Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 08:59:20.793 00:00:10.377 TCP 23.104.0.1:45836 -> 1.101.0.1:3000 11 1507 1 2025-10-29 08:59:37.364 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 08:59:37.434 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 08:59:39.478 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34702 10 6452 1 2025-10-29 08:55:49.054 00:05:03.341 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:00:21.198 00:00:10.364 TCP 23.104.0.1:48168 -> 1.101.0.1:3000 11 1507 1 2025-10-29 08:55:52.396 00:05:56.657 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:00:39.692 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33896 10 6452 1 2025-10-29 09:01:21.599 00:00:10.717 TCP 23.104.0.1:44786 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:01:39.904 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52322 10 6452 1 2025-10-29 09:02:22.375 00:00:10.366 TCP 23.104.0.1:53990 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:02:40.119 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34156 10 6452 1 2025-10-29 09:03:22.781 00:00:10.377 TCP 23.104.0.1:33240 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:03:40.328 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:42118 10 6452 1 2025-10-29 09:04:23.199 00:00:11.466 TCP 23.104.0.1:42022 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:04:37.405 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:04:37.373 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:04:40.506 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33692 10 6452 1 2025-10-29 09:05:24.714 00:00:10.334 TCP 23.104.0.1:59786 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:05:40.678 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34416 10 6452 1 2025-10-29 09:01:49.055 00:05:03.345 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:06:25.104 00:00:10.367 TCP 23.104.0.1:58744 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:06:40.890 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52392 10 6452 1 2025-10-29 09:01:52.403 00:05:56.651 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:07:25.507 00:00:10.368 TCP 23.104.0.1:45610 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:07:41.109 00:00:10.247 TCP 1.101.0.1:3000 -> 22.102.0.1:58018 10 6452 1 2025-10-29 09:08:25.913 00:00:10.322 TCP 23.104.0.1:54584 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:08:41.392 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58306 10 6452 1 2025-10-29 09:09:37.620 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:09:26.278 00:00:10.361 TCP 23.104.0.1:51600 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:09:37.788 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:09:41.608 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:36800 10 6452 1 2025-10-29 09:10:26.684 00:00:10.362 TCP 23.104.0.1:50782 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:10:41.821 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34552 10 6452 1 2025-10-29 09:11:27.102 00:00:10.366 TCP 23.104.0.1:38148 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:07:49.057 00:05:03.345 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:11:42.047 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55214 10 6452 1 2025-10-29 09:12:27.499 00:00:10.368 TCP 23.104.0.1:44164 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:07:52.404 00:05:56.653 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:12:42.259 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52548 10 6452 1 2025-10-29 09:13:27.905 00:00:10.365 TCP 23.104.0.1:36770 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:13:42.474 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40606 10 6452 1 2025-10-29 09:14:38.395 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:14:38.525 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:14:28.311 00:00:11.424 TCP 23.104.0.1:48958 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:14:42.695 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45230 10 6452 1 2025-10-29 09:15:29.771 00:00:10.373 TCP 23.104.0.1:52488 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:15:42.917 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49016 10 6452 1 2025-10-29 09:16:30.183 00:00:10.372 TCP 23.104.0.1:34356 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:16:43.133 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50850 10 6452 1 2025-10-29 09:17:30.589 00:00:10.326 TCP 23.104.0.1:33786 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:17:43.349 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50176 10 6452 1 2025-10-29 09:13:49.059 00:05:03.349 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:18:30.953 00:00:10.325 TCP 23.104.0.1:34724 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:13:52.404 00:05:56.653 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:18:43.576 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48782 10 6452 1 2025-10-29 09:19:31.319 00:00:10.367 TCP 23.104.0.1:52938 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:19:37.828 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:19:37.923 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:19:43.802 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35778 10 6452 1 2025-10-29 09:20:31.727 00:00:10.380 TCP 23.104.0.1:35854 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:20:44.037 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57562 10 6452 1 2025-10-29 09:21:32.144 00:00:10.363 TCP 23.104.0.1:42400 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:21:44.249 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:39118 10 6452 1 2025-10-29 09:22:32.544 00:00:10.362 TCP 23.104.0.1:50066 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:22:44.421 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44818 10 6452 1 2025-10-29 09:23:32.945 00:00:10.377 TCP 23.104.0.1:34088 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:19:49.060 00:05:03.353 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:23:44.637 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53264 10 6452 1 2025-10-29 09:24:37.839 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:24:37.539 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:24:33.361 00:00:10.369 TCP 23.104.0.1:56780 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:19:52.410 00:05:56.653 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:24:44.851 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59114 10 6452 1 2025-10-29 09:25:33.768 00:00:10.374 TCP 23.104.0.1:54446 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:25:45.086 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58796 10 6452 1 2025-10-29 09:26:34.181 00:00:10.366 TCP 23.104.0.1:33278 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:26:45.299 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44820 10 6452 1 2025-10-29 09:27:34.594 00:00:10.363 TCP 23.104.0.1:35106 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:27:45.509 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:40492 10 6452 1 2025-10-29 09:28:34.994 00:00:10.370 TCP 23.104.0.1:53236 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:28:45.681 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43770 10 6452 1 2025-10-29 09:29:38.004 