Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 08:58:59.125 00:00:10.369 TCP 23.104.0.1:50188 -> 1.101.0.1:3000 11 1507 1 2025-11-18 08:59:14.996 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 08:59:14.996 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 08:59:34.876 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47798 10 6452 1 2025-11-18 08:59:59.534 00:00:10.363 TCP 23.104.0.1:48568 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:00:35.068 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38122 10 6452 1 2025-11-18 09:00:59.938 00:00:10.372 TCP 23.104.0.1:42022 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:01:35.291 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:46074 10 6452 1 2025-11-18 08:57:59.245 00:05:04.893 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:02:00.346 00:00:10.365 TCP 23.104.0.1:52086 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:02:35.502 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56290 10 6452 1 2025-11-18 08:58:59.248 00:05:04.888 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:03:00.749 00:00:10.387 TCP 23.104.0.1:34658 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:03:35.714 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:36804 10 6452 1 2025-11-18 09:04:01.176 00:00:10.320 TCP 23.104.0.1:50866 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:04:15.075 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:04:15.112 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:04:35.882 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:53636 10 6452 1 2025-11-18 09:05:01.539 00:00:10.367 TCP 23.104.0.1:60244 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:05:36.082 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59292 10 6452 1 2025-11-18 09:06:01.944 00:00:10.370 TCP 23.104.0.1:40406 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:06:36.304 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:34238 10 6452 1 2025-11-18 09:07:02.351 00:00:10.330 TCP 23.104.0.1:60842 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:07:36.483 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42040 10 6452 1 2025-11-18 09:03:59.248 00:05:04.893 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:08:02.717 00:00:10.371 TCP 23.104.0.1:47520 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:08:36.703 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33434 10 6452 1 2025-11-18 09:04:59.251 00:05:04.888 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:09:03.124 00:00:10.363 TCP 23.104.0.1:45050 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:09:14.992 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:09:15.052 00:00:00.033 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:09:36.915 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44380 10 6452 1 2025-11-18 09:10:03.525 00:00:11.681 TCP 23.104.0.1:45300 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:10:37.124 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47278 10 6452 1 2025-11-18 09:11:05.243 00:00:10.364 TCP 23.104.0.1:43250 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:11:37.338 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38610 10 6452 1 2025-11-18 09:12:05.651 00:00:10.334 TCP 23.104.0.1:44572 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:12:37.554 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34742 10 6452 1 2025-11-18 09:13:06.025 00:00:10.364 TCP 23.104.0.1:43320 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:13:37.760 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33292 10 6452 1 2025-11-18 09:09:59.249 00:05:04.892 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:14:15.219 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:14:15.226 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:14:06.429 00:00:10.362 TCP 23.104.0.1:42790 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:14:37.973 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57574 10 6452 1 2025-11-18 09:10:59.252 00:05:04.887 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:15:06.830 00:00:10.385 TCP 23.104.0.1:47544 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:15:38.203 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49532 10 6452 1 2025-11-18 09:16:07.256 00:00:10.360 TCP 23.104.0.1:44522 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:16:38.418 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40660 10 6452 1 2025-11-18 09:17:07.656 00:00:10.364 TCP 23.104.0.1:33798 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:17:38.639 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51558 10 6452 1 2025-11-18 09:18:08.088 00:00:10.356 TCP 23.104.0.1:49452 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:18:38.856 00:00:10.411 TCP 1.101.0.1:3000 -> 22.102.0.1:60528 10 6452 1 2025-11-18 09:19:15.395 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:19:15.337 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:19:08.482 00:00:10.364 TCP 23.104.0.1:52888 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:19:39.305 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:32918 10 6452 1 2025-11-18 09:15:59.251 00:05:04.893 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:20:08.886 00:00:10.379 TCP 23.104.0.1:47932 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:20:39.527 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54256 10 6452 1 2025-11-18 09:16:59.254 00:05:04.887 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:21:09.305 00:00:10.325 TCP 23.104.0.1:51886 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:21:39.742 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40120 10 6452 1 2025-11-18 09:22:09.666 00:00:10.417 TCP 23.104.0.1:34662 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:22:39.965 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:39230 10 6452 1 2025-11-18 09:23:10.131 00:00:10.336 TCP 23.104.0.1:47378 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:23:40.216 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55324 10 6452 1 2025-11-18 09:24:15.330 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:24:15.412 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:24:10.504 00:00:10.363 TCP 23.104.0.1:36178 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:24:40.429 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45486 10 6452 1 2025-11-18 09:25:10.910 00:00:10.367 TCP 23.104.0.1:57092 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:25:40.651 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40598 10 6452 1 2025-11-18 09:21:59.253 00:05:04.893 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:26:11.312 00:00:10.367 TCP 23.104.0.1:45202 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:26:40.862 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:45166 10 6452 1 2025-11-18 09:22:59.254 00:05:04.888 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:27:11.713 00:00:10.378 TCP 23.104.0.1:37212 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:27:41.090 00:00:10.776 TCP 1.101.0.1:3000 -> 22.102.0.1:35042 10 6452 1 2025-11-18 09:28:12.126 00:00:10.364 TCP 23.104.0.1:51120 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:28:41.901 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:33234 10 6452 1 2025-11-18 09:29:15.569 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:29:15.455 