Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 12:59:03.979 00:00:10.444 TCP 23.104.0.1:59600 -> 1.101.0.1:3000 15 1926 1 2025-08-01 12:59:03.830 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:51838 12 10365 1 2025-08-01 13:00:04.038 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59788 10 6452 1 2025-08-01 13:00:04.460 00:00:10.363 TCP 23.104.0.1:47240 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:01:04.863 00:00:10.336 TCP 23.104.0.1:37726 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:01:04.256 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:35448 10 6452 1 2025-08-01 13:01:44.263 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:01:43.912 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:02:05.233 00:00:10.362 TCP 23.104.0.1:53234 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:02:04.492 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39526 10 6452 1 2025-08-01 13:03:05.632 00:00:10.370 TCP 23.104.0.1:56002 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:03:04.703 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58056 10 6452 1 2025-08-01 13:04:06.054 00:00:10.367 TCP 23.104.0.1:59376 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:04:04.923 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44218 10 6452 1 2025-08-01 13:00:04.574 00:06:00.014 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 13:00:04.587 00:06:00.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 13:05:05.142 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42832 10 6452 1 2025-08-01 13:05:06.455 00:00:10.362 TCP 23.104.0.1:50518 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:06:05.356 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60860 10 6452 1 2025-08-01 13:06:06.857 00:00:10.375 TCP 23.104.0.1:56226 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:06:44.144 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:06:44.166 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:07:05.573 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52766 10 6452 1 2025-08-01 13:07:07.271 00:00:10.372 TCP 23.104.0.1:39938 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:08:05.783 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:58678 10 6452 1 2025-08-01 13:08:07.683 00:00:10.370 TCP 23.104.0.1:49660 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:09:05.961 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:58074 14 10471 1 2025-08-01 13:09:08.107 00:00:10.401 TCP 23.104.0.1:52352 -> 1.101.0.1:3000 15 1926 1 2025-08-01 13:10:06.216 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:45654 10 6452 1 2025-08-01 13:10:08.553 00:00:10.363 TCP 23.104.0.1:51670 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:11:06.385 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34120 10 6452 1 2025-08-01 13:11:08.949 00:00:10.372 TCP 23.104.0.1:56140 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:11:44.179 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:11:44.261 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:07:04.580 00:06:00.012 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 13:07:04.586 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 13:12:06.598 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56042 10 6452 1 2025-08-01 13:12:09.363 00:00:10.374 TCP 23.104.0.1:41880 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:13:06.810 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:54896 10 6452 1 2025-08-01 13:13:09.770 00:00:10.373 TCP 23.104.0.1:41192 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:14:10.181 00:00:10.365 TCP 23.104.0.1:59904 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:14:06.985 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:49808 10 6452 1 2025-08-01 13:15:07.213 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42518 10 6452 1 2025-08-01 13:15:10.583 00:00:10.361 TCP 23.104.0.1:59674 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:16:07.426 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55098 10 6452 1 2025-08-01 13:16:10.986 00:00:10.367 TCP 23.104.0.1:46860 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:16:43.912 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:16:44.328 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:17:11.386 00:00:10.367 TCP 23.104.0.1:40666 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:17:07.640 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34684 10 6452 1 2025-08-01 13:18:07.850 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:39524 10 6452 1 2025-08-01 13:18:11.790 00:00:10.368 TCP 23.104.0.1:33712 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:14:04.581 00:06:00.015 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 13:14:04.589 00:06:00.004 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 13:19:08.077 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:55802 12 10365 1 2025-08-01 13:19:12.193 00:00:10.399 TCP 23.104.0.1:56162 -> 1.101.0.1:3000 15 1926 1 2025-08-01 13:20:08.317 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56468 10 6452 1 2025-08-01 13:20:12.634 00:00:10.369 TCP 23.104.0.1:52838 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:21:08.533 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36720 10 6452 1 2025-08-01 13:21:13.049 00:00:10.365 TCP 23.104.0.1:44356 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:21:44.200 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:21:44.404 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:22:08.746 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41018 10 6452 1 2025-08-01 13:22:13.452 00:00:10.324 TCP 23.104.0.1:55720 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:23:08.962 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48276 10 6452 1 2025-08-01 13:23:13.819 00:00:10.366 TCP 23.104.0.1:37712 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:24:09.195 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46946 10 6452 1 2025-08-01 13:24:14.220 00:00:10.364 TCP 23.104.0.1:43038 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:25:09.408 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54204 10 6452 1 2025-08-01 13:25:14.625 00:00:10.379 TCP 23.104.0.1:33854 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:21:04.584 00:06:00.014 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 13:21:04.593 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 13:26:09.624 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39684 10 6452 1 2025-08-01 13:26:15.064 00:00:10.367 TCP 23.104.0.1:53580 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:26:44.869 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:26:44.929 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:27:09.837 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45638 10 6452 1 2025-08-01 13:27:15.472 00:00:10.378 TCP 23.104.0.1:43880 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:28:10.066 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:51136 10 6452 1 2025-08-01 13:28:15.897 00:00:10.377 TCP 23.104.0.1:49340 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:29:10.282 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:60916 10 6452 1 2025-08-01 13:29:16.313 00:00:10.330 TCP 23.104.0.1:42230 