Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 03:58:43.127 00:00:10.363 TCP 23.104.0.1:42506 -> 1.101.0.1:3000 11 1507 1 2025-10-30 03:59:14.962 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55478 10 6452 1 2025-10-30 03:55:49.382 00:05:03.387 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 03:59:43.528 00:00:10.366 TCP 23.104.0.1:40008 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:00:01.279 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:00:01.309 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:00:15.182 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46628 10 6452 1 2025-10-30 03:55:52.770 00:05:56.610 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:00:43.930 00:00:10.385 TCP 23.104.0.1:38412 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:01:15.397 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45014 10 6452 1 2025-10-30 04:01:44.358 00:00:10.321 TCP 23.104.0.1:53646 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:02:15.608 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56406 10 6452 1 2025-10-30 04:02:44.719 00:00:10.374 TCP 23.104.0.1:45178 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:03:15.816 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:51306 10 6452 1 2025-10-30 04:03:45.126 00:00:10.366 TCP 23.104.0.1:54532 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:04:15.986 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:47346 10 6452 1 2025-10-30 04:04:45.529 00:00:10.363 TCP 23.104.0.1:35334 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:05:00.384 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:05:00.327 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:05:16.211 00:00:22.555 TCP 1.101.0.1:3000 -> 22.102.0.1:36782 10 6452 1 2025-10-30 04:05:45.933 00:00:10.405 TCP 23.104.0.1:60178 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:01:49.383 00:05:03.386 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 04:06:28.810 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51272 10 6452 1 2025-10-30 04:01:52.772 00:05:56.610 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:06:46.351 00:00:10.360 TCP 23.104.0.1:48980 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:07:29.035 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38708 10 6452 1 2025-10-30 04:07:46.756 00:00:10.454 TCP 23.104.0.1:40414 -> 1.101.0.1:3000 15 1926 1 2025-10-30 04:08:29.249 00:00:10.779 TCP 1.101.0.1:3000 -> 22.102.0.1:35608 12 10375 1 2025-10-30 04:08:47.248 00:00:10.363 TCP 23.104.0.1:59394 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:09:30.081 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40754 10 6452 1 2025-10-30 04:10:00.618 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:10:00.501 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:09:47.659 00:00:10.374 TCP 23.104.0.1:50292 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:10:30.299 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39050 10 6452 1 2025-10-30 04:10:48.103 00:00:10.367 TCP 23.104.0.1:49484 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:11:30.511 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49314 10 6452 1 2025-10-30 04:07:49.384 00:05:03.388 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 04:11:48.510 00:00:10.363 TCP 23.104.0.1:45930 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:12:30.723 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:41772 10 6452 1 2025-10-30 04:07:52.772 00:05:56.612 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:12:48.918 00:00:10.322 TCP 23.104.0.1:40874 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:13:30.899 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50808 10 6452 1 2025-10-30 04:13:49.277 00:00:10.368 TCP 23.104.0.1:59082 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:14:31.118 00:00:25.186 TCP 1.101.0.1:3000 -> 22.102.0.1:43336 10 6452 1 2025-10-30 04:15:00.547 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:15:00.531 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:14:49.685 00:00:10.368 TCP 23.104.0.1:60164 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:15:46.343 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45752 10 6452 1 2025-10-30 04:15:50.110 00:00:10.367 TCP 23.104.0.1:53884 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:16:46.555 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47364 10 6452 1 2025-10-30 04:16:50.516 00:00:10.364 TCP 23.104.0.1:59352 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:17:46.768 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37442 10 6452 1 2025-10-30 04:13:49.387 00:05:03.390 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 04:17:50.917 00:00:10.392 TCP 23.104.0.1:48274 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:13:52.775 00:05:56.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:18:51.329 00:00:10.366 TCP 23.104.0.1:57484 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:18:46.983 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:52762 10 6452 1 2025-10-30 04:19:47.224 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:37714 10 6452 1 2025-10-30 04:20:00.674 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:20:00.741 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:19:51.734 00:00:10.375 TCP 23.104.0.1:46080 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:20:47.404 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47392 10 6452 1 2025-10-30 04:20:52.144 00:00:10.368 TCP 23.104.0.1:60436 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:21:47.617 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56264 10 6452 1 2025-10-30 04:21:52.542 00:00:10.366 TCP 23.104.0.1:46632 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:22:47.828 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48286 10 6452 1 2025-10-30 04:22:52.945 00:00:10.839 TCP 23.104.0.1:59674 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:19:49.392 00:05:03.389 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 04:23:48.068 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39986 10 6452 1 2025-10-30 04:23:53.823 00:00:10.327 TCP 23.104.0.1:56258 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:19:52.783 00:05:56.