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:29:38.057 00:00:00.045 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:29:35.403 00:00:10.364 TCP 23.104.0.1:46418 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:25:49.065 00:05:03.348 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:29:45.894 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36620 10 6452 1 2025-10-29 09:30:35.809 00:00:10.367 TCP 23.104.0.1:46270 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:25:52.416 00:05:56.647 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:30:46.106 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:53776 10 6452 1 2025-10-29 09:31:36.216 00:00:10.361 TCP 23.104.0.1:35078 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:31:46.273 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42940 10 6452 1 2025-10-29 09:32:36.616 00:00:10.360 TCP 23.104.0.1:56150 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:32:46.481 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60642 10 6452 1 2025-10-29 09:33:37.015 00:00:10.382 TCP 23.104.0.1:37522 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:33:46.693 00:00:10.452 TCP 1.101.0.1:3000 -> 22.102.0.1:54356 10 6452 1 2025-10-29 09:34:38.055 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:34:38.363 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:34:37.444 00:00:10.367 TCP 23.104.0.1:60206 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:34:47.188 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36192 10 6452 1 2025-10-29 09:35:37.851 00:00:10.342 TCP 23.104.0.1:45370 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:31:49.066 00:05:03.348 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:35:47.408 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50602 10 6452 1 2025-10-29 09:31:52.416 00:05:56.648 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:36:47.617 00:00:13.106 TCP 1.101.0.1:3000 -> 22.102.0.1:36172 10 6452 1 2025-10-29 09:36:38.235 00:00:22.598 TCP 23.104.0.1:57168 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:37:50.806 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:41376 10 6452 1 2025-10-29 09:37:51.009 00:00:10.364 TCP 23.104.0.1:58996 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:38:51.414 00:00:10.365 TCP 23.104.0.1:55188 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:38:51.071 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:34502 10 6452 1 2025-10-29 09:39:38.295 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:39:38.372 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:39:51.241 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:33868 10 6452 1 2025-10-29 09:39:51.827 00:00:10.387 TCP 23.104.0.1:52322 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:40:51.413 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41684 10 6452 1 2025-10-29 09:40:52.253 00:00:10.373 TCP 23.104.0.1:43374 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:37:49.067 00:05:03.349 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:41:51.633 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:58890 10 6452 1 2025-10-29 09:41:52.663 00:00:10.367 TCP 23.104.0.1:60242 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:37:52.418 00:05:56.648 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:42:53.121 00:00:10.362 TCP 23.104.0.1:36808 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:42:51.841 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40072 10 6452 1 2025-10-29 09:43:52.077 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52482 10 6452 1 2025-10-29 09:43:53.525 00:00:10.366 TCP 23.104.0.1:44428 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:44:38.421 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:44:38.211 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:44:53.931 00:00:10.347 TCP 23.104.0.1:56204 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:44:52.295 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51656 10 6452 1 2025-10-29 09:45:52.506 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:39002 10 6452 1 2025-10-29 09:45:54.319 00:00:10.366 TCP 23.104.0.1:44146 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:46:52.673 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39186 10 6452 1 2025-10-29 09:46:54.726 00:00:10.329 TCP 23.104.0.1:35714 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:43:49.067 00:05:03.352 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:47:52.891 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46290 10 6452 1 2025-10-29 09:47:55.107 00:00:10.366 TCP 23.104.0.1:33082 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:43:52.419 00:05:56.647 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:48:53.112 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37784 10 6452 1 2025-10-29 09:48:55.509 00:00:10.363 TCP 23.104.0.1:55606 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:49:38.384 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:49:38.480 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:49:55.913 00:00:10.368 TCP 23.104.0.1:40050 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:49:53.334 00:00:10.222 TCP 1.101.0.1:3000 -> 22.102.0.1:57568 11 6504 1 2025-10-29 09:50:53.596 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:54742 10 6452 1 2025-10-29 09:50:56.318 00:00:10.363 TCP 23.104.0.1:44594 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:51:53.820 00:00:10.252 TCP 1.101.0.1:3000 -> 22.102.0.1:55052 10 6452 1 2025-10-29 09:51:56.720 00:00:10.373 TCP 23.104.0.1:59488 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:52:54.125 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:55342 10 6452 1 2025-10-29 09:52:57.130 00:00:10.366 TCP 23.104.0.1:55470 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:49:49.070 00:05:03.351 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 09:53:54.315 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43806 10 6452 1 2025-10-29 09:53:57.535 00:00:10.335 TCP 23.104.0.1:54684 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:54:38.532 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 09:54:38.295 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 09:49:52.421 00:05:56.645 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 09:54:54.541 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60388 10 6452 1 2025-10-29 09:54:57.930 00:00:10.355 TCP 23.104.0.1:41606 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:55:54.756 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:53734 10 6452 1 2025-10-29 09:55:58.324 00:00:10.334 TCP 23.104.0.1:54596 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:56:54.963 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38862 10 6452 1 2025-10-29 09:56:58.690 00:00:10.336 TCP 23.104.0.1:53930 -> 1.101.0.1:3000 11 1507 1 2025-10-29 09:57:55.184 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52318 10 6452 1 2025-10-29 09:57:59.092 00:00:10.329 TCP 23.104.0.1:40060 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 490441, total packets: 1552, avg bps: 1048, avg pps: 0, avg bpp: 316 Time window: 2025-10-29 08:55:49 - 2025-10-29 09:58:09 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0051s User: 0.0000s Wall: 0.0022s flows/second: 74857.0 Runtime: 0.0022s