Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 06:59:03.040 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 06:59:02.864 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 06:59:04.476 00:00:10.366 TCP 23.104.0.1:57242 -> 1.101.0.1:3000 11 1507 1 2025-11-28 06:59:37.276 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55086 10 6452 1 2025-11-28 06:56:04.813 00:05:04.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 06:56:04.816 00:05:04.596 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:00:04.884 00:00:10.368 TCP 23.104.0.1:48208 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:00:37.514 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41062 10 6452 1 2025-11-28 07:01:05.292 00:00:10.324 TCP 23.104.0.1:48520 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:01:37.735 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:56726 10 6452 1 2025-11-28 07:02:05.671 00:00:10.369 TCP 23.104.0.1:45016 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:02:37.908 00:00:10.223 TCP 1.101.0.1:3000 -> 22.102.0.1:34828 10 6452 1 2025-11-28 07:03:06.108 00:00:10.372 TCP 23.104.0.1:60070 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:03:38.172 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40108 10 6452 1 2025-11-28 07:04:03.117 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:04:03.279 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:04:06.525 00:00:10.363 TCP 23.104.0.1:39532 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:04:38.384 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46924 10 6452 1 2025-11-28 07:05:06.924 00:00:10.396 TCP 23.104.0.1:46004 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:05:38.606 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59414 10 6452 1 2025-11-28 07:02:04.812 00:05:04.605 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 07:02:04.816 00:05:04.599 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:06:07.356 00:00:10.365 TCP 23.104.0.1:42390 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:06:38.821 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:53994 10 6452 1 2025-11-28 07:07:07.761 00:00:10.518 TCP 23.104.0.1:59568 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:07:39.067 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42012 10 6452 1 2025-11-28 07:08:08.318 00:00:10.321 TCP 23.104.0.1:44068 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:08:39.276 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47518 10 6452 1 2025-11-28 07:09:03.047 00:00:00.046 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:09:03.166 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:09:08.676 00:00:10.365 TCP 23.104.0.1:35130 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:09:39.485 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:40998 10 6452 1 2025-11-28 07:10:09.101 00:00:10.365 TCP 23.104.0.1:57802 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:10:39.724 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45316 10 6452 1 2025-11-28 07:11:09.505 00:00:10.370 TCP 23.104.0.1:39930 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:11:39.945 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:54464 10 6452 1 2025-11-28 07:08:04.815 00:05:04.603 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 07:08:04.819 00:05:04.597 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:12:09.914 00:00:10.375 TCP 23.104.0.1:60782 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:12:40.177 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56204 10 6452 1 2025-11-28 07:13:10.321 00:00:10.368 TCP 23.104.0.1:38364 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:13:40.390 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:59486 10 6452 1 2025-11-28 07:14:03.260 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:14:03.258 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:14:10.732 00:00:10.323 TCP 23.104.0.1:47876 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:14:40.600 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50256 10 6452 1 2025-11-28 07:15:11.102 00:00:10.360 TCP 23.104.0.1:56514 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:15:40.813 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59266 10 6452 1 2025-11-28 07:16:11.504 00:00:10.371 TCP 23.104.0.1:33746 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:16:41.034 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52986 10 6452 1 2025-11-28 07:17:11.913 00:00:10.359 TCP 23.104.0.1:35228 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:17:41.248 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39032 10 6452 1 2025-11-28 07:14:04.822 00:05:04.597 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:14:04.818 00:05:04.603 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 07:18:12.312 00:00:10.367 TCP 23.104.0.1:48910 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:18:41.467 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:39998 10 6452 1 2025-11-28 07:19:03.219 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:19:03.413 00:00:00.030 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:19:12.713 00:00:10.376 TCP 23.104.0.1:51030 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:19:41.677 00:00:10.569 TCP 1.101.0.1:3000 -> 22.102.0.1:40708 10 6452 1 2025-11-28 07:20:13.129 00:00:10.364 TCP 23.104.0.1:59326 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:20:42.291 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33996 10 6452 1 2025-11-28 07:21:13.531 00:00:10.330 TCP 23.104.0.1:47918 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:21:42.508 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47118 10 6452 1 2025-11-28 07:22:13.899 00:00:10.370 TCP 23.104.0.1:34042 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:22:42.727 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42536 10 6452 1 2025-11-28 07:23:14.303 00:00:10.712 TCP 23.104.0.1:54666 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:23:42.948 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:54466 10 6452 1 2025-11-28 07:24:03.652 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:24:03.739 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:20:04.822 00:05:04.598 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:20:04.820 00:05:04.603 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 07:24:15.058 00:00:10.327 TCP 23.104.0.1:33730 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:24:43.190 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34192 10 6452 1 2025-11-28 07:25:15.419 00:00:10.369 TCP 23.104.0.1:50356 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:25:43.411 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:40174 10 6452 1 2025-11-28 07:26:15.822 00:00:10.367 TCP 23.104.0.1:49982 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:26:43.642 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:43136 10 6452 1 2025-11-28 07:27:16.223 00:00:10.371 TCP 23.104.0.1:50112 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:27:43.866 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53930 10 6452 1 2025-11-28 07:28:16.635 00:00:10.369 TCP 23.104.0.1:45816 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:28:44.089 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:47506 10 6452 1 2025-11-28 07:29:03.560 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:29:03.577 