Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 08:59:11.104 00:00:10.328 TCP 23.104.0.1:42154 -> 1.101.0.1:3000 11 1507 1 2025-11-20 08:59:35.248 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:35392 10 6870 1 2025-11-20 09:00:12.570 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:00:12.775 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:00:11.468 00:00:10.362 TCP 23.104.0.1:60128 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:00:35.427 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33806 10 6870 1 2025-11-20 09:01:11.868 00:00:10.368 TCP 23.104.0.1:46354 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:01:35.640 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:43952 10 6870 1 2025-11-20 08:57:05.162 00:05:55.593 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 08:58:00.756 00:05:04.406 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:02:12.281 00:00:10.328 TCP 23.104.0.1:54758 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:02:35.809 00:00:10.269 TCP 1.101.0.1:3000 -> 22.102.0.1:35990 12 10369 1 2025-11-20 09:03:12.645 00:00:10.447 TCP 23.104.0.1:33614 -> 1.101.0.1:3000 15 1926 1 2025-11-20 09:03:36.130 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59292 10 6452 1 2025-11-20 09:04:13.132 00:00:10.375 TCP 23.104.0.1:54886 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:04:36.352 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56114 12 6556 1 2025-11-20 09:05:12.861 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:05:12.769 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:05:13.530 00:00:10.367 TCP 23.104.0.1:58250 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:05:36.568 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38534 10 6452 1 2025-11-20 09:06:13.934 00:00:10.372 TCP 23.104.0.1:51630 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:06:36.783 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:39644 10 6452 1 2025-11-20 09:07:14.346 00:00:10.588 TCP 23.104.0.1:34056 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:07:36.956 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:33584 10 6452 1 2025-11-20 09:03:05.164 00:05:55.597 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 09:04:00.757 00:05:04.406 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:08:14.977 00:00:10.363 TCP 23.104.0.1:36084 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:08:37.140 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48624 10 6452 1 2025-11-20 09:09:15.382 00:00:10.365 TCP 23.104.0.1:42674 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:09:37.357 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:40454 10 6452 1 2025-11-20 09:10:12.646 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:10:12.955 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:10:15.786 00:00:10.365 TCP 23.104.0.1:58360 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:10:37.532 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52056 10 6452 1 2025-11-20 09:11:16.192 00:00:10.367 TCP 23.104.0.1:40928 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:11:37.749 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59482 10 6452 1 2025-11-20 09:12:16.602 00:00:10.375 TCP 23.104.0.1:47330 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:12:37.960 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42180 12 6556 1 2025-11-20 09:13:17.013 00:00:10.365 TCP 23.104.0.1:56002 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:13:38.193 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37888 10 6452 1 2025-11-20 09:09:05.167 00:05:55.598 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 09:10:00.766 00:05:04.398 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:14:17.414 00:00:10.325 TCP 23.104.0.1:46248 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:14:38.406 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:50086 10 6452 1 2025-11-20 09:15:12.965 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:15:13.022 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:15:17.774 00:00:10.372 TCP 23.104.0.1:56452 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:15:38.571 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40046 10 6452 1 2025-11-20 09:16:18.182 00:00:10.363 TCP 23.104.0.1:44104 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:16:38.782 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:59826 10 6452 1 2025-11-20 09:17:18.582 00:00:10.372 TCP 23.104.0.1:46514 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:17:38.952 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:58774 14 10473 1 2025-11-20 09:18:18.991 00:00:10.787 TCP 23.104.0.1:38238 -> 1.101.0.1:3000 15 1926 1 2025-11-20 09:18:39.208 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56326 10 6452 1 2025-11-20 09:19:19.817 00:00:10.330 TCP 23.104.0.1:55470 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:19:39.423 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58792 10 6452 1 2025-11-20 09:15:05.168 00:05:55.599 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 09:16:00.767 00:05:04.400 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:20:13.115 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:20:13.148 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:20:20.181 00:00:10.370 TCP 23.104.0.1:56948 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:20:39.634 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51712 10 6452 1 2025-11-20 09:21:20.587 00:00:10.363 TCP 23.104.0.1:45786 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:21:39.842 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:39404 10 6452 1 2025-11-20 09:22:20.984 00:00:10.370 TCP 23.104.0.1:48944 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:22:40.016 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53074 10 6452 1 2025-11-20 09:23:21.394 00:00:10.368 TCP 23.104.0.1:49358 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:23:40.232 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:50258 10 6452 1 2025-11-20 09:24:21.803 00:00:10.362 TCP 23.104.0.1:48706 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:24:40.407 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:50544 10 6452 1 2025-11-20 09:25:12.912 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:25:13.108 00:00:00.039 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:25:22.201 00:00:10.363 TCP 23.104.0.1:47716 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:25:40.575 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57636 10 6452 1 2025-11-20 09:21:05.170 00:05:55.