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:24:48.278 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46578 10 6452 1 2025-10-30 04:25:00.646 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:25:00.744 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:24:54.188 00:00:10.366 TCP 23.104.0.1:38690 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:25:48.488 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:38000 10 6452 1 2025-10-30 04:25:54.592 00:00:10.957 TCP 23.104.0.1:41798 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:26:48.663 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52450 10 6452 1 2025-10-30 04:26:55.589 00:00:10.364 TCP 23.104.0.1:58738 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:27:48.879 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52112 10 6452 1 2025-10-30 04:27:55.991 00:00:10.367 TCP 23.104.0.1:43500 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:28:49.109 00:00:10.557 TCP 1.101.0.1:3000 -> 22.102.0.1:34788 10 6452 1 2025-10-30 04:28:56.399 00:00:10.363 TCP 23.104.0.1:51052 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:25:49.394 00:05:03.387 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 04:30:00.815 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:29:49.700 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:35290 10 6452 1 2025-10-30 04:30:00.780 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:29:56.799 00:00:10.337 TCP 23.104.0.1:50744 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:25:52.784 00:05:56.608 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:30:49.933 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:58652 10 6452 1 2025-10-30 04:30:57.178 00:00:12.307 TCP 23.104.0.1:40074 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:31:50.165 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:53028 10 6452 1 2025-10-30 04:31:59.527 00:00:10.361 TCP 23.104.0.1:58172 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:32:50.339 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45580 10 6452 1 2025-10-30 04:32:59.929 00:00:10.350 TCP 23.104.0.1:45696 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:33:50.553 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:54630 10 6452 1 2025-10-30 04:34:00.313 00:00:10.366 TCP 23.104.0.1:60052 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:35:00.821 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:34:50.761 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53956 10 6452 1 2025-10-30 04:35:00.981 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:35:00.717 00:00:10.365 TCP 23.104.0.1:55336 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:31:49.394 00:05:03.393 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 04:35:50.986 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:52720 10 6452 1 2025-10-30 04:36:01.117 00:00:10.360 TCP 23.104.0.1:51070 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:31:52.785 00:05:56.619 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:36:51.180 00:00:10.781 TCP 1.101.0.1:3000 -> 22.102.0.1:54160 10 6452 1 2025-10-30 04:37:01.519 00:00:10.367 TCP 23.104.0.1:48146 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:37:52.009 00:00:10.618 TCP 1.101.0.1:3000 -> 22.102.0.1:54714 10 6452 1 2025-10-30 04:38:01.923 00:00:10.429 TCP 23.104.0.1:39370 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:38:52.661 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55838 10 6452 1 2025-10-30 04:39:02.389 00:00:10.361 TCP 23.104.0.1:55720 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:40:01.015 00:00:00.041 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:40:01.637 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:39:52.886 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:50974 10 6452 1 2025-10-30 04:40:02.790 00:00:10.365 TCP 23.104.0.1:53726 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:40:53.120 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:56150 10 6452 1 2025-10-30 04:41:03.199 00:00:10.362 TCP 23.104.0.1:56776 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:37:49.406 00:05:03.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 04:41:53.331 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:58270 10 6452 1 2025-10-30 04:42:03.600 00:00:11.248 TCP 23.104.0.1:43532 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:37:52.790 00:05:56.614 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:42:53.507 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37172 10 6452 1 2025-10-30 04:43:04.921 00:00:10.374 TCP 23.104.0.1:39558 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:43:53.718 00:00:10.751 TCP 1.101.0.1:3000 -> 22.102.0.1:32958 10 6452 1 2025-10-30 04:44:05.331 00:00:10.369 TCP 23.104.0.1:55496 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:45:00.950 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:45:01.297 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:44:54.508 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50000 10 6452 1 2025-10-30 04:45:05.737 00:00:10.329 TCP 23.104.0.1:34664 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:45:54.721 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42512 10 6452 1 2025-10-30 04:46:06.105 00:00:10.370 TCP 23.104.0.1:39718 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:46:54.934 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:36406 10 6452 1 2025-10-30 04:47:06.523 00:00:10.371 TCP 23.104.0.1:34130 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:43:49.407 00:05:03.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 04:47:55.177 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:55082 10 6452 1 2025-10-30 04:48:06.936 00:00:10.380 TCP 23.104.0.1:51426 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:43:52.791 00:05:56.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:48:55.407 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33182 10 6452 1 2025-10-30 04:49:07.353 00:00:10.382 TCP 23.104.0.1:57286 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:50:01.369 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:50:01.360 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:49:55.626 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45560 10 6452 1 2025-10-30 04:50:07.753 00:00:10.379 TCP 23.104.0.1:47450 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:50:55.845 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:58306 10 6452 1 2025-10-30 04:51:08.170 00:00:10.368 TCP 23.104.0.1:34880 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:51:56.093 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55970 10 6452 1 2025-10-30 04:52:08.571 00:00:10.335 TCP 23.104.0.1:34350 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:52:56.306 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55078 10 6452 1 2025-10-30 04:53:08.940 00:00:10.376 TCP 23.104.0.1:46124 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:49:49.407 00:05:03.384 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 04:53:56.528 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59914 10 6452 1 2025-10-30 04:54:09.356 00:00:11.042 TCP 23.104.0.1:54924 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:49:52.793 00:05:56.612 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 04:55:01.545 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 04:55:01.529 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 04:54:56.735 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59388 10 6452 1 2025-10-30 04:55:10.439 00:00:10.321 TCP 23.104.0.1:53680 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:55:56.950 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:60116 12 6556 1 2025-10-30 04:56:10.799 00:00:10.369 TCP 23.104.0.1:37034 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:56:57.180 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51844 10 6452 1 2025-10-30 04:57:11.208 00:00:10.367 TCP 23.104.0.1:32838 -> 1.101.0.1:3000 11 1507 1 2025-10-30 04:57:57.393 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:34534 10 6452 1 2025-10-30 04:58:11.607 00:00:10.369 TCP 23.104.0.1:48234 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496342, total packets: 1570, avg bps: 1058, avg pps: 0, avg bpp: 316 Time window: 2025-10-30 03:55:49 - 2025-10-30 04:58:21 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0036s User: 0.0012s Wall: 0.0023s flows/second: 71424.1 Runtime: 0.0023s