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:29:17.047 00:00:10.369 TCP 23.104.0.1:51966 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:29:44.331 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56338 10 6452 1 2025-11-28 07:26:04.822 00:05:04.610 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 07:26:04.825 00:05:04.605 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:30:17.460 00:00:10.371 TCP 23.104.0.1:60618 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:30:44.554 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51704 10 6452 1 2025-11-28 07:31:17.868 00:00:10.374 TCP 23.104.0.1:39740 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:31:44.769 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45664 10 6452 1 2025-11-28 07:32:18.285 00:00:10.365 TCP 23.104.0.1:58294 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:32:44.982 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47882 10 6452 1 2025-11-28 07:33:18.688 00:00:10.366 TCP 23.104.0.1:47854 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:33:45.196 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:35094 10 6452 1 2025-11-28 07:34:03.653 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:34:03.809 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:34:19.110 00:00:10.371 TCP 23.104.0.1:60850 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:34:45.376 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40754 10 6452 1 2025-11-28 07:35:19.522 00:00:10.358 TCP 23.104.0.1:42032 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:35:45.586 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40802 10 6452 1 2025-11-28 07:32:04.823 00:05:04.611 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 07:32:04.826 00:05:04.606 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:36:19.921 00:00:10.405 TCP 23.104.0.1:45218 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:36:45.797 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47792 10 6452 1 2025-11-28 07:37:20.373 00:00:10.319 TCP 23.104.0.1:39598 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:37:46.004 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58814 10 6452 1 2025-11-28 07:38:20.740 00:00:10.369 TCP 23.104.0.1:34264 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:38:46.222 00:00:11.969 TCP 1.101.0.1:3000 -> 22.102.0.1:52938 10 6452 1 2025-11-28 07:39:03.742 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:39:03.860 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:39:21.149 00:00:10.367 TCP 23.104.0.1:44070 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:39:48.229 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:55992 10 6452 1 2025-11-28 07:40:21.553 00:00:10.361 TCP 23.104.0.1:50644 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:40:48.410 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40984 10 6452 1 2025-11-28 07:41:21.950 00:00:10.360 TCP 23.104.0.1:38648 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:41:48.626 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36292 10 6452 1 2025-11-28 07:38:04.828 00:05:04.605 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:38:04.824 00:05:04.610 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 07:42:22.351 00:00:10.323 TCP 23.104.0.1:49982 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:42:48.839 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47288 10 6452 1 2025-11-28 07:43:22.714 00:00:10.366 TCP 23.104.0.1:38372 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:43:49.078 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37818 10 6452 1 2025-11-28 07:44:04.100 00:00:00.038 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:44:03.992 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:44:23.134 00:00:10.365 TCP 23.104.0.1:35616 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:44:49.294 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:49222 10 6452 1 2025-11-28 07:45:23.539 00:00:10.338 TCP 23.104.0.1:48182 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:45:49.527 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52388 10 6452 1 2025-11-28 07:46:23.926 00:00:10.348 TCP 23.104.0.1:53486 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:46:49.738 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39240 10 6452 1 2025-11-28 07:47:24.312 00:00:10.360 TCP 23.104.0.1:53378 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:47:49.961 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:46036 12 6556 1 2025-11-28 07:44:04.827 00:05:04.607 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:44:04.826 00:05:04.612 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 07:48:24.711 00:00:10.364 TCP 23.104.0.1:41346 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:48:50.193 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44678 10 6452 1 2025-11-28 07:49:03.681 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:49:04.063 00:00:00.041 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:49:25.118 00:00:10.569 TCP 23.104.0.1:42224 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:49:50.413 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34890 10 6452 1 2025-11-28 07:50:25.726 00:00:10.369 TCP 23.104.0.1:35984 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:50:50.627 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58988 10 6452 1 2025-11-28 07:51:26.130 00:00:10.371 TCP 23.104.0.1:57582 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:51:50.850 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47832 10 6452 1 2025-11-28 07:52:26.537 00:00:10.359 TCP 23.104.0.1:37602 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:52:51.081 00:00:10.639 TCP 1.101.0.1:3000 -> 22.102.0.1:58790 10 6452 1 2025-11-28 07:53:26.936 00:00:10.381 TCP 23.104.0.1:37154 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:53:51.759 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33724 10 6452 1 2025-11-28 07:54:04.233 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 07:54:04.228 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 07:50:04.828 00:05:04.610 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 07:50:04.830 00:05:04.605 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 07:54:27.354 00:00:10.369 TCP 23.104.0.1:36506 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:54:51.974 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:37874 10 6452 1 2025-11-28 07:55:27.758 00:00:10.376 TCP 23.104.0.1:54814 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:55:52.212 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:44260 10 6452 1 2025-11-28 07:56:28.165 00:00:11.023 TCP 23.104.0.1:49850 -> 1.101.0.1:3000 17 2241 1 2025-11-28 07:56:52.380 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:59816 14 14298 1 2025-11-28 07:57:29.221 00:00:10.369 TCP 23.104.0.1:59760 -> 1.101.0.1:3000 11 1507 1 2025-11-28 07:57:52.612 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40322 10 6452 1 2025-11-28 07:58:29.633 00:00:10.362 TCP 23.104.0.1:40502 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 500580, total packets: 1574, avg bps: 1066, avg pps: 0, avg bpp: 318 Time window: 2025-11-28 06:56:04 - 2025-11-28 07:58:39 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0041s User: 0.0027s Wall: 0.0042s flows/second: 38662.6 Runtime: 0.0042s