Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 16:58:42.844 00:00:10.380 TCP 23.104.0.1:51638 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:59:40.311 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41394 10 6452 1 2025-10-30 16:55:49.643 00:05:03.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 16:59:43.272 00:00:10.364 TCP 23.104.0.1:56052 -> 1.101.0.1:3000 11 1507 1 2025-10-30 16:55:49.640 00:05:03.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:00:16.175 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:00:16.304 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:00:40.523 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47300 10 6452 1 2025-10-30 17:00:43.673 00:00:10.564 TCP 23.104.0.1:44528 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:01:40.733 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58868 10 6452 1 2025-10-30 17:01:44.287 00:00:10.366 TCP 23.104.0.1:39114 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:02:40.947 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:46472 10 6452 1 2025-10-30 17:02:44.688 00:00:10.322 TCP 23.104.0.1:37230 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:03:41.136 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46894 10 6452 1 2025-10-30 17:03:45.058 00:00:10.329 TCP 23.104.0.1:32966 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:04:41.357 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43046 10 6452 1 2025-10-30 17:04:45.419 00:00:10.369 TCP 23.104.0.1:54014 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:05:16.219 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:05:16.116 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:05:41.575 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:49284 10 6452 1 2025-10-30 17:01:49.641 00:05:03.452 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:05:45.821 00:00:10.366 TCP 23.104.0.1:42056 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:01:49.643 00:05:03.447 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 17:06:41.758 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50604 10 6452 1 2025-10-30 17:06:46.229 00:00:10.373 TCP 23.104.0.1:55898 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:07:41.970 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:40492 10 6452 1 2025-10-30 17:07:46.633 00:00:10.910 TCP 23.104.0.1:40438 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:08:42.193 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:59206 10 6452 1 2025-10-30 17:08:47.583 00:00:10.342 TCP 23.104.0.1:49264 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:09:42.368 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59372 10 6452 1 2025-10-30 17:09:47.953 00:00:10.364 TCP 23.104.0.1:53490 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:10:16.179 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:10:15.948 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:10:42.577 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:34906 10 6452 1 2025-10-30 17:10:48.358 00:00:10.364 TCP 23.104.0.1:56216 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:11:42.800 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37608 10 6452 1 2025-10-30 17:07:49.641 00:05:03.452 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:07:49.645 00:05:03.447 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 17:11:48.765 00:00:10.378 TCP 23.104.0.1:37238 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:12:43.023 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:49348 10 6452 1 2025-10-30 17:12:49.175 00:00:10.327 TCP 23.104.0.1:43504 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:13:43.201 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:32916 12 10375 1 2025-10-30 17:13:49.541 00:00:10.437 TCP 23.104.0.1:60850 -> 1.101.0.1:3000 15 1926 1 2025-10-30 17:14:43.448 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46552 10 6452 1 2025-10-30 17:14:50.016 00:00:10.364 TCP 23.104.0.1:42508 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:15:16.598 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:15:16.375 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:15:43.658 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:46068 10 6452 1 2025-10-30 17:15:50.415 00:00:10.328 TCP 23.104.0.1:42432 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:16:43.876 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:60736 10 6452 1 2025-10-30 17:16:50.781 00:00:10.364 TCP 23.104.0.1:54234 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:13:49.643 00:05:03.451 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:17:44.096 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59290 10 6452 1 2025-10-30 17:13:49.646 00:05:03.446 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 17:17:51.188 00:00:10.359 TCP 23.104.0.1:35124 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:18:44.313 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:38584 10 6452 1 2025-10-30 17:18:51.583 00:00:10.369 TCP 23.104.0.1:43580 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:19:44.488 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57594 10 6452 1 2025-10-30 17:19:51.990 00:00:10.327 TCP 23.104.0.1:33876 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:20:16.415 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:20:16.469 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:20:44.701 00:00:10.875 TCP 1.101.0.1:3000 -> 22.102.0.1:55474 10 6452 1 2025-10-30 17:20:52.352 00:00:10.327 TCP 23.104.0.1:45720 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:21:45.616 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:55298 10 6452 1 2025-10-30 17:21:52.715 00:00:10.375 TCP 23.104.0.1:40100 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:22:45.830 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39316 10 6452 1 2025-10-30 17:22:53.127 00:00:10.342 TCP 23.104.0.1:46224 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:23:46.081 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48680 10 6452 1 2025-10-30 17:19:49.649 00:05:03.447 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:19:49.652 00:05:03.442 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 17:23:53.508 00:00:10.329 TCP 23.104.0.1:53938 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:24:46.303 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55604 10 6452 1 2025-10-30 17:24:53.873 00:00:10.371 TCP 23.104.0.1:58858 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:25:16.467 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:25:16.415 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:25:46.516 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35682 10 6452 1 2025-10-30 17:25:54.282 00:00:10.331 TCP 23.104.0.1:50976 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:26:46.737 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:56706 10 6452 1 2025-10-30 17:26:54.654 00:00:10.364 TCP 23.104.0.1:49906 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:27:46.916 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53688 10 6452 1 2025-10-30 17:27:55.061 00:00:10.369 TCP 23.104.0.1:38540 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:28:47.128 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36760 10 6452 1 2025-10-30 17:28:55.472 00:00:10.366 TCP 23.104.0.1:42456 