Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 18:59:17.498 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 18:59:17.270 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 18:59:21.253 00:00:10.367 TCP 23.104.0.1:44670 -> 1.101.0.1:3000 11 1507 1 2025-11-28 18:59:36.091 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58368 10 6452 1 2025-11-28 18:55:09.648 00:05:55.417 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 18:55:09.645 00:05:55.422 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:00:21.662 00:00:10.327 TCP 23.104.0.1:47798 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:00:36.305 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:47542 10 6452 1 2025-11-28 19:01:22.024 00:00:10.366 TCP 23.104.0.1:42190 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:01:36.538 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:57806 10 6452 1 2025-11-28 19:02:22.427 00:00:10.327 TCP 23.104.0.1:41128 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:02:36.723 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52912 10 6452 1 2025-11-28 19:03:22.790 00:00:10.863 TCP 23.104.0.1:49296 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:03:36.938 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:38224 10 6452 1 2025-11-28 19:04:17.608 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:04:17.615 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:04:23.696 00:00:10.371 TCP 23.104.0.1:60238 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:04:37.187 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47028 10 6452 1 2025-11-28 19:05:24.108 00:00:10.363 TCP 23.104.0.1:45904 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:05:37.402 00:00:10.500 TCP 1.101.0.1:3000 -> 22.102.0.1:36758 10 6452 1 2025-11-28 19:01:09.650 00:05:55.416 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 19:01:09.647 00:05:55.421 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:06:24.510 00:00:10.368 TCP 23.104.0.1:58738 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:06:37.938 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:52374 10 6452 1 2025-11-28 19:07:24.919 00:00:10.389 TCP 23.104.0.1:58670 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:07:38.180 00:00:10.442 TCP 1.101.0.1:3000 -> 22.102.0.1:43038 10 6452 1 2025-11-28 19:08:25.350 00:00:10.377 TCP 23.104.0.1:47758 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:08:38.654 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:51724 10 6452 1 2025-11-28 19:09:17.721 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:09:17.860 00:00:00.028 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:09:25.775 00:00:10.373 TCP 23.104.0.1:53922 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:09:38.874 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:42314 10 6452 1 2025-11-28 19:10:26.183 00:00:10.362 TCP 23.104.0.1:59978 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:10:39.098 00:00:10.232 TCP 1.101.0.1:3000 -> 22.102.0.1:35094 11 6504 1 2025-11-28 19:11:26.583 00:00:10.364 TCP 23.104.0.1:56162 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:11:39.372 00:00:10.516 TCP 1.101.0.1:3000 -> 22.102.0.1:55486 10 6452 1 2025-11-28 19:07:09.652 00:05:55.415 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 19:07:09.649 00:05:55.420 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:12:26.989 00:00:10.364 TCP 23.104.0.1:35838 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:12:39.923 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57410 10 6452 1 2025-11-28 19:13:27.395 00:00:10.367 TCP 23.104.0.1:34536 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:13:40.135 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58068 10 6452 1 2025-11-28 19:14:17.595 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:14:17.653 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:14:27.801 00:00:10.370 TCP 23.104.0.1:58718 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:14:40.355 00:00:10.799 TCP 1.101.0.1:3000 -> 22.102.0.1:49136 10 6452 1 2025-11-28 19:15:28.220 00:00:10.325 TCP 23.104.0.1:56876 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:15:41.192 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52420 10 6452 1 2025-11-28 19:16:28.581 00:00:10.526 TCP 23.104.0.1:34650 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:16:41.409 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34630 10 6452 1 2025-11-28 19:17:29.159 00:00:10.364 TCP 23.104.0.1:57760 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:17:41.630 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52886 10 6452 1 2025-11-28 19:13:09.654 00:05:55.415 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 19:13:09.650 00:05:55.421 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:18:29.564 00:00:10.815 TCP 23.104.0.1:38692 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:18:41.845 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:57556 10 6452 1 2025-11-28 19:19:17.858 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:19:17.851 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:19:30.417 00:00:10.324 TCP 23.104.0.1:56908 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:19:42.016 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43642 10 6452 1 2025-11-28 19:20:30.783 00:00:10.700 TCP 23.104.0.1:48720 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:20:42.230 00:00:11.425 TCP 1.101.0.1:3000 -> 22.102.0.1:49290 10 6452 1 2025-11-28 19:21:31.522 00:00:10.361 TCP 23.104.0.1:49164 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:21:43.697 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54626 10 6452 1 2025-11-28 19:22:31.925 00:00:10.386 TCP 23.104.0.1:54400 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:22:43.909 00:00:10.257 TCP 1.101.0.1:3000 -> 22.102.0.1:59936 10 6452 1 2025-11-28 19:23:32.354 00:00:10.360 TCP 23.104.0.1:35820 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:23:44.205 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:51328 12 6556 1 2025-11-28 19:19:09.656 00:05:55.415 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 19:19:09.652 00:05:55.421 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:24:18.131 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:24:18.040 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:24:32.753 00:00:10.387 TCP 23.104.0.1:33596 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:24:44.423 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:54556 10 6452 1 2025-11-28 19:25:33.184 00:00:10.363 TCP 23.104.0.1:37026 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:25:44.610 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53936 10 6452 1 2025-11-28 19:26:33.582 00:00:10.515 TCP 23.104.0.1:42876 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:26:44.829 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:32862 10 6452 1 2025-11-28 19:27:34.133 00:00:10.325 TCP 23.104.0.1:38082 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:27:45.001 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:45386 10 6452 1 2025-11-28 19:28:34.495 00:00:10.366 TCP 23.104.0.1:48928 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:28:45.181 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36136 12 6556 1 2025-11-28 19:29:18.046 