Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 06:59:02.839 00:00:10.401 TCP 23.104.0.1:37594 -> 1.101.0.1:3000 11 1507 1 2025-11-29 06:59:31.624 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 06:59:17.280 00:00:12.700 TCP 1.101.0.1:3000 -> 22.102.0.1:45536 10 6452 1 2025-11-29 06:59:31.632 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 06:55:09.894 00:05:55.363 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 06:55:09.898 00:05:55.358 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:00:03.273 00:00:10.330 TCP 23.104.0.1:56720 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:00:20.016 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38928 10 6452 1 2025-11-29 07:01:03.650 00:00:11.144 TCP 23.104.0.1:58026 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:01:20.234 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54438 10 6452 1 2025-11-29 07:02:04.835 00:00:10.391 TCP 23.104.0.1:40700 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:02:20.458 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42330 10 6452 1 2025-11-29 07:03:05.266 00:00:10.331 TCP 23.104.0.1:47210 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:03:20.666 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:54170 10 6452 1 2025-11-29 07:04:05.636 00:00:10.371 TCP 23.104.0.1:38202 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:04:20.839 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:47032 10 6452 1 2025-11-29 07:04:31.942 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:04:32.032 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:05:06.055 00:00:10.378 TCP 23.104.0.1:34910 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:05:21.083 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:59292 10 6452 1 2025-11-29 07:01:09.895 00:05:55.364 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:01:09.899 00:05:55.358 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:06:06.469 00:00:10.362 TCP 23.104.0.1:43306 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:06:21.291 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33892 10 6452 1 2025-11-29 07:07:06.865 00:00:10.406 TCP 23.104.0.1:52522 -> 1.101.0.1:3000 15 1926 1 2025-11-29 07:07:21.514 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:34208 12 10375 1 2025-11-29 07:08:07.311 00:00:10.368 TCP 23.104.0.1:60548 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:08:21.760 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51956 10 6452 1 2025-11-29 07:09:07.715 00:00:10.327 TCP 23.104.0.1:54282 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:09:31.937 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:09:32.096 00:00:00.043 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:09:21.977 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:56620 10 6452 1 2025-11-29 07:10:08.094 00:00:10.361 TCP 23.104.0.1:40854 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:10:22.232 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46128 10 6452 1 2025-11-29 07:11:08.499 00:00:10.372 TCP 23.104.0.1:60060 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:11:22.448 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48202 10 6452 1 2025-11-29 07:07:09.899 00:05:55.361 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:07:09.896 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:12:08.906 00:00:10.439 TCP 23.104.0.1:58218 -> 1.101.0.1:3000 15 1926 1 2025-11-29 07:12:22.663 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60996 12 10375 1 2025-11-29 07:13:09.386 00:00:10.369 TCP 23.104.0.1:35946 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:13:22.876 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:40248 10 6452 1 2025-11-29 07:14:09.795 00:00:10.371 TCP 23.104.0.1:35696 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:14:32.386 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:14:23.116 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:34290 10 6452 1 2025-11-29 07:14:32.315 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:15:10.204 00:00:10.367 TCP 23.104.0.1:37260 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:15:23.345 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:40656 10 6452 1 2025-11-29 07:16:10.607 00:00:10.386 TCP 23.104.0.1:38580 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:16:23.518 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:50950 10 6452 1 2025-11-29 07:17:11.032 00:00:10.325 TCP 23.104.0.1:50714 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:17:23.744 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38664 10 6452 1 2025-11-29 07:13:09.901 00:05:55.364 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:13:09.898 00:05:55.369 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:18:11.395 00:00:10.364 TCP 23.104.0.1:46244 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:18:23.962 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:47972 10 6452 1 2025-11-29 07:19:11.802 00:00:10.332 TCP 23.104.0.1:33604 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:19:32.249 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:19:24.195 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60320 10 6452 1 2025-11-29 07:19:32.205 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:20:12.172 00:00:10.326 TCP 23.104.0.1:35114 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:20:24.410 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38242 10 6452 1 2025-11-29 07:21:12.540 00:00:10.394 TCP 23.104.0.1:39336 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:21:24.624 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49770 10 6452 1 2025-11-29 07:22:13.001 00:00:10.370 TCP 23.104.0.1:54412 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:22:24.836 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34924 10 6452 1 2025-11-29 07:23:13.410 00:00:10.364 TCP 23.104.0.1:47376 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:23:25.074 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:36762 10 6452 1 2025-11-29 07:19:09.899 00:05:55.366 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:19:09.901 00:05:55.361 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:24:13.813 00:00:10.370 TCP 23.104.0.1:48694 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:24:32.329 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:24:25.242 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:57076 10 6452 1 2025-11-29 07:24:32.412 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:25:14.223 00:00:10.382 TCP 23.104.0.1:33376 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:25:25.454 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51004 10 6452 1 2025-11-29 07:26:14.644 00:00:10.328 TCP 23.104.0.1:35336 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:26:25.668 00:00:10.163 TCP 1.101.0.1:3000 -> 22.102.0.1:49694 10 6452 1 2025-11-29 07:27:15.006 00:00:10.395 TCP 23.104.0.1:50580 -> 1.101.0.1:3000 15 1926 1 2025-11-29 07:27:25.867 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:49534 12 10375 1 2025-11-29 07:28:15.437 00:00:10.368 TCP 23.104.0.1:41156 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:28:26.085 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51208 10 6452 1 2025-11-29 07:29:15.843 00:00:11.000 TCP 23.104.0.1:44504 