Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 08:59:00.646 00:00:10.368 TCP 23.104.0.1:42754 -> 1.101.0.1:3000 11 1507 1 2025-11-24 08:59:29.837 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:36716 10 6452 1 2025-11-24 09:00:01.056 00:00:10.319 TCP 23.104.0.1:33026 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:00:30.028 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58366 10 6452 1 2025-11-24 09:01:01.419 00:00:10.439 TCP 23.104.0.1:37352 -> 1.101.0.1:3000 15 1926 1 2025-11-24 09:01:30.238 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:54374 12 10375 1 2025-11-24 08:58:02.997 00:05:00.033 TCP 179.1.22.1:179 -> 179.1.22.22:39396 11 686 1 2025-11-24 08:57:07.322 00:05:55.709 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:02:10.363 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:02:10.262 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:02:01.893 00:00:10.389 TCP 23.104.0.1:59056 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:02:30.473 00:00:16.074 TCP 1.101.0.1:3000 -> 22.102.0.1:44082 10 6452 1 2025-11-24 09:03:02.322 00:00:10.362 TCP 23.104.0.1:49652 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:03:36.603 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41614 10 6452 1 2025-11-24 09:04:02.727 00:00:10.369 TCP 23.104.0.1:47858 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:04:36.825 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:39340 10 6452 1 2025-11-24 09:05:03.130 00:00:10.373 TCP 23.104.0.1:39320 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:05:37.079 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36770 10 6452 1 2025-11-24 09:06:03.532 00:00:10.503 TCP 23.104.0.1:41998 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:06:37.300 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33020 10 6452 1 2025-11-24 09:07:09.816 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:07:09.724 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:07:04.104 00:00:10.320 TCP 23.104.0.1:44794 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:07:37.515 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39052 10 6452 1 2025-11-24 09:03:07.326 00:05:55.710 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:03:07.330 00:05:55.704 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-24 09:08:04.459 00:00:10.328 TCP 23.104.0.1:55548 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:08:37.739 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42228 10 6452 1 2025-11-24 09:09:04.826 00:00:10.375 TCP 23.104.0.1:44278 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:09:37.965 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:54684 10 6452 1 2025-11-24 09:10:05.239 00:00:10.325 TCP 23.104.0.1:50304 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:10:38.205 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:32962 10 6452 1 2025-11-24 09:11:05.600 00:00:10.795 TCP 23.104.0.1:56680 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:11:38.432 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36312 10 6452 1 2025-11-24 09:12:10.231 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:12:09.852 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:12:06.432 00:00:10.369 TCP 23.104.0.1:37014 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:12:38.652 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40568 10 6452 1 2025-11-24 09:13:06.837 00:00:31.263 TCP 23.104.0.1:60386 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:13:38.875 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:58602 10 6452 1 2025-11-24 09:09:07.328 00:05:55.709 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-24 09:09:07.326 00:05:55.714 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:14:28.174 00:00:10.360 TCP 23.104.0.1:45606 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:14:39.081 00:00:11.322 TCP 1.101.0.1:3000 -> 22.102.0.1:37918 10 6452 1 2025-11-24 09:15:28.576 00:00:10.760 TCP 23.104.0.1:38822 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:15:40.442 00:00:11.630 TCP 1.101.0.1:3000 -> 22.102.0.1:36798 10 6452 1 2025-11-24 09:16:29.369 00:00:10.365 TCP 23.104.0.1:41912 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:16:42.114 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33372 10 6452 1 2025-11-24 09:17:10.369 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:17:10.295 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:17:29.773 00:00:10.369 TCP 23.104.0.1:48948 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:17:42.324 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52064 10 6452 1 2025-11-24 09:18:30.182 00:00:10.318 TCP 23.104.0.1:37084 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:18:42.536 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42386 10 6452 1 2025-11-24 09:19:30.545 00:00:10.939 TCP 23.104.0.1:34916 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:19:42.753 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37724 10 6452 1 2025-11-24 09:15:07.331 00:05:55.708 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-24 09:15:07.327 00:05:55.714 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:20:31.522 00:00:10.321 TCP 23.104.0.1:51976 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:20:42.974 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:59892 10 6452 1 2025-11-24 09:21:31.883 00:00:10.371 TCP 23.104.0.1:41488 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:21:43.213 00:00:10.232 TCP 1.101.0.1:3000 -> 22.102.0.1:33772 10 6452 1 2025-11-24 09:22:10.319 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:22:10.513 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:22:32.295 00:00:10.363 TCP 23.104.0.1:41154 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:22:43.498 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39856 10 6452 1 2025-11-24 09:23:32.698 00:00:10.365 TCP 23.104.0.1:44024 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:23:43.716 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34944 10 6452 1 2025-11-24 09:24:33.109 00:00:10.362 TCP 23.104.0.1:60716 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:24:43.947 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:48580 10 6452 1 2025-11-24 09:25:33.511 00:00:10.373 TCP 23.104.0.1:49688 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:25:44.190 00:00:10.429 TCP 1.101.0.1:3000 -> 22.102.0.1:43778 10 6452 1 2025-11-24 09:21:07.332 00:05:55.710 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:21:07.334 00:05:55.706 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-24 09:26:33.928 00:00:10.387 TCP 23.104.0.1:42522 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:26:44.665 00:00:10.233 TCP 1.101.0.1:3000 -> 22.102.0.1:33054 11 6504 1 2025-11-24 09:27:10.521 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:27:10.527 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:27:34.357 00:00:10.366 TCP 23.104.0.1:39922 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:27:44.941 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:53166 10 6452 1 2025-11-24 09:28:34.762 00:00:10.337 TCP 23.104.0.1:52578 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:28:45.181 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:40690 10 6452 1 2025-11-24 09:29:35.135 00:00:10.362 TCP 