Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 08:59:30.792 00:00:10.373 TCP 23.104.0.1:33556 -> 1.101.0.1:3000 11 1507 1 2025-10-30 08:59:40.693 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34758 10 6452 1 2025-10-30 08:55:49.498 00:05:03.381 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:00:06.029 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:00:06.088 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:00:31.209 00:00:10.321 TCP 23.104.0.1:43590 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:00:40.911 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50046 10 6452 1 2025-10-30 08:55:52.880 00:05:56.618 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:01:31.569 00:00:10.503 TCP 23.104.0.1:55392 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:01:41.130 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:42214 10 6452 1 2025-10-30 09:02:32.110 00:00:10.367 TCP 23.104.0.1:49648 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:02:41.362 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46934 10 6452 1 2025-10-30 09:03:32.516 00:00:11.434 TCP 23.104.0.1:43042 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:03:41.581 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35794 10 6452 1 2025-10-30 09:04:33.987 00:00:10.367 TCP 23.104.0.1:32978 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:04:41.792 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38496 10 6452 1 2025-10-30 09:05:06.346 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:05:06.351 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:05:34.396 00:00:10.366 TCP 23.104.0.1:44832 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:05:42.007 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45196 10 6452 1 2025-10-30 09:01:49.501 00:05:03.380 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:06:34.802 00:00:10.333 TCP 23.104.0.1:56002 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:01:52.882 00:05:56.618 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:06:42.232 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:47730 10 6452 1 2025-10-30 09:07:35.174 00:00:10.423 TCP 23.104.0.1:41482 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:07:42.454 00:00:20.537 TCP 1.101.0.1:3000 -> 22.102.0.1:45610 10 6452 1 2025-10-30 09:08:35.642 00:00:10.323 TCP 23.104.0.1:34718 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:08:53.063 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49040 10 6452 1 2025-10-30 09:09:36.006 00:00:10.320 TCP 23.104.0.1:58570 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:10:06.314 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:10:06.603 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:09:53.279 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37094 10 6452 1 2025-10-30 09:10:36.361 00:00:10.365 TCP 23.104.0.1:58254 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:10:53.494 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52100 10 6452 1 2025-10-30 09:11:36.762 00:00:10.369 TCP 23.104.0.1:47900 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:07:49.503 00:05:03.378 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:11:53.715 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:59886 10 6452 1 2025-10-30 09:07:52.883 00:05:56.619 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:12:37.167 00:00:10.328 TCP 23.104.0.1:42504 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:12:53.883 00:00:10.333 TCP 1.101.0.1:3000 -> 22.102.0.1:58474 10 6452 1 2025-10-30 09:13:37.532 00:00:10.368 TCP 23.104.0.1:46988 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:13:54.255 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37810 10 6452 1 2025-10-30 09:14:37.938 00:00:10.383 TCP 23.104.0.1:42290 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:15:06.787 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:14:54.475 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55624 10 6452 1 2025-10-30 09:15:07.041 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:15:38.359 00:00:10.366 TCP 23.104.0.1:48978 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:15:54.690 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:33942 10 6452 1 2025-10-30 09:16:38.767 00:00:10.374 TCP 23.104.0.1:57026 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:16:54.912 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:38022 10 6452 1 2025-10-30 09:17:39.180 00:00:10.362 TCP 23.104.0.1:37486 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:13:49.504 00:05:03.379 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:17:55.142 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55922 10 6452 1 2025-10-30 09:18:39.577 00:00:10.365 TCP 23.104.0.1:43334 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:13:52.885 00:05:56.618 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:18:55.349 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35686 10 6452 1 2025-10-30 09:19:39.981 00:00:10.709 TCP 23.104.0.1:58094 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:20:06.854 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:19:55.581 00:00:11.113 TCP 1.101.0.1:3000 -> 22.102.0.1:51688 10 6452 1 2025-10-30 09:20:06.688 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:20:40.734 00:00:10.371 TCP 23.104.0.1:48214 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:20:56.734 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45766 10 6452 1 2025-10-30 09:21:41.145 00:00:10.366 TCP 23.104.0.1:34466 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:21:56.945 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:39124 10 6452 1 2025-10-30 09:22:41.549 00:00:10.365 TCP 23.104.0.1:38516 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:22:57.139 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:54978 10 6452 1 2025-10-30 09:19:49.505 00:05:03.382 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:23:41.955 00:00:10.366 TCP 23.104.0.1:51038 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:23:57.366 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:42354 10 6452 1 2025-10-30 09:19:52.887 00:05:56.619 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:24:42.364 00:00:10.361 TCP 23.104.0.1:58488 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:25:06.751 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:25:06.771 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:24:57.539 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59360 10 6452 1 2025-10-30 09:25:42.764 00:00:10.379 TCP 23.104.0.1:42788 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:25:57.759 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41646 10 6452 1 2025-10-30 09:26:43.180 00:00:10.367 TCP 23.104.0.1:42690 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:26:57.981 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:58686 10 6452 1 2025-10-30 09:27:43.587 00:00:10.326 TCP 23.104.0.1:44052 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:27:58.223 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35724 10 6452 1 2025-10-30 09:28:43.949 00:00:10.326 TCP 23.104.0.1:53630 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:28:58.443 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52966 11 6775 1 2025-10-30 09:25:49.507 00:05:03.381 