Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 18:58:55.698 00:00:10.327 TCP 23.104.0.1:34970 -> 1.101.0.1:3000 11 1507 1 2025-10-28 18:59:20.502 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 18:59:20.511 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 18:59:41.620 00:00:12.059 TCP 1.101.0.1:3000 -> 22.102.0.1:54014 10 6452 1 2025-10-28 18:55:48.765 00:05:03.358 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 18:59:56.089 00:00:10.361 TCP 23.104.0.1:58852 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:00:43.723 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43838 10 6452 1 2025-10-28 18:56:48.764 00:05:03.363 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:00:56.487 00:00:10.367 TCP 23.104.0.1:37474 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:01:43.933 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:42780 10 6452 1 2025-10-28 19:01:56.890 00:00:10.374 TCP 23.104.0.1:38252 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:02:44.170 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33412 10 6452 1 2025-10-28 19:02:57.303 00:00:10.329 TCP 23.104.0.1:37820 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:03:44.393 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53736 10 6452 1 2025-10-28 19:03:57.680 00:00:10.368 TCP 23.104.0.1:59722 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:04:20.634 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:04:20.838 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:04:44.606 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:34598 10 6452 1 2025-10-28 19:04:58.102 00:00:10.371 TCP 23.104.0.1:57334 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:01:48.774 00:05:03.352 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 19:05:44.782 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50652 10 6452 1 2025-10-28 19:05:58.508 00:00:10.332 TCP 23.104.0.1:60108 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:06:44.997 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:41040 10 6452 1 2025-10-28 19:02:48.772 00:05:03.357 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:06:58.874 00:00:10.369 TCP 23.104.0.1:39936 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:07:45.226 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:45020 10 6452 1 2025-10-28 19:07:59.284 00:00:10.368 TCP 23.104.0.1:42350 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:08:45.444 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55340 10 6452 1 2025-10-28 19:08:59.686 00:00:10.367 TCP 23.104.0.1:48410 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:09:20.903 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:09:20.954 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:09:45.663 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:41818 10 6452 1 2025-10-28 19:10:00.103 00:00:10.322 TCP 23.104.0.1:38094 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:10:45.881 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:58242 10 6452 1 2025-10-28 19:11:00.466 00:00:10.379 TCP 23.104.0.1:56072 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:07:48.776 00:05:03.350 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 19:11:46.107 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34704 10 6452 1 2025-10-28 19:12:00.884 00:00:10.382 TCP 23.104.0.1:58974 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:12:46.319 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38022 10 6452 1 2025-10-28 19:08:48.775 00:05:03.354 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:13:01.298 00:00:10.365 TCP 23.104.0.1:50606 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:13:46.537 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35916 10 6452 1 2025-10-28 19:14:01.697 00:00:10.364 TCP 23.104.0.1:37824 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:14:20.836 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:14:20.792 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:14:46.748 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52196 10 6452 1 2025-10-28 19:15:02.106 00:00:10.365 TCP 23.104.0.1:35446 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:15:46.959 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40422 10 6452 1 2025-10-28 19:16:02.511 00:00:10.376 TCP 23.104.0.1:33764 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:16:47.184 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50330 12 6556 1 2025-10-28 19:17:02.922 00:00:10.390 TCP 23.104.0.1:60952 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:13:48.780 00:05:03.350 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 19:17:47.405 00:00:10.231 TCP 1.101.0.1:3000 -> 22.102.0.1:55412 13 6608 1 2025-10-28 19:18:03.349 00:00:10.367 TCP 23.104.0.1:35262 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:14:48.777 00:05:03.366 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:18:47.688 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55158 10 6452 1 2025-10-28 19:19:03.758 00:00:10.378 TCP 23.104.0.1:50006 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:19:21.335 00:00:00.033 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:19:22.051 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:19:47.906 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58406 10 6452 1 2025-10-28 19:20:04.173 00:00:10.322 TCP 23.104.0.1:44060 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:20:48.119 00:00:10.343 TCP 1.101.0.1:3000 -> 22.102.0.1:57916 10 6452 1 2025-10-28 19:21:04.537 00:00:10.366 TCP 23.104.0.1:39426 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:21:48.501 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36300 10 6452 1 2025-10-28 19:22:04.940 00:00:10.375 TCP 23.104.0.1:34396 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:22:48.730 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57420 10 6452 1 2025-10-28 19:23:05.359 00:00:10.361 TCP 23.104.0.1:55596 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:19:48.780 00:05:03.361 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 19:23:48.947 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:49380 10 6452 1 2025-10-28 19:24:05.761 00:00:10.374 TCP 23.104.0.1:60670 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:24:20.831 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:24:21.075 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:20:48.776 00:05:03.367 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:24:49.181 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47996 10 6452 1 2025-10-28 19:25:06.174 00:00:10.324 TCP 23.104.0.1:35784 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:25:49.355 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35252 10 6452 1 2025-10-28 19:26:06.537 00:00:10.369 TCP 23.104.0.1:49578 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:26:49.565 00:00:11.023 TCP 1.101.0.1:3000 -> 22.102.0.1:42908 10 6452 1 2025-10-28 19:27:06.943 00:00:10.374 TCP 23.104.0.1:40076 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:27:50.629 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58942 10 6452 1 2025-10-28 19:28:07.352 00:00:10.386 TCP 23.104.0.1:48488 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:28:50.846 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48996 10 6452 1 2025-10-28 19:29:20.979 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:29:07.772 