Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 19:59:11.106 00:00:10.365 TCP 23.104.0.1:33342 -> 1.101.0.1:3000 11 1507 1 2025-11-27 19:59:41.683 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47764 10 6452 1 2025-11-27 19:56:04.633 00:05:04.530 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 19:56:04.637 00:05:04.524 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:00:11.511 00:00:10.364 TCP 23.104.0.1:56818 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:00:41.897 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58446 10 6452 1 2025-11-27 20:01:11.919 00:00:10.393 TCP 23.104.0.1:48978 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:01:42.108 00:00:11.525 TCP 1.101.0.1:3000 -> 22.102.0.1:36524 10 6452 1 2025-11-27 20:02:12.353 00:00:10.363 TCP 23.104.0.1:45806 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:02:43.665 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:43580 10 6452 1 2025-11-27 20:03:12.758 00:00:10.327 TCP 23.104.0.1:46184 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:03:49.928 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:03:49.873 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:03:43.833 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47984 10 6452 1 2025-11-27 20:04:13.124 00:00:10.322 TCP 23.104.0.1:37060 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:04:44.071 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56640 10 6452 1 2025-11-27 20:05:13.486 00:00:10.696 TCP 23.104.0.1:58948 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:05:44.282 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33470 10 6452 1 2025-11-27 20:02:04.637 00:05:04.525 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:02:04.635 00:05:04.531 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 20:06:14.223 00:00:10.324 TCP 23.104.0.1:60914 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:06:44.491 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54094 10 6452 1 2025-11-27 20:07:14.587 00:00:11.481 TCP 23.104.0.1:49896 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:07:44.707 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45020 10 6452 1 2025-11-27 20:08:16.110 00:00:10.363 TCP 23.104.0.1:59354 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:08:50.162 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:08:49.927 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:08:44.920 00:00:10.343 TCP 1.101.0.1:3000 -> 22.102.0.1:59092 10 6452 1 2025-11-27 20:09:16.514 00:00:10.359 TCP 23.104.0.1:52790 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:09:45.305 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42340 10 6452 1 2025-11-27 20:10:16.909 00:00:10.366 TCP 23.104.0.1:37076 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:10:45.519 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52528 10 6452 1 2025-11-27 20:11:17.315 00:00:10.438 TCP 23.104.0.1:34134 -> 1.101.0.1:3000 15 1926 1 2025-11-27 20:11:45.736 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:60268 12 10375 1 2025-11-27 20:08:04.636 00:05:04.536 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 20:08:04.638 00:05:04.531 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:12:17.791 00:00:10.365 TCP 23.104.0.1:38204 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:12:45.978 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:33164 11 6492 1 2025-11-27 20:13:18.201 00:00:10.362 TCP 23.104.0.1:50390 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:13:50.219 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:13:50.210 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:13:46.210 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:55036 10 6452 1 2025-11-27 20:14:18.601 00:00:10.363 TCP 23.104.0.1:48616 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:14:46.381 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43646 10 6452 1 2025-11-27 20:15:19.004 00:00:10.362 TCP 23.104.0.1:50200 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:15:46.609 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45662 10 6452 1 2025-11-27 20:16:19.405 00:00:10.370 TCP 23.104.0.1:40580 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:16:46.818 00:00:10.229 TCP 1.101.0.1:3000 -> 22.102.0.1:54006 11 6504 1 2025-11-27 20:17:19.815 00:00:10.370 TCP 23.104.0.1:60854 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:17:47.089 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44784 10 6452 1 2025-11-27 20:14:04.640 00:05:04.533 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:14:04.636 00:05:04.539 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 20:18:20.221 00:00:10.369 TCP 23.104.0.1:53144 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:18:50.020 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:18:50.198 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:18:47.304 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:36600 10 6452 1 2025-11-27 20:19:20.632 00:00:10.379 TCP 23.104.0.1:58896 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:19:47.528 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37022 10 6452 1 2025-11-27 20:20:21.064 00:00:10.323 TCP 23.104.0.1:54866 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:20:47.741 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50708 10 6452 1 2025-11-27 20:21:21.427 00:00:10.370 TCP 23.104.0.1:47080 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:21:47.951 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:37884 10 6452 1 2025-11-27 20:22:21.839 00:00:10.395 TCP 23.104.0.1:49586 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:22:48.179 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60750 10 6452 1 2025-11-27 20:23:22.273 00:00:10.323 TCP 23.104.0.1:45224 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:23:50.379 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:23:50.338 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:23:48.394 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57062 10 6452 1 2025-11-27 20:20:04.639 00:05:04.536 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:20:04.637 00:05:04.542 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 20:24:22.633 00:00:10.367 TCP 23.104.0.1:35674 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:24:48.603 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:41152 10 6452 1 2025-11-27 20:25:23.052 00:00:10.372 TCP 23.104.0.1:33250 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:25:48.773 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51806 10 6452 1 2025-11-27 20:26:23.470 00:00:10.363 TCP 23.104.0.1:53652 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:26:48.990 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39256 10 6452 1 2025-11-27 20:27:23.871 00:00:10.367 TCP 23.104.0.1:33960 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:27:49.210 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56930 10 6452 1 2025-11-27 20:28:24.282 00:00:10.333 TCP 23.104.0.1:54784 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:28:50.255 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:28:50.529 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:28:49.426 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39732 10 6452 1 2025-11-27 20:29:24.650 00:00:10.365 TCP 23.104.0.1:58154 