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:29:12.529 00:00:10.364 TCP 23.104.0.1:38358 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:29:42.121 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38850 10 6452 1 2025-11-18 09:30:12.932 00:00:10.338 TCP 23.104.0.1:41562 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:30:42.346 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55300 10 6452 1 2025-11-18 09:31:13.309 00:00:10.366 TCP 23.104.0.1:47434 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:31:42.561 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:56546 10 6452 1 2025-11-18 09:27:59.254 00:05:04.901 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:32:13.714 00:00:10.370 TCP 23.104.0.1:44120 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:32:42.785 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:36024 10 6452 1 2025-11-18 09:28:59.257 00:05:04.895 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:33:14.122 00:00:10.363 TCP 23.104.0.1:37400 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:33:42.970 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:54994 10 6452 1 2025-11-18 09:34:15.611 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:34:15.648 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:34:14.529 00:00:10.361 TCP 23.104.0.1:59084 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:34:43.199 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38124 10 6452 1 2025-11-18 09:35:14.929 00:00:10.384 TCP 23.104.0.1:48860 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:35:43.412 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58476 10 6452 1 2025-11-18 09:36:15.352 00:00:10.361 TCP 23.104.0.1:54238 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:36:43.632 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45730 10 6452 1 2025-11-18 09:37:15.752 00:00:10.382 TCP 23.104.0.1:47930 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:37:43.842 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35760 10 6452 1 2025-11-18 09:33:59.258 00:05:04.897 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:38:16.174 00:00:10.366 TCP 23.104.0.1:35934 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:38:44.084 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54702 10 6452 1 2025-11-18 09:34:59.260 00:05:04.893 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:39:16.021 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:39:15.684 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:39:16.581 00:00:10.365 TCP 23.104.0.1:36272 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:39:44.306 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:58102 10 6452 1 2025-11-18 09:40:16.987 00:00:10.378 TCP 23.104.0.1:50838 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:40:44.494 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50006 10 6452 1 2025-11-18 09:41:17.421 00:00:10.363 TCP 23.104.0.1:42552 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:41:44.714 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:41482 11 6492 1 2025-11-18 09:42:17.825 00:00:10.361 TCP 23.104.0.1:53200 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:42:44.925 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37554 10 6452 1 2025-11-18 09:43:18.219 00:00:10.369 TCP 23.104.0.1:39056 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:43:45.145 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47798 10 6452 1 2025-11-18 09:39:59.259 00:05:04.897 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:44:15.863 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:44:15.826 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:44:18.629 00:00:10.366 TCP 23.104.0.1:33002 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:44:45.363 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54072 10 6452 1 2025-11-18 09:40:59.263 00:05:04.892 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:45:19.030 00:00:10.372 TCP 23.104.0.1:33424 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:45:45.564 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47300 10 6452 1 2025-11-18 09:46:19.448 00:00:16.859 TCP 23.104.0.1:33728 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:46:45.782 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34090 10 6452 1 2025-11-18 09:47:26.385 00:00:10.365 TCP 23.104.0.1:53962 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:47:45.996 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:60842 10 6452 1 2025-11-18 09:48:26.788 00:00:10.366 TCP 23.104.0.1:52096 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:48:46.219 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50536 10 6452 1 2025-11-18 09:49:15.821 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:49:15.914 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:49:27.193 00:00:10.364 TCP 23.104.0.1:60732 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:49:46.431 00:00:11.163 TCP 1.101.0.1:3000 -> 22.102.0.1:33650 10 6452 1 2025-11-18 09:45:59.261 00:05:04.899 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:50:27.594 00:00:10.322 TCP 23.104.0.1:52494 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:50:47.633 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57562 10 6452 1 2025-11-18 09:46:59.264 00:05:04.894 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:51:27.956 00:00:10.366 TCP 23.104.0.1:33368 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:51:47.845 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:59056 10 6452 1 2025-11-18 09:52:28.358 00:00:10.362 TCP 23.104.0.1:44996 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:52:48.023 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48760 10 6452 1 2025-11-18 09:53:28.760 00:00:10.382 TCP 23.104.0.1:54894 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:53:48.236 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:41140 10 6452 1 2025-11-18 09:54:16.024 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-18 09:54:15.950 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-18 09:54:29.180 00:00:10.370 TCP 23.104.0.1:40158 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:54:48.411 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47430 10 6452 1 2025-11-18 09:55:29.587 00:00:10.367 TCP 23.104.0.1:48020 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:55:48.628 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56852 10 6452 1 2025-11-18 09:51:59.269 00:05:04.893 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-18 09:56:29.990 00:00:11.972 TCP 23.104.0.1:40610 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:56:48.840 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40644 10 6452 1 2025-11-18 09:52:59.272 00:05:04.888 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-18 09:57:32.002 00:00:10.362 TCP 23.104.0.1:53794 -> 1.101.0.1:3000 11 1507 1 2025-11-18 09:57:49.081 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:53390 10 6452 1 2025-11-18 09:58:32.405 00:00:10.325 TCP 23.104.0.1:45568 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 491936, total packets: 1563, avg bps: 1080, avg pps: 0, avg bpp: 314 Time window: 2025-11-18 08:57:59 - 2025-11-18 09:58:42 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0050s User: 0.0008s Wall: 0.0016s flows/second: 103806.8 Runtime: 0.0016s