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 09:22:00.769 00:05:04.400 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:26:22.604 00:00:10.377 TCP 23.104.0.1:57856 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:26:40.792 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54130 10 6452 1 2025-11-20 09:27:23.021 00:00:10.367 TCP 23.104.0.1:58628 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:27:41.006 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54218 10 6452 1 2025-11-20 09:28:23.429 00:00:10.384 TCP 23.104.0.1:51842 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:28:41.224 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56740 10 6452 1 2025-11-20 09:29:23.875 00:00:10.366 TCP 23.104.0.1:45522 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:29:41.443 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60788 10 6452 1 2025-11-20 09:30:13.450 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:30:13.293 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:30:24.282 00:00:10.331 TCP 23.104.0.1:58708 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:30:41.662 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:58314 10 6452 1 2025-11-20 09:31:24.647 00:00:10.368 TCP 23.104.0.1:33034 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:31:41.838 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:51410 10 6452 1 2025-11-20 09:27:05.172 00:05:55.598 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 09:28:00.773 00:05:04.400 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:32:25.053 00:00:10.371 TCP 23.104.0.1:46078 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:32:42.067 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43228 12 6556 1 2025-11-20 09:33:25.474 00:00:10.368 TCP 23.104.0.1:59560 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:33:42.287 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58298 10 6452 1 2025-11-20 09:34:25.883 00:00:10.380 TCP 23.104.0.1:40428 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:34:42.511 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52116 10 6452 1 2025-11-20 09:35:13.504 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:35:13.436 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:35:26.301 00:00:10.368 TCP 23.104.0.1:58168 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:35:42.724 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60436 10 6452 1 2025-11-20 09:36:26.706 00:00:10.374 TCP 23.104.0.1:34828 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:36:42.937 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:32952 10 6452 1 2025-11-20 09:37:27.119 00:00:10.366 TCP 23.104.0.1:37376 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:37:43.127 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56932 10 6452 1 2025-11-20 09:33:05.173 00:05:55.597 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 09:34:00.773 00:05:04.400 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:38:27.525 00:00:10.328 TCP 23.104.0.1:52512 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:38:43.339 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57186 10 6452 1 2025-11-20 09:39:27.893 00:00:10.376 TCP 23.104.0.1:44700 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:39:43.552 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42532 10 6452 1 2025-11-20 09:40:13.435 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:40:13.575 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:40:28.307 00:00:10.368 TCP 23.104.0.1:39660 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:40:43.766 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46072 10 6452 1 2025-11-20 09:41:28.711 00:00:10.322 TCP 23.104.0.1:54672 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:41:43.977 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35480 10 6452 1 2025-11-20 09:42:29.097 00:00:10.323 TCP 23.104.0.1:35538 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:42:44.202 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:42956 11 6492 1 2025-11-20 09:43:29.465 00:00:10.365 TCP 23.104.0.1:43352 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:43:44.382 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:39498 10 6452 1 2025-11-20 09:39:05.175 00:05:55.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 09:40:00.774 00:05:04.399 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:44:29.874 00:00:10.363 TCP 23.104.0.1:58268 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:44:44.592 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36984 10 6452 1 2025-11-20 09:45:13.591 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:45:13.296 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:45:30.279 00:00:10.362 TCP 23.104.0.1:42118 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:45:44.808 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44064 10 6452 1 2025-11-20 09:46:30.683 00:00:10.323 TCP 23.104.0.1:41286 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:46:45.030 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40580 10 6452 1 2025-11-20 09:47:31.050 00:00:10.360 TCP 23.104.0.1:44836 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:47:45.246 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39028 10 6452 1 2025-11-20 09:48:31.452 00:00:10.366 TCP 23.104.0.1:44846 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:48:45.459 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56942 10 6452 1 2025-11-20 09:49:31.852 00:00:10.378 TCP 23.104.0.1:56498 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:49:45.675 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44508 10 6452 1 2025-11-20 09:45:05.177 00:05:55.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 09:46:00.779 00:05:04.396 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:50:13.595 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:50:13.440 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:50:32.266 00:00:10.323 TCP 23.104.0.1:42560 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:50:45.887 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:47508 10 6452 1 2025-11-20 09:51:32.624 00:00:10.363 TCP 23.104.0.1:34638 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:51:46.085 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56060 10 6452 1 2025-11-20 09:52:33.027 00:00:10.364 TCP 23.104.0.1:33424 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:52:46.295 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49566 10 6452 1 2025-11-20 09:53:33.430 00:00:10.370 TCP 23.104.0.1:46310 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:53:46.512 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45928 10 6452 1 2025-11-20 09:54:33.838 00:00:10.374 TCP 23.104.0.1:36352 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:54:46.721 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33860 10 6452 1 2025-11-20 09:55:13.612 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-20 09:55:13.724 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 09:55:34.256 00:00:10.359 TCP 23.104.0.1:54884 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:55:46.941 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:35908 10 6452 1 2025-11-20 09:51:05.179 00:05:55.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-20 09:52:00.780 00:05:04.396 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-20 09:56:34.657 00:00:10.374 TCP 23.104.0.1:34786 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:56:47.170 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45350 10 6452 1 2025-11-20 09:57:35.099 00:00:10.324 TCP 23.104.0.1:55166 -> 1.101.0.1:3000 11 1507 1 2025-11-20 09:57:47.383 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39424 10 6452 1 2025-11-20 09:58:35.468 00:00:10.342 TCP 23.104.0.1:56130 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 502278, total packets: 1583, avg bps: 1085, avg pps: 0, avg bpp: 317 Time window: 2025-11-20 08:57:05 - 2025-11-20 09:58:45 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0043s User: 0.0017s Wall: 0.0022s flows/second: 74669.2 Runtime: 0.0022s