Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 13:59:22.109 00:00:10.366 TCP 23.104.0.1:37212 -> 1.101.0.1:3000 11 1507 1 2025-11-26 13:59:37.198 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:32910 10 6452 1 2025-11-26 14:00:22.515 00:00:10.368 TCP 23.104.0.1:56332 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:00:37.411 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:59664 10 6452 1 2025-11-26 13:56:08.458 00:05:55.592 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 13:56:08.460 00:05:55.587 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:01:22.946 00:00:10.369 TCP 23.104.0.1:36558 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:01:37.585 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53380 10 6452 1 2025-11-26 14:02:23.348 00:00:10.372 TCP 23.104.0.1:38726 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:02:37.804 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52460 10 6452 1 2025-11-26 14:03:13.663 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:03:13.823 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:03:23.761 00:00:10.368 TCP 23.104.0.1:55836 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:03:37.982 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:49812 10 6452 1 2025-11-26 14:04:24.166 00:00:10.369 TCP 23.104.0.1:49490 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:04:38.209 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51780 10 6452 1 2025-11-26 14:05:24.574 00:00:10.360 TCP 23.104.0.1:52742 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:05:38.425 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47210 10 6452 1 2025-11-26 14:06:24.973 00:00:10.452 TCP 23.104.0.1:46860 -> 1.101.0.1:3000 15 1926 1 2025-11-26 14:06:38.643 00:00:11.063 TCP 1.101.0.1:3000 -> 22.102.0.1:59976 12 10375 1 2025-11-26 14:02:08.461 00:05:55.588 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:02:08.459 00:05:55.593 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 14:07:25.463 00:00:10.365 TCP 23.104.0.1:35338 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:07:39.749 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49576 10 6452 1 2025-11-26 14:08:13.983 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:08:13.863 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:08:25.872 00:00:10.373 TCP 23.104.0.1:42202 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:08:39.964 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:38730 10 6452 1 2025-11-26 14:09:26.288 00:00:10.367 TCP 23.104.0.1:41866 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:09:40.202 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57114 10 6452 1 2025-11-26 14:10:26.689 00:00:10.322 TCP 23.104.0.1:39976 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:10:40.415 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37306 10 6452 1 2025-11-26 14:11:27.057 00:00:10.370 TCP 23.104.0.1:47816 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:11:40.622 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54996 10 6452 1 2025-11-26 14:12:27.465 00:00:10.364 TCP 23.104.0.1:42330 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:12:40.835 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:58988 10 6452 1 2025-11-26 14:08:08.464 00:05:55.588 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:08:08.463 00:05:55.592 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 14:13:14.057 00:00:00.032 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:13:13.733 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:13:27.865 00:00:10.371 TCP 23.104.0.1:40106 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:13:41.084 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47032 10 6452 1 2025-11-26 14:14:28.275 00:00:10.323 TCP 23.104.0.1:52638 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:14:41.297 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55156 10 6452 1 2025-11-26 14:15:28.633 00:00:10.324 TCP 23.104.0.1:53602 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:15:41.510 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60794 10 6452 1 2025-11-26 14:16:28.996 00:00:10.357 TCP 23.104.0.1:40564 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:16:41.724 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41256 10 6452 1 2025-11-26 14:17:29.403 00:00:10.321 TCP 23.104.0.1:36404 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:17:41.939 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:39876 10 6452 1 2025-11-26 14:18:13.975 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:18:13.951 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:18:29.769 00:00:10.372 TCP 23.104.0.1:33684 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:18:42.174 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:55414 10 6452 1 2025-11-26 14:14:08.467 00:05:55.587 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:14:08.465 00:05:55.592 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 14:19:30.177 00:00:10.369 TCP 23.104.0.1:51184 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:19:42.377 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56954 10 6452 1 2025-11-26 14:20:30.582 00:00:10.364 TCP 23.104.0.1:52266 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:20:42.593 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47296 10 6452 1 2025-11-26 14:21:30.987 00:00:10.371 TCP 23.104.0.1:58484 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:21:42.801 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53370 10 6452 1 2025-11-26 14:22:31.394 00:00:10.366 TCP 23.104.0.1:39488 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:22:43.020 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35552 10 6452 1 2025-11-26 14:23:14.237 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:23:14.280 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:23:31.800 00:00:10.366 TCP 23.104.0.1:51356 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:23:43.242 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58874 10 6452 1 2025-11-26 14:24:32.210 00:00:10.380 TCP 23.104.0.1:58224 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:24:43.486 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57962 10 6452 1 2025-11-26 14:20:08.469 00:05:55.588 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:20:08.466 00:05:55.593 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 14:25:32.644 00:00:10.368 TCP 23.104.0.1:50992 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:25:43.713 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:39736 10 6452 1 2025-11-26 14:26:33.061 00:00:10.364 TCP 23.104.0.1:37676 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:26:43.923 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59830 10 6452 1 2025-11-26 14:27:33.463 00:00:10.372 TCP 23.104.0.1:60998 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:27:44.137 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44168 10 6452 1 2025-11-26 14:28:14.259 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:28:14.309 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:28:33.877 00:00:10.363 TCP 23.104.0.1:54886 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:28:44.347 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57650 10 6452 1 2025-11-26 14:29:34.282 00:00:10.364 TCP 