Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 00:53:58.352 00:05:56.726 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 00:59:24.462 00:00:10.365 TCP 23.104.0.1:36176 -> 1.101.0.1:3000 11 1507 1 2025-11-10 00:59:40.321 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54146 10 6452 1 2025-11-10 01:00:14.378 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:00:14.428 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:00:24.863 00:00:10.371 TCP 23.104.0.1:60192 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:00:40.551 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42732 10 6452 1 2025-11-10 01:01:25.275 00:00:10.368 TCP 23.104.0.1:46460 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:01:40.770 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48092 10 6452 1 2025-11-10 01:02:25.682 00:00:10.379 TCP 23.104.0.1:59652 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:02:40.992 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:46876 10 6452 1 2025-11-10 01:03:26.104 00:00:10.364 TCP 23.104.0.1:32846 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:03:41.222 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37250 10 6452 1 2025-11-10 00:58:58.356 00:05:56.725 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:04:26.509 00:00:10.364 TCP 23.104.0.1:33294 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:04:41.433 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55216 10 6452 1 2025-11-10 00:59:58.353 00:05:56.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 01:05:14.474 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:05:14.461 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:05:26.910 00:00:10.326 TCP 23.104.0.1:33008 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:05:41.644 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51208 10 6452 1 2025-11-10 01:06:27.288 00:00:10.366 TCP 23.104.0.1:46288 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:06:41.855 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:41064 10 6452 1 2025-11-10 01:07:27.697 00:00:10.372 TCP 23.104.0.1:33294 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:07:42.081 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:38878 10 6452 1 2025-11-10 01:08:28.109 00:00:10.378 TCP 23.104.0.1:38204 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:08:42.312 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33444 10 6452 1 2025-11-10 01:09:28.519 00:00:10.336 TCP 23.104.0.1:54908 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:04:58.362 00:05:56.720 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:09:42.528 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60772 10 6452 1 2025-11-10 01:10:14.538 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:10:14.400 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:10:28.900 00:00:10.338 TCP 23.104.0.1:36348 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:05:58.362 00:05:56.723 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 01:10:42.742 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:48786 10 6452 1 2025-11-10 01:11:29.270 00:00:10.370 TCP 23.104.0.1:54512 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:11:42.914 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52608 10 6452 1 2025-11-10 01:12:29.681 00:00:10.380 TCP 23.104.0.1:38168 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:12:43.123 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:53598 10 6452 1 2025-11-10 01:13:30.108 00:00:10.475 TCP 23.104.0.1:37488 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:13:43.327 00:00:10.534 TCP 1.101.0.1:3000 -> 22.102.0.1:50258 10 6452 1 2025-11-10 01:14:30.621 00:00:10.324 TCP 23.104.0.1:35800 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:14:43.899 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57534 10 6452 1 2025-11-10 01:15:14.506 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:15:14.546 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:15:30.979 00:00:10.373 TCP 23.104.0.1:59882 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:15:44.115 00:00:10.760 TCP 1.101.0.1:3000 -> 22.102.0.1:56480 10 6452 1 2025-11-10 01:10:58.367 00:05:56.716 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:16:31.391 00:00:10.374 TCP 23.104.0.1:47506 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:16:44.915 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46562 10 6452 1 2025-11-10 01:11:58.365 00:05:56.721 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 01:17:31.807 00:00:10.367 TCP 23.104.0.1:60348 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:17:45.130 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:34944 10 6452 1 2025-11-10 01:18:32.210 00:00:10.404 TCP 23.104.0.1:54794 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:18:45.359 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:52168 10 6452 1 2025-11-10 01:19:32.653 00:00:10.366 TCP 23.104.0.1:41618 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:19:45.543 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:49446 10 6452 1 2025-11-10 01:20:14.958 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:20:14.720 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:20:33.083 00:00:10.328 TCP 23.104.0.1:50070 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:20:45.723 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36054 10 6452 1 2025-11-10 01:21:33.448 00:00:10.895 TCP 23.104.0.1:50982 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:16:58.368 00:05:56.721 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:21:45.937 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:54628 10 6452 1 2025-11-10 01:22:34.381 00:00:10.326 TCP 23.104.0.1:41798 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:22:46.137 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55356 10 6452 1 2025-11-10 01:17:58.364 00:05:56.726 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 01:23:34.743 00:00:10.325 TCP 23.104.0.1:54290 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:23:46.366 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46610 10 6452 1 2025-11-10 01:24:35.108 00:00:10.620 TCP 23.104.0.1:52292 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:24:46.580 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35672 10 6452 1 2025-11-10 01:25:14.774 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:25:14.819 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:25:35.765 00:00:10.381 TCP 23.104.0.1:46586 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:25:46.796 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44734 10 6452 1 2025-11-10 01:26:36.186 00:00:10.324 TCP 23.104.0.1:52520 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:26:47.008 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51568 10 6452 1 2025-11-10 01:27:36.553 00:00:10.369 TCP 23.104.0.1:33442 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:22:58.392 00:05:56.699 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:27:47.221 00:00:10.585 TCP 1.101.0.1:3000 -> 22.102.0.1:32944 10 6452 1 2025-11-10 01:28:36.963 00:00:10.378 TCP 23.104.0.1:43036 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:23:58.389 00:05:56.704 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 01:28:47.838 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:56276 