Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 09:58:52.279 00:00:10.372 TCP 23.104.0.1:37724 -> 1.101.0.1:3000 11 1507 1 2025-08-01 09:59:25.419 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45874 10 6452 1 2025-08-01 09:59:52.691 00:00:10.363 TCP 23.104.0.1:55692 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:00:25.631 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54026 10 6452 1 2025-08-01 10:00:53.112 00:00:10.367 TCP 23.104.0.1:59140 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:01:25.850 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:38732 10 6452 1 2025-08-01 10:01:40.416 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:01:40.342 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:01:53.525 00:00:10.370 TCP 23.104.0.1:56684 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:02:26.039 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58134 10 6452 1 2025-08-01 09:58:04.507 00:05:59.999 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 10:02:53.934 00:00:10.384 TCP 23.104.0.1:60288 -> 1.101.0.1:3000 11 1507 1 2025-08-01 09:58:04.500 00:06:00.008 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 10:03:26.259 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50132 10 6452 1 2025-08-01 10:03:54.348 00:00:10.363 TCP 23.104.0.1:58706 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:04:26.471 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:55050 10 6452 1 2025-08-01 10:04:54.749 00:00:10.349 TCP 23.104.0.1:33238 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:05:26.678 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:47534 10 6452 1 2025-08-01 10:05:55.137 00:00:10.365 TCP 23.104.0.1:35442 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:06:26.856 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:40220 10 6452 1 2025-08-01 10:06:40.484 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:06:40.560 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:06:55.540 00:00:10.363 TCP 23.104.0.1:50472 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:07:27.080 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52664 10 6452 1 2025-08-01 10:07:55.943 00:00:10.330 TCP 23.104.0.1:33116 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:08:27.290 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:40922 10 6452 1 2025-08-01 10:08:56.310 00:00:10.361 TCP 23.104.0.1:52584 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:09:27.516 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:39572 10 6452 1 2025-08-01 10:05:04.502 00:06:00.007 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 10:05:04.505 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 809 1 2025-08-01 10:09:56.709 00:00:10.362 TCP 23.104.0.1:59394 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:10:27.740 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38206 10 6452 1 2025-08-01 10:10:57.111 00:00:10.363 TCP 23.104.0.1:54742 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:11:40.652 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:11:27.956 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:45060 12 6556 1 2025-08-01 10:11:40.697 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:11:57.509 00:00:10.366 TCP 23.104.0.1:56836 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:12:28.197 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:32946 10 6452 1 2025-08-01 10:12:57.914 00:00:10.364 TCP 23.104.0.1:58294 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:13:28.405 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:42986 12 10367 1 2025-08-01 10:13:58.320 00:00:10.433 TCP 23.104.0.1:35382 -> 1.101.0.1:3000 15 1926 1 2025-08-01 10:14:28.602 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47944 10 6452 1 2025-08-01 10:14:58.795 00:00:10.374 TCP 23.104.0.1:43726 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:15:28.822 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:45284 10 6452 1 2025-08-01 10:15:59.222 00:00:10.372 TCP 23.104.0.1:36094 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:16:29.076 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40278 10 6452 1 2025-08-01 10:16:40.414 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:16:40.667 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:12:04.504 00:06:00.006 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 10:12:04.506 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 10:16:59.636 00:00:10.367 TCP 23.104.0.1:57484 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:17:29.299 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:60810 10 6452 1 2025-08-01 10:18:00.035 00:00:10.370 TCP 23.104.0.1:54284 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:18:29.528 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58512 10 6452 1 2025-08-01 10:19:00.443 00:00:10.326 TCP 23.104.0.1:39430 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:19:29.738 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:53322 10 6452 1 2025-08-01 10:20:00.809 00:00:10.358 TCP 23.104.0.1:58668 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:20:29.947 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:59400 10 6452 1 2025-08-01 10:21:01.208 00:00:10.322 TCP 23.104.0.1:38594 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:21:40.930 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:21:30.177 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50320 10 6452 1 2025-08-01 10:21:40.813 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:22:01.572 00:00:10.366 TCP 23.104.0.1:60412 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:22:30.396 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58310 10 6452 1 2025-08-01 10:23:01.979 00:00:10.363 TCP 23.104.0.1:45978 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:23:30.611 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36742 10 6452 1 2025-08-01 10:19:04.508 00:06:00.006 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 10:19:04.509 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 9 601 1 2025-08-01 10:24:02.380 00:00:10.375 TCP 23.104.0.1:42660 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:24:30.824 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57308 10 6452 1 2025-08-01 10:25:02.787 00:00:10.394 TCP 23.104.0.1:56044 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:25:31.061 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:59480 10 6452 1 2025-08-01 10:26:03.181 00:00:10.367 TCP 23.104.0.1:48528 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:26:31.269 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:56666 10 6452 1 2025-08-01 10:26:40.909 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:26:40.984 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:27:03.586 00:00:10.363 TCP 23.104.0.1:47238 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:27:31.479 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:58300 10 6452 1 2025-08-01 10:28:03.981 00:00:10.369 TCP 23.104.0.1:46024 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:28:31.650 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37496 10 6452 1 2025-08-01 10:29:04.382 00:00:10.331 TCP 23.104.0.1:36832 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:29:31.864 