00:00:10.396 TCP 23.104.0.1:52642 -> 1.101.0.1:3000 15 1926 1 2025-10-25 13:37:47.270 00:05:03.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:41:50.616 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:60736 10 6661 1 2025-10-25 13:41:53.621 00:00:10.367 TCP 23.104.0.1:33262 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:42:47.780 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:42:48.012 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:38:47.269 00:05:03.081 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:42:50.851 00:00:10.241 TCP 1.101.0.1:3000 -> 22.102.0.1:59176 10 6661 1 2025-10-25 13:42:54.027 00:00:10.373 TCP 23.104.0.1:40238 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:43:51.116 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58620 10 6661 1 2025-10-25 13:43:54.430 00:00:10.368 TCP 23.104.0.1:42628 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:44:51.345 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:56530 10 6661 1 2025-10-25 13:44:54.833 00:00:10.405 TCP 23.104.0.1:56420 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:45:51.577 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:39732 12 10793 1 2025-10-25 13:45:55.278 00:00:10.449 TCP 23.104.0.1:34006 -> 1.101.0.1:3000 15 1926 1 2025-10-25 13:46:51.822 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55838 10 6870 1 2025-10-25 13:46:55.787 00:00:10.374 TCP 23.104.0.1:42892 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:47:47.695 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:43:47.271 00:05:03.076 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:47:47.670 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:47:56.199 00:00:10.322 TCP 23.104.0.1:38730 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:47:52.042 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34284 10 6870 1 2025-10-25 13:44:47.270 00:05:03.081 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:48:52.253 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48976 10 6870 1 2025-10-25 13:48:56.555 00:00:10.375 TCP 23.104.0.1:35544 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:49:52.472 00:00:10.926 TCP 1.101.0.1:3000 -> 22.102.0.1:48104 10 6870 1 2025-10-25 13:49:56.974 00:00:10.711 TCP 23.104.0.1:50878 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:50:53.436 00:00:10.227 TCP 1.101.0.1:3000 -> 22.102.0.1:41296 11 6922 1 2025-10-25 13:50:57.727 00:00:10.381 TCP 23.104.0.1:59436 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:51:53.707 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37600 10 6870 1 2025-10-25 13:51:58.145 00:00:10.368 TCP 23.104.0.1:33014 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:52:47.806 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:52:47.746 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:52:53.920 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:58292 10 6870 1 2025-10-25 13:52:58.550 00:00:10.333 TCP 23.104.0.1:56486 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:49:47.272 00:05:03.077 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-25 13:53:54.104 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:49266 10 6870 1 2025-10-25 13:53:58.923 00:00:10.379 TCP 23.104.0.1:45966 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:50:47.270 00:05:03.082 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-25 13:54:54.274 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44132 10 6870 1 2025-10-25 13:54:59.339 00:00:10.585 TCP 23.104.0.1:53504 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:55:54.488 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56862 10 6870 1 2025-10-25 13:55:59.965 00:00:10.375 TCP 23.104.0.1:45180 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:56:54.701 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:51282 10 6870 1 2025-10-25 13:57:00.377 00:00:10.369 TCP 23.104.0.1:57002 -> 1.101.0.1:3000 11 1507 1 2025-10-25 13:57:47.962 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-25 13:57:48.061 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 13:57:54.871 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39914 10 6870 1 2025-10-25 13:58:00.779 00:00:10.369 TCP 23.104.0.1:56568 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 526528, total packets: 1589, avg bps: 1125, avg pps: 0, avg bpp: 331 Time window: 2025-10-25 12:55:47 - 2025-10-25 13:58:11 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0044s User: 0.0009s Wall: 0.0026s flows/second: 61669.7 Runtime: 0.0026s