Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 05:59:28.132 00:00:10.368 TCP 23.104.0.1:39128 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:59:34.131 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:56576 10 6452 1 2025-11-20 06:00:09.203 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:00:09.284 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:00:28.532 00:00:10.319 TCP 23.104.0.1:50092 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:00:34.353 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48600 10 6452 1 2025-11-20 06:01:28.883 00:00:10.388 TCP 23.104.0.1:41110 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:01:34.573 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49816 10 6452 1 2025-11-20 05:57:05.103 00:05:55.515 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 05:58:00.619 00:05:04.481 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:02:29.308 00:00:10.365 TCP 23.104.0.1:52022 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:02:34.791 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:47508 10 6452 1 2025-11-20 06:03:29.712 00:00:10.373 TCP 23.104.0.1:49624 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:03:35.029 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42490 10 6452 1 2025-11-20 06:04:30.126 00:00:10.366 TCP 23.104.0.1:41638 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:04:35.241 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50314 10 6452 1 2025-11-20 06:05:09.254 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:05:09.049 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:05:30.538 00:00:10.365 TCP 23.104.0.1:34898 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:05:35.462 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54476 10 6452 1 2025-11-20 06:06:30.938 00:00:10.331 TCP 23.104.0.1:45984 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:06:35.679 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41748 10 6452 1 2025-11-20 06:07:31.310 00:00:10.883 TCP 23.104.0.1:59166 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:07:35.898 00:00:10.810 TCP 1.101.0.1:3000 -> 22.102.0.1:33914 10 6452 1 2025-11-20 06:03:05.104 00:05:55.517 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 06:04:00.624 00:05:04.480 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:08:32.228 00:00:10.363 TCP 23.104.0.1:48214 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:08:36.740 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:44832 10 6452 1 2025-11-20 06:09:32.638 00:00:10.385 TCP 23.104.0.1:40612 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:09:36.977 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:51832 13 6608 1 2025-11-20 06:10:09.207 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:10:09.230 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:10:33.118 00:00:10.364 TCP 23.104.0.1:34514 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:10:37.183 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34886 10 6452 1 2025-11-20 06:11:33.519 00:00:10.369 TCP 23.104.0.1:54618 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:11:37.397 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59918 10 6452 1 2025-11-20 06:12:33.924 00:00:10.382 TCP 23.104.0.1:42228 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:12:37.612 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57632 10 6452 1 2025-11-20 06:13:34.341 00:00:10.368 TCP 23.104.0.1:54980 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:13:37.823 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39980 10 6452 1 2025-11-20 06:09:05.105 00:05:55.540 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 06:10:00.625 00:05:04.479 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:14:34.748 00:00:23.990 TCP 23.104.0.1:52302 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:14:38.040 00:00:20.664 TCP 1.101.0.1:3000 -> 22.102.0.1:33224 10 6452 1 2025-11-20 06:15:09.477 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:15:09.279 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:15:48.747 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54744 10 6452 1 2025-11-20 06:15:48.805 00:00:10.361 TCP 23.104.0.1:47272 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:16:48.958 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:37226 12 6556 1 2025-11-20 06:16:49.209 00:00:10.365 TCP 23.104.0.1:33224 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:17:49.613 00:00:10.363 TCP 23.104.0.1:57510 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:17:49.188 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56146 10 6452 1 2025-11-20 06:18:49.412 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60158 10 6452 1 2025-11-20 06:18:50.017 00:00:10.366 TCP 23.104.0.1:47322 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:19:50.425 00:00:10.363 TCP 23.104.0.1:52406 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:15:05.106 00:05:55.542 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 06:19:49.620 00:00:10.434 TCP 1.101.0.1:3000 -> 22.102.0.1:41734 10 6452 1 2025-11-20 06:16:00.648 00:05:04.459 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:20:09.379 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:20:09.363 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:20:50.828 00:00:10.353 TCP 23.104.0.1:42340 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:20:50.111 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52044 10 6452 1 2025-11-20 06:21:51.219 00:00:10.366 TCP 23.104.0.1:52040 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:21:50.324 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59732 10 6452 1 2025-11-20 06:22:51.626 00:00:10.364 TCP 23.104.0.1:34508 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:22:50.540 00:00:10.914 TCP 1.101.0.1:3000 -> 22.102.0.1:43592 10 6452 1 2025-11-20 06:23:51.495 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54586 10 6452 1 2025-11-20 06:23:52.029 00:00:10.362 TCP 23.104.0.1:45972 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:24:51.718 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40032 10 6452 1 2025-11-20 06:24:52.432 00:00:10.359 TCP 23.104.0.1:36874 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:25:09.711 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:25:09.881 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:21:05.110 00:05:55.558 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 06:22:00.651 00:05:04.459 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:25:52.827 00:00:15.831 TCP 23.104.0.1:57456 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:25:51.925 00:00:16.638 TCP 1.101.0.1:3000 -> 22.102.0.1:44672 10 6452 1 2025-11-20 06:26:58.604 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:54960 12 6556 1 2025-11-20 06:26:58.698 00:00:10.363 TCP 23.104.0.1:52382 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:27:58.835 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:33934 12 10375 1 2025-11-20 06:27:59.103 00:00:10.438 TCP 23.104.0.1:54560 -> 1.101.0.1:3000 15 1926 1 2025-11-20 06:28:59.089 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35506 10 6452 1 2025-11-20 06:28:59.584 00:00:10.364 TCP 23.104.0.1:33164 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:29:59.309 