Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 11:58:50.996 00:00:10.254 TCP 1.101.0.1:3000 -> 22.102.0.1:41654 14 10471 1 2025-08-01 11:59:40.404 00:00:10.373 TCP 23.104.0.1:48054 -> 1.101.0.1:3000 11 1507 1 2025-08-01 11:59:51.286 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:47112 10 6452 1 2025-08-01 12:00:40.814 00:00:10.367 TCP 23.104.0.1:44082 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:00:51.496 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32996 10 6452 1 2025-08-01 12:01:42.955 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:01:42.857 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:01:41.221 00:00:10.377 TCP 23.104.0.1:44684 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:01:51.713 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:56320 10 6452 1 2025-08-01 11:57:04.552 00:06:00.022 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 11:57:04.569 00:06:00.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 12:02:41.636 00:00:10.367 TCP 23.104.0.1:50250 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:02:51.935 00:00:10.224 TCP 1.101.0.1:3000 -> 22.102.0.1:51918 10 6452 1 2025-08-01 12:03:42.044 00:00:10.367 TCP 23.104.0.1:54710 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:03:52.193 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38912 10 6452 1 2025-08-01 12:04:42.449 00:00:10.368 TCP 23.104.0.1:46700 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:04:52.402 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59426 10 6452 1 2025-08-01 12:05:42.854 00:00:10.338 TCP 23.104.0.1:42806 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:05:52.610 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37364 10 6452 1 2025-08-01 12:06:42.740 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:06:42.642 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:06:43.229 00:00:10.321 TCP 23.104.0.1:51732 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:06:52.824 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36976 10 6452 1 2025-08-01 12:07:43.590 00:00:10.372 TCP 23.104.0.1:45818 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:07:53.057 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41422 10 6452 1 2025-08-01 12:08:44.000 00:00:10.368 TCP 23.104.0.1:60934 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:04:04.572 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 12:08:53.267 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52350 10 6452 1 2025-08-01 12:04:04.553 00:06:00.024 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 12:09:44.403 00:00:10.362 TCP 23.104.0.1:57962 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:09:53.490 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:59530 10 6452 1 2025-08-01 12:10:44.803 00:00:10.338 TCP 23.104.0.1:51842 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:10:53.696 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34818 10 6452 1 2025-08-01 12:11:42.914 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:11:42.727 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:11:45.181 00:00:10.324 TCP 23.104.0.1:54628 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:11:53.911 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53186 10 6452 1 2025-08-01 12:12:45.547 00:00:10.315 TCP 23.104.0.1:42276 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:12:54.123 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:37048 10 6452 1 2025-08-01 12:13:45.901 00:00:10.366 TCP 23.104.0.1:60798 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:13:54.343 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37920 10 6452 1 2025-08-01 12:14:46.304 00:00:10.361 TCP 23.104.0.1:38956 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:14:54.564 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60080 10 6452 1 2025-08-01 12:15:46.708 00:00:10.364 TCP 23.104.0.1:49032 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:11:04.554 00:06:00.024 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 12:15:54.778 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36856 10 6452 1 2025-08-01 12:11:04.575 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 12:16:43.593 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:16:43.452 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:16:47.112 00:00:10.365 TCP 23.104.0.1:45600 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:16:54.991 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:36126 10 6452 1 2025-08-01 12:17:47.518 00:00:10.361 TCP 23.104.0.1:46524 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:17:55.167 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52856 10 6452 1 2025-08-01 12:18:47.918 00:00:10.373 TCP 23.104.0.1:40550 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:18:55.384 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:45878 10 6452 1 2025-08-01 12:19:48.331 00:00:10.362 TCP 23.104.0.1:56268 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:19:55.555 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33700 10 6452 1 2025-08-01 12:20:48.732 00:00:10.364 TCP 23.104.0.1:53426 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:20:55.769 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:38826 10 6452 1 2025-08-01 12:21:43.191 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:21:43.206 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:21:49.138 00:00:10.324 TCP 23.104.0.1:33688 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:21:55.950 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:51042 10 6452 1 2025-08-01 12:22:49.501 00:00:10.333 TCP 23.104.0.1:53240 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:22:56.182 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:60576 10 6452 1 2025-08-01 12:18:04.556 00:06:00.024 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 12:18:04.577 00:06:00.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 12:23:49.897 00:00:10.330 TCP 23.104.0.1:50652 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:23:56.361 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37842 10 6452 1 2025-08-01 12:24:50.266 00:00:10.364 TCP 23.104.0.1:34912 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:24:56.574 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50648 10 6452 1 2025-08-01 12:25:50.671 00:00:10.369 TCP 23.104.0.1:50584 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:25:56.788 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45900 10 6452 1 2025-08-01 12:26:43.298 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:26:43.269 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:26:51.106 00:00:10.371 TCP 23.104.0.1:54160 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:26:56.997 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40794 10 6452 1 2025-08-01 12:27:51.512 00:00:10.373 TCP 23.104.0.1:57426 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:27:57.220 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:55012 10 6452 1 2025-08-01 12:28:51.920 00:00:10.362 TCP 23.104.0.1:42344 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:28:57.405 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:35438 10 6452 1 2025-08-01 12:29:52.322 00:00:10.322 TCP 