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:29:17.897 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:29:34.902 00:00:10.367 TCP 23.104.0.1:49132 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:29:45.405 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50572 10 6452 1 2025-11-28 19:25:09.656 00:05:55.415 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 19:25:09.654 00:05:55.420 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:30:35.304 00:00:10.363 TCP 23.104.0.1:42882 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:30:45.618 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46340 10 6452 1 2025-11-28 19:31:35.708 00:00:10.456 TCP 23.104.0.1:33702 -> 1.101.0.1:3000 15 1926 1 2025-11-28 19:31:45.832 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:38226 12 10375 1 2025-11-28 19:32:36.202 00:00:10.367 TCP 23.104.0.1:51236 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:32:46.085 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:33102 10 6452 1 2025-11-28 19:33:36.600 00:00:10.364 TCP 23.104.0.1:59578 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:33:46.311 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:33840 10 6452 1 2025-11-28 19:34:18.201 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:34:18.058 00:00:00.046 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:34:37.006 00:00:10.363 TCP 23.104.0.1:56834 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:34:46.530 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36672 10 6452 1 2025-11-28 19:35:37.408 00:00:10.377 TCP 23.104.0.1:52394 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:35:46.746 00:00:10.971 TCP 1.101.0.1:3000 -> 22.102.0.1:51130 10 6452 1 2025-11-28 19:31:09.658 00:05:55.414 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 19:31:09.656 00:05:55.419 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:36:37.822 00:00:10.359 TCP 23.104.0.1:41436 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:36:47.752 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45202 10 6452 1 2025-11-28 19:37:38.220 00:00:10.362 TCP 23.104.0.1:34136 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:37:47.963 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:60988 12 6556 1 2025-11-28 19:38:38.621 00:00:10.351 TCP 23.104.0.1:56366 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:38:48.200 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46656 10 6452 1 2025-11-28 19:39:18.292 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:39:18.357 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:39:39.009 00:00:10.364 TCP 23.104.0.1:43368 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:39:48.420 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58992 10 6452 1 2025-11-28 19:40:39.418 00:00:10.716 TCP 23.104.0.1:53668 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:40:48.641 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:34808 10 6452 1 2025-11-28 19:41:40.184 00:00:10.322 TCP 23.104.0.1:33826 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:41:48.813 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59936 10 6452 1 2025-11-28 19:37:09.676 00:05:55.400 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:37:09.679 00:05:55.395 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 19:42:40.548 00:00:10.334 TCP 23.104.0.1:49120 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:42:49.053 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:35852 10 6452 1 2025-11-28 19:43:40.925 00:00:10.343 TCP 23.104.0.1:46484 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:43:49.285 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39656 10 6452 1 2025-11-28 19:44:18.339 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:44:18.474 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:44:41.311 00:00:10.373 TCP 23.104.0.1:60018 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:44:49.498 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33308 10 6452 1 2025-11-28 19:45:41.734 00:00:10.372 TCP 23.104.0.1:59630 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:45:49.664 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44006 10 6452 1 2025-11-28 19:46:42.146 00:00:10.323 TCP 23.104.0.1:56956 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:46:49.873 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:51812 10 6452 1 2025-11-28 19:47:42.513 00:00:10.364 TCP 23.104.0.1:53502 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:47:50.110 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:36340 10 6452 1 2025-11-28 19:43:09.678 00:05:55.395 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 19:43:09.676 00:05:55.401 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:48:42.918 00:00:10.360 TCP 23.104.0.1:54984 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:48:50.279 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:45182 10 6452 1 2025-11-28 19:49:18.526 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:49:18.605 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:49:43.322 00:00:10.366 TCP 23.104.0.1:51834 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:49:50.502 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51116 10 6452 1 2025-11-28 19:50:43.726 00:00:10.376 TCP 23.104.0.1:41454 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:50:50.732 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44386 10 6452 1 2025-11-28 19:51:44.141 00:00:10.363 TCP 23.104.0.1:47130 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:51:50.945 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:39124 10 6452 1 2025-11-28 19:52:44.545 00:00:10.363 TCP 23.104.0.1:45942 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:52:51.187 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59714 10 6452 1 2025-11-28 19:53:44.950 00:00:10.409 TCP 23.104.0.1:53934 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:53:51.401 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59480 10 6452 1 2025-11-28 19:49:09.682 00:05:55.392 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-28 19:49:09.679 00:05:55.398 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-28 19:54:18.386 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 19:54:18.530 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-28 19:54:45.396 00:00:10.369 TCP 23.104.0.1:43822 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:54:51.617 00:00:10.460 TCP 1.101.0.1:3000 -> 22.102.0.1:53894 10 6452 1 2025-11-28 19:55:45.796 00:00:10.333 TCP 23.104.0.1:32788 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:55:52.115 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51616 10 6452 1 2025-11-28 19:56:46.165 00:00:10.324 TCP 23.104.0.1:45340 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:56:52.330 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33824 10 6452 1 2025-11-28 19:57:46.528 00:00:10.363 TCP 23.104.0.1:45480 -> 1.101.0.1:3000 11 1507 1 2025-11-28 19:57:52.542 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45718 10 6452 1 Summary: total flows: 162, total bytes: 495095, total packets: 1564, avg bps: 1049, avg pps: 0, avg bpp: 316 Time window: 2025-11-28 18:55:09 - 2025-11-28 19:58:02 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0032s User: 0.0021s Wall: 0.0020s flows/second: 79257.8 Runtime: 0.0021s