Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-25 08:54:00.783 00:06:00.162 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 08:59:02.509 00:00:10.357 TCP 23.104.0.1:39192 -> 1.101.0.1:3000 11 1507 1 2025-07-25 08:59:09.997 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43344 10 6438 1 2025-07-25 09:00:02.905 00:00:10.371 TCP 23.104.0.1:34102 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:00:10.219 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:33104 10 6438 1 2025-07-25 09:01:03.310 00:00:10.320 TCP 23.104.0.1:50264 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:01:10.452 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51624 10 6438 1 2025-07-25 09:02:03.674 00:00:10.371 TCP 23.104.0.1:33274 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:02:10.667 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55912 10 6438 1 2025-07-25 09:03:04.100 00:00:10.360 TCP 23.104.0.1:38516 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:03:10.884 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:54196 10 6438 1 2025-07-25 09:03:17.040 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:03:17.018 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 08:59:00.785 00:06:00.160 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 09:04:04.508 00:00:10.364 TCP 23.104.0.1:40322 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:04:11.109 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59386 10 6438 1 2025-07-25 09:05:04.912 00:00:10.360 TCP 23.104.0.1:51462 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:05:11.326 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53556 10 6438 1 2025-07-25 09:01:00.784 00:06:00.165 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 09:06:05.313 00:00:10.370 TCP 23.104.0.1:50830 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:06:11.541 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51988 10 6438 1 2025-07-25 09:07:05.723 00:00:10.365 TCP 23.104.0.1:36138 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:07:11.763 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:32774 10 6438 1 2025-07-25 09:08:06.124 00:00:10.366 TCP 23.104.0.1:52750 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:08:17.040 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:08:17.202 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:08:11.992 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47636 10 6438 1 2025-07-25 09:09:06.533 00:00:10.370 TCP 23.104.0.1:34620 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:09:12.215 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57106 10 6438 1 2025-07-25 09:10:06.936 00:00:10.368 TCP 23.104.0.1:45186 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:10:12.428 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54300 10 6438 1 2025-07-25 09:06:00.789 00:06:00.158 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 09:11:07.343 00:00:10.328 TCP 23.104.0.1:39492 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:11:12.643 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40748 10 6438 1 2025-07-25 09:12:07.703 00:00:10.370 TCP 23.104.0.1:57158 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:12:12.854 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40484 10 6438 1 2025-07-25 09:08:00.786 00:06:00.164 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 09:13:17.156 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:13:17.294 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:13:08.110 00:00:10.367 TCP 23.104.0.1:56784 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:13:13.083 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44288 10 6438 1 2025-07-25 09:14:08.516 00:00:10.366 TCP 23.104.0.1:55892 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:14:13.296 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:59364 10 6438 1 2025-07-25 09:15:08.919 00:00:10.377 TCP 23.104.0.1:50372 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:15:13.472 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51678 10 6438 1 2025-07-25 09:16:09.335 00:00:10.362 TCP 23.104.0.1:38320 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:16:13.699 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36966 10 6438 1 2025-07-25 09:17:09.737 00:00:10.321 TCP 23.104.0.1:47980 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:17:13.919 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33854 11 6761 1 2025-07-25 09:13:00.788 00:06:00.161 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 09:18:17.485 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:18:17.271 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:18:10.103 00:00:10.372 TCP 23.104.0.1:40728 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:18:14.126 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:40120 10 6438 1 2025-07-25 09:19:10.518 00:00:10.332 TCP 23.104.0.1:44372 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:19:14.299 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57622 10 6438 1 2025-07-25 09:15:00.788 00:06:00.164 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 09:20:10.890 00:00:10.379 TCP 23.104.0.1:40968 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:20:14.518 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42478 10 6438 1 2025-07-25 09:21:11.308 00:00:10.373 TCP 23.104.0.1:43170 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:21:14.734 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48242 10 6438 1 2025-07-25 09:22:14.947 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:34616 10 6438 1 2025-07-25 09:22:11.719 00:00:10.384 TCP 23.104.0.1:38490 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:23:17.595 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:23:17.665 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:23:15.177 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:51346 10 6438 1 2025-07-25 09:23:12.137 00:00:10.374 TCP 23.104.0.1:48352 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:24:12.550 00:00:10.367 TCP 23.104.0.1:56266 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:24:15.411 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49882 10 6438 1 2025-07-25 09:20:00.793 00:06:00.159 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 09:25:15.630 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:53296 10 6438 1 2025-07-25 09:25:12.956 00:00:10.364 TCP 23.104.0.1:43560 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:26:15.809 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:47084 10 6438 1 2025-07-25 09:26:13.357 00:00:10.364 TCP 23.104.0.1:55226 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:22:00.790 00:06:00.164 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 09:27:13.756 00:00:10.339 TCP 23.104.0.1:49356 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:27:16.003 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:54662 10 6438 1 2025-07-25 09:28:17.666 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:28:16.174 00:00:10.209 TCP 1.101.0.1:3000 -> 22.102.0.1:46620 12 10352 1 2025-07-25 09:28:17.542 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:28:14.129 00:00:10.441 TCP 23.104.0.1:44034 -> 1.101.0.1:3000 15 1925 1 2025-07-25 09:29:16.419 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48698 10 6438 1 2025-07-25 