Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 18:58:48.621 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 18:58:45.556 00:00:10.366 TCP 23.104.0.1:42130 -> 1.101.0.1:3000 11 1507 1 2025-11-27 18:59:17.872 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:46618 10 6452 1 2025-11-27 18:59:45.957 00:00:10.367 TCP 23.104.0.1:41256 -> 1.101.0.1:3000 11 1507 1 2025-11-27 18:56:04.615 00:05:04.526 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 18:56:04.612 00:05:04.531 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:00:18.098 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57548 10 6452 1 2025-11-27 19:00:46.362 00:00:10.362 TCP 23.104.0.1:40332 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:01:18.305 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40118 10 6452 1 2025-11-27 19:01:46.765 00:00:10.374 TCP 23.104.0.1:53348 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:02:18.521 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53740 10 6452 1 2025-11-27 19:02:47.178 00:00:10.363 TCP 23.104.0.1:45242 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:03:18.739 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:50308 10 6452 1 2025-11-27 19:03:48.779 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:03:48.813 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:03:47.578 00:00:10.364 TCP 23.104.0.1:54682 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:04:18.912 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57824 10 6452 1 2025-11-27 19:04:47.983 00:00:10.368 TCP 23.104.0.1:59742 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:05:19.126 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39688 10 6452 1 2025-11-27 19:05:48.393 00:00:10.367 TCP 23.104.0.1:45782 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:02:04.616 00:05:04.528 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 19:02:04.613 00:05:04.533 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:06:19.345 00:00:10.158 TCP 1.101.0.1:3000 -> 22.102.0.1:51854 10 6452 1 2025-11-27 19:06:48.798 00:00:10.781 TCP 23.104.0.1:34218 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:07:19.539 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56368 10 6452 1 2025-11-27 19:07:49.617 00:00:10.365 TCP 23.104.0.1:53608 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:08:19.755 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36828 10 6452 1 2025-11-27 19:08:48.993 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:08:49.026 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:08:50.020 00:00:10.374 TCP 23.104.0.1:48704 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:09:19.966 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:52538 10 6452 1 2025-11-27 19:09:50.432 00:00:10.322 TCP 23.104.0.1:45104 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:10:20.210 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48942 10 6452 1 2025-11-27 19:10:50.793 00:00:10.367 TCP 23.104.0.1:38050 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:11:20.423 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48950 10 6452 1 2025-11-27 19:11:51.199 00:00:10.370 TCP 23.104.0.1:38822 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:08:04.619 00:05:04.528 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 19:08:04.616 00:05:04.533 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:12:20.649 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34360 10 6452 1 2025-11-27 19:12:51.609 00:00:10.366 TCP 23.104.0.1:45086 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:13:20.861 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:47862 10 6452 1 2025-11-27 19:13:48.831 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:13:48.895 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:13:52.014 00:00:10.814 TCP 23.104.0.1:44466 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:14:21.100 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40922 10 6452 1 2025-11-27 19:14:52.869 00:00:10.367 TCP 23.104.0.1:53964 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:15:21.311 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:34120 10 6452 1 2025-11-27 19:15:53.271 00:00:10.367 TCP 23.104.0.1:41748 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:16:21.502 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57432 10 6452 1 2025-11-27 19:16:53.676 00:00:10.373 TCP 23.104.0.1:38326 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:17:21.712 00:00:10.536 TCP 1.101.0.1:3000 -> 22.102.0.1:47770 10 6452 1 2025-11-27 19:17:54.105 00:00:10.365 TCP 23.104.0.1:56586 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:14:04.619 00:05:04.528 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 19:14:04.617 00:05:04.532 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:18:22.283 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50972 10 6452 1 2025-11-27 19:18:49.107 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:18:49.215 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:18:54.506 00:00:10.364 TCP 23.104.0.1:37628 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:19:22.497 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54834 10 6452 1 2025-11-27 19:19:54.906 00:00:10.363 TCP 23.104.0.1:55500 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:20:22.713 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:43030 10 6452 1 2025-11-27 19:20:55.308 00:00:10.371 TCP 23.104.0.1:40916 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:21:22.922 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48206 10 6452 1 2025-11-27 19:21:55.715 00:00:10.370 TCP 23.104.0.1:58988 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:22:23.138 00:00:10.935 TCP 1.101.0.1:3000 -> 22.102.0.1:35544 10 6452 1 2025-11-27 19:22:56.123 00:00:10.367 TCP 23.104.0.1:43152 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:23:24.113 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37312 10 6452 1 2025-11-27 19:23:49.109 00:00:00.042 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:23:49.299 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:23:56.530 00:00:10.359 TCP 23.104.0.1:51856 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:20:04.619 00:05:04.533 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:20:04.620 00:05:04.528 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 19:24:24.327 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:35510 10 6452 1 2025-11-27 19:24:56.930 00:00:10.385 TCP 23.104.0.1:40118 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:25:24.537 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50462 10 6452 1 2025-11-27 19:25:57.356 00:00:10.372 TCP 23.104.0.1:41330 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:26:24.750 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39992 10 6452 1 2025-11-27 19:26:57.768 00:00:10.808 TCP 23.104.0.1:54210 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:27:24.966 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:50548 10 6452 1 2025-11-27 19:27:58.616 00:00:10.365 TCP 23.104.0.1:45390 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:28:25.145 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:40954 10 6452 1 2025-11-27 19:28:49.155 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:28:49.146 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:28:59.022 00:00:10.359 TCP 23.104.0.1:57674 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:29:25.317 