Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 09:58:50.643 00:00:10.367 TCP 23.104.0.1:47850 -> 1.101.0.1:3000 11 1507 1 2025-11-17 09:59:22.350 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:45908 10 6661 1 2025-11-17 09:59:51.059 00:00:10.361 TCP 23.104.0.1:42646 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:00:22.525 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:60784 10 6661 1 2025-11-17 10:00:51.462 00:00:10.366 TCP 23.104.0.1:33790 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:01:22.753 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38546 12 6765 1 2025-11-17 10:01:51.869 00:00:10.366 TCP 23.104.0.1:51726 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:02:22.972 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:48016 10 6661 1 2025-11-17 10:02:52.274 00:00:10.365 TCP 23.104.0.1:55110 -> 1.101.0.1:3000 11 1507 1 2025-11-17 09:58:58.666 00:05:04.824 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:03:23.208 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:56736 10 6661 1 2025-11-17 10:03:47.169 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:03:47.210 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:03:52.685 00:00:10.323 TCP 23.104.0.1:48122 -> 1.101.0.1:3000 11 1507 1 2025-11-17 09:59:58.668 00:05:04.816 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:04:23.378 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33550 10 6661 1 2025-11-17 10:04:53.048 00:00:10.374 TCP 23.104.0.1:41470 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:05:23.596 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49136 10 6661 1 2025-11-17 10:05:53.477 00:00:10.368 TCP 23.104.0.1:37186 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:06:23.815 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55984 10 6661 1 2025-11-17 10:06:53.883 00:00:10.339 TCP 23.104.0.1:49842 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:07:24.038 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46248 10 6661 1 2025-11-17 10:07:54.261 00:00:10.366 TCP 23.104.0.1:52114 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:08:24.257 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37982 10 6661 1 2025-11-17 10:08:47.498 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:08:47.296 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:08:54.662 00:00:10.366 TCP 23.104.0.1:43220 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:04:58.666 00:05:04.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:09:24.483 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57226 10 6661 1 2025-11-17 10:09:55.091 00:00:10.360 TCP 23.104.0.1:42180 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:05:58.668 00:05:04.822 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:10:24.703 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:57246 11 6713 1 2025-11-17 10:10:55.488 00:00:10.505 TCP 23.104.0.1:40438 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:11:24.967 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:51336 12 6765 1 2025-11-17 10:11:56.031 00:00:10.360 TCP 23.104.0.1:41424 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:12:25.191 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:48512 10 6661 1 2025-11-17 10:12:56.428 00:00:10.365 TCP 23.104.0.1:44634 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:13:25.358 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37336 10 6661 1 2025-11-17 10:13:47.559 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:13:47.343 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:13:56.834 00:00:10.368 TCP 23.104.0.1:41576 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:14:25.567 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39488 10 6661 1 2025-11-17 10:10:58.667 00:05:04.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:14:57.242 00:00:10.362 TCP 23.104.0.1:54276 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:15:25.783 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50228 10 6661 1 2025-11-17 10:11:58.669 00:05:04.822 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:15:57.646 00:00:10.364 TCP 23.104.0.1:49534 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:16:26.001 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51920 10 6661 1 2025-11-17 10:16:58.050 00:00:10.442 TCP 23.104.0.1:56240 -> 1.101.0.1:3000 15 1926 1 2025-11-17 10:17:26.213 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:38972 12 10369 1 2025-11-17 10:17:58.532 00:00:10.359 TCP 23.104.0.1:49010 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:18:26.458 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47082 10 6452 1 2025-11-17 10:18:47.576 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:18:47.635 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:18:58.937 00:00:10.327 TCP 23.104.0.1:35384 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:19:26.686 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58368 10 6452 1 2025-11-17 10:19:59.300 00:00:10.368 TCP 23.104.0.1:43910 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:20:26.915 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:36222 10 6452 1 2025-11-17 10:16:58.669 00:05:04.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:20:59.705 00:00:10.382 TCP 23.104.0.1:56296 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:21:27.152 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51564 10 6452 1 2025-11-17 10:17:58.672 00:05:04.822 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:22:00.134 00:00:10.369 TCP 23.104.0.1:42380 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:22:27.362 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46010 10 6452 1 2025-11-17 10:23:00.542 00:00:10.374 TCP 23.104.0.1:53668 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:23:27.572 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:60436 10 6452 1 2025-11-17 10:23:47.703 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:23:47.643 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:24:00.957 00:00:10.363 TCP 23.104.0.1:49082 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:24:27.776 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:43312 10 6452 1 2025-11-17 10:25:01.362 00:00:10.362 TCP 23.104.0.1:45108 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:25:27.947 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:53534 10 6452 1 2025-11-17 10:26:01.760 00:00:10.373 TCP 23.104.0.1:48228 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:26:28.187 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:58836 10 6452 1 2025-11-17 10:22:58.672 00:05:04.827 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:27:02.169 00:00:10.442 TCP 23.104.0.1:52750 -> 1.101.0.1:3000 15 1926 1 2025-11-17 10:27:28.416 00:00:10.645 TCP 1.101.0.1:3000 -> 22.102.0.1:59176 12 10369 1 2025-11-17 10:23:58.673 00:05:04.823 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:28:02.652 00:00:10.369 TCP 23.104.0.1:48648 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:28:29.098 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44600 10 6452 1 2025-11-17 10:28:47.834 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:28:47.836 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:29:03.061 00:00:10.365 TCP 23.104.0.1:37986 