Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 15:58:41.987 00:00:10.363 TCP 23.104.0.1:54790 -> 1.101.0.1:3000 11 1507 1 2025-10-29 15:59:45.506 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 15:59:45.802 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 15:59:36.108 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45036 10 6452 1 2025-10-29 15:55:49.164 00:05:03.376 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 15:59:42.391 00:00:10.365 TCP 23.104.0.1:49628 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:00:36.323 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:32974 10 6452 1 2025-10-29 15:55:52.540 00:05:56.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:00:42.793 00:00:10.362 TCP 23.104.0.1:40560 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:01:36.545 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:39898 10 6452 1 2025-10-29 16:01:43.194 00:00:10.367 TCP 23.104.0.1:46692 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:02:36.766 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41008 10 6452 1 2025-10-29 16:02:43.604 00:00:10.367 TCP 23.104.0.1:45334 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:03:36.977 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:36472 10 6452 1 2025-10-29 16:03:44.012 00:00:10.364 TCP 23.104.0.1:45564 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:04:45.898 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:04:46.047 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:04:37.221 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52382 10 6452 1 2025-10-29 16:04:44.414 00:00:10.322 TCP 23.104.0.1:55688 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:05:37.440 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59664 10 6452 1 2025-10-29 16:05:44.773 00:00:10.326 TCP 23.104.0.1:37140 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:01:49.166 00:05:03.376 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 16:06:37.650 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:36360 10 6452 1 2025-10-29 16:01:52.542 00:05:56.621 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:06:45.136 00:00:10.327 TCP 23.104.0.1:47116 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:07:37.840 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52184 10 6452 1 2025-10-29 16:07:45.501 00:00:10.326 TCP 23.104.0.1:53836 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:08:38.081 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:36772 10 6452 1 2025-10-29 16:08:45.865 00:00:10.368 TCP 23.104.0.1:54814 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:09:46.150 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:09:46.014 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:09:38.304 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52036 10 6452 1 2025-10-29 16:09:46.278 00:00:10.363 TCP 23.104.0.1:38800 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:10:38.479 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:54810 10 6452 1 2025-10-29 16:10:46.683 00:00:10.367 TCP 23.104.0.1:51148 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:11:38.684 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38244 10 6452 1 2025-10-29 16:07:49.165 00:05:03.378 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 16:11:47.108 00:00:10.368 TCP 23.104.0.1:43162 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:12:38.903 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50572 10 6452 1 2025-10-29 16:07:52.544 00:05:56.620 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:12:47.515 00:00:10.361 TCP 23.104.0.1:60228 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:13:39.121 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:53870 10 6452 1 2025-10-29 16:13:47.918 00:00:10.373 TCP 23.104.0.1:60708 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:14:46.111 00:00:00.041 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:14:46.214 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:14:39.295 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:37126 10 6452 1 2025-10-29 16:14:48.329 00:00:10.362 TCP 23.104.0.1:38392 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:15:39.467 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53164 10 6452 1 2025-10-29 16:15:48.729 00:00:10.367 TCP 23.104.0.1:38046 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:16:39.680 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:53874 10 6452 1 2025-10-29 16:16:49.135 00:00:10.374 TCP 23.104.0.1:56890 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:17:39.851 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47312 10 6452 1 2025-10-29 16:13:49.167 00:05:03.379 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 16:17:49.558 00:00:10.325 TCP 23.104.0.1:51570 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:13:52.547 00:05:56.627 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:18:40.079 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34964 10 6452 1 2025-10-29 16:18:49.928 00:00:10.383 TCP 23.104.0.1:33444 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:19:46.278 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:19:46.322 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:19:40.286 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37886 10 6452 1 2025-10-29 16:19:50.401 00:00:10.336 TCP 23.104.0.1:51916 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:20:40.506 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43834 10 6452 1 2025-10-29 16:20:50.769 00:00:10.331 TCP 23.104.0.1:53146 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:21:40.722 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57518 10 6452 1 2025-10-29 16:21:51.139 00:00:10.362 TCP 23.104.0.1:59844 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:22:40.935 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:47144 10 6452 1 2025-10-29 16:22:51.546 00:00:23.242 TCP 23.104.0.1:52546 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:23:41.173 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56618 10 6452 1 2025-10-29 16:19:49.176 00:05:03.373 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 16:24:04.831 00:00:10.377 TCP 23.104.0.1:60220 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:24:46.114 00:00:00.028 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:24:46.392 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:24:41.395 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:46252 10 6452 1 2025-10-29 16:19:52.548 00:05:56.625 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:25:05.250 00:00:10.362 TCP 23.104.0.1:41574 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:25:41.572 00:00:10.242 TCP 1.101.0.1:3000 -> 22.102.0.1:52986 10 6452 1 2025-10-29 16:26:05.652 00:00:10.323 TCP 23.104.0.1:57776 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:26:41.867 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:58620 10 6452 1 2025-10-29 16:27:06.021 00:00:10.365 TCP 23.104.0.1:56906 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:27:42.104 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37918 10 6452 1 2025-10-29 16:28:06.426 00:00:10.368 TCP 23.104.0.1:60736 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:28:42.334 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:60908 10 6452 1 2025-10-29 16:29:06.834 00:00:10.341 TCP 23.104.0.1:58264 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:29:46.742 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:29:46.494 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:29:42.523 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44746 10 6452 1 2025-10-29 16:25:49.176 00:05:03.376 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 16:30:07.219 00:00:10.363 TCP 23.104.0.1:55592 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:25:52.553 00:05:56.