10 6452 1 2025-11-10 01:29:37.384 00:00:10.374 TCP 23.104.0.1:51890 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:29:48.083 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58412 10 6452 1 2025-11-10 01:30:14.961 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:30:14.932 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:30:37.781 00:00:10.393 TCP 23.104.0.1:57576 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:30:48.302 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:48268 10 6452 1 2025-11-10 01:31:38.190 00:00:10.362 TCP 23.104.0.1:40838 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:31:48.512 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57184 10 6452 1 2025-11-10 01:32:38.592 00:00:10.365 TCP 23.104.0.1:42374 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:32:48.730 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40390 10 6452 1 2025-11-10 01:33:38.996 00:00:10.364 TCP 23.104.0.1:59238 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:28:58.395 00:05:56.699 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:33:48.942 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:54180 10 6452 1 2025-11-10 01:34:39.398 00:00:10.647 TCP 23.104.0.1:48694 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:29:58.391 00:05:56.705 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 01:34:49.174 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35046 10 6452 1 2025-11-10 01:35:14.911 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:35:15.199 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:35:40.109 00:00:10.361 TCP 23.104.0.1:40712 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:35:49.395 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50766 10 6452 1 2025-11-10 01:36:40.513 00:00:10.366 TCP 23.104.0.1:37926 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:36:49.614 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36542 10 6452 1 2025-11-10 01:37:40.916 00:00:11.417 TCP 23.104.0.1:42878 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:37:49.832 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45758 10 6452 1 2025-11-10 01:38:42.378 00:00:10.365 TCP 23.104.0.1:53506 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:38:50.077 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39906 10 6452 1 2025-11-10 01:39:42.781 00:00:10.365 TCP 23.104.0.1:43680 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:34:58.395 00:05:56.702 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:39:50.288 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39812 10 6452 1 2025-11-10 01:40:15.058 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:40:15.176 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:35:58.393 00:05:56.706 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 01:40:43.197 00:00:10.323 TCP 23.104.0.1:56942 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:40:50.501 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53706 10 6452 1 2025-11-10 01:41:43.559 00:00:10.367 TCP 23.104.0.1:52952 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:41:50.722 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:42816 10 6452 1 2025-11-10 01:42:43.969 00:00:10.370 TCP 23.104.0.1:34130 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:42:50.955 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:49986 12 6556 1 2025-11-10 01:43:44.377 00:00:10.367 TCP 23.104.0.1:43710 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:43:51.202 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48332 12 6556 1 2025-11-10 01:44:44.785 00:00:10.364 TCP 23.104.0.1:52658 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:44:51.420 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:50740 10 6452 1 2025-11-10 01:45:15.113 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:45:15.080 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:45:45.188 00:00:10.367 TCP 23.104.0.1:52638 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:40:58.396 00:05:56.702 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:45:51.639 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:33750 10 6452 1 2025-11-10 01:46:45.595 00:00:10.365 TCP 23.104.0.1:33112 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:41:58.394 00:05:56.707 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 01:46:51.865 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52930 10 6452 1 2025-11-10 01:47:46.002 00:00:10.376 TCP 23.104.0.1:43984 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:47:52.087 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54014 10 6452 1 2025-11-10 01:48:46.412 00:00:10.370 TCP 23.104.0.1:40494 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:48:52.306 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32770 10 6452 1 2025-11-10 01:49:46.826 00:00:10.325 TCP 23.104.0.1:33720 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:49:52.517 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57324 10 6452 1 2025-11-10 01:50:15.564 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:50:15.630 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:50:47.190 00:00:10.479 TCP 23.104.0.1:58372 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:50:52.729 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:47240 10 6452 1 2025-11-10 01:46:58.403 00:05:56.697 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:51:47.703 00:00:10.364 TCP 23.104.0.1:49946 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:51:52.901 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:54742 10 6452 1 2025-11-10 01:47:58.400 00:05:56.702 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-10 01:52:48.106 00:00:10.394 TCP 23.104.0.1:38070 -> 1.101.0.1:3000 15 1926 1 2025-11-10 01:52:53.089 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:59738 12 10375 1 2025-11-10 01:53:48.538 00:00:10.362 TCP 23.104.0.1:36460 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:53:53.329 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39654 10 6452 1 2025-11-10 01:54:48.939 00:00:10.373 TCP 23.104.0.1:59010 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:54:53.540 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53398 10 6452 1 2025-11-10 01:55:15.330 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-10 01:55:15.222 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 01:55:49.355 00:00:10.360 TCP 23.104.0.1:41980 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:55:53.758 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58128 10 6452 1 2025-11-10 01:56:49.753 00:00:10.380 TCP 23.104.0.1:35244 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:56:53.976 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:43052 10 6452 1 2025-11-10 01:52:58.404 00:05:56.697 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-10 01:57:50.167 00:00:10.370 TCP 23.104.0.1:60762 -> 1.101.0.1:3000 11 1507 1 2025-11-10 01:57:54.219 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37508 10 6452 1 Summary: total flows: 162, total bytes: 494939, total packets: 1561, avg bps: 1016, avg pps: 0, avg bpp: 317 Time window: 2025-11-10 00:53:58 - 2025-11-10 01:58:55 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0043s User: 0.0011s Wall: 0.0050s flows/second: 32642.1 Runtime: 0.0050s