09:29:14.602 00:00:10.366 TCP 23.104.0.1:33238 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:30:15.005 00:00:10.365 TCP 23.104.0.1:60112 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:30:16.639 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38786 10 6438 1 2025-07-25 09:31:15.411 00:00:10.363 TCP 23.104.0.1:47648 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:31:16.848 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:41110 10 6438 1 2025-07-25 09:27:00.796 00:06:00.159 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 09:32:15.813 00:00:10.363 TCP 23.104.0.1:34456 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:32:17.083 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:40704 10 6438 1 2025-07-25 09:33:18.237 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:33:18.473 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:33:16.222 00:00:10.362 TCP 23.104.0.1:58520 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:33:17.309 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36172 10 6438 1 2025-07-25 09:29:00.793 00:06:00.164 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 09:34:17.528 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46350 10 6438 1 2025-07-25 09:34:16.624 00:00:10.429 TCP 23.104.0.1:47272 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:35:17.742 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:41934 10 6438 1 2025-07-25 09:35:17.109 00:00:10.325 TCP 23.104.0.1:47718 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:36:17.916 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56586 10 6438 1 2025-07-25 09:36:17.469 00:00:10.369 TCP 23.104.0.1:53948 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:37:18.125 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37878 10 6438 1 2025-07-25 09:37:17.880 00:00:10.370 TCP 23.104.0.1:40546 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:38:17.788 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:38:17.697 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:38:18.287 00:00:10.366 TCP 23.104.0.1:56972 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:38:18.342 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47112 10 6438 1 2025-07-25 09:34:00.796 00:06:00.159 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 09:39:18.563 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58286 10 6438 1 2025-07-25 09:39:18.697 00:00:10.367 TCP 23.104.0.1:52126 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:40:18.773 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44138 10 6438 1 2025-07-25 09:40:19.103 00:00:10.364 TCP 23.104.0.1:42906 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:36:00.795 00:06:00.166 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 09:41:18.990 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:48950 10 6438 1 2025-07-25 09:41:19.504 00:00:10.370 TCP 23.104.0.1:44710 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:42:19.910 00:00:10.374 TCP 23.104.0.1:58946 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:42:19.171 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43570 10 6438 1 2025-07-25 09:43:17.818 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:43:17.838 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:43:20.323 00:00:10.365 TCP 23.104.0.1:33692 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:43:19.383 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46488 10 6438 1 2025-07-25 09:44:19.601 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50924 10 6438 1 2025-07-25 09:44:20.728 00:00:10.369 TCP 23.104.0.1:59834 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:45:21.137 00:00:10.363 TCP 23.104.0.1:54966 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:45:19.817 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56794 10 6438 1 2025-07-25 09:41:00.798 00:06:00.159 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 09:46:20.040 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47988 10 6438 1 2025-07-25 09:46:21.539 00:00:10.366 TCP 23.104.0.1:57194 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:47:20.251 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51078 10 6438 1 2025-07-25 09:47:21.941 00:00:10.375 TCP 23.104.0.1:47672 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:43:00.795 00:06:00.165 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 09:48:17.996 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:48:17.718 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:48:20.470 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36344 10 6438 1 2025-07-25 09:48:22.352 00:00:10.365 TCP 23.104.0.1:35592 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:49:20.686 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:37888 10 6438 1 2025-07-25 09:49:22.753 00:00:10.380 TCP 23.104.0.1:45350 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:50:20.910 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56962 10 6438 1 2025-07-25 09:50:23.174 00:00:10.367 TCP 23.104.0.1:51770 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:51:21.134 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56984 10 6438 1 2025-07-25 09:51:23.605 00:00:10.374 TCP 23.104.0.1:47900 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:52:21.350 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54782 10 6438 1 2025-07-25 09:52:24.018 00:00:10.364 TCP 23.104.0.1:44256 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:48:00.800 00:06:00.160 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-07-25 09:53:18.183 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:53:17.920 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:53:21.562 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39490 10 6438 1 2025-07-25 09:53:24.422 00:00:10.363 TCP 23.104.0.1:37904 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:54:21.774 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:36358 10 6438 1 2025-07-25 09:54:24.824 00:00:10.359 TCP 23.104.0.1:42962 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:50:00.798 00:06:00.165 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-07-25 09:55:21.947 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:59304 10 6438 1 2025-07-25 09:55:25.227 00:00:10.378 TCP 23.104.0.1:34010 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:56:22.132 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46988 10 6438 1 2025-07-25 09:56:25.640 00:00:10.369 TCP 23.104.0.1:38714 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:57:22.302 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33822 10 6438 1 2025-07-25 09:57:26.050 00:00:10.360 TCP 23.104.0.1:37806 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:58:18.069 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-07-25 09:58:17.976 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-07-25 09:58:26.448 00:00:10.368 TCP 23.104.0.1:52542 -> 1.101.0.1:3000 11 1507 1 2025-07-25 09:58:22.512 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51760 10 6438 1 Summary: total flows: 161, total bytes: 502040, total packets: 1577, avg bps: 1036, avg pps: 0, avg bpp: 318 Time window: 2025-07-25 08:54:00 - 2025-07-25 09:58:36 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0031s User: 0.0015s Wall: 0.0027s flows/second: 59059.2 Runtime: 0.0027s