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:25:49.652 00:05:03.450 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:25:49.654 00:05:03.445 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 17:29:47.342 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:53694 10 6452 1 2025-10-30 17:29:55.875 00:00:10.366 TCP 23.104.0.1:55352 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:30:16.434 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:30:16.584 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:30:47.575 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:55224 10 6452 1 2025-10-30 17:30:56.280 00:00:10.320 TCP 23.104.0.1:48556 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:31:47.785 00:00:10.350 TCP 1.101.0.1:3000 -> 22.102.0.1:37220 10 6452 1 2025-10-30 17:31:56.642 00:00:10.373 TCP 23.104.0.1:36138 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:32:48.175 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:53566 10 6452 1 2025-10-30 17:32:57.063 00:00:10.364 TCP 23.104.0.1:36320 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:33:48.347 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37234 10 6452 1 2025-10-30 17:33:57.468 00:00:10.323 TCP 23.104.0.1:38466 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:34:48.568 00:00:11.078 TCP 1.101.0.1:3000 -> 22.102.0.1:56790 10 6452 1 2025-10-30 17:34:57.835 00:00:10.346 TCP 23.104.0.1:59894 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:35:16.547 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:35:16.357 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:31:49.656 00:05:03.443 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 17:31:49.654 00:05:03.448 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:35:49.687 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50198 10 6452 1 2025-10-30 17:35:58.221 00:00:10.331 TCP 23.104.0.1:58504 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:36:49.914 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:36214 10 6452 1 2025-10-30 17:36:58.587 00:00:10.362 TCP 23.104.0.1:55958 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:37:50.166 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44332 10 6452 1 2025-10-30 17:37:58.989 00:00:10.373 TCP 23.104.0.1:41302 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:38:50.387 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:48992 12 10375 1 2025-10-30 17:38:59.402 00:00:10.438 TCP 23.104.0.1:46742 -> 1.101.0.1:3000 15 1926 1 2025-10-30 17:39:50.640 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54020 10 6452 1 2025-10-30 17:39:59.875 00:00:10.372 TCP 23.104.0.1:51224 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:40:16.762 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:40:16.881 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:40:50.856 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:36420 10 6452 1 2025-10-30 17:41:00.287 00:00:10.316 TCP 23.104.0.1:38620 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:37:49.661 00:05:03.442 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 17:37:49.658 00:05:03.447 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:41:51.085 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35556 10 6452 1 2025-10-30 17:42:00.644 00:00:10.369 TCP 23.104.0.1:48652 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:42:51.296 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58926 10 6452 1 2025-10-30 17:43:01.056 00:00:10.360 TCP 23.104.0.1:60846 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:43:51.513 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:36750 12 10375 1 2025-10-30 17:44:01.461 00:00:10.437 TCP 23.104.0.1:48654 -> 1.101.0.1:3000 15 1926 1 2025-10-30 17:44:51.708 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:38262 10 6452 1 2025-10-30 17:45:16.790 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:45:16.875 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:45:01.940 00:00:10.369 TCP 23.104.0.1:34698 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:45:51.932 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:51856 10 6452 1 2025-10-30 17:46:02.346 00:00:10.365 TCP 23.104.0.1:60878 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:46:52.192 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:33154 10 6452 1 2025-10-30 17:47:02.749 00:00:11.448 TCP 23.104.0.1:45548 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:43:49.662 00:05:03.442 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 17:43:49.659 00:05:03.448 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:47:52.412 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55976 10 6452 1 2025-10-30 17:48:04.235 00:00:10.359 TCP 23.104.0.1:55504 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:48:52.640 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:43750 10 6452 1 2025-10-30 17:49:04.640 00:00:10.329 TCP 23.104.0.1:52648 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:49:52.818 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:57332 10 6452 1 2025-10-30 17:50:16.749 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:50:16.815 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:50:05.017 00:00:10.674 TCP 23.104.0.1:46080 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:50:53.071 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:51588 10 6452 1 2025-10-30 17:51:05.727 00:00:10.376 TCP 23.104.0.1:58346 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:51:53.279 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40618 10 6452 1 2025-10-30 17:52:06.139 00:00:10.555 TCP 23.104.0.1:58782 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:52:53.494 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60248 10 6452 1 2025-10-30 17:53:06.733 00:00:10.369 TCP 23.104.0.1:47442 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:49:49.663 00:05:03.442 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-10-30 17:49:49.661 00:05:03.446 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-10-30 17:53:53.704 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44960 10 6452 1 2025-10-30 17:54:07.139 00:00:10.340 TCP 23.104.0.1:50630 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:54:53.924 00:00:10.956 TCP 1.101.0.1:3000 -> 22.102.0.1:51982 10 6452 1 2025-10-30 17:55:16.948 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-10-30 17:55:16.945 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 17:55:07.530 00:00:10.364 TCP 23.104.0.1:48420 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:55:54.922 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40676 10 6452 1 2025-10-30 17:56:07.930 00:00:10.346 TCP 23.104.0.1:53760 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:56:55.131 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58962 10 6452 1 2025-10-30 17:57:08.315 00:00:10.362 TCP 23.104.0.1:36440 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:57:55.344 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52408 10 6452 1 2025-10-30 17:58:08.717 00:00:10.327 TCP 23.104.0.1:38168 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 504922, total packets: 1580, avg bps: 1077, avg pps: 0, avg bpp: 319 Time window: 2025-10-30 16:55:49 - 2025-10-30 17:58:19 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0024s User: 0.0036s Wall: 0.0019s flows/second: 86848.5 Runtime: 0.0019s