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:30:10.451 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:47146 10 6452 1 2025-08-01 13:30:16.682 00:00:10.361 TCP 23.104.0.1:43956 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:31:10.631 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:49286 10 6452 1 2025-08-01 13:31:17.097 00:00:10.328 TCP 23.104.0.1:44758 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:31:44.572 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:31:44.642 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:32:10.837 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42750 10 6452 1 2025-08-01 13:32:17.462 00:00:10.367 TCP 23.104.0.1:54672 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:28:04.597 00:06:00.003 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 653 1 2025-08-01 13:28:04.590 00:06:00.011 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 13:33:11.066 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39572 10 6452 1 2025-08-01 13:33:17.868 00:00:10.406 TCP 23.104.0.1:33850 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:34:11.285 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:57404 10 6452 1 2025-08-01 13:34:18.313 00:00:10.329 TCP 23.104.0.1:40288 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:35:11.491 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45686 10 6452 1 2025-08-01 13:35:18.678 00:00:10.369 TCP 23.104.0.1:53626 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:36:11.700 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46630 10 6452 1 2025-08-01 13:36:19.099 00:00:10.322 TCP 23.104.0.1:54068 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:36:44.665 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:36:44.658 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:37:11.919 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54838 10 6452 1 2025-08-01 13:37:19.462 00:00:10.354 TCP 23.104.0.1:40662 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:38:12.128 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43484 10 6452 1 2025-08-01 13:38:19.855 00:00:10.376 TCP 23.104.0.1:46496 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:39:12.352 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:40118 10 6452 1 2025-08-01 13:39:20.272 00:00:10.367 TCP 23.104.0.1:51462 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:35:04.596 00:06:00.010 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 13:35:04.599 00:06:00.005 TCP 179.1.22.22:39396 -> 179.1.22.1:179 8 549 1 2025-08-01 13:40:12.528 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40072 10 6452 1 2025-08-01 13:40:20.676 00:00:10.319 TCP 23.104.0.1:36240 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:41:12.753 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:58640 10 6452 1 2025-08-01 13:41:21.036 00:00:10.369 TCP 23.104.0.1:50432 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:41:44.945 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:41:44.889 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:42:12.927 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:57934 10 6452 1 2025-08-01 13:42:21.448 00:00:10.323 TCP 23.104.0.1:52386 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:43:13.156 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:46378 10 6452 1 2025-08-01 13:43:21.813 00:00:10.325 TCP 23.104.0.1:52128 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:44:13.325 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56970 10 6452 1 2025-08-01 13:44:22.176 00:00:10.362 TCP 23.104.0.1:35210 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:45:13.536 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40090 10 6452 1 2025-08-01 13:45:22.578 00:00:10.378 TCP 23.104.0.1:50582 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:46:13.753 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54230 10 6452 1 2025-08-01 13:46:23.000 00:00:10.361 TCP 23.104.0.1:34122 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:46:44.918 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:46:44.684 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:42:04.604 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 13:42:04.597 00:06:00.011 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 13:47:13.965 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52000 10 6452 1 2025-08-01 13:47:23.402 00:00:10.363 TCP 23.104.0.1:39172 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:48:14.182 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:58688 10 6452 1 2025-08-01 13:48:23.801 00:00:10.369 TCP 23.104.0.1:38440 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:49:14.403 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50144 10 6452 1 2025-08-01 13:49:24.207 00:00:10.367 TCP 23.104.0.1:47204 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:50:14.631 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50350 10 6452 1 2025-08-01 13:50:24.608 00:00:10.340 TCP 23.104.0.1:43906 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:51:14.847 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37760 10 6452 1 2025-08-01 13:51:24.980 00:00:10.375 TCP 23.104.0.1:50122 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:51:44.958 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:51:44.746 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:52:15.080 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50368 10 6452 1 2025-08-01 13:52:25.388 00:00:10.373 TCP 23.104.0.1:52936 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:53:15.291 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35050 10 6452 1 2025-08-01 13:53:25.800 00:00:10.363 TCP 23.104.0.1:45284 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:49:04.597 00:06:00.020 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 13:49:04.607 00:06:00.008 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 13:54:15.500 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35976 10 6452 1 2025-08-01 13:54:26.202 00:00:10.370 TCP 23.104.0.1:36916 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:55:15.715 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:34250 10 6452 1 2025-08-01 13:55:26.602 00:00:10.361 TCP 23.104.0.1:51060 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:56:15.888 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55788 10 6452 1 2025-08-01 13:56:27.003 00:00:10.365 TCP 23.104.0.1:37904 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:56:45.296 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 13:56:45.112 00:00:00.030 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 13:57:16.102 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:35528 10 6452 1 2025-08-01 13:57:27.402 00:00:10.364 TCP 23.104.0.1:45906 -> 1.101.0.1:3000 11 1507 1 2025-08-01 13:58:16.273 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59856 10 6452 1 2025-08-01 13:58:27.814 00:00:10.428 TCP 23.104.0.1:38526 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 507762, total packets: 1524, avg bps: 1136, avg pps: 0, avg bpp: 333 Time window: 2025-08-01 12:59:03 - 2025-08-01 13:58:38 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0027s User: 0.0013s Wall: 0.0022s flows/second: 72565.8 Runtime: 0.0022s