23.104.0.1:56956 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:25:04.577 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 12:25:04.556 00:06:00.025 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 12:29:57.650 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39830 10 6452 1 2025-08-01 12:30:52.685 00:00:10.373 TCP 23.104.0.1:59064 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:30:57.820 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60928 10 6452 1 2025-08-01 12:31:43.479 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:31:43.427 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:31:53.104 00:00:10.374 TCP 23.104.0.1:35816 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:31:58.062 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59636 10 6452 1 2025-08-01 12:32:53.514 00:00:10.367 TCP 23.104.0.1:49336 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:32:58.278 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51904 10 6452 1 2025-08-01 12:33:53.918 00:00:10.376 TCP 23.104.0.1:59372 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:33:58.496 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53982 10 6452 1 2025-08-01 12:34:54.333 00:00:10.321 TCP 23.104.0.1:33888 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:34:58.715 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:34576 10 6452 1 2025-08-01 12:35:54.692 00:00:10.364 TCP 23.104.0.1:50516 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:35:58.887 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:50076 10 6452 1 2025-08-01 12:36:43.486 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:36:43.367 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:36:55.108 00:00:10.363 TCP 23.104.0.1:40206 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:32:04.580 00:06:00.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 12:32:04.558 00:06:00.027 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 12:36:59.081 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49272 10 6452 1 2025-08-01 12:37:55.512 00:00:10.366 TCP 23.104.0.1:36708 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:37:59.299 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:48620 10 6452 1 2025-08-01 12:38:55.924 00:00:10.458 TCP 23.104.0.1:58426 -> 1.101.0.1:3000 15 1926 1 2025-08-01 12:38:59.526 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:55376 12 10367 1 2025-08-01 12:39:56.417 00:00:10.365 TCP 23.104.0.1:42210 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:39:59.767 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57062 10 6452 1 2025-08-01 12:40:56.822 00:00:10.332 TCP 23.104.0.1:56074 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:40:59.979 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:60722 10 6452 1 2025-08-01 12:41:43.938 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:41:43.433 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:41:57.192 00:00:10.367 TCP 23.104.0.1:38722 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:42:00.214 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47020 10 6452 1 2025-08-01 12:42:57.601 00:00:10.367 TCP 23.104.0.1:42800 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:43:00.431 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49604 10 6452 1 2025-08-01 12:39:04.580 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 12:39:04.561 00:06:00.024 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 12:44:00.645 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47738 10 6452 1 2025-08-01 12:43:58.008 00:00:10.363 TCP 23.104.0.1:47602 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:45:00.855 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:55794 10 6452 1 2025-08-01 12:44:58.417 00:00:10.370 TCP 23.104.0.1:51560 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:45:58.827 00:00:10.352 TCP 23.104.0.1:55438 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:46:01.081 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56858 10 6452 1 2025-08-01 12:46:43.852 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:46:43.819 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:47:01.294 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33300 10 6452 1 2025-08-01 12:46:59.217 00:00:10.373 TCP 23.104.0.1:40700 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:47:59.628 00:00:10.364 TCP 23.104.0.1:42774 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:48:01.507 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48324 10 6452 1 2025-08-01 12:49:01.724 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:57800 10 6452 1 2025-08-01 12:49:00.034 00:00:10.324 TCP 23.104.0.1:55772 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:50:00.397 00:00:10.326 TCP 23.104.0.1:53334 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:50:01.898 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35924 10 6452 1 2025-08-01 12:46:04.564 00:06:00.021 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 12:46:04.583 00:06:00.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 12:51:00.758 00:00:10.371 TCP 23.104.0.1:45808 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:51:02.116 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35900 10 6452 1 2025-08-01 12:51:43.950 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:51:43.745 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:52:01.166 00:00:10.364 TCP 23.104.0.1:47376 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:52:02.330 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:51042 10 6452 1 2025-08-01 12:53:01.569 00:00:10.323 TCP 23.104.0.1:39286 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:53:02.535 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48482 12 6556 1 2025-08-01 12:54:01.930 00:00:10.345 TCP 23.104.0.1:33438 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:54:02.746 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:49408 10 6452 1 2025-08-01 12:55:02.337 00:00:10.360 TCP 23.104.0.1:48432 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:55:02.974 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:36616 10 6452 1 2025-08-01 12:56:02.742 00:00:10.365 TCP 23.104.0.1:40062 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:56:03.213 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43064 10 6452 1 2025-08-01 12:56:44.019 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 12:56:43.932 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 12:57:03.435 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57214 10 6452 1 2025-08-01 12:57:03.167 00:00:10.361 TCP 23.104.0.1:56290 -> 1.101.0.1:3000 11 1507 1 2025-08-01 12:53:04.569 00:06:00.018 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 12:53:04.583 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 12:58:03.658 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:38448 10 6452 1 2025-08-01 12:58:03.573 00:00:10.365 TCP 23.104.0.1:42496 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 502760, total packets: 1522, avg bps: 1081, avg pps: 0, avg bpp: 330 Time window: 2025-08-01 11:57:04 - 2025-08-01 12:59:04 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0038s User: 0.0009s Wall: 0.0026s flows/second: 61406.1 Runtime: 0.0026s