Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 14:59:02.804 00:00:10.365 TCP 23.104.0.1:51426 -> 1.101.0.1:3000 11 1507 1 2025-10-29 14:59:20.094 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:50712 10 6452 1 2025-10-29 14:59:44.579 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 14:59:44.323 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 14:55:49.149 00:05:03.374 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:00:03.209 00:00:10.368 TCP 23.104.0.1:51544 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:00:20.319 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38202 10 6452 1 2025-10-29 14:55:52.525 00:05:56.623 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:01:03.616 00:00:10.832 TCP 23.104.0.1:36214 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:01:20.539 00:00:10.234 TCP 1.101.0.1:3000 -> 22.102.0.1:46836 10 6452 1 2025-10-29 15:02:04.488 00:00:10.365 TCP 23.104.0.1:46064 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:02:20.814 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39828 10 6452 1 2025-10-29 15:03:04.894 00:00:10.373 TCP 23.104.0.1:39962 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:03:21.040 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:41754 10 6452 1 2025-10-29 15:04:05.308 00:00:10.384 TCP 23.104.0.1:46576 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:04:21.205 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:34916 10 6452 1 2025-10-29 15:04:44.705 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:04:44.786 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:05:05.764 00:00:10.380 TCP 23.104.0.1:48766 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:05:21.427 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:52198 10 6452 1 2025-10-29 15:01:49.150 00:05:03.376 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:06:06.182 00:00:10.326 TCP 23.104.0.1:40986 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:06:21.650 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37014 10 6452 1 2025-10-29 15:01:52.527 00:05:56.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:07:06.545 00:00:10.373 TCP 23.104.0.1:48050 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:07:21.865 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:55456 10 6452 1 2025-10-29 15:08:06.953 00:00:10.368 TCP 23.104.0.1:50362 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:08:22.105 00:00:10.513 TCP 1.101.0.1:3000 -> 22.102.0.1:56754 10 6452 1 2025-10-29 15:09:07.359 00:00:10.364 TCP 23.104.0.1:54942 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:09:22.656 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54620 10 6452 1 2025-10-29 15:09:44.663 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:09:44.883 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:10:07.763 00:00:10.377 TCP 23.104.0.1:50626 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:10:22.877 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:39866 10 6452 1 2025-10-29 15:11:08.180 00:00:24.065 TCP 23.104.0.1:35086 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:11:23.106 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:44158 10 6452 1 2025-10-29 15:07:49.152 00:05:03.375 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:12:23.381 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:36620 10 6452 1 2025-10-29 15:12:22.309 00:00:10.369 TCP 23.104.0.1:35002 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:07:52.528 00:05:56.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:13:22.718 00:00:10.374 TCP 23.104.0.1:48638 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:13:23.618 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:59024 10 6452 1 2025-10-29 15:14:23.125 00:00:10.328 TCP 23.104.0.1:39380 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:14:23.829 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:43468 10 6452 1 2025-10-29 15:14:44.855 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:14:44.997 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:15:24.068 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53822 10 6452 1 2025-10-29 15:15:23.491 00:00:10.362 TCP 23.104.0.1:56448 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:16:23.893 00:00:10.375 TCP 23.104.0.1:38860 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:16:24.283 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:40930 10 6452 1 2025-10-29 15:17:24.490 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48816 10 6452 1 2025-10-29 15:17:24.312 00:00:10.360 TCP 23.104.0.1:50340 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:13:49.154 00:05:03.375 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:18:24.702 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50316 10 6452 1 2025-10-29 15:18:24.714 00:00:10.370 TCP 23.104.0.1:53016 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:13:52.529 00:05:56.624 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:19:25.126 00:00:10.368 TCP 23.104.0.1:55944 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:19:24.919 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:54566 10 6452 1 2025-10-29 15:19:45.025 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:19:45.084 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:20:25.532 00:00:10.368 TCP 23.104.0.1:49914 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:20:25.125 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42688 10 6452 1 2025-10-29 15:21:25.935 00:00:10.375 TCP 23.104.0.1:42020 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:21:25.337 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54422 10 6452 1 2025-10-29 15:22:25.555 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53200 10 6452 1 2025-10-29 15:22:26.345 00:00:10.984 TCP 23.104.0.1:51412 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:23:25.778 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46094 10 6452 1 2025-10-29 15:23:27.368 00:00:10.368 TCP 23.104.0.1:47872 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:19:49.155 00:05:03.375 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:24:25.990 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:49828 10 6452 1 2025-10-29 15:24:27.772 00:00:10.373 TCP 23.104.0.1:53324 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:24:45.085 00:00:00.063 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:24:45.340 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:19:52.531 00:05:56.