Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 04:59:10.105 00:00:10.365 TCP 23.104.0.1:58862 -> 1.101.0.1:3000 11 1507 1 2025-11-29 04:59:29.342 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 04:59:29.510 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 04:59:37.629 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:53538 10 6452 1 2025-11-29 04:55:09.861 00:05:55.372 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 04:55:09.859 00:05:55.377 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:00:10.517 00:00:10.370 TCP 23.104.0.1:51794 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:00:37.852 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:35360 10 6452 1 2025-11-29 05:01:10.925 00:00:10.386 TCP 23.104.0.1:36002 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:01:38.084 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54430 10 6452 1 2025-11-29 05:02:11.354 00:00:11.085 TCP 23.104.0.1:57606 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:02:38.299 00:00:10.399 TCP 1.101.0.1:3000 -> 22.102.0.1:38166 10 6452 1 2025-11-29 05:03:12.478 00:00:10.361 TCP 23.104.0.1:55736 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:03:38.735 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:45780 10 6452 1 2025-11-29 05:04:12.883 00:00:10.341 TCP 23.104.0.1:46652 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:04:29.759 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:04:29.733 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:04:38.921 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:51118 10 6452 1 2025-11-29 05:05:13.260 00:00:10.366 TCP 23.104.0.1:43278 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:05:39.113 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50652 10 6452 1 2025-11-29 05:01:09.864 00:05:55.372 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:01:09.860 00:05:55.378 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:06:13.668 00:00:10.366 TCP 23.104.0.1:54012 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:06:39.329 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57550 10 6452 1 2025-11-29 05:07:14.100 00:00:10.370 TCP 23.104.0.1:36166 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:07:39.548 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56112 10 6452 1 2025-11-29 05:08:14.504 00:00:10.365 TCP 23.104.0.1:59088 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:08:39.759 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59786 10 6452 1 2025-11-29 05:09:14.902 00:00:10.365 TCP 23.104.0.1:49880 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:09:29.812 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:09:29.613 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:09:39.977 00:00:11.468 TCP 1.101.0.1:3000 -> 22.102.0.1:48716 10 6452 1 2025-11-29 05:10:15.310 00:00:10.365 TCP 23.104.0.1:53082 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:10:41.485 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53626 10 6452 1 2025-11-29 05:11:15.711 00:00:10.369 TCP 23.104.0.1:49248 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:11:41.703 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:34292 12 10369 1 2025-11-29 05:07:09.862 00:05:55.378 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:07:09.864 00:05:55.373 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:12:16.117 00:00:10.435 TCP 23.104.0.1:34736 -> 1.101.0.1:3000 15 1926 1 2025-11-29 05:12:41.949 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:60264 10 6452 1 2025-11-29 05:13:16.593 00:00:10.369 TCP 23.104.0.1:42936 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:13:42.177 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51524 10 6452 1 2025-11-29 05:14:29.890 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:14:17.004 00:00:10.359 TCP 23.104.0.1:55414 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:14:30.058 00:00:00.030 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:14:42.397 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53668 10 6452 1 2025-11-29 05:15:17.407 00:00:10.368 TCP 23.104.0.1:60396 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:15:42.611 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37508 10 6452 1 2025-11-29 05:16:17.809 00:00:10.365 TCP 23.104.0.1:45844 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:16:42.825 00:00:10.620 TCP 1.101.0.1:3000 -> 22.102.0.1:34612 10 6452 1 2025-11-29 05:17:18.214 00:00:10.367 TCP 23.104.0.1:59068 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:17:43.502 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42424 10 6452 1 2025-11-29 05:13:09.867 00:05:55.371 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:13:09.864 00:05:55.376 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:18:18.617 00:00:10.365 TCP 23.104.0.1:46556 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:18:43.723 00:00:10.668 TCP 1.101.0.1:3000 -> 22.102.0.1:50520 10 6452 1 2025-11-29 05:19:29.865 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:19:19.021 00:00:10.361 TCP 23.104.0.1:45730 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:19:29.695 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:19:44.433 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:52480 10 6452 1 2025-11-29 05:20:19.422 00:00:10.369 TCP 23.104.0.1:40956 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:20:44.663 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47098 10 6452 1 2025-11-29 05:21:19.828 00:00:10.365 TCP 23.104.0.1:52042 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:21:44.882 00:00:10.565 TCP 1.101.0.1:3000 -> 22.102.0.1:41754 10 6452 1 2025-11-29 05:22:20.227 00:00:10.372 TCP 23.104.0.1:54938 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:22:45.484 00:00:10.739 TCP 1.101.0.1:3000 -> 22.102.0.1:43884 10 6452 1 2025-11-29 05:23:20.638 00:00:10.339 TCP 23.104.0.1:53450 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:23:46.270 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47902 10 6452 1 2025-11-29 05:19:09.869 00:05:55.373 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:19:09.871 00:05:55.369 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:24:29.983 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:24:30.198 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:24:21.070 00:00:10.367 TCP 23.104.0.1:53280 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:24:46.480 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:41290 10 6452 1 2025-11-29 05:25:21.478 00:00:10.366 TCP 23.104.0.1:49046 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:25:46.710 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:58388 10 6452 1 2025-11-29 05:26:21.882 00:00:11.176 TCP 23.104.0.1:42020 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:26:46.881 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:49546 10 6452 1 2025-11-29 05:27:23.103 00:00:10.323 TCP 23.104.0.1:48840 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:27:47.084 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56232 10 6452 1 2025-11-29 05:28:23.472 00:00:10.381 TCP 23.104.0.1:33238 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:28:47.292 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43244 10 6452 1 2025-11-29 05:29:30.223 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:29:30.252 