Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 07:59:10.979 00:00:10.376 TCP 23.104.0.1:57622 -> 1.101.0.1:3000 11 1507 1 2025-11-22 07:59:30.727 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41096 10 6452 1 2025-11-22 08:00:11.392 00:00:10.378 TCP 23.104.0.1:53790 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:00:30.943 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:39910 10 6452 1 2025-11-22 08:01:11.088 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:01:11.007 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:01:11.807 00:00:10.367 TCP 23.104.0.1:54084 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:01:31.173 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40668 10 6452 1 2025-11-22 07:58:02.141 00:05:04.091 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 07:58:02.140 00:05:04.095 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:02:12.212 00:00:10.368 TCP 23.104.0.1:42890 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:02:31.392 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53254 10 6452 1 2025-11-22 08:03:12.619 00:00:10.319 TCP 23.104.0.1:46200 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:03:31.614 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38684 10 6452 1 2025-11-22 08:04:12.974 00:00:10.370 TCP 23.104.0.1:48628 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:04:31.833 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:53244 10 6452 1 2025-11-22 08:05:13.397 00:00:10.367 TCP 23.104.0.1:44094 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:05:32.004 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60404 10 6452 1 2025-11-22 08:06:11.266 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:06:11.313 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:06:13.807 00:00:10.332 TCP 23.104.0.1:40226 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:06:32.227 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49444 10 6452 1 2025-11-22 08:07:14.180 00:00:10.361 TCP 23.104.0.1:39398 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:07:32.442 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60226 10 6452 1 2025-11-22 08:04:02.142 00:05:04.092 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:04:02.145 00:05:04.086 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 08:08:14.582 00:00:10.364 TCP 23.104.0.1:42478 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:08:32.660 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58766 10 6452 1 2025-11-22 08:09:14.983 00:00:10.375 TCP 23.104.0.1:44700 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:09:32.883 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:51940 10 6452 1 2025-11-22 08:10:15.400 00:00:10.362 TCP 23.104.0.1:44164 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:10:33.082 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54460 10 6452 1 2025-11-22 08:11:10.996 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:11:11.054 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:11:15.798 00:00:10.368 TCP 23.104.0.1:41600 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:11:33.292 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43552 10 6452 1 2025-11-22 08:12:16.207 00:00:10.365 TCP 23.104.0.1:52254 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:12:33.506 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59124 10 6452 1 2025-11-22 08:13:16.612 00:00:10.366 TCP 23.104.0.1:53678 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:13:33.722 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:54440 10 6452 1 2025-11-22 08:10:02.146 00:05:04.087 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 08:10:02.145 00:05:04.092 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:14:17.016 00:00:10.368 TCP 23.104.0.1:55044 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:14:33.929 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:52650 10 6452 1 2025-11-22 08:15:17.425 00:00:10.365 TCP 23.104.0.1:52382 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:15:34.172 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35312 10 6452 1 2025-11-22 08:16:11.409 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:16:11.357 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:16:17.830 00:00:10.399 TCP 23.104.0.1:50478 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:16:34.389 00:00:10.409 TCP 1.101.0.1:3000 -> 22.102.0.1:45006 10 6452 1 2025-11-22 08:17:18.261 00:00:10.368 TCP 23.104.0.1:59754 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:17:34.838 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38852 10 6452 1 2025-11-22 08:18:18.666 00:00:10.363 TCP 23.104.0.1:36632 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:18:35.066 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60174 10 6452 1 2025-11-22 08:19:19.096 00:00:10.365 TCP 23.104.0.1:60990 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:19:35.282 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54538 10 6452 1 2025-11-22 08:16:02.146 00:05:04.092 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:16:02.147 00:05:04.087 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 08:20:19.496 00:00:10.323 TCP 23.104.0.1:56960 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:20:35.495 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37194 10 6452 1 2025-11-22 08:21:11.438 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:21:11.498 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:21:19.857 00:00:10.373 TCP 23.104.0.1:47658 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:21:35.705 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:41322 10 6452 1 2025-11-22 08:22:20.273 00:00:10.367 TCP 23.104.0.1:55206 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:22:35.879 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:49166 10 6452 1 2025-11-22 08:23:20.675 00:00:10.323 TCP 23.104.0.1:43722 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:23:36.117 00:00:10.273 TCP 1.101.0.1:3000 -> 22.102.0.1:55214 10 6452 1 2025-11-22 08:24:21.034 00:00:10.366 TCP 23.104.0.1:59778 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:24:36.449 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:57804 10 6452 1 2025-11-22 08:25:21.439 00:00:10.367 TCP 23.104.0.1:35720 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:25:36.670 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:54394 10 6452 1 2025-11-22 08:22:02.148 00:05:04.088 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 08:26:11.741 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:22:02.146 00:05:04.092 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:26:11.641 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:26:21.842 00:00:10.388 TCP 23.104.0.1:37022 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:26:36.896 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:53964 10 6452 1 2025-11-22 08:27:22.265 00:00:10.367 TCP 23.104.0.1:46854 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:27:37.121 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44318 10 6452 1 2025-11-22 08:28:22.668 00:00:10.366 TCP 23.104.0.1:35756 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:28:37.336 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37382 10 6452 1 2025-11-22 08:29:23.107 00:00:10.366 TCP 23.104.0.1:41602 