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:29:26.263 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53502 10 6452 1 2025-11-29 07:29:32.464 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:29:32.470 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:25:09.906 00:05:55.358 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:25:09.909 00:05:55.354 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:30:16.880 00:00:10.376 TCP 23.104.0.1:39820 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:30:26.479 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:40710 10 6452 1 2025-11-29 07:31:17.293 00:00:10.364 TCP 23.104.0.1:35724 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:31:26.702 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:60952 10 6452 1 2025-11-29 07:32:17.696 00:00:10.364 TCP 23.104.0.1:39402 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:32:26.871 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:43594 10 6452 1 2025-11-29 07:33:18.109 00:00:10.327 TCP 23.104.0.1:59860 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:33:27.105 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35660 10 6452 1 2025-11-29 07:34:33.015 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:34:18.474 00:00:10.361 TCP 23.104.0.1:39122 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:34:32.993 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:34:27.316 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:39202 10 6452 1 2025-11-29 07:35:18.880 00:00:10.323 TCP 23.104.0.1:41722 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:35:27.500 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35404 10 6452 1 2025-11-29 07:31:09.902 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:31:09.905 00:05:55.360 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:36:19.243 00:00:10.368 TCP 23.104.0.1:43678 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:36:27.713 00:00:10.747 TCP 1.101.0.1:3000 -> 22.102.0.1:43242 10 6452 1 2025-11-29 07:37:19.648 00:00:10.365 TCP 23.104.0.1:56576 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:37:28.495 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54842 10 6452 1 2025-11-29 07:38:20.065 00:00:10.367 TCP 23.104.0.1:33326 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:38:28.705 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:37034 10 6452 1 2025-11-29 07:39:20.471 00:00:10.365 TCP 23.104.0.1:43602 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:39:33.257 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:39:33.226 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:39:28.880 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:60676 10 6452 1 2025-11-29 07:40:20.875 00:00:10.368 TCP 23.104.0.1:37820 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:40:29.070 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:36816 10 6452 1 2025-11-29 07:41:21.287 00:00:10.326 TCP 23.104.0.1:56150 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:41:29.285 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:58474 10 6452 1 2025-11-29 07:37:09.905 00:05:55.360 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:37:09.903 00:05:55.365 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:42:21.652 00:00:10.321 TCP 23.104.0.1:60892 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:42:29.459 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:33538 10 6452 1 2025-11-29 07:43:22.011 00:00:10.366 TCP 23.104.0.1:56898 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:43:29.681 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37680 10 6452 1 2025-11-29 07:44:22.418 00:00:10.367 TCP 23.104.0.1:57384 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:44:32.803 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:44:32.805 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:44:29.897 00:00:19.900 TCP 1.101.0.1:3000 -> 22.102.0.1:36342 10 6452 1 2025-11-29 07:45:22.826 00:00:10.361 TCP 23.104.0.1:51884 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:45:39.838 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58154 10 6452 1 2025-11-29 07:46:23.227 00:00:10.367 TCP 23.104.0.1:35786 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:46:40.075 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:55452 10 6452 1 2025-11-29 07:47:23.637 00:00:10.369 TCP 23.104.0.1:55396 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:47:40.299 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:37192 10 6452 1 2025-11-29 07:43:09.909 00:05:55.359 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:43:09.907 00:05:55.364 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:48:24.060 00:00:10.365 TCP 23.104.0.1:48386 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:48:40.518 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35590 10 6452 1 2025-11-29 07:49:32.995 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:49:32.955 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:49:24.461 00:00:10.370 TCP 23.104.0.1:34746 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:49:40.732 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:53854 10 6452 1 2025-11-29 07:50:24.866 00:00:10.369 TCP 23.104.0.1:33862 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:50:40.969 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:57860 10 6452 1 2025-11-29 07:51:25.275 00:00:10.372 TCP 23.104.0.1:35646 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:51:41.209 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54306 10 6452 1 2025-11-29 07:52:25.709 00:00:10.361 TCP 23.104.0.1:36774 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:52:41.419 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51194 10 6452 1 2025-11-29 07:53:26.111 00:00:10.327 TCP 23.104.0.1:49984 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:53:41.631 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47836 10 6452 1 2025-11-29 07:49:09.909 00:05:55.363 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-29 07:49:09.906 00:05:55.367 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-29 07:54:33.063 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-29 07:54:26.478 00:00:10.370 TCP 23.104.0.1:45490 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:54:32.993 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-29 07:54:41.850 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49778 10 6452 1 2025-11-29 07:55:26.889 00:00:10.934 TCP 23.104.0.1:47022 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:55:42.080 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:45374 10 6452 1 2025-11-29 07:56:27.870 00:00:10.400 TCP 23.104.0.1:53316 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:56:42.291 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34754 10 6452 1 2025-11-29 07:57:28.312 00:00:10.364 TCP 23.104.0.1:54130 -> 1.101.0.1:3000 11 1507 1 2025-11-29 07:57:42.500 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38912 10 6452 1 2025-11-29 07:58:28.713 00:00:10.327 TCP 23.104.0.1:59138 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 504922, total packets: 1580, avg bps: 1060, avg pps: 0, avg bpp: 319 Time window: 2025-11-29 06:55:09 - 2025-11-29 07:58:39 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0044s User: 0.0018s Wall: 0.0027s flows/second: 61211.5 Runtime: 0.0027s