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:29:49.646 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44372 10 6452 1 2025-11-27 20:26:04.640 00:05:04.536 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:26:04.638 00:05:04.541 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 20:30:25.063 00:00:10.329 TCP 23.104.0.1:33920 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:30:49.857 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:60654 10 6452 1 2025-11-27 20:31:25.429 00:00:10.367 TCP 23.104.0.1:59738 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:31:50.087 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58418 10 6452 1 2025-11-27 20:32:25.831 00:00:10.387 TCP 23.104.0.1:39684 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:32:50.311 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38932 10 6452 1 2025-11-27 20:33:26.256 00:00:10.368 TCP 23.104.0.1:54046 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:33:50.645 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:33:50.576 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:33:50.522 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55672 10 6452 1 2025-11-27 20:34:26.662 00:00:10.364 TCP 23.104.0.1:60836 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:34:50.735 00:00:11.000 TCP 1.101.0.1:3000 -> 22.102.0.1:56856 10 6452 1 2025-11-27 20:35:27.087 00:00:10.362 TCP 23.104.0.1:34924 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:35:51.771 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:48312 10 6452 1 2025-11-27 20:32:04.642 00:05:04.536 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:32:04.640 00:05:04.541 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 20:36:27.486 00:00:10.402 TCP 23.104.0.1:52640 -> 1.101.0.1:3000 15 1926 1 2025-11-27 20:36:51.946 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44852 12 10369 1 2025-11-27 20:37:27.924 00:00:10.389 TCP 23.104.0.1:44266 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:37:52.166 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:58008 10 6452 1 2025-11-27 20:38:28.351 00:00:10.364 TCP 23.104.0.1:43662 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:38:50.817 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:38:50.753 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:38:52.340 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57048 10 6452 1 2025-11-27 20:39:28.756 00:00:10.377 TCP 23.104.0.1:41750 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:39:52.549 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:34464 10 6452 1 2025-11-27 20:40:29.172 00:00:10.362 TCP 23.104.0.1:52140 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:40:52.763 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49444 10 6452 1 2025-11-27 20:41:29.572 00:00:10.401 TCP 23.104.0.1:46714 -> 1.101.0.1:3000 15 1926 1 2025-11-27 20:41:52.978 00:00:10.224 TCP 1.101.0.1:3000 -> 22.102.0.1:60132 12 10375 1 2025-11-27 20:38:04.642 00:05:04.542 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 20:38:04.645 00:05:04.537 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:42:30.010 00:00:10.363 TCP 23.104.0.1:41460 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:42:53.246 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55980 10 6452 1 2025-11-27 20:43:30.409 00:00:10.316 TCP 23.104.0.1:42268 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:43:50.455 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:43:50.828 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:43:53.464 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51240 10 6452 1 2025-11-27 20:44:30.758 00:00:10.334 TCP 23.104.0.1:52544 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:44:53.676 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47508 10 6452 1 2025-11-27 20:45:31.132 00:00:10.363 TCP 23.104.0.1:55852 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:45:53.890 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:50892 10 6452 1 2025-11-27 20:46:31.532 00:00:10.361 TCP 23.104.0.1:37460 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:46:54.141 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53530 10 6452 1 2025-11-27 20:47:31.937 00:00:10.394 TCP 23.104.0.1:51060 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:47:54.350 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:56486 10 6452 1 2025-11-27 20:44:04.644 00:05:04.541 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 20:44:04.646 00:05:04.536 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:48:32.368 00:00:10.369 TCP 23.104.0.1:54192 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:48:50.843 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:48:50.756 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:48:54.533 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55250 10 6452 1 2025-11-27 20:49:32.795 00:00:10.624 TCP 23.104.0.1:46156 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:49:54.751 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49222 10 6452 1 2025-11-27 20:50:33.460 00:00:10.363 TCP 23.104.0.1:53478 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:50:54.969 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40028 10 6452 1 2025-11-27 20:51:33.861 00:00:10.439 TCP 23.104.0.1:48700 -> 1.101.0.1:3000 15 1926 1 2025-11-27 20:51:55.189 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:36442 12 10375 1 2025-11-27 20:52:34.342 00:00:10.326 TCP 23.104.0.1:53594 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:52:55.428 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:55598 10 6452 1 2025-11-27 20:53:50.896 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-27 20:53:34.703 00:00:10.367 TCP 23.104.0.1:44042 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:53:50.702 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:53:55.603 00:00:10.284 TCP 1.101.0.1:3000 -> 22.102.0.1:45054 10 6452 1 2025-11-27 20:50:04.648 00:05:04.536 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-27 20:50:04.647 00:05:04.541 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-27 20:54:35.108 00:00:10.328 TCP 23.104.0.1:37586 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:54:55.926 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:37048 10 6452 1 2025-11-27 20:55:35.473 00:00:10.317 TCP 23.104.0.1:37398 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:55:56.156 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51310 10 6452 1 2025-11-27 20:56:35.826 00:00:10.395 TCP 23.104.0.1:60842 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:56:56.371 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54654 10 6452 1 2025-11-27 20:57:36.258 00:00:10.322 TCP 23.104.0.1:47168 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:57:56.583 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42542 10 6452 1 2025-11-27 20:58:50.939 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-27 20:58:36.619 00:00:10.425 TCP 23.104.0.1:53086 -> 1.101.0.1:3000 11 1507 1 2025-11-27 20:58:50.867 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 Summary: total flows: 163, total bytes: 509350, total packets: 1588, avg bps: 1081, avg pps: 0, avg bpp: 320 Time window: 2025-11-27 19:56:04 - 2025-11-27 20:58:50 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0038s User: 0.0019s Wall: 0.0022s flows/second: 73521.0 Runtime: 0.0022s