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:29:37.554 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:58812 10 6452 1 2025-11-22 08:30:23.512 00:00:10.367 TCP 23.104.0.1:41186 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:30:37.780 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51336 10 6452 1 2025-11-22 08:31:11.686 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:31:11.625 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:31:23.920 00:00:10.333 TCP 23.104.0.1:39588 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:31:37.998 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:56606 10 6452 1 2025-11-22 08:28:02.148 00:05:04.092 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:28:02.150 00:05:04.087 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 08:32:24.294 00:00:10.362 TCP 23.104.0.1:47844 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:32:38.226 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59680 10 6452 1 2025-11-22 08:33:24.688 00:00:10.372 TCP 23.104.0.1:57366 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:33:38.447 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:60426 10 6452 1 2025-11-22 08:34:25.104 00:00:10.340 TCP 23.104.0.1:45954 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:34:38.619 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34306 10 6452 1 2025-11-22 08:35:25.489 00:00:10.368 TCP 23.104.0.1:57506 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:35:38.837 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:37894 10 6452 1 2025-11-22 08:36:11.851 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:36:11.918 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:36:25.896 00:00:10.385 TCP 23.104.0.1:37554 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:36:39.080 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55642 10 6452 1 2025-11-22 08:37:26.315 00:00:10.376 TCP 23.104.0.1:54316 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:37:39.295 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:44110 10 6452 1 2025-11-22 08:34:02.149 00:05:04.088 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 08:34:02.147 00:05:04.093 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:38:26.728 00:00:10.376 TCP 23.104.0.1:51504 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:38:39.482 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60774 10 6452 1 2025-11-22 08:39:27.151 00:00:10.362 TCP 23.104.0.1:33322 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:39:39.700 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41252 10 6452 1 2025-11-22 08:40:27.555 00:00:10.369 TCP 23.104.0.1:60040 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:40:39.912 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50574 12 6556 1 2025-11-22 08:41:11.701 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:41:11.925 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:41:27.963 00:00:10.340 TCP 23.104.0.1:39064 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:41:40.131 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51960 10 6452 1 2025-11-22 08:42:28.343 00:00:10.367 TCP 23.104.0.1:42592 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:42:40.348 00:00:12.988 TCP 1.101.0.1:3000 -> 22.102.0.1:44480 10 6452 1 2025-11-22 08:43:28.748 00:00:10.393 TCP 23.104.0.1:55232 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:43:43.374 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58800 10 6452 1 2025-11-22 08:40:02.150 00:05:04.092 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 08:40:02.148 00:05:04.096 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:44:29.171 00:00:10.371 TCP 23.104.0.1:54694 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:44:43.592 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:43916 10 6452 1 2025-11-22 08:45:29.584 00:00:10.989 TCP 23.104.0.1:37380 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:45:43.772 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41162 10 6452 1 2025-11-22 08:46:11.957 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:46:11.780 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:46:30.610 00:00:10.368 TCP 23.104.0.1:36176 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:46:43.987 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:58436 10 6452 1 2025-11-22 08:47:31.016 00:00:10.323 TCP 23.104.0.1:36124 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:47:44.218 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34886 10 6452 1 2025-11-22 08:48:31.381 00:00:10.368 TCP 23.104.0.1:56074 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:48:44.432 00:00:10.359 TCP 1.101.0.1:3000 -> 22.102.0.1:34388 10 6452 1 2025-11-22 08:49:31.783 00:00:10.437 TCP 23.104.0.1:42962 -> 1.101.0.1:3000 15 1926 1 2025-11-22 08:49:44.837 00:00:10.439 TCP 1.101.0.1:3000 -> 22.102.0.1:51540 12 10375 1 2025-11-22 08:46:02.155 00:05:04.090 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 08:46:02.153 00:05:04.095 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:50:32.261 00:00:10.987 TCP 23.104.0.1:38640 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:50:45.317 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40798 10 6452 1 2025-11-22 08:51:12.039 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:51:12.093 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:51:33.284 00:00:10.372 TCP 23.104.0.1:50802 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:51:45.532 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:43810 10 6452 1 2025-11-22 08:52:33.696 00:00:10.369 TCP 23.104.0.1:53628 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:52:45.704 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40982 10 6452 1 2025-11-22 08:53:34.111 00:00:10.367 TCP 23.104.0.1:37990 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:53:45.926 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:48060 10 6452 1 2025-11-22 08:54:34.516 00:00:10.383 TCP 23.104.0.1:37976 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:54:46.182 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32884 10 6452 1 2025-11-22 08:55:34.938 00:00:10.373 TCP 23.104.0.1:39392 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:55:46.396 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37060 10 6452 1 2025-11-22 08:52:02.154 00:05:04.096 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-22 08:52:02.155 00:05:04.090 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-22 08:56:12.692 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-22 08:56:12.697 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 08:56:35.349 00:00:10.446 TCP 23.104.0.1:57790 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:56:46.613 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:59158 10 6452 1 2025-11-22 08:57:35.834 00:00:10.391 TCP 23.104.0.1:40308 -> 1.101.0.1:3000 11 1507 1 2025-11-22 08:57:46.785 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:56110 10 6452 1 2025-11-22 08:58:36.264 00:00:10.320 TCP 23.104.0.1:46222 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496342, total packets: 1570, avg bps: 1089, avg pps: 0, avg bpp: 316 Time window: 2025-11-22 07:58:02 - 2025-11-22 08:58:46 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0049s User: 0.0016s Wall: 0.0027s flows/second: 59992.2 Runtime: 0.0027s