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:29:44.311 00:00:10.365 TCP 23.104.0.1:37348 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:30:06.782 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:30:06.906 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:29:58.662 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47564 10 6452 1 2025-10-30 09:25:52.891 00:05:56.615 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:30:44.715 00:00:10.370 TCP 23.104.0.1:56680 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:30:58.835 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:50228 10 6452 1 2025-10-30 09:31:45.123 00:00:10.363 TCP 23.104.0.1:54532 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:31:59.002 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:57306 10 6452 1 2025-10-30 09:32:45.525 00:00:10.323 TCP 23.104.0.1:47584 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:32:59.230 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34802 10 6452 1 2025-10-30 09:33:45.885 00:00:10.325 TCP 23.104.0.1:36766 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:33:59.457 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:34660 10 6452 1 2025-10-30 09:34:46.249 00:00:10.324 TCP 23.104.0.1:43420 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:34:59.716 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:44000 10 6452 1 2025-10-30 09:35:07.151 00:00:00.019 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:35:07.307 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:35:46.612 00:00:10.325 TCP 23.104.0.1:43742 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:31:49.508 00:05:03.381 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:35:59.938 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:36008 10 6452 1 2025-10-30 09:31:52.891 00:05:56.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:36:46.976 00:00:10.371 TCP 23.104.0.1:58362 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:37:00.180 00:00:10.390 TCP 1.101.0.1:3000 -> 22.102.0.1:57366 10 6452 1 2025-10-30 09:37:47.388 00:00:10.355 TCP 23.104.0.1:57426 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:38:00.610 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:46138 10 6452 1 2025-10-30 09:38:47.755 00:00:10.327 TCP 23.104.0.1:44930 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:39:00.784 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40986 10 6452 1 2025-10-30 09:39:48.123 00:00:10.363 TCP 23.104.0.1:55536 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:40:01.006 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46866 10 6452 1 2025-10-30 09:40:07.016 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:40:07.328 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:40:48.525 00:00:10.361 TCP 23.104.0.1:54780 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:41:01.217 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53598 10 6452 1 2025-10-30 09:37:49.510 00:05:03.381 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:41:48.924 00:00:10.732 TCP 23.104.0.1:37488 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:42:01.429 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:33514 10 6452 1 2025-10-30 09:37:52.891 00:05:56.616 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:42:49.702 00:00:10.451 TCP 23.104.0.1:37136 -> 1.101.0.1:3000 16 1978 1 2025-10-30 09:43:01.655 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:55458 13 13095 1 2025-10-30 09:43:50.192 00:00:10.323 TCP 23.104.0.1:49434 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:44:01.894 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:33838 10 6452 1 2025-10-30 09:44:50.552 00:00:10.365 TCP 23.104.0.1:34046 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:45:06.942 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:45:07.010 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:45:02.121 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44052 10 6452 1 2025-10-30 09:45:50.952 00:00:10.367 TCP 23.104.0.1:36258 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:46:02.333 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35462 10 6452 1 2025-10-30 09:46:51.357 00:00:10.326 TCP 23.104.0.1:50316 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:47:02.553 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:47516 10 6452 1 2025-10-30 09:43:49.510 00:05:03.384 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:47:51.723 00:00:10.369 TCP 23.104.0.1:58708 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:48:02.721 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45348 10 6452 1 2025-10-30 09:43:52.895 00:05:56.614 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:48:52.129 00:00:10.326 TCP 23.104.0.1:55230 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:49:02.891 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:46284 10 6452 1 2025-10-30 09:49:52.494 00:00:10.369 TCP 23.104.0.1:34724 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:50:07.345 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:50:07.887 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:50:03.081 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:60728 10 6452 1 2025-10-30 09:50:52.901 00:00:10.372 TCP 23.104.0.1:41672 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:51:03.307 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55338 10 6452 1 2025-10-30 09:51:53.309 00:00:10.326 TCP 23.104.0.1:42974 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:52:03.520 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:42008 10 6452 1 2025-10-30 09:52:53.672 00:00:10.324 TCP 23.104.0.1:47458 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:53:03.699 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60032 10 6452 1 2025-10-30 09:49:49.511 00:05:03.383 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 09:53:54.035 00:00:10.369 TCP 23.104.0.1:52420 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:54:03.914 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56568 10 6452 1 2025-10-30 09:49:52.897 00:05:56.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 09:54:54.444 00:00:10.763 TCP 23.104.0.1:53114 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:55:07.436 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 09:55:07.308 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 09:55:04.125 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55108 10 6452 1 2025-10-30 09:55:55.259 00:00:10.368 TCP 23.104.0.1:53696 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:56:04.345 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44588 10 6452 1 2025-10-30 09:56:55.662 00:00:10.369 TCP 23.104.0.1:41580 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:57:04.559 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60754 10 6452 1 2025-10-30 09:57:56.089 00:00:10.363 TCP 23.104.0.1:38576 -> 1.101.0.1:3000 11 1507 1 2025-10-30 09:58:04.774 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:60626 10 6452 1 Summary: total flows: 162, total bytes: 497826, total packets: 1560, avg bps: 1063, avg pps: 0, avg bpp: 319 Time window: 2025-10-30 08:55:49 - 2025-10-30 09:58:14 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0045s User: 0.0018s Wall: 0.0024s flows/second: 66720.1 Runtime: 0.0024s