Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 09:59:35.407 00:00:10.374 TCP 23.104.0.1:54768 -> 1.101.0.1:3000 11 1507 1 2025-08-02 09:59:39.811 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49874 10 6452 1 2025-08-02 10:00:35.822 00:00:10.364 TCP 23.104.0.1:37798 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:00:40.040 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:59652 10 6452 1 2025-08-02 10:01:36.228 00:00:10.359 TCP 23.104.0.1:54038 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:01:40.219 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45790 10 6452 1 2025-08-02 10:02:09.531 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:02:09.743 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:02:36.627 00:00:10.373 TCP 23.104.0.1:56428 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:02:40.437 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46312 10 6452 1 2025-08-02 10:03:37.042 00:00:10.364 TCP 23.104.0.1:54120 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:03:40.652 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:42320 10 6452 1 2025-08-02 09:59:05.124 00:06:00.093 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 09:59:05.126 00:06:00.088 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 10:04:37.450 00:00:10.326 TCP 23.104.0.1:36422 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:04:40.884 00:00:10.738 TCP 1.101.0.1:3000 -> 22.102.0.1:52714 10 6452 1 2025-08-02 10:05:41.663 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50588 10 6452 1 2025-08-02 10:05:37.812 00:00:10.363 TCP 23.104.0.1:50560 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:06:38.214 00:00:10.322 TCP 23.104.0.1:49492 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:06:41.874 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60388 10 6452 1 2025-08-02 10:07:09.262 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:07:09.391 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:07:38.574 00:00:10.364 TCP 23.104.0.1:54232 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:07:42.098 00:00:10.238 TCP 1.101.0.1:3000 -> 22.102.0.1:58662 10 6452 1 2025-08-02 10:08:38.978 00:00:10.367 TCP 23.104.0.1:41842 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:08:42.376 00:00:10.229 TCP 1.101.0.1:3000 -> 22.102.0.1:46026 11 6504 1 2025-08-02 10:09:39.389 00:00:10.376 TCP 23.104.0.1:34314 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:09:42.648 00:00:10.338 TCP 1.101.0.1:3000 -> 22.102.0.1:52230 10 6452 1 2025-08-02 10:10:39.809 00:00:10.368 TCP 23.104.0.1:59298 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:10:43.044 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43366 10 6452 1 2025-08-02 10:06:05.127 00:06:00.090 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 10:06:05.124 00:06:00.095 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 10:11:40.230 00:00:10.366 TCP 23.104.0.1:38550 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:11:43.261 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33756 10 6452 1 2025-08-02 10:12:09.631 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:12:09.751 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:12:40.630 00:00:10.326 TCP 23.104.0.1:34026 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:12:43.431 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53692 10 6452 1 2025-08-02 10:13:40.991 00:00:10.324 TCP 23.104.0.1:43330 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:13:43.646 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32954 10 6452 1 2025-08-02 10:14:41.355 00:00:10.364 TCP 23.104.0.1:38192 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:14:43.860 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35246 10 6452 1 2025-08-02 10:15:41.763 00:00:10.374 TCP 23.104.0.1:41416 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:15:44.082 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55500 10 6452 1 2025-08-02 10:16:44.294 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:45794 10 6452 1 2025-08-02 10:16:42.178 00:00:10.382 TCP 23.104.0.1:59910 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:17:09.641 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:17:09.552 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:17:42.599 00:00:10.321 TCP 23.104.0.1:43962 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:17:44.506 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:37060 10 6452 1 2025-08-02 10:13:05.129 00:06:00.088 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 10:13:05.126 00:06:00.093 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 10:18:42.960 00:00:10.442 TCP 23.104.0.1:39132 -> 1.101.0.1:3000 15 1926 1 2025-08-02 10:18:44.699 00:00:10.215 TCP 1.101.0.1:3000 -> 22.102.0.1:48072 13 13937 1 2025-08-02 10:19:43.445 00:00:10.326 TCP 23.104.0.1:57248 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:19:44.958 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:50574 10 6452 1 2025-08-02 10:20:43.811 00:00:10.365 TCP 23.104.0.1:45816 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:20:45.154 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60964 10 6452 1 2025-08-02 10:21:45.370 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38224 10 6452 1 2025-08-02 10:21:44.219 00:00:10.361 TCP 23.104.0.1:45096 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:22:09.632 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:22:09.740 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:22:44.622 00:00:10.325 TCP 23.104.0.1:43982 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:22:45.582 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:56148 10 6452 1 2025-08-02 10:23:45.802 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:43520 10 6452 1 2025-08-02 10:23:44.988 00:00:10.364 TCP 23.104.0.1:47526 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:24:45.976 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:44406 10 6452 1 2025-08-02 10:24:45.395 00:00:10.370 TCP 23.104.0.1:54732 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:20:05.129 00:06:00.093 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 10:20:05.133 00:06:00.087 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 10:25:46.219 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57768 10 6452 1 2025-08-02 10:25:45.804 00:00:10.374 TCP 23.104.0.1:45772 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:26:46.218 00:00:10.365 TCP 23.104.0.1:40722 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:26:46.435 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51404 10 6452 1 2025-08-02 10:27:09.746 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:27:09.692 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:27:46.620 00:00:10.371 TCP 23.104.0.1:44392 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:27:46.644 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38502 10 6452 1 2025-08-02 10:28:46.861 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:42674 12 10367 1 2025-08-02 10:28:47.027 00:00:10.440 TCP 23.104.0.1:53772 -> 1.101.0.1:3000 15 1926 1 2025-08-02 10:29:47.117 