Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 13:59:07.838 00:00:10.387 TCP 23.104.0.1:43410 -> 1.101.0.1:3000 11 1507 1 2025-10-30 13:59:34.124 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:41416 10 6452 1 2025-10-30 13:55:49.580 00:05:03.412 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:00:12.390 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:00:12.215 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:00:08.261 00:00:10.372 TCP 23.104.0.1:44604 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:00:34.335 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53630 10 6452 1 2025-10-30 13:55:52.993 00:05:56.587 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:01:08.670 00:00:10.339 TCP 23.104.0.1:56256 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:01:34.554 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39480 10 6452 1 2025-10-30 14:02:09.063 00:00:10.368 TCP 23.104.0.1:46952 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:02:34.777 00:00:20.031 TCP 1.101.0.1:3000 -> 22.102.0.1:52692 10 6452 1 2025-10-30 14:03:09.465 00:00:10.429 TCP 23.104.0.1:50254 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:03:44.858 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:42892 10 6452 1 2025-10-30 14:04:09.936 00:00:10.466 TCP 23.104.0.1:41486 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:04:45.085 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50218 10 6452 1 2025-10-30 14:05:12.374 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:05:12.054 00:00:00.040 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:05:10.431 00:00:10.365 TCP 23.104.0.1:53856 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:05:45.300 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34106 10 6452 1 2025-10-30 14:01:49.583 00:05:03.410 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:06:10.838 00:00:10.349 TCP 23.104.0.1:43850 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:01:52.994 00:05:56.587 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:06:45.520 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:57748 10 6452 1 2025-10-30 14:07:11.226 00:00:10.372 TCP 23.104.0.1:53878 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:07:45.694 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38926 10 6452 1 2025-10-30 14:08:11.626 00:00:10.326 TCP 23.104.0.1:44244 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:08:45.915 00:00:10.562 TCP 1.101.0.1:3000 -> 22.102.0.1:38356 10 6452 1 2025-10-30 14:09:11.989 00:00:10.368 TCP 23.104.0.1:35354 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:09:46.525 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51696 10 6452 1 2025-10-30 14:10:12.443 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:10:12.393 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:10:12.396 00:00:10.318 TCP 23.104.0.1:51642 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:10:46.746 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52774 10 6452 1 2025-10-30 14:11:12.758 00:00:10.329 TCP 23.104.0.1:48008 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:07:49.585 00:05:03.410 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:11:46.971 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:48872 10 6452 1 2025-10-30 14:12:13.125 00:00:10.361 TCP 23.104.0.1:60220 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:07:52.995 00:05:56.587 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:12:47.205 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40224 10 6452 1 2025-10-30 14:13:13.528 00:00:10.380 TCP 23.104.0.1:33356 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:13:47.425 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:58136 10 6452 1 2025-10-30 14:14:13.943 00:00:10.378 TCP 23.104.0.1:57370 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:14:47.603 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:46294 10 6452 1 2025-10-30 14:15:12.478 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:15:12.557 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:15:14.361 00:00:10.319 TCP 23.104.0.1:55192 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:15:47.775 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:60762 10 6452 1 2025-10-30 14:16:14.719 00:00:10.378 TCP 23.104.0.1:51272 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:16:47.980 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:44280 10 6452 1 2025-10-30 14:17:15.137 00:00:10.438 TCP 23.104.0.1:46240 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:13:49.584 00:05:03.410 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:17:48.212 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60870 10 6452 1 2025-10-30 14:18:15.617 00:00:10.436 TCP 23.104.0.1:51324 -> 1.101.0.1:3000 15 1926 1 2025-10-30 14:13:52.996 00:05:56.588 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:18:48.426 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:60690 12 10375 1 2025-10-30 14:19:16.106 00:00:10.365 TCP 23.104.0.1:58490 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:19:48.678 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33046 10 6452 1 2025-10-30 14:20:12.700 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:20:12.697 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:20:16.507 00:00:10.366 TCP 23.104.0.1:44560 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:20:48.895 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:37202 10 6452 1 2025-10-30 14:21:16.911 00:00:10.408 TCP 23.104.0.1:57696 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:21:49.100 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43424 10 6452 1 2025-10-30 14:22:17.362 00:00:10.324 TCP 23.104.0.1:51092 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:22:49.324 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52824 10 6452 1 2025-10-30 14:23:17.726 00:00:10.332 TCP 23.104.0.1:54288 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:19:49.587 00:05:03.410 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:19:52.998 00:05:00.003 TCP 179.1.22.1:179 -> 179.1.22.22:39396 11 667 1 2025-10-30 14:23:49.542 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:60844 10 6452 1 2025-10-30 14:24:18.104 00:00:10.361 TCP 23.104.0.1:35190 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:24:49.710 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:38916 10 6452 1 2025-10-30 14:25:12.789 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:25:12.567 00:00:00.028 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:25:18.507 00:00:10.364 TCP 23.104.0.1:41782 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:25:49.934 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:51504 10 6452 1 2025-10-30 14:26:18.911 00:00:10.364 TCP 23.104.0.1:57710 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:26:50.168 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:46612 10 6452 1 2025-10-30 14:27:19.312 00:00:10.375 TCP 23.104.0.1:55880 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:27:50.376 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46326 11 6492 1 2025-10-30 14:28:19.727 00:00:10.450 TCP 23.104.0.1:37624 -> 1.101.0.1:3000 15 1926 1 2025-10-30 14:28:50.593 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:34720 12 10375 1 2025-10-30 14:29:20.217 00:00:10.367 TCP 23.104.0.1:57286 