Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 02:59:01.377 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 02:59:01.307 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 02:58:58.303 00:00:10.324 TCP 23.104.0.1:36622 -> 1.101.0.1:3000 11 1507 1 2025-10-28 02:59:32.852 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:46598 10 6452 1 2025-10-28 02:55:48.449 00:05:03.328 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 02:59:58.673 00:00:10.374 TCP 23.104.0.1:60286 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:00:33.085 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:47066 10 6452 1 2025-10-28 02:56:48.445 00:05:03.333 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:00:59.108 00:00:10.365 TCP 23.104.0.1:52134 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:01:33.257 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55862 11 6492 1 2025-10-28 03:01:59.517 00:00:10.369 TCP 23.104.0.1:49836 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:02:33.468 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50188 10 6452 1 2025-10-28 03:02:59.922 00:00:10.382 TCP 23.104.0.1:60170 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:03:33.681 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:36552 10 6452 1 2025-10-28 03:04:01.615 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:04:01.676 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:04:00.342 00:00:10.372 TCP 23.104.0.1:40454 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:04:33.888 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:41340 10 6452 1 2025-10-28 03:05:00.749 00:00:10.363 TCP 23.104.0.1:39204 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:05:34.111 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55446 10 6452 1 2025-10-28 03:01:48.450 00:05:03.326 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 03:06:01.150 00:00:10.321 TCP 23.104.0.1:49150 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:06:34.320 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39524 12 6556 1 2025-10-28 03:02:48.448 00:05:03.333 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:07:01.515 00:00:10.368 TCP 23.104.0.1:56526 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:07:34.529 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50540 10 6452 1 2025-10-28 03:08:01.933 00:00:10.342 TCP 23.104.0.1:33252 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:08:34.757 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35244 10 6452 1 2025-10-28 03:09:01.560 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:09:01.404 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:09:02.317 00:00:10.361 TCP 23.104.0.1:53074 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:09:34.976 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58542 10 6452 1 2025-10-28 03:10:02.722 00:00:10.371 TCP 23.104.0.1:55960 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:10:35.199 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36956 10 6452 1 2025-10-28 03:11:03.136 00:00:10.365 TCP 23.104.0.1:45890 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:11:35.430 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33498 10 6452 1 2025-10-28 03:07:48.451 00:05:03.328 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 03:12:03.536 00:00:10.371 TCP 23.104.0.1:36330 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:12:35.646 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48132 10 6452 1 2025-10-28 03:08:48.449 00:05:03.333 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:13:03.954 00:00:10.368 TCP 23.104.0.1:36250 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:13:35.856 00:00:10.658 TCP 1.101.0.1:3000 -> 22.102.0.1:45056 10 6452 1 2025-10-28 03:14:01.465 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:14:01.250 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:14:04.363 00:00:10.367 TCP 23.104.0.1:46172 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:14:36.559 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:52064 10 6452 1 2025-10-28 03:15:04.767 00:00:10.328 TCP 23.104.0.1:46700 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:15:36.795 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:49724 10 6452 1 2025-10-28 03:16:05.136 00:00:10.366 TCP 23.104.0.1:53612 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:16:37.031 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34710 10 6452 1 2025-10-28 03:17:05.540 00:00:10.812 TCP 23.104.0.1:58348 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:17:37.249 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:49200 10 6452 1 2025-10-28 03:13:48.453 00:05:03.327 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 03:18:06.395 00:00:10.363 TCP 23.104.0.1:50982 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:18:37.468 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:34688 10 6452 1 2025-10-28 03:14:48.454 00:05:03.329 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:19:01.621 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:19:01.467 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:19:06.797 00:00:10.353 TCP 23.104.0.1:58150 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:19:37.642 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58636 10 6452 1 2025-10-28 03:20:07.174 00:00:10.366 TCP 23.104.0.1:43262 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:20:37.853 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49900 10 6452 1 2025-10-28 03:21:07.573 00:00:10.367 TCP 23.104.0.1:38130 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:21:38.080 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57810 10 6452 1 2025-10-28 03:22:07.977 00:00:10.377 TCP 23.104.0.1:35438 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:22:38.302 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34154 10 6452 1 2025-10-28 03:23:08.394 00:00:10.373 TCP 23.104.0.1:59212 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:23:38.521 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60080 10 6452 1 2025-10-28 03:24:01.506 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:19:48.459 00:05:03.323 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 03:24:01.870 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:24:08.801 00:00:10.362 TCP 23.104.0.1:55746 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:24:38.748 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56854 10 6452 1 2025-10-28 03:20:48.457 00:05:03.328 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:25:09.203 00:00:10.368 TCP 23.104.0.1:34922 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:25:38.970 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43394 12 6556 1 2025-10-28 03:26:09.605 00:00:10.322 TCP 23.104.0.1:48134 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:26:39.188 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:47428 12 10369 1 2025-10-28 03:27:09.967 00:00:10.436 TCP 23.104.0.1:47960 -> 1.101.0.1:3000 15 1926 1 2025-10-28 03:27:39.394 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41738 10 6452 1 2025-10-28 03:28:10.441 00:00:23.820 TCP 23.104.0.1:43738 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:28:39.608 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52830 10 6452 1 2025-10-28 03:29:02.404 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:29:02.331 