Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 17:54:04.708 00:06:00.009 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 17:54:04.712 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 17:59:09.806 00:00:10.363 TCP 23.104.0.1:48392 -> 1.101.0.1:3000 11 1507 1 2025-08-01 17:59:06.990 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:59096 10 6452 1 2025-08-01 18:00:10.209 00:00:10.327 TCP 23.104.0.1:55656 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:00:07.219 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:57260 10 6452 1 2025-08-01 18:01:07.413 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49394 10 6452 1 2025-08-01 18:01:10.573 00:00:10.359 TCP 23.104.0.1:49920 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:01:49.890 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:01:49.985 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:02:10.976 00:00:10.373 TCP 23.104.0.1:41076 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:02:07.634 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56966 10 6452 1 2025-08-01 18:03:11.392 00:00:10.331 TCP 23.104.0.1:54558 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:03:07.844 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38262 10 6452 1 2025-08-01 18:04:08.084 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46834 10 6452 1 2025-08-01 18:04:11.772 00:00:10.327 TCP 23.104.0.1:42946 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:05:08.298 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55770 10 6452 1 2025-08-01 18:05:12.158 00:00:10.363 TCP 23.104.0.1:48988 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:01:04.714 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 9 601 1 2025-08-01 18:01:04.709 00:06:00.008 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 18:06:08.507 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46820 10 6452 1 2025-08-01 18:06:12.560 00:00:10.364 TCP 23.104.0.1:48710 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:06:49.867 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:06:50.119 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:07:08.718 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:32858 10 6452 1 2025-08-01 18:07:12.958 00:00:10.362 TCP 23.104.0.1:37500 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:08:08.926 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35248 10 6452 1 2025-08-01 18:08:13.365 00:00:10.366 TCP 23.104.0.1:54278 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:09:09.136 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40428 10 6452 1 2025-08-01 18:09:13.766 00:00:10.368 TCP 23.104.0.1:50704 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:10:09.347 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60958 10 6452 1 2025-08-01 18:10:14.170 00:00:10.327 TCP 23.104.0.1:35768 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:11:09.567 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52588 10 6452 1 2025-08-01 18:11:14.534 00:00:10.369 TCP 23.104.0.1:56436 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:11:50.093 00:00:00.048 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:11:50.326 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:12:09.778 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55554 10 6452 1 2025-08-01 18:12:14.937 00:00:10.395 TCP 23.104.0.1:55474 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:08:04.719 00:05:59.997 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 18:08:04.710 00:06:00.008 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 18:13:09.995 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:51024 10 6452 1 2025-08-01 18:13:15.370 00:00:10.363 TCP 23.104.0.1:56176 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:14:10.223 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41040 10 6452 1 2025-08-01 18:14:15.769 00:00:10.365 TCP 23.104.0.1:33766 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:15:10.433 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:32818 10 6452 1 2025-08-01 18:15:16.174 00:00:10.363 TCP 23.104.0.1:46674 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:16:10.604 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59234 10 6452 1 2025-08-01 18:16:16.572 00:00:10.363 TCP 23.104.0.1:35528 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:16:50.394 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:16:50.399 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:17:10.821 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51606 10 6452 1 2025-08-01 18:17:16.971 00:00:10.373 TCP 23.104.0.1:56456 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:18:11.039 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42510 10 6452 1 2025-08-01 18:18:17.397 00:00:10.359 TCP 23.104.0.1:39332 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:19:11.252 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60464 10 6452 1 2025-08-01 18:19:17.806 00:00:10.358 TCP 23.104.0.1:50748 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:15:04.717 00:06:00.042 TCP 179.1.22.22:39396 -> 179.1.22.1:179 8 549 1 2025-08-01 18:15:04.713 00:06:00.006 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 18:20:11.461 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52886 10 6452 1 2025-08-01 18:20:18.206 00:00:10.368 TCP 23.104.0.1:35636 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:21:11.672 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:50372 10 6452 1 2025-08-01 18:21:18.613 00:00:10.368 TCP 23.104.0.1:33454 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:21:50.446 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:21:50.455 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:22:11.879 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:36000 10 6452 1 2025-08-01 18:22:19.019 00:00:10.361 TCP 23.104.0.1:48568 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:23:12.072 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:48896 10 6452 1 2025-08-01 18:23:19.412 00:00:10.329 TCP 23.104.0.1:34472 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:24:12.243 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44578 10 6452 1 2025-08-01 18:24:19.775 00:00:10.368 TCP 23.104.0.1:45444 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:25:12.458 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39144 10 6452 1 2025-08-01 18:25:20.180 00:00:10.329 TCP 23.104.0.1:60008 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:26:12.684 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35812 10 6452 1 2025-08-01 18:26:20.543 00:00:10.368 TCP 23.104.0.1:49444 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:26:51.819 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:26:51.740 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:22:04.716 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-01 18:22:04.714 00:06:00.006 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 18:27:12.896 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:39120 10 6452 1 2025-08-01 18:27:20.950 00:00:10.404 TCP 23.104.0.1:49038 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:28:13.082 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48038 10 6452 1 2025-08-01 18:28:21.423 00:00:10.382 TCP 23.104.0.1:41218 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:29:13.292 