Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 08:54:54.760 00:05:03.276 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 08:59:21.354 00:00:10.538 TCP 23.104.0.1:55216 -> 1.101.0.1:3000 11 1507 1 2025-11-09 08:59:25.976 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:48686 10 6452 1 2025-11-09 08:59:55.039 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 08:59:55.213 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:00:26.218 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:57358 10 6452 1 2025-11-09 09:00:21.934 00:00:10.378 TCP 23.104.0.1:41976 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:01:22.351 00:00:10.326 TCP 23.104.0.1:59614 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:01:26.393 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:58634 10 6452 1 2025-11-09 09:02:22.719 00:00:10.376 TCP 23.104.0.1:52584 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:02:26.617 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58906 10 6452 1 2025-11-09 09:03:23.130 00:00:10.373 TCP 23.104.0.1:38360 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:03:26.837 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:58914 10 6452 1 2025-11-09 08:59:54.757 00:05:03.282 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 09:04:23.538 00:00:10.366 TCP 23.104.0.1:45480 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:04:27.073 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:44014 10 6452 1 2025-11-09 09:04:55.384 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:04:55.463 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:00:54.761 00:05:03.276 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 09:05:23.955 00:00:10.365 TCP 23.104.0.1:46584 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:05:27.299 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34630 10 6452 1 2025-11-09 09:06:24.359 00:00:10.410 TCP 23.104.0.1:40538 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:06:27.518 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57946 10 6452 1 2025-11-09 09:07:24.811 00:00:10.376 TCP 23.104.0.1:38928 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:07:27.740 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:54776 10 6452 1 2025-11-09 09:08:25.222 00:00:10.438 TCP 23.104.0.1:35546 -> 1.101.0.1:3000 15 1926 1 2025-11-09 09:08:27.971 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:56722 14 10473 1 2025-11-09 09:09:25.698 00:00:10.367 TCP 23.104.0.1:60292 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:09:28.215 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52216 10 6452 1 2025-11-09 09:09:55.330 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:09:55.324 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:05:54.759 00:05:03.281 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 09:10:26.105 00:00:10.322 TCP 23.104.0.1:57460 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:10:28.429 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:34160 10 6452 1 2025-11-09 09:06:54.763 00:05:03.279 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 09:11:26.467 00:00:10.325 TCP 23.104.0.1:39100 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:11:28.608 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36678 10 6452 1 2025-11-09 09:12:28.816 00:00:10.341 TCP 1.101.0.1:3000 -> 22.102.0.1:41676 10 6452 1 2025-11-09 09:12:26.836 00:00:10.384 TCP 23.104.0.1:39970 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:13:29.193 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:50962 10 6452 1 2025-11-09 09:13:27.265 00:00:10.323 TCP 23.104.0.1:53216 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:14:29.416 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54668 10 6452 1 2025-11-09 09:14:27.626 00:00:10.369 TCP 23.104.0.1:53678 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:14:55.415 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:14:55.312 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:15:28.034 00:00:10.330 TCP 23.104.0.1:39724 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:15:29.635 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:44978 10 6452 1 2025-11-09 09:11:54.763 00:05:03.284 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 09:16:29.858 00:00:10.664 TCP 1.101.0.1:3000 -> 22.102.0.1:55494 10 6452 1 2025-11-09 09:16:28.403 00:00:10.363 TCP 23.104.0.1:55182 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:12:54.766 00:05:03.278 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 09:17:30.560 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:57998 10 6452 1 2025-11-09 09:17:28.801 00:00:10.377 TCP 23.104.0.1:53764 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:18:29.214 00:00:10.331 TCP 23.104.0.1:33122 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:18:30.735 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:55040 10 6452 1 2025-11-09 09:19:30.943 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:51298 10 6452 1 2025-11-09 09:19:29.584 00:00:10.368 TCP 23.104.0.1:59946 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:19:55.761 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:19:55.564 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:20:29.988 00:00:10.998 TCP 23.104.0.1:51058 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:20:31.179 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55406 10 6452 1 2025-11-09 09:21:31.024 00:00:10.360 TCP 23.104.0.1:51050 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:21:31.394 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52558 10 6452 1 2025-11-09 09:17:54.763 00:05:03.285 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 09:22:31.422 00:00:10.368 TCP 23.104.0.1:56258 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:22:31.609 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38360 10 6452 1 2025-11-09 09:18:54.767 00:05:03.279 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 09:23:31.820 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:46392 10 6452 1 2025-11-09 09:23:31.825 00:00:10.389 TCP 23.104.0.1:46300 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:24:31.997 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43514 10 6452 1 2025-11-09 09:24:32.253 00:00:10.370 TCP 23.104.0.1:42148 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:24:55.678 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:24:55.622 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:25:32.658 00:00:10.377 TCP 23.104.0.1:49736 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:25:32.212 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:36224 10 6452 1 2025-11-09 09:26:32.386 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60332 10 6452 1 2025-11-09 09:26:33.104 00:00:10.365 TCP 23.104.0.1:38690 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:27:33.508 00:00:10.325 TCP 23.104.0.1:52550 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:27:32.599 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59766 10 6452 1 2025-11-09 09:23:54.765 00:05:03.285 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 09:28:33.873 00:00:10.371 TCP 23.104.0.1:50806 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:28:32.816 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:51350 10 6452 1 2025-11-09 09:24:54.767 00:05:03.281 