Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-19 07:58:55.303 00:00:10.364 TCP 23.104.0.1:60634 -> 1.101.0.1:3000 11 1507 1 2025-11-19 07:59:35.160 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50850 10 6452 1 2025-11-19 07:59:42.703 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 07:59:42.493 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 07:59:55.709 00:00:10.335 TCP 23.104.0.1:34750 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:00:35.369 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55560 10 6452 1 2025-11-19 08:00:56.104 00:00:10.366 TCP 23.104.0.1:56838 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:01:35.580 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38016 10 6452 1 2025-11-19 08:01:56.511 00:00:10.369 TCP 23.104.0.1:60558 -> 1.101.0.1:3000 11 1507 1 2025-11-19 07:57:59.939 00:05:04.695 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:02:35.800 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39606 10 6452 1 2025-11-19 07:58:59.942 00:05:04.690 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:02:56.921 00:00:10.377 TCP 23.104.0.1:42144 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:03:36.032 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59990 10 6452 1 2025-11-19 08:03:57.335 00:00:10.368 TCP 23.104.0.1:41564 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:04:42.620 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:04:36.253 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51212 10 6452 1 2025-11-19 08:04:42.673 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:04:57.741 00:00:10.366 TCP 23.104.0.1:51456 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:05:36.474 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:32798 10 6452 1 2025-11-19 08:05:58.146 00:00:10.363 TCP 23.104.0.1:33756 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:06:36.689 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43124 10 6452 1 2025-11-19 08:06:58.546 00:00:10.365 TCP 23.104.0.1:60786 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:07:36.904 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48410 10 6452 1 2025-11-19 08:03:59.940 00:05:04.695 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:07:58.951 00:00:10.365 TCP 23.104.0.1:58632 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:08:37.118 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43142 10 6452 1 2025-11-19 08:04:59.953 00:05:04.680 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:08:59.358 00:00:10.322 TCP 23.104.0.1:46074 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:09:42.603 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:09:42.778 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:09:37.330 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:41392 10 6452 1 2025-11-19 08:09:59.720 00:00:10.369 TCP 23.104.0.1:50482 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:10:37.558 00:00:10.789 TCP 1.101.0.1:3000 -> 22.102.0.1:56534 10 6452 1 2025-11-19 08:11:00.127 00:00:10.364 TCP 23.104.0.1:58162 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:11:38.402 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:54400 10 6452 1 2025-11-19 08:12:00.531 00:00:10.365 TCP 23.104.0.1:58194 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:12:38.577 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53364 10 6452 1 2025-11-19 08:13:00.932 00:00:10.382 TCP 23.104.0.1:57608 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:13:38.789 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35284 10 6452 1 2025-11-19 08:09:59.952 00:05:04.685 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:14:01.353 00:00:10.365 TCP 23.104.0.1:47244 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:14:43.164 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:14:42.904 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:14:39.008 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54706 10 6452 1 2025-11-19 08:10:59.954 00:05:04.680 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:15:01.759 00:00:11.300 TCP 23.104.0.1:38018 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:15:39.229 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59542 10 6452 1 2025-11-19 08:16:03.107 00:00:10.361 TCP 23.104.0.1:34932 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:16:39.447 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:49380 10 6452 1 2025-11-19 08:17:03.507 00:00:10.367 TCP 23.104.0.1:40602 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:17:39.616 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34358 10 6452 1 2025-11-19 08:18:03.908 00:00:10.375 TCP 23.104.0.1:34442 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:18:39.833 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44086 10 6452 1 2025-11-19 08:19:04.317 00:00:10.359 TCP 23.104.0.1:55284 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:19:43.003 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:19:42.851 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:19:40.075 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:34862 10 6452 1 2025-11-19 08:15:59.951 00:05:04.685 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:20:04.716 00:00:10.325 TCP 23.104.0.1:41370 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:20:40.298 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46326 10 6452 1 2025-11-19 08:16:59.955 00:05:04.680 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:21:05.102 00:00:10.813 TCP 23.104.0.1:40072 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:21:40.517 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54902 10 6452 1 2025-11-19 08:22:05.951 00:00:10.369 TCP 23.104.0.1:39960 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:22:40.729 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39472 10 6452 1 2025-11-19 08:23:06.358 00:00:10.373 TCP 23.104.0.1:41718 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:23:40.949 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:33968 12 6556 1 2025-11-19 08:24:06.769 00:00:10.377 TCP 23.104.0.1:44362 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:24:43.250 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:24:43.264 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:24:41.191 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59218 10 6452 1 2025-11-19 08:25:07.188 00:00:10.337 TCP 23.104.0.1:46838 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:25:41.406 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:36036 10 6452 1 2025-11-19 08:21:59.960 00:05:04.678 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:26:07.589 00:00:10.364 TCP 23.104.0.1:50634 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:26:41.573 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37958 10 6452 1 2025-11-19 08:22:59.962 00:05:04.673 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:27:07.991 00:00:10.337 TCP 23.104.0.1:34714 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:27:41.793 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:54974 10 6452 1 2025-11-19 08:28:08.360 00:00:10.361 TCP 23.104.0.1:57006 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:28:41.977 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36782 10 6452 1 2025-11-19 08:29:08.765 00:00:10.328 TCP 23.104.0.1:33384 