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:25:49.585 00:05:03.416 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:25:49.589 00:05:03.410 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:29:50.843 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35204 10 6452 1 2025-10-30 14:30:12.730 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:30:12.669 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:30:20.623 00:00:13.879 TCP 23.104.0.1:41894 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:30:51.084 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:59602 10 6452 1 2025-10-30 14:31:24.541 00:00:10.324 TCP 23.104.0.1:34620 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:31:51.258 00:00:10.324 TCP 1.101.0.1:3000 -> 22.102.0.1:47904 10 6452 1 2025-10-30 14:32:24.905 00:00:10.368 TCP 23.104.0.1:56782 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:32:51.625 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49978 10 6452 1 2025-10-30 14:33:25.305 00:00:10.373 TCP 23.104.0.1:43840 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:33:51.833 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57314 10 6452 1 2025-10-30 14:34:25.713 00:00:10.362 TCP 23.104.0.1:43768 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:34:52.070 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50422 10 6452 1 2025-10-30 14:35:13.203 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:35:12.977 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:35:26.113 00:00:10.420 TCP 23.104.0.1:56816 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:31:49.588 00:05:03.413 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:31:49.585 00:05:03.419 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:35:52.292 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58050 10 6452 1 2025-10-30 14:36:26.571 00:00:10.363 TCP 23.104.0.1:49484 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:36:52.499 00:00:23.854 TCP 1.101.0.1:3000 -> 22.102.0.1:46266 10 6452 1 2025-10-30 14:37:26.969 00:00:10.371 TCP 23.104.0.1:50620 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:38:06.396 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50608 10 6452 1 2025-10-30 14:38:27.376 00:00:10.768 TCP 23.104.0.1:40340 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:39:06.611 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53156 10 6452 1 2025-10-30 14:39:28.183 00:00:10.367 TCP 23.104.0.1:54108 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:40:13.257 00:00:00.032 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:40:13.104 00:00:00.045 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:40:06.828 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:41964 10 6452 1 2025-10-30 14:40:28.595 00:00:10.359 TCP 23.104.0.1:44282 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:41:07.076 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:56962 10 6452 1 2025-10-30 14:41:28.990 00:00:10.360 TCP 23.104.0.1:44208 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:37:49.588 00:05:03.444 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:37:49.591 00:05:03.439 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:42:07.253 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54612 10 6452 1 2025-10-30 14:42:29.389 00:00:10.367 TCP 23.104.0.1:32824 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:43:07.464 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:43062 10 6452 1 2025-10-30 14:43:29.796 00:00:10.341 TCP 23.104.0.1:43092 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:44:07.672 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43596 10 6452 1 2025-10-30 14:44:30.169 00:00:10.320 TCP 23.104.0.1:51426 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:45:13.163 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:45:13.082 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:45:07.888 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56168 10 6452 1 2025-10-30 14:45:30.527 00:00:10.364 TCP 23.104.0.1:51902 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:46:08.102 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60796 10 6452 1 2025-10-30 14:46:30.933 00:00:10.387 TCP 23.104.0.1:52382 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:47:08.280 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38858 10 6452 1 2025-10-30 14:47:31.353 00:00:10.372 TCP 23.104.0.1:37966 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:43:49.589 00:05:03.448 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:43:49.592 00:05:03.443 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:48:08.494 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:53902 10 6452 1 2025-10-30 14:48:31.763 00:00:10.365 TCP 23.104.0.1:45762 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:49:08.658 00:00:10.700 TCP 1.101.0.1:3000 -> 22.102.0.1:43776 10 6452 1 2025-10-30 14:49:32.168 00:00:10.361 TCP 23.104.0.1:50006 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:50:13.153 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:50:13.380 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:50:09.388 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:52654 10 6452 1 2025-10-30 14:50:32.568 00:00:10.370 TCP 23.104.0.1:45270 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:51:09.559 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56040 10 6452 1 2025-10-30 14:51:32.980 00:00:10.335 TCP 23.104.0.1:51934 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:52:09.772 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34008 10 6452 1 2025-10-30 14:52:33.358 00:00:10.363 TCP 23.104.0.1:36220 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:53:09.982 00:00:10.220 TCP 1.101.0.1:3000 -> 22.102.0.1:37478 12 10375 1 2025-10-30 14:53:33.762 00:00:10.445 TCP 23.104.0.1:35420 -> 1.101.0.1:3000 15 1926 1 2025-10-30 14:49:49.595 00:05:03.441 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 14:49:49.592 00:05:03.445 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 14:54:10.247 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:46308 10 6452 1 2025-10-30 14:54:34.243 00:00:10.325 TCP 23.104.0.1:33828 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:55:13.537 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 14:55:13.436 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 14:55:10.453 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45492 10 6452 1 2025-10-30 14:55:34.607 00:00:10.368 TCP 23.104.0.1:54290 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:56:10.668 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:47838 10 6452 1 2025-10-30 14:56:35.014 00:00:10.362 TCP 23.104.0.1:37404 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:57:10.847 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50546 10 6452 1 2025-10-30 14:57:35.415 00:00:10.365 TCP 23.104.0.1:58932 -> 1.101.0.1:3000 11 1507 1 2025-10-30 14:58:11.085 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41614 10 6452 1 2025-10-30 14:58:35.820 00:00:10.363 TCP 23.104.0.1:33372 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 504891, total packets: 1580, avg bps: 1069, avg pps: 0, avg bpp: 319 Time window: 2025-10-30 13:55:49 - 2025-10-30 14:58:46 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0058s User: 0.0010s Wall: 0.0021s flows/second: 79082.9 Runtime: 0.0021s