00:00:19.673 TCP 1.101.0.1:3000 -> 22.102.0.1:58000 10 6452 1 2025-11-27 19:26:04.619 00:05:04.537 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:26:04.622 00:05:04.531 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 19:29:59.420 00:00:10.364 TCP 23.104.0.1:34372 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:30:35.039 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37950 10 6452 1 2025-11-27 19:30:59.823 00:00:10.323 TCP 23.104.0.1:38938 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:31:35.250 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:53460 12 10369 1 2025-11-27 19:32:00.185 00:00:10.439 TCP 23.104.0.1:35270 -> 1.101.0.1:3000 15 1926 1 2025-11-27 19:32:35.500 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60430 10 6452 1 2025-11-27 19:33:00.660 00:00:10.365 TCP 23.104.0.1:49138 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:33:35.717 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60568 10 6452 1 2025-11-27 19:33:49.601 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:33:49.220 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:34:01.075 00:00:10.371 TCP 23.104.0.1:50184 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:34:35.934 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:55610 10 6452 1 2025-11-27 19:35:01.484 00:00:10.366 TCP 23.104.0.1:38774 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:35:36.167 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48620 10 6452 1 2025-11-27 19:32:04.621 00:05:04.536 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:32:04.625 00:05:04.530 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 19:36:01.887 00:00:10.343 TCP 23.104.0.1:56078 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:36:36.376 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:34426 10 6452 1 2025-11-27 19:37:02.269 00:00:10.325 TCP 23.104.0.1:55232 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:37:36.585 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33394 10 6452 1 2025-11-27 19:38:02.641 00:00:10.324 TCP 23.104.0.1:54448 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:38:36.797 00:00:10.593 TCP 1.101.0.1:3000 -> 22.102.0.1:45188 10 6452 1 2025-11-27 19:38:49.440 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:38:49.369 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:39:03.001 00:00:10.331 TCP 23.104.0.1:34318 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:39:37.430 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48048 10 6452 1 2025-11-27 19:40:03.369 00:00:10.368 TCP 23.104.0.1:44380 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:40:37.646 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36496 10 6452 1 2025-11-27 19:41:03.778 00:00:10.329 TCP 23.104.0.1:52684 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:41:37.856 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56882 10 6452 1 2025-11-27 19:38:04.625 00:05:04.530 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 19:38:04.622 00:05:04.535 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:42:04.145 00:00:10.367 TCP 23.104.0.1:41970 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:42:38.080 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36896 10 6452 1 2025-11-27 19:43:04.546 00:00:10.364 TCP 23.104.0.1:58624 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:43:49.457 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:43:38.301 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56634 10 6452 1 2025-11-27 19:43:49.469 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:44:04.952 00:00:10.375 TCP 23.104.0.1:50548 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:44:38.522 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44892 10 6452 1 2025-11-27 19:45:05.361 00:00:10.373 TCP 23.104.0.1:51898 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:45:38.735 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56458 10 6452 1 2025-11-27 19:46:05.787 00:00:10.367 TCP 23.104.0.1:58462 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:46:38.944 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36312 12 10375 1 2025-11-27 19:47:06.190 00:00:10.442 TCP 23.104.0.1:46490 -> 1.101.0.1:3000 15 1926 1 2025-11-27 19:47:39.194 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43252 10 6452 1 2025-11-27 19:44:04.625 00:05:04.534 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:44:04.627 00:05:04.529 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 19:48:06.675 00:00:10.369 TCP 23.104.0.1:55894 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:48:49.443 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:48:49.657 00:00:00.035 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:48:39.408 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:39240 10 6452 1 2025-11-27 19:49:07.106 00:00:10.367 TCP 23.104.0.1:52158 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:49:39.600 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35226 10 6452 1 2025-11-27 19:50:07.512 00:00:10.368 TCP 23.104.0.1:35352 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:50:39.815 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50846 10 6452 1 2025-11-27 19:51:07.921 00:00:10.390 TCP 23.104.0.1:52072 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:51:40.046 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:52250 10 6452 1 2025-11-27 19:52:08.349 00:00:10.365 TCP 23.104.0.1:38622 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:52:40.221 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:58414 10 6452 1 2025-11-27 19:53:08.760 00:00:10.410 TCP 23.104.0.1:38432 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:53:40.390 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57938 10 6452 1 2025-11-27 19:53:50.002 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:53:49.710 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 19:50:04.633 00:05:04.527 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:50:04.635 00:05:04.523 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 19:54:09.187 00:00:10.329 TCP 23.104.0.1:47588 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:54:40.605 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34448 10 6452 1 2025-11-27 19:55:09.551 00:00:10.326 TCP 23.104.0.1:37314 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:55:40.818 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33630 10 6452 1 2025-11-27 19:56:09.913 00:00:10.366 TCP 23.104.0.1:39148 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:56:41.043 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33728 10 6452 1 2025-11-27 19:57:10.317 00:00:10.358 TCP 23.104.0.1:45820 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:57:41.251 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45782 10 6452 1 2025-11-27 19:58:10.718 00:00:10.324 TCP 23.104.0.1:60362 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:58:41.464 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37070 10 6452 1 2025-11-27 19:58:49.882 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 19:58:50.010 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 Summary: total flows: 165, total bytes: 507278, total packets: 1587, avg bps: 1077, avg pps: 0, avg bpp: 319 Time window: 2025-11-27 18:56:04 - 2025-11-27 19:58:51 Total flows processed: 165, passed: 165, Blocks skipped: 0, Bytes read: 17224 Sys: 0.0041s User: 0.0014s Wall: 0.0045s flows/second: 36921.7 Runtime: 0.0045s