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56572 10 6452 1 2025-11-20 06:30:09.559 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:30:09.727 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:29:59.989 00:00:10.364 TCP 23.104.0.1:33624 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:30:59.523 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53884 10 6452 1 2025-11-20 06:31:00.391 00:00:10.364 TCP 23.104.0.1:47240 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:27:05.111 00:05:55.559 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 06:28:00.671 00:05:04.438 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:32:00.804 00:00:10.374 TCP 23.104.0.1:51022 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:31:59.730 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:54386 10 6452 1 2025-11-20 06:33:01.216 00:00:10.438 TCP 23.104.0.1:56384 -> 1.101.0.1:3000 15 1926 1 2025-11-20 06:32:59.957 00:00:10.225 TCP 1.101.0.1:3000 -> 22.102.0.1:54368 12 10375 1 2025-11-20 06:34:00.218 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56592 10 6452 1 2025-11-20 06:34:01.697 00:00:11.110 TCP 23.104.0.1:41758 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:35:09.848 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:35:00.440 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:43620 10 6452 1 2025-11-20 06:35:09.872 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:35:02.848 00:00:10.381 TCP 23.104.0.1:38252 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:36:00.658 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33510 10 6452 1 2025-11-20 06:36:03.268 00:00:10.367 TCP 23.104.0.1:47238 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:37:00.881 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45842 10 6452 1 2025-11-20 06:37:03.673 00:00:10.328 TCP 23.104.0.1:51234 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:33:05.113 00:05:55.558 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 06:34:00.674 00:05:04.441 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:38:01.105 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54692 10 6452 1 2025-11-20 06:38:04.035 00:00:10.365 TCP 23.104.0.1:50148 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:39:01.321 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41868 10 6452 1 2025-11-20 06:39:04.445 00:00:10.369 TCP 23.104.0.1:54436 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:40:10.004 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:40:01.533 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38670 10 6452 1 2025-11-20 06:40:09.977 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:40:04.849 00:00:10.340 TCP 23.104.0.1:58854 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:41:01.745 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:44426 10 6452 1 2025-11-20 06:41:05.230 00:00:10.363 TCP 23.104.0.1:59104 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:42:05.633 00:00:10.365 TCP 23.104.0.1:49046 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:42:01.928 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51018 10 6452 1 2025-11-20 06:43:02.148 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47098 10 6452 1 2025-11-20 06:43:06.052 00:00:10.328 TCP 23.104.0.1:37844 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:39:05.117 00:05:55.557 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 06:40:00.676 00:05:04.439 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:44:06.417 00:00:10.365 TCP 23.104.0.1:37352 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:44:02.361 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:46180 10 6452 1 2025-11-20 06:45:09.759 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:45:09.851 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:45:02.572 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37432 10 6452 1 2025-11-20 06:45:06.823 00:00:10.363 TCP 23.104.0.1:57222 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:46:02.792 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35310 10 6452 1 2025-11-20 06:46:07.222 00:00:10.322 TCP 23.104.0.1:43280 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:47:03.003 00:00:11.349 TCP 1.101.0.1:3000 -> 22.102.0.1:41288 10 6452 1 2025-11-20 06:47:07.586 00:00:10.326 TCP 23.104.0.1:54348 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:48:04.397 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42742 10 6452 1 2025-11-20 06:48:07.956 00:00:10.367 TCP 23.104.0.1:52146 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:49:04.605 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:60164 10 6452 1 2025-11-20 06:49:08.362 00:00:10.363 TCP 23.104.0.1:46586 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:45:05.115 00:05:55.560 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 06:46:00.676 00:05:04.438 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:50:10.040 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:50:10.288 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:50:04.776 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:50482 10 6452 1 2025-11-20 06:50:08.763 00:00:10.371 TCP 23.104.0.1:50934 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:51:04.957 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:48442 10 6452 1 2025-11-20 06:51:09.174 00:00:10.396 TCP 23.104.0.1:33268 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:52:05.148 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47310 10 6452 1 2025-11-20 06:52:09.607 00:00:10.320 TCP 23.104.0.1:60144 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:53:05.365 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55368 10 6452 1 2025-11-20 06:53:09.969 00:00:10.373 TCP 23.104.0.1:59398 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:54:05.575 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54888 10 6452 1 2025-11-20 06:54:10.380 00:00:10.371 TCP 23.104.0.1:55962 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:55:10.324 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 06:55:10.194 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:55:05.790 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40754 10 6452 1 2025-11-20 06:55:10.790 00:00:10.373 TCP 23.104.0.1:48422 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:51:05.117 00:05:55.560 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 06:52:00.678 00:05:04.441 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 06:56:06.001 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45782 10 6452 1 2025-11-20 06:56:11.200 00:00:10.359 TCP 23.104.0.1:34686 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:57:06.227 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44550 10 6452 1 2025-11-20 06:57:11.614 00:00:10.369 TCP 23.104.0.1:46586 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:58:06.443 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48972 10 6452 1 2025-11-20 06:58:12.019 00:00:10.369 TCP 23.104.0.1:43004 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 499437, total packets: 1570, avg bps: 1086, avg pps: 0, avg bpp: 318 Time window: 2025-11-20 05:57:05 - 2025-11-20 06:58:22 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0064s User: 0.0000s Wall: 0.0019s flows/second: 84020.9 Runtime: 0.0019s