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:29:29.316 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59592 10 6452 1 2025-11-17 10:30:03.471 00:00:10.368 TCP 23.104.0.1:55514 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:30:29.529 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41068 10 6452 1 2025-11-17 10:31:03.873 00:00:10.362 TCP 23.104.0.1:35210 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:31:29.743 00:00:10.766 TCP 1.101.0.1:3000 -> 22.102.0.1:57110 10 6452 1 2025-11-17 10:32:04.275 00:00:10.379 TCP 23.104.0.1:41886 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:32:30.546 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33504 10 6452 1 2025-11-17 10:28:58.671 00:05:04.828 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:33:04.700 00:00:10.368 TCP 23.104.0.1:60254 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:33:30.765 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45302 10 6452 1 2025-11-17 10:33:47.633 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:33:47.840 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:29:58.673 00:05:04.823 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:34:05.112 00:00:10.369 TCP 23.104.0.1:36646 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:34:30.939 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:56812 10 6452 1 2025-11-17 10:35:05.514 00:00:10.364 TCP 23.104.0.1:51424 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:35:31.169 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36604 10 6452 1 2025-11-17 10:36:05.917 00:00:10.367 TCP 23.104.0.1:60150 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:36:31.382 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37842 10 6452 1 2025-11-17 10:37:06.320 00:00:10.363 TCP 23.104.0.1:33816 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:37:31.590 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56916 10 6452 1 2025-11-17 10:38:06.719 00:00:10.375 TCP 23.104.0.1:46566 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:38:31.805 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:38046 10 6452 1 2025-11-17 10:38:48.353 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:38:48.314 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:34:58.672 00:05:04.829 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:39:07.133 00:00:10.365 TCP 23.104.0.1:54410 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:39:32.041 00:00:16.424 TCP 1.101.0.1:3000 -> 22.102.0.1:34070 10 6452 1 2025-11-17 10:35:58.676 00:05:04.823 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:40:07.536 00:00:10.373 TCP 23.104.0.1:37988 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:40:38.511 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52050 10 6452 1 2025-11-17 10:41:07.946 00:00:10.374 TCP 23.104.0.1:50686 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:41:38.737 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:42108 10 6452 1 2025-11-17 10:42:08.351 00:00:10.365 TCP 23.104.0.1:35722 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:42:38.943 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:51630 10 6452 1 2025-11-17 10:43:08.752 00:00:10.387 TCP 23.104.0.1:38238 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:43:48.002 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:43:39.174 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48212 10 6452 1 2025-11-17 10:43:48.043 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:44:09.183 00:00:10.367 TCP 23.104.0.1:45654 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:44:39.384 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45914 10 6452 1 2025-11-17 10:40:58.675 00:05:04.829 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:45:09.586 00:00:10.358 TCP 23.104.0.1:53644 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:45:39.597 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34712 10 6452 1 2025-11-17 10:41:58.684 00:05:04.817 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:46:09.982 00:00:10.372 TCP 23.104.0.1:33452 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:46:39.807 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34248 10 6452 1 2025-11-17 10:47:10.395 00:00:10.367 TCP 23.104.0.1:44338 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:47:40.026 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56184 10 6452 1 2025-11-17 10:48:10.798 00:00:10.368 TCP 23.104.0.1:47712 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:48:48.156 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:48:40.236 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48238 10 6452 1 2025-11-17 10:48:48.279 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:49:11.201 00:00:10.376 TCP 23.104.0.1:55484 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:49:40.446 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36012 10 6452 1 2025-11-17 10:50:11.617 00:00:10.370 TCP 23.104.0.1:53902 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:50:40.669 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37684 10 6452 1 2025-11-17 10:46:58.681 00:05:04.824 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:51:12.031 00:00:10.366 TCP 23.104.0.1:52448 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:51:40.839 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53152 10 6452 1 2025-11-17 10:47:58.684 00:05:04.820 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:52:12.433 00:00:10.603 TCP 23.104.0.1:37096 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:52:41.080 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:52284 10 6452 1 2025-11-17 10:53:13.114 00:00:10.365 TCP 23.104.0.1:58744 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:53:48.564 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-17 10:53:41.250 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60832 10 6452 1 2025-11-17 10:53:48.547 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-17 10:54:13.520 00:00:10.368 TCP 23.104.0.1:37550 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:54:41.460 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54804 10 6452 1 2025-11-17 10:55:13.923 00:00:10.388 TCP 23.104.0.1:35360 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:55:41.670 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34474 10 6452 1 2025-11-17 10:56:14.350 00:00:10.359 TCP 23.104.0.1:37756 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:56:41.876 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:36014 10 6452 1 2025-11-17 10:52:58.682 00:05:04.824 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-17 10:57:14.742 00:00:10.368 TCP 23.104.0.1:49386 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:57:42.113 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:56480 10 6452 1 2025-11-17 10:53:58.684 00:05:04.820 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-17 10:58:15.147 00:00:10.362 TCP 23.104.0.1:49218 -> 1.101.0.1:3000 11 1507 1 2025-11-17 10:58:48.485 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 Summary: total flows: 162, total bytes: 504338, total packets: 1576, avg bps: 1116, avg pps: 0, avg bpp: 320 Time window: 2025-11-17 09:58:50 - 2025-11-17 10:59:03 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0040s User: 0.0010s Wall: 0.0021s flows/second: 75699.3 Runtime: 0.0022s