Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-23 03:58:57.174 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35540 10 6438 1 2025-07-23 03:59:40.173 00:00:10.325 TCP 23.104.0.1:39600 -> 1.101.0.1:3000 11 1507 1 2025-07-23 03:59:57.386 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53386 10 6438 1 2025-07-23 04:00:40.538 00:00:10.364 TCP 23.104.0.1:60122 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:00:57.602 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46688 10 6438 1 2025-07-23 04:01:40.942 00:00:10.374 TCP 23.104.0.1:39658 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:01:57.820 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43722 10 6438 1 2025-07-23 04:02:13.199 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:02:12.996 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:02:41.359 00:00:10.366 TCP 23.104.0.1:60026 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:02:58.071 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41536 10 6438 1 2025-07-23 04:03:41.764 00:00:10.367 TCP 23.104.0.1:58826 -> 1.101.0.1:3000 11 1507 1 2025-07-23 03:58:59.705 00:06:00.193 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-23 03:58:59.707 00:06:00.188 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-23 04:03:58.286 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59276 10 6438 1 2025-07-23 04:04:42.179 00:00:10.367 TCP 23.104.0.1:59340 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:04:58.503 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59370 10 6438 1 2025-07-23 04:05:42.581 00:00:10.367 TCP 23.104.0.1:41528 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:05:58.714 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49216 10 6438 1 2025-07-23 04:06:42.986 00:00:10.328 TCP 23.104.0.1:46102 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:06:58.936 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:50354 10 6438 1 2025-07-23 04:07:13.363 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:07:13.278 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:07:43.348 00:00:10.366 TCP 23.104.0.1:45926 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:07:59.186 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:44142 10 6438 1 2025-07-23 04:08:43.753 00:00:10.382 TCP 23.104.0.1:46268 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:08:59.358 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35062 10 6438 1 2025-07-23 04:09:44.172 00:00:10.365 TCP 23.104.0.1:45164 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:09:59.569 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44378 10 6438 1 2025-07-23 04:10:44.575 00:00:10.367 TCP 23.104.0.1:52786 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:05:59.712 00:06:00.184 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-23 04:05:59.710 00:06:00.190 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-23 04:10:59.786 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:58872 10 6438 1 2025-07-23 04:11:44.982 00:00:10.368 TCP 23.104.0.1:55006 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:11:59.953 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:48682 10 6438 1 2025-07-23 04:12:13.412 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:12:13.525 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:12:45.394 00:00:10.325 TCP 23.104.0.1:46924 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:13:00.189 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41926 10 6438 1 2025-07-23 04:13:45.757 00:00:10.388 TCP 23.104.0.1:33520 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:14:00.404 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35314 10 6438 1 2025-07-23 04:14:46.181 00:00:10.364 TCP 23.104.0.1:36888 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:15:00.612 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:53998 10 6438 1 2025-07-23 04:15:46.582 00:00:10.370 TCP 23.104.0.1:56010 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:16:00.786 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:53072 10 6438 1 2025-07-23 04:16:46.988 00:00:10.370 TCP 23.104.0.1:48862 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:17:00.960 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:39470 12 6542 1 2025-07-23 04:17:13.548 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:17:13.323 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:17:47.397 00:00:10.323 TCP 23.104.0.1:52046 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:12:59.709 00:06:00.189 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-23 04:12:59.712 00:06:00.184 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-23 04:18:01.190 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:52714 10 6438 1 2025-07-23 04:18:47.759 00:00:10.372 TCP 23.104.0.1:51222 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:19:01.366 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56780 10 6438 1 2025-07-23 04:19:48.172 00:00:10.373 TCP 23.104.0.1:33474 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:20:01.578 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:46948 10 6438 1 2025-07-23 04:20:48.587 00:00:10.361 TCP 23.104.0.1:39592 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:21:01.788 00:00:10.126 TCP 1.101.0.1:3000 -> 22.102.0.1:55374 10 6438 1 2025-07-23 04:21:48.986 00:00:10.331 TCP 23.104.0.1:51092 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:22:13.652 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:22:01.953 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35240 10 6438 1 2025-07-23 04:22:13.665 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:22:49.354 00:00:10.324 TCP 23.104.0.1:54078 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:23:02.184 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42702 10 6438 1 2025-07-23 04:23:49.716 00:00:10.369 TCP 23.104.0.1:45410 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:24:02.394 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56692 10 6438 1 2025-07-23 04:19:59.714 00:06:00.188 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-23 04:19:59.711 00:06:00.194 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-23 04:24:50.122 00:00:10.364 TCP 23.104.0.1:60566 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:25:02.605 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56584 10 6438 1 2025-07-23 04:25:50.532 00:00:10.362 TCP 23.104.0.1:49004 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:26:02.815 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43678 10 6438 1 2025-07-23 04:26:50.934 00:00:10.341 TCP 23.104.0.1:46856 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:27:13.615 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:27:03.042 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50534 10 6438 1 2025-07-23 04:27:13.776 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:27:51.311 00:00:10.373 TCP 23.104.0.1:44002 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:28:03.250 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39834 10 6438 1 2025-07-23 04:28:51.722 00:00:10.377 TCP 23.104.0.1:42258 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:29:03.469 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36110 10 