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53458 10 6452 1 2025-08-02 10:29:47.506 00:00:10.362 TCP 23.104.0.1:39376 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:30:47.908 00:00:10.376 TCP 23.104.0.1:53892 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:31:48.322 00:00:10.370 TCP 23.104.0.1:53072 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:30:47.328 00:01:10.392 TCP 1.101.0.1:3000 -> 22.102.0.1:46508 20 12904 1 2025-08-02 10:27:05.137 00:06:00.083 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 10:27:05.134 00:06:00.088 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 10:32:09.887 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:32:10.258 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:32:48.728 00:00:10.324 TCP 23.104.0.1:53016 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:32:47.757 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45282 10 6452 1 2025-08-02 10:33:47.973 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:40052 10 6452 1 2025-08-02 10:33:49.104 00:00:10.362 TCP 23.104.0.1:50060 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:34:48.206 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:44802 10 6452 1 2025-08-02 10:34:49.509 00:00:10.325 TCP 23.104.0.1:34056 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:35:48.377 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59406 10 6452 1 2025-08-02 10:35:49.865 00:00:10.366 TCP 23.104.0.1:51034 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:36:50.271 00:00:10.323 TCP 23.104.0.1:56680 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:36:48.595 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:58396 10 6452 1 2025-08-02 10:37:09.679 00:00:00.030 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:37:10.056 00:00:00.060 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:37:48.787 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41194 10 6452 1 2025-08-02 10:37:50.629 00:00:10.317 TCP 23.104.0.1:53214 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:38:49.001 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57990 10 6452 1 2025-08-02 10:38:50.986 00:00:10.370 TCP 23.104.0.1:47074 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:34:05.138 00:06:00.083 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 10:34:05.135 00:06:00.088 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 10:39:51.402 00:00:10.368 TCP 23.104.0.1:56710 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:39:49.219 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39224 10 6452 1 2025-08-02 10:40:49.441 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44310 10 6452 1 2025-08-02 10:40:51.811 00:00:10.342 TCP 23.104.0.1:49334 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:41:49.658 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48440 10 6452 1 2025-08-02 10:41:52.194 00:00:10.330 TCP 23.104.0.1:32888 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:42:10.162 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:42:10.018 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:42:49.872 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:34554 10 6452 1 2025-08-02 10:42:52.567 00:00:10.382 TCP 23.104.0.1:41854 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:43:50.070 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56960 10 6452 1 2025-08-02 10:43:53.002 00:00:10.367 TCP 23.104.0.1:42724 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:44:50.289 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52914 10 6452 1 2025-08-02 10:44:53.401 00:00:10.366 TCP 23.104.0.1:41922 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:45:50.508 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35134 10 6452 1 2025-08-02 10:41:05.140 00:06:00.086 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 10:45:53.807 00:00:10.333 TCP 23.104.0.1:50652 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:41:05.138 00:06:00.092 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 10:46:50.721 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33840 10 6452 1 2025-08-02 10:46:54.180 00:00:10.368 TCP 23.104.0.1:60938 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:47:10.375 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:47:10.427 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:47:50.928 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:59914 10 6452 1 2025-08-02 10:47:54.582 00:00:10.366 TCP 23.104.0.1:34382 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:48:51.158 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34516 10 6452 1 2025-08-02 10:48:54.993 00:00:10.363 TCP 23.104.0.1:52534 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:49:51.375 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:52928 10 6452 1 2025-08-02 10:49:55.395 00:00:10.362 TCP 23.104.0.1:44266 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:50:51.552 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40578 10 6452 1 2025-08-02 10:50:55.795 00:00:10.345 TCP 23.104.0.1:55488 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:51:51.764 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56010 10 6452 1 2025-08-02 10:51:56.179 00:00:10.368 TCP 23.104.0.1:57904 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:52:10.539 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:52:10.041 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:52:56.585 00:00:10.331 TCP 23.104.0.1:55590 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:48:05.141 00:06:00.093 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 10:52:51.977 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:54474 10 6452 1 2025-08-02 10:48:05.139 00:06:00.099 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 10:53:52.210 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53718 10 6452 1 2025-08-02 10:53:56.945 00:00:10.367 TCP 23.104.0.1:52126 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:54:52.415 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53382 10 6452 1 2025-08-02 10:54:57.351 00:00:10.370 TCP 23.104.0.1:38172 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:55:52.627 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44036 10 6452 1 2025-08-02 10:55:57.764 00:00:10.377 TCP 23.104.0.1:50472 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:56:52.837 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51782 10 6452 1 2025-08-02 10:56:58.178 00:00:10.366 TCP 23.104.0.1:54686 -> 1.101.0.1:3000 11 1507 1 2025-08-02 10:57:10.291 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 10:57:10.306 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 10:57:53.074 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47668 10 6452 1 2025-08-02 10:57:58.582 00:00:10.368 TCP 23.104.0.1:51360 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 157, total bytes: 501695, total packets: 1549, avg bps: 1132, avg pps: 0, avg bpp: 323 Time window: 2025-08-02 09:59:05 - 2025-08-02 10:58:08 Total flows processed: 157, passed: 157, Blocks skipped: 0, Bytes read: 16392 Sys: 0.0049s User: 0.0000s Wall: 0.0032s flows/second: 49575.1 Runtime: 0.0032s