23.104.0.1:45614 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:29:45.360 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43588 10 6452 1 2025-11-24 09:30:35.535 00:00:10.318 TCP 23.104.0.1:36310 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:30:45.577 00:00:10.257 TCP 1.101.0.1:3000 -> 22.102.0.1:48104 14 10479 1 2025-11-24 09:31:35.892 00:00:10.446 TCP 23.104.0.1:45670 -> 1.101.0.1:3000 15 1926 1 2025-11-24 09:31:45.877 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:52948 10 6452 1 2025-11-24 09:27:07.338 00:05:55.703 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-24 09:27:07.335 00:05:55.708 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:32:10.346 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:32:10.466 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:32:36.378 00:00:10.324 TCP 23.104.0.1:42644 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:32:46.088 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35298 10 6452 1 2025-11-24 09:33:36.742 00:00:10.360 TCP 23.104.0.1:46248 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:33:46.309 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48174 10 6452 1 2025-11-24 09:34:37.141 00:00:10.364 TCP 23.104.0.1:34278 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:34:46.523 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59438 10 6452 1 2025-11-24 09:35:37.556 00:00:10.372 TCP 23.104.0.1:50426 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:35:46.748 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48982 10 6452 1 2025-11-24 09:36:37.963 00:00:10.361 TCP 23.104.0.1:49104 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:36:46.962 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:49914 10 6452 1 2025-11-24 09:37:10.769 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:37:10.609 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:37:38.368 00:00:10.368 TCP 23.104.0.1:43544 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:33:07.336 00:05:55.709 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:37:47.147 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38538 12 6556 1 2025-11-24 09:33:07.340 00:05:55.704 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-24 09:38:38.770 00:00:10.369 TCP 23.104.0.1:36994 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:38:47.358 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:35736 10 6452 1 2025-11-24 09:39:39.178 00:00:10.876 TCP 23.104.0.1:34632 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:39:47.529 00:00:10.561 TCP 1.101.0.1:3000 -> 22.102.0.1:60706 10 6452 1 2025-11-24 09:40:40.110 00:00:10.369 TCP 23.104.0.1:37912 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:40:48.127 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46112 10 6452 1 2025-11-24 09:41:40.528 00:00:10.368 TCP 23.104.0.1:60238 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:41:48.347 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36588 10 6452 1 2025-11-24 09:42:11.415 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:42:11.479 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:42:40.939 00:00:10.376 TCP 23.104.0.1:53478 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:42:48.556 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60156 10 6452 1 2025-11-24 09:43:41.362 00:00:10.364 TCP 23.104.0.1:58606 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:43:48.770 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:41944 10 6452 1 2025-11-24 09:39:07.337 00:05:55.710 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:39:07.339 00:05:55.706 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-24 09:44:41.772 00:00:10.334 TCP 23.104.0.1:34490 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:44:48.934 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:34846 10 6452 1 2025-11-24 09:45:42.147 00:00:10.359 TCP 23.104.0.1:37210 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:45:49.159 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53620 10 6452 1 2025-11-24 09:46:42.549 00:00:10.327 TCP 23.104.0.1:54554 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:46:49.376 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:54872 10 6452 1 2025-11-24 09:47:10.621 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:47:10.726 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:47:42.911 00:00:10.363 TCP 23.104.0.1:47014 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:47:49.604 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51364 10 6452 1 2025-11-24 09:48:43.313 00:00:10.365 TCP 23.104.0.1:35448 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:48:49.822 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55438 10 6452 1 2025-11-24 09:49:43.723 00:00:10.368 TCP 23.104.0.1:48358 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:49:50.052 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47514 10 6452 1 2025-11-24 09:45:07.338 00:05:55.752 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:45:07.341 00:05:55.747 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-24 09:50:44.130 00:00:10.368 TCP 23.104.0.1:45920 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:50:50.273 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48822 10 6452 1 2025-11-24 09:51:44.536 00:00:10.364 TCP 23.104.0.1:44608 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:51:50.492 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:60734 10 6452 1 2025-11-24 09:52:10.993 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:52:10.819 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:52:44.935 00:00:10.372 TCP 23.104.0.1:47722 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:52:50.668 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42872 10 6452 1 2025-11-24 09:53:45.360 00:00:10.361 TCP 23.104.0.1:50392 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:53:50.881 00:00:10.592 TCP 1.101.0.1:3000 -> 22.102.0.1:35072 10 6452 1 2025-11-24 09:54:45.761 00:00:10.386 TCP 23.104.0.1:40090 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:54:51.517 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43574 10 6452 1 2025-11-24 09:55:46.183 00:00:10.339 TCP 23.104.0.1:57486 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:55:51.729 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34928 10 6452 1 2025-11-24 09:51:07.339 00:05:55.756 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-24 09:51:07.342 00:05:55.750 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-24 09:56:46.556 00:00:10.364 TCP 23.104.0.1:37886 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:56:51.945 00:00:10.401 TCP 1.101.0.1:3000 -> 22.102.0.1:43142 10 6452 1 2025-11-24 09:57:10.902 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-24 09:57:10.952 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-24 09:57:46.956 00:00:10.365 TCP 23.104.0.1:54338 -> 1.101.0.1:3000 11 1507 1 2025-11-24 09:57:52.381 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51574 10 6452 1 Summary: total flows: 162, total bytes: 499281, total packets: 1567, avg bps: 1092, avg pps: 0, avg bpp: 318 Time window: 2025-11-24 08:57:07 - 2025-11-24 09:58:02 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0048s User: 0.0019s Wall: 0.0024s flows/second: 66831.6 Runtime: 0.0024s