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44490 10 6452 1 2025-08-01 10:30:04.750 00:00:10.392 TCP 23.104.0.1:43894 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:30:32.100 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:54496 10 6452 1 2025-08-01 10:26:04.512 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 10:26:04.508 00:06:00.008 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 10:31:05.175 00:00:10.326 TCP 23.104.0.1:45864 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:31:40.871 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:31:40.896 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:31:32.308 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45164 10 6452 1 2025-08-01 10:32:05.539 00:00:10.361 TCP 23.104.0.1:56182 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:32:32.520 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33956 10 6452 1 2025-08-01 10:33:05.943 00:00:10.374 TCP 23.104.0.1:33196 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:33:32.734 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53414 10 6452 1 2025-08-01 10:34:06.357 00:00:10.364 TCP 23.104.0.1:57132 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:34:32.954 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:34174 10 6452 1 2025-08-01 10:35:06.760 00:00:10.376 TCP 23.104.0.1:41232 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:35:33.179 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39020 10 6452 1 2025-08-01 10:36:07.172 00:00:10.359 TCP 23.104.0.1:52198 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:36:41.031 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:36:41.163 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:36:33.397 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41296 10 6452 1 2025-08-01 10:37:07.573 00:00:10.325 TCP 23.104.0.1:56476 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:37:33.613 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:46992 10 6452 1 2025-08-01 10:33:04.514 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 10:33:04.510 00:06:00.008 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 10:38:07.938 00:00:10.376 TCP 23.104.0.1:34060 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:38:33.788 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51152 10 6452 1 2025-08-01 10:39:08.352 00:00:10.326 TCP 23.104.0.1:33654 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:39:34.004 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40856 10 6452 1 2025-08-01 10:40:08.715 00:00:10.338 TCP 23.104.0.1:59154 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:40:34.225 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35724 10 6452 1 2025-08-01 10:41:09.104 00:00:10.345 TCP 23.104.0.1:35510 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:41:41.263 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:41:41.238 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:41:34.448 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34182 10 6452 1 2025-08-01 10:42:09.491 00:00:10.336 TCP 23.104.0.1:50776 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:42:34.661 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52706 10 6452 1 2025-08-01 10:43:09.881 00:00:10.382 TCP 23.104.0.1:45340 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:43:34.878 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:59690 10 6452 1 2025-08-01 10:44:10.300 00:00:10.321 TCP 23.104.0.1:45440 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:44:35.117 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53024 10 6452 1 2025-08-01 10:40:04.514 00:06:00.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 9 601 1 2025-08-01 10:40:04.512 00:06:00.008 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 10:45:10.661 00:00:10.323 TCP 23.104.0.1:42954 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:45:35.328 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43598 10 6452 1 2025-08-01 10:46:11.031 00:00:10.368 TCP 23.104.0.1:55008 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:46:41.426 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:46:41.406 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:46:35.539 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59432 10 6452 1 2025-08-01 10:47:11.439 00:00:10.366 TCP 23.104.0.1:42370 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:47:35.755 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37680 10 6452 1 2025-08-01 10:48:11.844 00:00:10.387 TCP 23.104.0.1:48310 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:48:35.965 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35618 10 6452 1 2025-08-01 10:49:12.278 00:00:10.372 TCP 23.104.0.1:53810 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:49:36.181 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:43108 10 6452 1 2025-08-01 10:50:12.692 00:00:10.365 TCP 23.104.0.1:36526 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:50:36.360 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:36484 10 6452 1 2025-08-01 10:51:13.100 00:00:10.368 TCP 23.104.0.1:40380 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:51:41.077 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:51:41.422 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:51:36.534 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52788 10 6452 1 2025-08-01 10:47:04.514 00:06:00.009 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 10:47:04.518 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 10:52:13.503 00:00:10.365 TCP 23.104.0.1:35168 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:52:36.754 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50214 10 6452 1 2025-08-01 10:53:13.903 00:00:10.370 TCP 23.104.0.1:43370 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:53:36.967 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:47426 10 6452 1 2025-08-01 10:54:14.315 00:00:10.359 TCP 23.104.0.1:42498 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:54:37.195 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57140 10 6452 1 2025-08-01 10:55:14.708 00:00:10.377 TCP 23.104.0.1:34974 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:55:37.417 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46776 10 6452 1 2025-08-01 10:56:15.116 00:00:10.366 TCP 23.104.0.1:55750 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:56:41.483 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 10:56:41.573 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 10:56:37.629 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40776 10 6452 1 2025-08-01 10:57:15.523 00:00:10.373 TCP 23.104.0.1:43010 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:57:37.844 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:59626 10 6452 1 2025-08-01 10:58:15.930 00:00:10.349 TCP 23.104.0.1:47396 -> 1.101.0.1:3000 11 1507 1 2025-08-01 10:58:38.078 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39942 10 6452 1 Summary: total flows: 160, total bytes: 499774, total packets: 1525, avg bps: 1097, avg pps: 0, avg bpp: 327 Time window: 2025-08-01 09:58:04 - 2025-08-01 10:58:48 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0024s User: 0.0016s Wall: 0.0022s flows/second: 72362.4 Runtime: 0.0022s