Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 07:58:53.858 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49852 10 6452 1 2025-08-01 07:59:03.689 00:00:10.372 TCP 23.104.0.1:40126 -> 1.101.0.1:3000 11 1507 1 2025-08-01 07:59:54.081 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59896 10 6452 1 2025-08-01 08:00:04.105 00:00:10.366 TCP 23.104.0.1:49006 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:00:54.300 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48360 10 6452 1 2025-08-01 08:01:04.510 00:00:10.362 TCP 23.104.0.1:49674 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:01:37.944 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:01:38.347 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:01:54.520 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:33590 10 6452 1 2025-08-01 08:02:04.915 00:00:10.380 TCP 23.104.0.1:44486 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:02:54.689 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59788 10 6452 1 2025-08-01 08:03:05.336 00:00:11.063 TCP 23.104.0.1:41716 -> 1.101.0.1:3000 11 1507 1 2025-08-01 07:59:04.460 00:06:00.006 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 07:59:04.465 00:06:00.000 TCP 179.1.22.1:179 -> 179.1.22.22:39396 9 601 1 2025-08-01 08:03:54.905 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:48036 10 6452 1 2025-08-01 08:04:06.436 00:00:10.365 TCP 23.104.0.1:33532 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:04:55.103 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:53058 10 6452 1 2025-08-01 08:05:06.844 00:00:10.377 TCP 23.104.0.1:41434 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:05:55.345 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55646 10 6452 1 2025-08-01 08:06:07.257 00:00:10.361 TCP 23.104.0.1:56614 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:06:38.045 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:06:38.000 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:06:55.561 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56236 10 6452 1 2025-08-01 08:07:07.664 00:00:10.365 TCP 23.104.0.1:54386 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:07:55.778 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37478 10 6452 1 2025-08-01 08:08:08.093 00:00:10.362 TCP 23.104.0.1:57766 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:08:55.996 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:59602 10 6452 1 2025-08-01 08:09:08.495 00:00:10.369 TCP 23.104.0.1:59198 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:09:56.241 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:42484 10 6452 1 2025-08-01 08:10:08.905 00:00:10.321 TCP 23.104.0.1:34586 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:06:04.463 00:06:00.005 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 08:06:04.466 00:06:00.001 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 08:10:56.478 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40542 10 6452 1 2025-08-01 08:11:09.267 00:00:10.366 TCP 23.104.0.1:34668 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:11:38.193 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:11:38.231 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:11:56.696 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:44592 10 6452 1 2025-08-01 08:12:09.671 00:00:10.365 TCP 23.104.0.1:52278 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:12:56.870 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34812 10 6452 1 2025-08-01 08:13:10.098 00:00:10.370 TCP 23.104.0.1:58996 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:13:57.087 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35774 10 6452 1 2025-08-01 08:14:10.504 00:00:10.370 TCP 23.104.0.1:52766 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:14:57.301 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:43522 10 6452 1 2025-08-01 08:15:10.914 00:00:10.360 TCP 23.104.0.1:59214 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:15:57.517 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55542 10 6452 1 2025-08-01 08:16:11.310 00:00:10.365 TCP 23.104.0.1:42806 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:16:38.212 00:00:00.031 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:16:38.463 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:16:57.735 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:51294 10 6452 1 2025-08-01 08:17:11.713 00:00:10.321 TCP 23.104.0.1:60616 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:13:04.465 00:06:00.004 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 757 1 2025-08-01 08:13:04.463 00:06:00.008 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 08:17:57.930 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:49832 10 6452 1 2025-08-01 08:18:12.099 00:00:10.362 TCP 23.104.0.1:40114 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:18:58.164 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59252 10 6452 1 2025-08-01 08:19:12.502 00:00:10.375 TCP 23.104.0.1:59062 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:19:58.382 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45068 10 6452 1 2025-08-01 08:20:12.916 00:00:10.443 TCP 23.104.0.1:35538 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:20:58.590 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37200 10 6452 1 2025-08-01 08:21:13.412 00:00:10.321 TCP 23.104.0.1:45600 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:21:38.229 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:21:38.265 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:21:58.810 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59452 10 6452 1 2025-08-01 08:22:13.774 00:00:10.327 TCP 23.104.0.1:37468 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:22:59.024 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38860 10 6452 1 2025-08-01 08:23:14.141 00:00:10.365 TCP 23.104.0.1:38834 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:23:59.237 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33478 10 6452 1 2025-08-01 08:24:14.538 00:00:10.367 TCP 23.104.0.1:43432 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:20:04.465 00:06:00.008 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 08:20:04.471 00:06:00.003 TCP 179.1.22.1:179 -> 179.1.22.22:39396 7 497 1 2025-08-01 08:24:59.451 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:40354 10 6452 1 2025-08-01 08:25:14.948 00:00:10.367 TCP 23.104.0.1:55070 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:25:59.626 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45430 10 6452 1 2025-08-01 08:26:15.354 00:00:10.323 TCP 23.104.0.1:36110 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:26:38.604 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:26:38.626 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:26:59.835 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41534 10 6452 1 2025-08-01 08:27:15.718 00:00:10.377 TCP 23.104.0.1:45324 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:28:00.076 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38514 10 6452 1 2025-08-01 08:28:16.141 00:00:10.340 TCP 23.104.0.1:48290 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:29:00.291 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:35314 