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:29:24.303 00:00:10.326 TCP 23.104.0.1:35094 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:29:39.782 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39998 10 6452 1 2025-10-28 03:25:48.459 00:05:03.324 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 03:30:24.665 00:00:10.364 TCP 23.104.0.1:43290 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:30:39.956 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:54860 10 6452 1 2025-10-28 03:26:48.456 00:05:03.330 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:31:25.094 00:00:10.360 TCP 23.104.0.1:42844 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:31:40.184 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:42010 10 6452 1 2025-10-28 03:32:25.496 00:00:10.368 TCP 23.104.0.1:44646 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:32:40.356 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46160 10 6452 1 2025-10-28 03:33:25.899 00:00:10.365 TCP 23.104.0.1:35788 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:33:40.572 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60152 10 6452 1 2025-10-28 03:34:01.738 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:34:02.171 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:34:26.306 00:00:10.326 TCP 23.104.0.1:38220 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:34:40.743 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:37888 10 6452 1 2025-10-28 03:35:26.672 00:00:10.363 TCP 23.104.0.1:50696 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:35:40.973 00:00:10.221 TCP 1.101.0.1:3000 -> 22.102.0.1:59762 10 6452 1 2025-10-28 03:31:48.459 00:05:03.325 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 03:36:27.102 00:00:10.363 TCP 23.104.0.1:51980 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:36:41.233 00:00:10.643 TCP 1.101.0.1:3000 -> 22.102.0.1:53794 11 6504 1 2025-10-28 03:32:48.458 00:05:03.329 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:37:27.507 00:00:10.363 TCP 23.104.0.1:39928 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:37:41.901 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60804 10 6452 1 2025-10-28 03:38:27.910 00:00:10.361 TCP 23.104.0.1:59670 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:38:42.126 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:34198 10 6452 1 2025-10-28 03:39:01.987 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:39:02.189 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:39:28.311 00:00:10.334 TCP 23.104.0.1:54930 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:39:42.351 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51066 10 6452 1 2025-10-28 03:40:28.689 00:00:10.363 TCP 23.104.0.1:54104 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:40:42.576 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48752 10 6452 1 2025-10-28 03:41:29.096 00:00:10.365 TCP 23.104.0.1:50346 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:37:48.461 00:05:03.324 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 03:41:42.747 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:48934 10 6452 1 2025-10-28 03:42:29.500 00:00:10.362 TCP 23.104.0.1:51138 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:42:42.993 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:41564 10 6452 1 2025-10-28 03:38:48.459 00:05:03.330 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:43:29.900 00:00:10.373 TCP 23.104.0.1:50754 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:43:43.173 00:00:10.755 TCP 1.101.0.1:3000 -> 22.102.0.1:41388 10 6452 1 2025-10-28 03:44:02.363 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:44:02.227 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:44:30.308 00:00:10.367 TCP 23.104.0.1:53580 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:44:43.969 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:32920 10 6452 1 2025-10-28 03:45:30.714 00:00:11.087 TCP 23.104.0.1:59350 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:45:44.200 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52956 10 6452 1 2025-10-28 03:46:31.838 00:00:10.395 TCP 23.104.0.1:53770 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:46:44.415 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47478 10 6452 1 2025-10-28 03:47:32.274 00:00:10.320 TCP 23.104.0.1:49630 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:47:44.630 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47702 10 6452 1 2025-10-28 03:43:48.462 00:05:03.325 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 03:48:32.632 00:00:10.363 TCP 23.104.0.1:46166 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:44:48.460 00:05:03.330 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:48:44.841 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37022 10 6452 1 2025-10-28 03:49:02.781 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:49:02.193 00:00:00.028 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:49:33.047 00:00:10.336 TCP 23.104.0.1:45522 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:49:45.010 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37842 10 6452 1 2025-10-28 03:50:33.432 00:00:10.363 TCP 23.104.0.1:36990 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:50:45.228 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38166 10 6452 1 2025-10-28 03:51:33.833 00:00:10.344 TCP 23.104.0.1:56550 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:51:45.439 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59164 10 6452 1 2025-10-28 03:52:34.215 00:00:10.368 TCP 23.104.0.1:49942 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:52:45.651 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39300 10 6452 1 2025-10-28 03:53:34.618 00:00:10.372 TCP 23.104.0.1:51682 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:49:48.463 00:05:03.324 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 03:53:45.858 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:45888 10 6452 1 2025-10-28 03:54:02.700 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 03:54:02.563 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 03:54:35.026 00:00:10.375 TCP 23.104.0.1:60154 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:54:46.084 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37072 10 6452 1 2025-10-28 03:50:48.464 00:05:03.326 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 03:55:35.446 00:00:10.369 TCP 23.104.0.1:35480 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:55:46.299 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48402 10 6452 1 2025-10-28 03:56:35.852 00:00:10.340 TCP 23.104.0.1:58944 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:56:46.519 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55010 10 6452 1 2025-10-28 03:57:36.240 00:00:10.367 TCP 23.104.0.1:48464 -> 1.101.0.1:3000 11 1507 1 2025-10-28 03:57:46.735 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:58840 10 6452 1 2025-10-28 03:58:36.648 00:00:10.384 TCP 23.104.0.1:55534 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496532, total packets: 1574, avg bps: 1051, avg pps: 0, avg bpp: 315 Time window: 2025-10-28 02:55:48 - 2025-10-28 03:58:47 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0043s User: 0.0021s Wall: 0.0021s flows/second: 76808.4 Runtime: 0.0021s