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:29:43.459 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:29:43.325 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:29:42.195 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53750 10 6452 1 2025-11-19 08:30:09.136 00:00:10.365 TCP 23.104.0.1:45852 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:30:42.406 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52622 10 6452 1 2025-11-19 08:31:09.538 00:00:10.365 TCP 23.104.0.1:35982 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:31:42.656 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41600 10 6452 1 2025-11-19 08:27:59.963 00:05:04.676 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:32:09.944 00:00:10.381 TCP 23.104.0.1:36364 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:32:42.877 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:51222 10 6452 1 2025-11-19 08:28:59.966 00:05:04.670 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:33:10.364 00:00:10.364 TCP 23.104.0.1:49542 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:33:43.108 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37654 10 6452 1 2025-11-19 08:34:10.764 00:00:10.974 TCP 23.104.0.1:47020 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:34:43.452 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:34:43.407 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:34:43.318 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39612 10 6452 1 2025-11-19 08:35:11.777 00:00:10.326 TCP 23.104.0.1:44420 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:35:43.529 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:42886 10 6452 1 2025-11-19 08:36:12.141 00:00:10.362 TCP 23.104.0.1:40460 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:36:43.754 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:50494 10 6452 1 2025-11-19 08:37:12.543 00:00:10.359 TCP 23.104.0.1:60180 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:37:43.988 00:00:10.408 TCP 1.101.0.1:3000 -> 22.102.0.1:54122 10 6452 1 2025-11-19 08:33:59.963 00:05:04.676 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:38:12.944 00:00:10.366 TCP 23.104.0.1:48280 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:38:44.438 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53500 10 6452 1 2025-11-19 08:34:59.966 00:05:04.671 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:39:13.354 00:00:10.373 TCP 23.104.0.1:34566 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:39:43.471 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:39:43.488 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:39:44.651 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:54534 10 6452 1 2025-11-19 08:40:13.758 00:00:10.384 TCP 23.104.0.1:34714 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:40:44.881 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:54500 10 6452 1 2025-11-19 08:41:14.182 00:00:10.370 TCP 23.104.0.1:49794 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:41:45.108 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55450 10 6452 1 2025-11-19 08:42:14.586 00:00:10.368 TCP 23.104.0.1:54420 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:42:45.328 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33636 10 6452 1 2025-11-19 08:43:14.992 00:00:10.327 TCP 23.104.0.1:46098 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:43:45.548 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:57836 10 6452 1 2025-11-19 08:39:59.966 00:05:04.677 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:44:15.354 00:00:10.366 TCP 23.104.0.1:51684 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:44:43.433 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:44:43.476 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:44:45.770 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50332 10 6452 1 2025-11-19 08:40:59.969 00:05:04.671 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:45:15.757 00:00:10.376 TCP 23.104.0.1:57502 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:45:45.983 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:33340 10 6452 1 2025-11-19 08:46:16.173 00:00:10.319 TCP 23.104.0.1:36368 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:46:46.215 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40784 10 6452 1 2025-11-19 08:47:16.541 00:00:10.359 TCP 23.104.0.1:48506 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:47:46.426 00:00:11.528 TCP 1.101.0.1:3000 -> 22.102.0.1:36908 10 6452 1 2025-11-19 08:48:16.942 00:00:10.373 TCP 23.104.0.1:56550 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:48:47.998 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:38782 10 6452 1 2025-11-19 08:49:17.354 00:00:10.316 TCP 23.104.0.1:40090 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:49:43.801 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:49:43.845 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:49:48.225 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37858 10 6452 1 2025-11-19 08:45:59.976 00:05:04.669 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:50:17.712 00:00:10.323 TCP 23.104.0.1:57766 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:50:48.442 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59578 10 6452 1 2025-11-19 08:46:59.985 00:05:04.658 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:51:18.096 00:00:10.324 TCP 23.104.0.1:44326 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:51:48.665 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:36892 10 6452 1 2025-11-19 08:52:18.465 00:00:10.363 TCP 23.104.0.1:54910 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:52:48.844 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60974 10 6452 1 2025-11-19 08:53:18.867 00:00:10.369 TCP 23.104.0.1:37338 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:53:49.084 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38976 10 6452 1 2025-11-19 08:54:19.276 00:00:10.324 TCP 23.104.0.1:50970 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:54:43.817 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-19 08:54:43.801 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-19 08:54:49.296 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:34124 10 6452 1 2025-11-19 08:55:19.638 00:00:10.373 TCP 23.104.0.1:33526 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:55:49.527 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:53902 10 6452 1 2025-11-19 08:51:59.979 00:05:04.669 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-19 08:56:20.062 00:00:10.349 TCP 23.104.0.1:55842 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:56:49.714 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50440 10 6452 1 2025-11-19 08:52:59.981 00:05:04.664 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-19 08:57:20.480 00:00:10.378 TCP 23.104.0.1:47260 -> 1.101.0.1:3000 11 1507 1 2025-11-19 08:57:49.935 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:59694 10 6452 1 2025-11-19 08:58:20.899 00:00:10.374 TCP 23.104.0.1:43742 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 492000, total packets: 1564, avg bps: 1083, avg pps: 0, avg bpp: 314 Time window: 2025-11-19 07:57:59 - 2025-11-19 08:58:31 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0046s User: 0.0018s Wall: 0.0025s flows/second: 66125.5 Runtime: 0.0025s