23.104.0.1:58736 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:29:44.561 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55440 10 6452 1 2025-11-26 14:30:34.687 00:00:10.382 TCP 23.104.0.1:54968 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:30:44.774 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58694 10 6452 1 2025-11-26 14:26:08.469 00:05:55.588 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:26:08.467 00:05:55.593 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 14:31:35.119 00:00:10.393 TCP 23.104.0.1:60100 -> 1.101.0.1:3000 15 1926 1 2025-11-26 14:31:44.991 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:60516 12 10369 1 2025-11-26 14:32:35.553 00:00:10.370 TCP 23.104.0.1:41710 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:32:45.242 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36576 10 6452 1 2025-11-26 14:33:14.533 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:33:14.553 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:33:35.960 00:00:10.366 TCP 23.104.0.1:50820 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:33:45.454 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42846 10 6452 1 2025-11-26 14:34:36.364 00:00:10.366 TCP 23.104.0.1:46226 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:34:45.672 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35138 10 6452 1 2025-11-26 14:35:36.767 00:00:10.385 TCP 23.104.0.1:40370 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:35:45.891 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:59102 10 6452 1 2025-11-26 14:36:37.180 00:00:10.363 TCP 23.104.0.1:39918 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:36:46.112 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58486 10 6452 1 2025-11-26 14:32:08.472 00:05:55.586 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:32:08.468 00:05:55.591 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 14:37:37.582 00:00:10.366 TCP 23.104.0.1:53986 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:37:46.326 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48828 10 6452 1 2025-11-26 14:38:14.712 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:38:14.722 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:38:37.988 00:00:10.374 TCP 23.104.0.1:57824 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:38:46.541 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46788 10 6452 1 2025-11-26 14:39:38.407 00:00:10.359 TCP 23.104.0.1:45982 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:39:46.754 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35702 10 6452 1 2025-11-26 14:40:38.806 00:00:10.367 TCP 23.104.0.1:44286 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:40:46.981 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:41134 10 6452 1 2025-11-26 14:41:39.210 00:00:10.364 TCP 23.104.0.1:52912 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:41:47.225 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44780 10 6452 1 2025-11-26 14:42:39.612 00:00:10.365 TCP 23.104.0.1:53436 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:42:47.441 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49730 10 6452 1 2025-11-26 14:38:08.472 00:05:55.589 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 14:38:08.475 00:05:55.584 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:43:14.612 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:43:14.585 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:43:40.018 00:00:10.366 TCP 23.104.0.1:42566 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:43:47.655 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:42272 10 6452 1 2025-11-26 14:44:40.421 00:00:10.363 TCP 23.104.0.1:43586 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:44:47.830 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:36544 10 6452 1 2025-11-26 14:45:40.826 00:00:10.394 TCP 23.104.0.1:40796 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:45:47.995 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35986 10 6452 1 2025-11-26 14:46:41.259 00:00:10.368 TCP 23.104.0.1:38214 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:46:48.214 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54824 10 6452 1 2025-11-26 14:47:41.668 00:00:10.364 TCP 23.104.0.1:37648 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:47:48.423 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:48838 10 6452 1 2025-11-26 14:48:14.862 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:48:14.620 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:48:42.099 00:00:10.368 TCP 23.104.0.1:33580 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:48:48.592 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39602 10 6452 1 2025-11-26 14:44:08.476 00:05:55.584 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:44:08.474 00:05:55.590 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 14:49:42.507 00:00:10.371 TCP 23.104.0.1:42942 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:49:48.809 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52406 10 6452 1 2025-11-26 14:50:42.916 00:00:10.368 TCP 23.104.0.1:50314 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:50:49.042 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54288 10 6452 1 2025-11-26 14:51:43.318 00:00:10.387 TCP 23.104.0.1:57454 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:51:49.256 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44168 10 6452 1 2025-11-26 14:52:43.757 00:00:10.388 TCP 23.104.0.1:50816 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:52:49.476 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47884 10 6452 1 2025-11-26 14:53:14.819 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-26 14:53:14.762 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:53:44.185 00:00:10.366 TCP 23.104.0.1:60900 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:53:49.660 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40796 10 6452 1 2025-11-26 14:54:44.588 00:00:10.329 TCP 23.104.0.1:44432 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:54:49.877 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50322 10 6452 1 2025-11-26 14:50:08.477 00:05:55.586 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-26 14:50:08.474 00:05:55.591 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-26 14:55:44.954 00:00:10.370 TCP 23.104.0.1:44884 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:55:50.098 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47408 10 6452 1 2025-11-26 14:56:45.364 00:00:10.365 TCP 23.104.0.1:60174 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:56:50.312 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45472 10 6452 1 2025-11-26 14:57:45.772 00:00:10.377 TCP 23.104.0.1:40126 -> 1.101.0.1:3000 11 1507 1 2025-11-26 14:57:50.522 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51814 10 6452 1 2025-11-26 14:58:14.618 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-26 14:58:14.794 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 Summary: total flows: 162, total bytes: 499067, total packets: 1563, avg bps: 1071, avg pps: 0, avg bpp: 319 Time window: 2025-11-26 13:56:08 - 2025-11-26 14:58:14 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0038s User: 0.0015s Wall: 0.0021s flows/second: 78226.7 Runtime: 0.0021s