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:25:26.219 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40994 10 6452 1 2025-10-29 15:25:28.181 00:00:10.373 TCP 23.104.0.1:54548 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:26:28.594 00:00:10.334 TCP 23.104.0.1:43948 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:26:26.435 00:00:11.527 TCP 1.101.0.1:3000 -> 22.102.0.1:37004 10 6452 1 2025-10-29 15:27:28.003 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:41980 10 6452 1 2025-10-29 15:27:28.968 00:00:10.375 TCP 23.104.0.1:33880 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:28:29.381 00:00:10.321 TCP 23.104.0.1:36108 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:28:28.176 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56688 10 6452 1 2025-10-29 15:29:28.389 00:00:10.524 TCP 1.101.0.1:3000 -> 22.102.0.1:51326 10 6452 1 2025-10-29 15:29:44.967 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:29:29.744 00:00:10.367 TCP 23.104.0.1:52780 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:29:45.255 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:25:49.156 00:05:03.376 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:30:30.150 00:00:10.423 TCP 23.104.0.1:34168 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:30:28.955 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:40480 10 6452 1 2025-10-29 15:25:52.532 00:05:56.625 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:31:30.613 00:00:10.365 TCP 23.104.0.1:55180 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:31:29.140 00:00:10.337 TCP 1.101.0.1:3000 -> 22.102.0.1:40382 10 6452 1 2025-10-29 15:32:29.515 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:57574 10 6452 1 2025-10-29 15:32:31.018 00:00:10.368 TCP 23.104.0.1:45678 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:33:31.436 00:00:10.355 TCP 23.104.0.1:44656 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:33:29.726 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51568 10 6452 1 2025-10-29 15:34:29.940 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:38000 10 6452 1 2025-10-29 15:34:45.239 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:34:31.844 00:00:10.382 TCP 23.104.0.1:49150 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:34:45.164 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:35:30.191 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48920 10 6452 1 2025-10-29 15:35:32.264 00:00:10.374 TCP 23.104.0.1:35680 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:31:49.160 00:05:03.375 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:36:30.408 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:42388 10 6452 1 2025-10-29 15:36:32.680 00:00:10.367 TCP 23.104.0.1:52098 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:31:52.535 00:05:56.623 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:37:30.633 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45574 10 6452 1 2025-10-29 15:37:33.101 00:00:10.367 TCP 23.104.0.1:36984 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:38:30.852 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34652 10 6452 1 2025-10-29 15:38:33.506 00:00:10.361 TCP 23.104.0.1:36306 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:39:31.082 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59274 10 6452 1 2025-10-29 15:39:45.350 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:39:45.493 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:39:33.908 00:00:10.371 TCP 23.104.0.1:60072 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:40:31.297 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52948 10 6452 1 2025-10-29 15:40:34.314 00:00:10.367 TCP 23.104.0.1:46304 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:41:34.721 00:00:10.372 TCP 23.104.0.1:42616 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:41:31.517 00:00:10.843 TCP 1.101.0.1:3000 -> 22.102.0.1:50524 10 6452 1 2025-10-29 15:37:49.161 00:05:03.374 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:42:32.398 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:37234 12 10375 1 2025-10-29 15:42:35.133 00:00:10.397 TCP 23.104.0.1:57160 -> 1.101.0.1:3000 15 1926 1 2025-10-29 15:37:52.537 00:05:56.623 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:43:35.569 00:00:10.371 TCP 23.104.0.1:54460 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:43:32.635 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56000 10 6452 1 2025-10-29 15:44:45.617 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:44:35.975 00:00:10.336 TCP 23.104.0.1:51976 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:44:45.662 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:44:32.862 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:53648 10 6452 1 2025-10-29 15:45:36.351 00:00:10.365 TCP 23.104.0.1:34310 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:45:33.112 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:54522 10 6452 1 2025-10-29 15:46:33.346 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47208 10 6452 1 2025-10-29 15:46:36.756 00:00:10.383 TCP 23.104.0.1:46280 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:47:33.558 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39942 10 6452 1 2025-10-29 15:47:37.178 00:00:10.366 TCP 23.104.0.1:51268 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:43:49.161 00:05:03.375 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:48:33.786 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52512 10 6452 1 2025-10-29 15:43:52.537 00:05:56.623 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:48:37.586 00:00:10.325 TCP 23.104.0.1:35330 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:49:45.455 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:49:34.008 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48500 10 6452 1 2025-10-29 15:49:45.685 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:49:37.952 00:00:10.353 TCP 23.104.0.1:34748 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:50:34.230 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44122 10 6452 1 2025-10-29 15:50:38.398 00:00:10.324 TCP 23.104.0.1:45170 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:51:34.440 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34742 10 6452 1 2025-10-29 15:51:38.764 00:00:10.344 TCP 23.104.0.1:57920 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:52:34.656 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39802 10 6452 1 2025-10-29 15:52:39.146 00:00:10.366 TCP 23.104.0.1:51372 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:53:34.867 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35146 10 6452 1 2025-10-29 15:53:39.552 00:00:10.369 TCP 23.104.0.1:37142 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:49:49.163 00:05:03.374 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:54:45.481 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:54:35.087 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:55322 10 6452 1 2025-10-29 15:54:45.659 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:54:39.952 00:00:10.368 TCP 23.104.0.1:45352 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:49:52.540 00:05:56.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 15:55:35.263 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:41484 10 6452 1 2025-10-29 15:55:40.356 00:00:10.824 TCP 23.104.0.1:43952 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:56:35.440 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55292 10 6452 1 2025-10-29 15:56:41.224 00:00:10.323 TCP 23.104.0.1:43548 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:57:35.664 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59002 10 6452 1 2025-10-29 15:57:41.583 00:00:10.365 TCP 23.104.0.1:43502 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:58:35.879 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:36178 10 6452 1 Summary: total flows: 163, total bytes: 501183, total packets: 1567, avg bps: 1061, avg pps: 0, avg bpp: 319 Time window: 2025-10-29 14:55:49 - 2025-10-29 15:58:46 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0041s User: 0.0025s Wall: 0.0030s flows/second: 54333.0 Runtime: 0.0030s