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:29:23.891 00:00:10.378 TCP 23.104.0.1:53840 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:29:47.510 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50054 10 6452 1 2025-11-29 05:25:09.873 00:05:55.368 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:25:09.870 00:05:55.373 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:30:24.302 00:00:10.359 TCP 23.104.0.1:37826 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:30:47.727 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:47760 10 6452 1 2025-11-29 05:31:24.703 00:00:10.331 TCP 23.104.0.1:39240 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:31:47.897 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37808 10 6452 1 2025-11-29 05:32:25.097 00:00:10.371 TCP 23.104.0.1:51676 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:32:48.119 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39948 10 6452 1 2025-11-29 05:33:25.506 00:00:10.366 TCP 23.104.0.1:41286 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:33:48.339 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42304 10 6452 1 2025-11-29 05:34:30.321 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:34:30.294 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:34:25.906 00:00:10.365 TCP 23.104.0.1:47438 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:34:48.556 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37834 10 6452 1 2025-11-29 05:35:26.309 00:00:10.366 TCP 23.104.0.1:35646 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:35:48.780 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49320 10 6452 1 2025-11-29 05:31:09.871 00:05:55.371 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:31:09.868 00:05:55.377 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:36:26.717 00:00:10.329 TCP 23.104.0.1:51982 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:36:48.994 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:60076 10 6452 1 2025-11-29 05:37:27.099 00:00:10.361 TCP 23.104.0.1:33864 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:37:49.229 00:00:10.864 TCP 1.101.0.1:3000 -> 22.102.0.1:50784 10 6452 1 2025-11-29 05:38:27.498 00:00:10.320 TCP 23.104.0.1:37118 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:38:50.128 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51776 10 6452 1 2025-11-29 05:39:30.197 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:39:30.370 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:39:27.856 00:00:10.372 TCP 23.104.0.1:51848 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:39:50.348 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46530 10 6452 1 2025-11-29 05:40:28.267 00:00:10.368 TCP 23.104.0.1:34670 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:40:50.571 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:42052 10 6452 1 2025-11-29 05:41:28.680 00:00:10.374 TCP 23.104.0.1:38618 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:41:50.797 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:44376 10 6452 1 2025-11-29 05:37:09.877 00:05:55.368 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:37:09.875 00:05:55.373 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:42:29.097 00:00:10.358 TCP 23.104.0.1:57184 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:42:51.043 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46294 10 6452 1 2025-11-29 05:43:29.496 00:00:10.364 TCP 23.104.0.1:36122 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:43:51.252 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48112 10 6452 1 2025-11-29 05:44:30.446 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:44:30.350 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:44:29.899 00:00:10.370 TCP 23.104.0.1:54098 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:44:51.473 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46820 10 6452 1 2025-11-29 05:45:30.302 00:00:10.360 TCP 23.104.0.1:52348 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:45:51.694 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44890 10 6452 1 2025-11-29 05:46:30.703 00:00:10.377 TCP 23.104.0.1:57290 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:46:51.904 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42312 10 6452 1 2025-11-29 05:47:31.116 00:00:10.368 TCP 23.104.0.1:50138 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:47:52.123 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52518 10 6452 1 2025-11-29 05:43:09.877 00:05:55.369 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:43:09.876 00:05:55.375 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:48:31.521 00:00:10.362 TCP 23.104.0.1:38360 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:48:52.343 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:53122 10 6452 1 2025-11-29 05:49:30.830 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:49:30.391 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:49:31.925 00:00:10.387 TCP 23.104.0.1:57908 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:49:52.561 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45724 10 6452 1 2025-11-29 05:50:32.352 00:00:10.367 TCP 23.104.0.1:51132 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:50:52.791 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40076 10 6452 1 2025-11-29 05:51:32.759 00:00:10.381 TCP 23.104.0.1:56686 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:51:53.005 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:43322 10 6452 1 2025-11-29 05:52:33.184 00:00:10.364 TCP 23.104.0.1:57300 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:52:53.182 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53916 10 6452 1 2025-11-29 05:53:33.588 00:00:10.365 TCP 23.104.0.1:38706 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:49:09.878 00:05:55.367 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 05:53:53.400 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37642 10 6452 1 2025-11-29 05:49:09.877 00:05:55.372 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 05:54:30.810 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 05:54:30.807 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 05:54:33.991 00:00:10.331 TCP 23.104.0.1:46968 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:54:53.616 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53256 10 6452 1 2025-11-29 05:55:34.368 00:00:10.365 TCP 23.104.0.1:48174 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:55:53.834 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:33016 10 6452 1 2025-11-29 05:56:34.777 00:00:10.885 TCP 23.104.0.1:45216 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:56:54.079 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:55544 10 6452 1 2025-11-29 05:57:35.700 00:00:10.366 TCP 23.104.0.1:34754 -> 1.101.0.1:3000 11 1507 1 2025-11-29 05:57:54.286 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60342 10 6452 1 2025-11-29 05:58:36.111 00:00:10.329 TCP 23.104.0.1:53654 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 496232, total packets: 1568, avg bps: 1040, avg pps: 0, avg bpp: 316 Time window: 2025-11-29 04:55:09 - 2025-11-29 05:58:46 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0019s User: 0.0028s Wall: 0.0016s flows/second: 102514.9 Runtime: 0.0016s