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 09:29:34.280 00:00:10.321 TCP 23.104.0.1:52420 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:29:33.033 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59794 10 6452 1 2025-11-09 09:29:55.513 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:29:55.645 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:30:34.641 00:00:10.344 TCP 23.104.0.1:45402 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:30:33.244 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:54564 10 6452 1 2025-11-09 09:31:33.422 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52536 10 6452 1 2025-11-09 09:31:35.034 00:00:10.361 TCP 23.104.0.1:52046 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:32:33.637 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42228 10 6452 1 2025-11-09 09:32:35.439 00:00:10.384 TCP 23.104.0.1:60808 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:33:35.857 00:00:15.274 TCP 23.104.0.1:41038 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:33:33.850 00:00:17.227 TCP 1.101.0.1:3000 -> 22.102.0.1:50718 10 6452 1 2025-11-09 09:29:54.765 00:05:03.288 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 09:34:41.183 00:00:10.322 TCP 23.104.0.1:40466 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:34:41.120 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33764 10 6452 1 2025-11-09 09:34:55.854 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:34:55.668 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:30:54.768 00:05:03.283 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 09:35:41.543 00:00:10.325 TCP 23.104.0.1:33116 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:35:41.331 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47732 10 6452 1 2025-11-09 09:36:41.551 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50192 10 6452 1 2025-11-09 09:36:41.907 00:00:10.324 TCP 23.104.0.1:32944 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:37:41.761 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60978 10 6452 1 2025-11-09 09:37:42.270 00:00:10.364 TCP 23.104.0.1:57630 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:38:41.979 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:51158 10 6452 1 2025-11-09 09:38:42.674 00:00:10.372 TCP 23.104.0.1:47438 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:39:42.226 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35694 10 6452 1 2025-11-09 09:39:56.145 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:39:56.191 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:39:43.102 00:00:10.365 TCP 23.104.0.1:37774 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:35:54.767 00:05:03.290 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 09:40:43.502 00:00:10.366 TCP 23.104.0.1:58754 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:40:42.448 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:33350 10 6452 1 2025-11-09 09:36:54.769 00:05:03.285 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 09:41:43.905 00:00:10.368 TCP 23.104.0.1:44962 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:41:42.620 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:51834 10 6452 1 2025-11-09 09:42:42.796 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58062 10 6452 1 2025-11-09 09:42:44.312 00:00:10.326 TCP 23.104.0.1:36316 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:43:43.012 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43802 10 6452 1 2025-11-09 09:43:44.680 00:00:10.366 TCP 23.104.0.1:55524 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:44:45.098 00:00:10.365 TCP 23.104.0.1:60922 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:44:56.091 00:00:00.035 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:44:43.222 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35654 10 6452 1 2025-11-09 09:44:56.149 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:45:45.498 00:00:10.362 TCP 23.104.0.1:42936 -> 1.101.0.1:3000 12 1559 1 2025-11-09 09:45:43.434 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57472 10 6452 1 2025-11-09 09:41:54.767 00:05:03.292 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 09:46:45.901 00:00:10.327 TCP 23.104.0.1:47646 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:46:43.645 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44384 10 6452 1 2025-11-09 09:42:54.770 00:05:03.287 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 09:47:43.855 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:40600 10 6452 1 2025-11-09 09:47:46.263 00:00:10.366 TCP 23.104.0.1:55792 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:48:44.086 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40072 10 6452 1 2025-11-09 09:48:46.669 00:00:11.010 TCP 23.104.0.1:39344 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:49:44.311 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60016 10 6452 1 2025-11-09 09:49:55.993 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:49:56.165 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:49:47.720 00:00:10.371 TCP 23.104.0.1:44900 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:50:44.531 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33178 10 6452 1 2025-11-09 09:50:48.130 00:00:10.368 TCP 23.104.0.1:40526 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:51:44.752 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60182 10 6452 1 2025-11-09 09:51:48.534 00:00:10.706 TCP 23.104.0.1:59808 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:47:54.768 00:05:03.292 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-09 09:52:44.965 00:00:10.221 TCP 1.101.0.1:3000 -> 22.102.0.1:43308 12 10375 1 2025-11-09 09:48:54.772 00:05:03.288 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-09 09:52:49.277 00:00:10.401 TCP 23.104.0.1:54546 -> 1.101.0.1:3000 15 1926 1 2025-11-09 09:53:45.230 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:34590 10 6452 1 2025-11-09 09:53:49.716 00:00:10.371 TCP 23.104.0.1:60854 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:54:45.483 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55602 10 6452 1 2025-11-09 09:54:56.041 00:00:00.008 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-09 09:54:56.170 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 09:54:50.128 00:00:10.375 TCP 23.104.0.1:39394 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:55:45.695 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33594 10 6452 1 2025-11-09 09:55:50.539 00:00:10.372 TCP 23.104.0.1:48672 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:56:45.906 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38042 10 6452 1 2025-11-09 09:56:50.949 00:00:10.369 TCP 23.104.0.1:42228 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:57:46.121 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44230 10 6452 1 2025-11-09 09:57:51.353 00:00:10.330 TCP 23.104.0.1:33002 -> 1.101.0.1:3000 11 1507 1 2025-11-09 09:53:54.769 00:05:03.293 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 Summary: total flows: 162, total bytes: 499223, total packets: 1566, avg bps: 1039, avg pps: 0, avg bpp: 318 Time window: 2025-11-09 08:54:54 - 2025-11-09 09:58:58 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0027s User: 0.0027s Wall: 0.0036s flows/second: 45151.0 Runtime: 0.0036s