10 6452 1 2025-08-01 08:29:16.525 00:00:10.369 TCP 23.104.0.1:51134 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:30:00.470 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38698 10 6452 1 2025-08-01 08:30:16.930 00:00:10.345 TCP 23.104.0.1:49924 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:31:00.695 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:38386 10 6452 1 2025-08-01 08:31:17.312 00:00:10.371 TCP 23.104.0.1:36388 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:31:38.557 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:31:38.711 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:27:04.474 00:06:00.003 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 08:27:04.473 00:06:00.004 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 08:32:00.870 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35652 10 6452 1 2025-08-01 08:32:17.717 00:00:10.327 TCP 23.104.0.1:37390 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:33:01.089 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:45064 10 6452 1 2025-08-01 08:33:18.103 00:00:10.435 TCP 23.104.0.1:46962 -> 1.101.0.1:3000 15 1926 1 2025-08-01 08:34:01.259 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:43686 12 10367 1 2025-08-01 08:34:18.580 00:00:10.366 TCP 23.104.0.1:54216 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:35:01.501 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40030 10 6452 1 2025-08-01 08:35:18.983 00:00:10.367 TCP 23.104.0.1:49062 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:36:01.714 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:60894 10 6452 1 2025-08-01 08:36:19.392 00:00:10.361 TCP 23.104.0.1:59808 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:36:38.408 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:36:38.635 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:37:01.897 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42948 10 6452 1 2025-08-01 08:37:19.789 00:00:10.397 TCP 23.104.0.1:47416 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:38:02.116 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:48702 10 6452 1 2025-08-01 08:38:20.195 00:00:10.376 TCP 23.104.0.1:37980 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:34:04.474 00:06:00.004 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 08:34:04.474 00:06:00.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 08:39:02.292 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36636 10 6452 1 2025-08-01 08:39:20.597 00:00:10.360 TCP 23.104.0.1:34914 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:40:02.505 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42740 10 6452 1 2025-08-01 08:40:21.007 00:00:10.341 TCP 23.104.0.1:38180 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:41:02.718 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36508 10 6452 1 2025-08-01 08:41:21.397 00:00:10.370 TCP 23.104.0.1:43362 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:41:38.671 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:41:38.620 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:42:02.933 00:00:15.999 TCP 1.101.0.1:3000 -> 22.102.0.1:40994 10 6452 1 2025-08-01 08:42:21.803 00:00:10.362 TCP 23.104.0.1:34704 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:43:08.969 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42854 10 6452 1 2025-08-01 08:43:22.203 00:00:10.365 TCP 23.104.0.1:43366 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:44:09.188 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33882 10 6452 1 2025-08-01 08:44:22.603 00:00:10.327 TCP 23.104.0.1:45780 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:45:09.403 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36192 10 6452 1 2025-08-01 08:45:22.970 00:00:10.363 TCP 23.104.0.1:34554 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:41:04.475 00:06:00.005 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 08:41:04.476 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 08:46:09.614 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45886 10 6452 1 2025-08-01 08:46:23.371 00:00:10.362 TCP 23.104.0.1:50278 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:46:38.854 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:46:38.832 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:47:09.824 00:00:10.316 TCP 1.101.0.1:3000 -> 22.102.0.1:34096 10 6452 1 2025-08-01 08:47:23.773 00:00:10.362 TCP 23.104.0.1:45706 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:48:10.180 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:37948 10 6452 1 2025-08-01 08:48:24.175 00:00:10.369 TCP 23.104.0.1:58094 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:49:10.406 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:44408 10 6452 1 2025-08-01 08:49:24.578 00:00:10.327 TCP 23.104.0.1:45346 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:50:10.632 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60544 10 6452 1 2025-08-01 08:50:24.955 00:00:10.366 TCP 23.104.0.1:37966 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:51:10.851 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58674 10 6452 1 2025-08-01 08:51:25.359 00:00:10.363 TCP 23.104.0.1:48372 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:51:39.191 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:51:39.131 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:52:11.080 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49858 10 6452 1 2025-08-01 08:52:25.764 00:00:10.379 TCP 23.104.0.1:52554 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:48:04.479 00:06:00.006 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 08:48:04.478 00:06:00.006 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 08:53:11.297 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40174 10 6452 1 2025-08-01 08:53:26.183 00:00:10.362 TCP 23.104.0.1:58568 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:54:11.508 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:37482 10 6452 1 2025-08-01 08:54:26.586 00:00:10.369 TCP 23.104.0.1:46234 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:55:11.718 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57420 10 6452 1 2025-08-01 08:55:26.994 00:00:10.325 TCP 23.104.0.1:50794 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:56:11.935 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:48332 10 6452 1 2025-08-01 08:56:38.781 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 08:56:38.950 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 08:56:27.356 00:00:10.367 TCP 23.104.0.1:37724 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:57:12.179 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41376 10 6452 1 2025-08-01 08:57:27.763 00:00:10.370 TCP 23.104.0.1:41558 -> 1.101.0.1:3000 11 1507 1 2025-08-01 08:58:12.399 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50444 10 6452 1 2025-08-01 08:58:28.168 00:00:10.364 TCP 23.104.0.1:58754 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 500970, total packets: 1548, avg bps: 1118, avg pps: 0, avg bpp: 323 Time window: 2025-08-01 07:58:53 - 2025-08-01 08:58:38 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0031s User: 0.0010s Wall: 0.0023s flows/second: 70263.7 Runtime: 0.0023s