00:00:10.367 TCP 23.104.0.1:45800 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:29:21.137 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:25:48.780 00:05:03.362 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 19:29:51.080 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54062 10 6452 1 2025-10-28 19:30:08.175 00:00:10.364 TCP 23.104.0.1:59648 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:26:48.779 00:05:03.366 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:30:51.300 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53540 10 6452 1 2025-10-28 19:31:08.581 00:00:10.429 TCP 23.104.0.1:40836 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:31:51.520 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42668 10 6452 1 2025-10-28 19:32:09.075 00:00:10.379 TCP 23.104.0.1:60256 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:32:51.734 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:46034 10 6452 1 2025-10-28 19:33:09.487 00:00:10.364 TCP 23.104.0.1:53902 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:33:51.938 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48934 10 6452 1 2025-10-28 19:34:21.336 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:34:09.890 00:00:10.375 TCP 23.104.0.1:49110 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:34:20.997 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:34:52.161 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:53342 10 6452 1 2025-10-28 19:35:10.303 00:00:10.327 TCP 23.104.0.1:55236 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:31:48.780 00:05:03.362 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 19:35:52.336 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:59202 10 6452 1 2025-10-28 19:36:10.673 00:00:10.367 TCP 23.104.0.1:39958 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:32:48.779 00:05:03.366 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:36:52.507 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45338 10 6452 1 2025-10-28 19:37:11.101 00:00:10.366 TCP 23.104.0.1:56168 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:37:52.721 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:34872 10 6452 1 2025-10-28 19:38:11.506 00:00:10.325 TCP 23.104.0.1:56810 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:38:52.931 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:46296 10 6452 1 2025-10-28 19:39:21.462 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:39:21.388 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:39:11.869 00:00:10.367 TCP 23.104.0.1:56912 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:39:53.174 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53104 10 6452 1 2025-10-28 19:40:12.270 00:00:10.361 TCP 23.104.0.1:54788 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:40:53.398 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:57368 10 6452 1 2025-10-28 19:41:12.670 00:00:10.365 TCP 23.104.0.1:35184 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:37:48.782 00:05:03.361 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 19:41:53.653 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44680 10 6452 1 2025-10-28 19:42:13.093 00:00:10.362 TCP 23.104.0.1:56882 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:38:48.780 00:05:03.367 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:42:53.868 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:59844 10 6452 1 2025-10-28 19:43:13.494 00:00:10.366 TCP 23.104.0.1:39090 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:43:54.092 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:55340 10 6452 1 2025-10-28 19:44:21.443 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:44:21.411 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:44:13.899 00:00:10.421 TCP 23.104.0.1:43978 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:44:54.258 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54898 10 6452 1 2025-10-28 19:45:14.360 00:00:10.320 TCP 23.104.0.1:50572 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:45:54.469 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43562 10 6452 1 2025-10-28 19:46:14.719 00:00:10.368 TCP 23.104.0.1:50376 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:46:54.681 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51912 10 6452 1 2025-10-28 19:47:15.126 00:00:10.325 TCP 23.104.0.1:58576 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:43:48.784 00:05:03.363 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 19:47:54.897 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38308 10 6452 1 2025-10-28 19:48:15.486 00:00:10.364 TCP 23.104.0.1:49090 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:44:48.779 00:05:03.368 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:48:55.121 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:44258 10 6452 1 2025-10-28 19:49:21.607 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:49:21.397 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:49:15.889 00:00:10.377 TCP 23.104.0.1:59942 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:49:55.291 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56224 10 6452 1 2025-10-28 19:50:16.303 00:00:10.363 TCP 23.104.0.1:43658 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:50:55.507 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41862 10 6452 1 2025-10-28 19:51:16.706 00:00:10.324 TCP 23.104.0.1:34878 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:51:55.721 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:55422 10 6452 1 2025-10-28 19:52:17.095 00:00:10.365 TCP 23.104.0.1:34428 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:52:55.901 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:60338 10 6452 1 2025-10-28 19:53:17.512 00:00:10.362 TCP 23.104.0.1:60526 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:49:48.783 00:05:03.363 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-28 19:53:56.127 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38300 10 6452 1 2025-10-28 19:54:21.708 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 19:54:21.429 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-28 19:54:17.918 00:00:10.389 TCP 23.104.0.1:58302 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:50:48.781 00:05:03.369 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-28 19:54:56.340 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56498 10 6452 1 2025-10-28 19:55:18.345 00:00:10.365 TCP 23.104.0.1:59342 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:55:56.557 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58744 10 6452 1 2025-10-28 19:56:18.753 00:00:10.340 TCP 23.104.0.1:37694 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:56:56.771 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59038 10 6452 1 2025-10-28 19:57:19.124 00:00:10.365 TCP 23.104.0.1:35948 -> 1.101.0.1:3000 11 1507 1 2025-10-28 19:57:56.986 00:00:10.515 TCP 1.101.0.1:3000 -> 22.102.0.1:54052 10 6452 1 2025-10-28 19:58:19.532 00:00:10.376 TCP 23.104.0.1:46808 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 492156, total packets: 1567, avg bps: 1046, avg pps: 0, avg bpp: 314 Time window: 2025-10-28 18:55:48 - 2025-10-28 19:58:29 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0029s User: 0.0019s Wall: 0.0024s flows/second: 68745.3 Runtime: 0.0024s