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59066 10 6452 1 2025-08-01 18:29:21.836 00:00:10.387 TCP 23.104.0.1:46942 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:30:13.504 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55200 10 6452 1 2025-08-01 18:30:22.262 00:00:10.372 TCP 23.104.0.1:41294 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:31:13.717 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:44092 10 6452 1 2025-08-01 18:31:22.666 00:00:10.326 TCP 23.104.0.1:57288 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:31:50.782 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:31:50.616 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:32:13.924 00:00:10.158 TCP 1.101.0.1:3000 -> 22.102.0.1:50974 10 6452 1 2025-08-01 18:32:23.032 00:00:10.330 TCP 23.104.0.1:48826 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:33:14.122 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44070 10 6452 1 2025-08-01 18:33:23.402 00:00:10.366 TCP 23.104.0.1:57642 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:29:04.718 00:06:00.004 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 18:29:04.716 00:06:00.009 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 18:34:14.337 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39204 10 6452 1 2025-08-01 18:34:23.811 00:00:10.414 TCP 23.104.0.1:33244 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:35:14.511 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56430 10 6452 1 2025-08-01 18:35:24.266 00:00:10.365 TCP 23.104.0.1:59394 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:36:14.721 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54698 10 6452 1 2025-08-01 18:36:24.678 00:00:10.369 TCP 23.104.0.1:47642 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:36:50.598 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:36:50.668 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:37:14.934 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:56404 10 6452 1 2025-08-01 18:37:25.110 00:00:10.373 TCP 23.104.0.1:52602 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:38:15.172 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:50616 10 6452 1 2025-08-01 18:38:25.525 00:00:10.327 TCP 23.104.0.1:52728 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:39:15.357 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52218 10 6452 1 2025-08-01 18:39:25.887 00:00:10.378 TCP 23.104.0.1:35646 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:40:15.582 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33530 10 6452 1 2025-08-01 18:40:26.301 00:00:10.368 TCP 23.104.0.1:49518 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:36:04.719 00:06:00.007 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 18:36:04.724 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 11 705 1 2025-08-01 18:41:15.800 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51736 10 6452 1 2025-08-01 18:41:26.706 00:00:10.386 TCP 23.104.0.1:53394 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:41:50.639 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:41:50.785 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:42:16.029 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34674 10 6452 1 2025-08-01 18:42:27.131 00:00:10.328 TCP 23.104.0.1:49462 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:43:16.240 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49258 10 6452 1 2025-08-01 18:43:27.497 00:00:10.367 TCP 23.104.0.1:54270 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:44:16.452 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34408 10 6452 1 2025-08-01 18:44:27.906 00:00:10.366 TCP 23.104.0.1:35542 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:45:16.663 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:47376 10 6452 1 2025-08-01 18:45:28.309 00:00:10.367 TCP 23.104.0.1:47998 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:46:16.848 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59294 10 6452 1 2025-08-01 18:46:28.718 00:00:10.377 TCP 23.104.0.1:39262 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:46:50.853 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:46:50.855 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:47:17.094 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33082 10 6452 1 2025-08-01 18:47:29.133 00:00:10.323 TCP 23.104.0.1:50272 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:43:04.724 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 809 1 2025-08-01 18:43:04.723 00:06:00.005 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 18:48:17.306 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:38456 10 6452 1 2025-08-01 18:48:29.492 00:00:10.361 TCP 23.104.0.1:42814 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:49:17.491 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55178 10 6452 1 2025-08-01 18:49:29.894 00:00:10.324 TCP 23.104.0.1:48690 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:50:17.707 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46766 10 6452 1 2025-08-01 18:50:30.258 00:00:10.325 TCP 23.104.0.1:59468 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:51:17.919 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:57956 10 6452 1 2025-08-01 18:51:30.631 00:00:10.369 TCP 23.104.0.1:34894 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:51:50.822 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:51:51.134 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:52:18.107 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50692 10 6452 1 2025-08-01 18:52:31.031 00:00:10.367 TCP 23.104.0.1:45012 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:53:18.320 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58936 10 6452 1 2025-08-01 18:53:31.435 00:00:10.362 TCP 23.104.0.1:33488 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:54:18.533 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:46428 10 6452 1 2025-08-01 18:54:31.841 00:00:10.383 TCP 23.104.0.1:33692 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:50:04.723 00:06:00.007 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-01 18:50:04.726 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 7 497 1 2025-08-01 18:55:18.704 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38836 10 6452 1 2025-08-01 18:55:32.266 00:00:10.363 TCP 23.104.0.1:42790 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:56:18.915 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45700 10 6452 1 2025-08-01 18:56:32.674 00:00:10.333 TCP 23.104.0.1:46450 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:56:51.170 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-01 18:56:51.069 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-01 18:57:19.127 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56482 10 6452 1 2025-08-01 18:57:33.067 00:00:10.362 TCP 23.104.0.1:46446 -> 1.101.0.1:3000 11 1507 1 2025-08-01 18:58:19.339 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34848 10 6452 1 2025-08-01 18:58:33.470 00:00:10.364 TCP 23.104.0.1:42988 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 496850, total packets: 1541, avg bps: 1024, avg pps: 0, avg bpp: 322 Time window: 2025-08-01 17:54:04 - 2025-08-01 18:58:43 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0029s User: 0.0019s Wall: 0.0022s flows/second: 72454.4 Runtime: 0.0022s