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:30:42.733 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:51594 10 6452 1 2025-10-29 16:31:07.620 00:00:10.329 TCP 23.104.0.1:36840 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:31:42.944 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:40254 11 7373 1 2025-10-29 16:32:07.979 00:00:10.364 TCP 23.104.0.1:46892 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:32:43.193 00:00:10.125 TCP 1.101.0.1:3000 -> 22.102.0.1:33190 10 6452 1 2025-10-29 16:33:08.380 00:00:10.324 TCP 23.104.0.1:42436 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:33:43.358 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:37550 10 6452 1 2025-10-29 16:34:08.744 00:00:10.368 TCP 23.104.0.1:56092 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:34:46.552 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:34:46.251 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:34:43.529 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56632 10 6452 1 2025-10-29 16:35:09.149 00:00:11.623 TCP 23.104.0.1:36284 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:31:49.176 00:05:03.377 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 16:35:43.745 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40932 10 6452 1 2025-10-29 16:36:10.819 00:00:10.364 TCP 23.104.0.1:58754 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:31:52.555 00:05:56.621 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:36:43.964 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:60930 10 6452 1 2025-10-29 16:37:11.223 00:00:10.364 TCP 23.104.0.1:47240 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:37:44.205 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:50866 10 6452 1 2025-10-29 16:38:11.624 00:00:10.364 TCP 23.104.0.1:59366 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:38:44.379 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43994 10 6452 1 2025-10-29 16:39:12.026 00:00:10.361 TCP 23.104.0.1:55654 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:39:46.714 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:39:46.600 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:39:44.590 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41524 10 6452 1 2025-10-29 16:40:12.425 00:00:10.324 TCP 23.104.0.1:52550 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:40:44.799 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51578 10 6452 1 2025-10-29 16:41:12.790 00:00:10.363 TCP 23.104.0.1:51544 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:41:45.016 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37700 10 6452 1 2025-10-29 16:37:49.179 00:05:03.376 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 16:42:13.192 00:00:10.329 TCP 23.104.0.1:45436 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:37:52.555 00:05:56.623 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:42:45.189 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44274 10 6452 1 2025-10-29 16:43:13.565 00:00:10.321 TCP 23.104.0.1:40998 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:43:45.407 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40868 10 6452 1 2025-10-29 16:44:13.920 00:00:10.389 TCP 23.104.0.1:35694 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:44:46.717 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:44:46.923 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:44:45.616 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:34382 10 6452 1 2025-10-29 16:45:14.352 00:00:10.374 TCP 23.104.0.1:33698 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:45:45.824 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:52642 10 6452 1 2025-10-29 16:46:14.775 00:00:10.367 TCP 23.104.0.1:41974 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:46:46.010 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57400 10 6452 1 2025-10-29 16:47:15.186 00:00:10.364 TCP 23.104.0.1:56646 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:47:46.230 00:00:10.390 TCP 1.101.0.1:3000 -> 22.102.0.1:44586 10 6452 1 2025-10-29 16:43:49.183 00:05:03.374 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 16:48:15.591 00:00:10.373 TCP 23.104.0.1:35978 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:43:52.557 00:05:56.623 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:48:46.662 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51068 11 6492 1 2025-10-29 16:49:16.009 00:00:10.364 TCP 23.104.0.1:42754 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:49:46.864 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:49:46.683 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:49:46.874 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:38490 10 6452 1 2025-10-29 16:50:16.413 00:00:10.375 TCP 23.104.0.1:38892 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:50:47.074 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:40024 10 6452 1 2025-10-29 16:51:16.826 00:00:10.366 TCP 23.104.0.1:46640 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:51:47.283 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58854 10 6452 1 2025-10-29 16:52:17.226 00:00:10.363 TCP 23.104.0.1:56642 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:52:47.489 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35782 10 6452 1 2025-10-29 16:53:17.631 00:00:10.376 TCP 23.104.0.1:37062 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:49:49.183 00:05:03.376 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-29 16:53:47.703 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:41418 10 6452 1 2025-10-29 16:54:18.045 00:00:10.335 TCP 23.104.0.1:58182 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:54:46.664 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-29 16:54:46.727 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-29 16:49:52.559 00:05:56.622 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-29 16:54:47.935 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:46862 10 6452 1 2025-10-29 16:55:18.419 00:00:10.367 TCP 23.104.0.1:35136 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:55:48.175 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36238 10 6452 1 2025-10-29 16:56:18.824 00:00:10.362 TCP 23.104.0.1:46122 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:56:48.394 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46770 10 6452 1 2025-10-29 16:57:19.225 00:00:10.361 TCP 23.104.0.1:58062 -> 1.101.0.1:3000 11 1507 1 2025-10-29 16:57:48.604 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:40762 11 6504 1 2025-10-29 16:58:19.623 00:00:10.589 TCP 23.104.0.1:57274 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 492909, total packets: 1565, avg bps: 1048, avg pps: 0, avg bpp: 314 Time window: 2025-10-29 15:55:49 - 2025-10-29 16:58:30 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0039s User: 0.0020s Wall: 0.0021s flows/second: 75845.5 Runtime: 0.0022s