6438 1 2025-07-23 04:29:52.138 00:00:10.365 TCP 23.104.0.1:58164 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:30:03.685 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54276 10 6438 1 2025-07-23 04:30:52.545 00:00:10.369 TCP 23.104.0.1:60928 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:31:03.915 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34280 10 6438 1 2025-07-23 04:26:59.716 00:06:00.191 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-23 04:26:59.718 00:06:00.186 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-23 04:31:52.947 00:00:10.366 TCP 23.104.0.1:42004 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:32:13.818 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:32:13.831 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:32:04.132 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46500 10 6438 1 2025-07-23 04:32:53.350 00:00:10.367 TCP 23.104.0.1:57886 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:33:04.345 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58498 10 6438 1 2025-07-23 04:33:53.750 00:00:10.384 TCP 23.104.0.1:58256 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:34:04.561 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44218 10 6438 1 2025-07-23 04:34:54.171 00:00:10.373 TCP 23.104.0.1:44072 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:35:04.774 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48176 10 6438 1 2025-07-23 04:35:54.580 00:00:10.370 TCP 23.104.0.1:40222 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:36:04.988 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:36234 10 6438 1 2025-07-23 04:36:54.988 00:00:10.359 TCP 23.104.0.1:53706 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:37:13.956 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:37:05.222 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:53548 10 6438 1 2025-07-23 04:37:14.189 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:37:55.391 00:00:10.374 TCP 23.104.0.1:46046 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:38:05.398 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33542 10 6438 1 2025-07-23 04:33:59.717 00:06:00.191 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-23 04:33:59.720 00:06:00.186 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-23 04:38:55.801 00:00:10.365 TCP 23.104.0.1:49348 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:39:05.614 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:38956 10 6438 1 2025-07-23 04:39:56.210 00:00:10.361 TCP 23.104.0.1:33368 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:40:05.782 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53906 10 6438 1 2025-07-23 04:40:56.610 00:00:10.358 TCP 23.104.0.1:39802 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:41:05.994 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:58760 10 6438 1 2025-07-23 04:41:57.010 00:00:10.367 TCP 23.104.0.1:60738 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:42:13.817 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:42:06.224 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42314 10 6438 1 2025-07-23 04:42:13.942 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:42:57.415 00:00:10.362 TCP 23.104.0.1:51288 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:43:06.438 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:37990 10 6438 1 2025-07-23 04:43:57.814 00:00:10.327 TCP 23.104.0.1:53658 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:44:06.610 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:48756 10 6438 1 2025-07-23 04:44:58.178 00:00:10.365 TCP 23.104.0.1:58016 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:45:06.791 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59332 10 6438 1 2025-07-23 04:40:59.720 00:06:00.187 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-23 04:40:59.718 00:06:00.191 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-23 04:45:58.579 00:00:10.365 TCP 23.104.0.1:48988 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:46:07.006 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59172 10 6438 1 2025-07-23 04:46:58.985 00:00:10.365 TCP 23.104.0.1:36818 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:47:14.017 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:47:13.832 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:47:07.220 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33388 10 6438 1 2025-07-23 04:47:59.388 00:00:10.366 TCP 23.104.0.1:60492 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:48:07.435 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44070 10 6438 1 2025-07-23 04:48:59.791 00:00:10.341 TCP 23.104.0.1:49226 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:49:07.650 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41724 10 6438 1 2025-07-23 04:50:00.176 00:00:10.368 TCP 23.104.0.1:33580 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:50:07.865 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:57144 10 6438 1 2025-07-23 04:51:00.583 00:00:10.377 TCP 23.104.0.1:47356 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:51:08.087 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51658 10 6438 1 2025-07-23 04:52:14.358 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:52:00.999 00:00:10.368 TCP 23.104.0.1:41462 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:52:14.244 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:52:08.298 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35372 10 6438 1 2025-07-23 04:47:59.718 00:06:00.193 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-23 04:47:59.722 00:06:00.188 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-23 04:53:01.407 00:00:10.361 TCP 23.104.0.1:35752 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:53:08.510 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:54830 10 6438 1 2025-07-23 04:54:01.810 00:00:10.378 TCP 23.104.0.1:43686 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:54:08.689 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:57452 10 6438 1 2025-07-23 04:55:02.223 00:00:10.365 TCP 23.104.0.1:46022 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:55:08.863 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35154 10 6438 1 2025-07-23 04:56:02.626 00:00:10.367 TCP 23.104.0.1:35290 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:56:09.087 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44458 10 6438 1 2025-07-23 04:57:14.319 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-23 04:57:03.032 00:00:10.328 TCP 23.104.0.1:60242 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:57:14.323 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-23 04:57:09.310 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37070 10 6438 1 2025-07-23 04:58:03.396 00:00:10.390 TCP 23.104.0.1:56394 -> 1.101.0.1:3000 11 1507 1 2025-07-23 04:58:09.524 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45576 10 6438 1 Summary: total flows: 159, total bytes: 495121, total packets: 1547, avg bps: 1111, avg pps: 0, avg bpp: 320 Time window: 2025-07-23 03:58:57 - 2025-07-23 04:58:19 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0011s User: 0.0033s Wall: 0.0027s flows/second: 59640.0 Runtime: 0.0027s